Virus Spywareprotect + Cheval de troie etc..

marie-gerard Messages postés 6 Statut Membre -  
geoffrey5 Messages postés 14008 Statut Contributeur sécurité -
Bonjour, il semble que mon ordinateur a accidentellement aceuilli " Winspywareprotect " et je reçois aussi des chevaux de troie, pourriez-vous m'aider à les retirer ? Je vois aussi que mon programme pour les mises-à-jours automatique ne veut pas s'activer.
A voir également:

11 réponses

geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
 
Salut !!

Télécharge hijackthis : http://www.trendsecure.com/portal/en-US/_download/HiJackThis.exe

voici un tuto pour bien l installer : https://forums.cnetfrance.fr

-une fois installé, le renommer HJT.exe pour contrer une éventuelle infection vundo
-Double-clic dessus
- Clic sur "Do a system scan and save the log"
- copier le rapport, le coller dans la réponse
1
marie-gerard Messages postés 6 Statut Membre
 
Merci de votre aide !

Je vous poste le Raport HJT.exe :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:36:14, on 18/07/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\7431218\Program\SERVIC~1.EXE
C:\Program Files\Anti-Virus\fsgk32st.exe
C:\Program Files\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo AntiVirus\7431218\program\fsbwsys.exe
C:\Program Files\Anti-Virus\fssm32.exe
C:\Program Files\Common\FSMA32.EXE
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Common\FSMB32.EXE
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Common\FCH32.EXE
C:\Program Files\Anti-Virus\fsqh.exe
C:\Program Files\Common\FAMEH32.EXE
C:\Program Files\FWES\Program\fsdfwd.exe
C:\Program Files\Anti-Virus\fsrw.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Anti-Virus\fsav32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
C:\Program Files\Common\FSM32.EXE
C:\Program Files\FSGUI\ispnews.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\PROGRA~1\ANTI-S~1\fsaw.exe
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\FSGUI\fsguidll.exe
C:\Documents and Settings\All Users\Application Data\SecuriSoft SARL\WinSpywareProtect\wspwprtct.exe
C:\Program Files\Securitoo AntiVirus\7431218\Program\fspex.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Propriétaire\Mes documents\HJT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: {ca3fe53a-65dd-2fe9-6754-35410c59f281} - {182f95c0-1453-4576-9ef2-dd56a35ef3ac} - C:\WINDOWS\system32\feaqfp.dll
O2 - BHO: (no name) - {4A96484C-225C-4D1E-8FE6-7EB3148B6B85} - C:\WINDOWS\system32\urqnkjKA.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {8EA479BF-A910-4B14-8BB1-CD195871F947} - C:\WINDOWS\system32\efcCUNHW.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\FSGUI\FSSW.EXE" /reboot
O4 - HKLM\..\Run: [News Service] "C:\Program Files\FSGUI\ispnews.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [f026df50] rundll32.exe "C:\WINDOWS\system32\ojcjmvxa.dll",b
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [s9201] "C:\Documents and Settings\All Users\Application Data\SecuriSoft SARL\WinSpywareProtect\wspwprtct.exe" /autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Antivirus Firewall.lnk = C:\Program Files\Securitoo AntiVirus\7431218\Program\fspex.exe
O8 - Extra context menu item: &Bloquer cette fenêtre publicitaire - C:\Program Files\Anti-Spyware\blockpopups.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Protection Internet Explorer - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Anti-Spyware\ieshield.dll
O9 - Extra 'Tools' menuitem: Protection Internet Explorer... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Anti-Spyware\ieshield.dll
O9 - Extra button: Europa Casino - {4C826F10-D34B-4ba8-B609-1FB8C6482A05} - C:\Casino\Europa Casino\casino.exe
O9 - Extra 'Tools' menuitem: Europa Casino - {4C826F10-D34B-4ba8-B609-1FB8C6482A05} - C:\Casino\Europa Casino\casino.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O20 - Winlogon Notify: efcCUNHW - C:\WINDOWS\SYSTEM32\efcCUNHW.dll
O23 - Service: Antivirus Firewall (BackWeb Plug-in - 7431218) - Securitoo Portal - C:\PROGRA~1\SECURI~1\7431218\Program\SERVIC~1.EXE
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corporation - C:\Program Files\Anti-Virus\fsgk32st.exe
O23 - Service: FSBWSYS - F-Secure Corp. - C:\Program Files\Securitoo AntiVirus\7431218\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\FWES\Program\fsdfwd.exe
O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
0
geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
 
Télécharger sur le bureau malware bytes : http://ww.commentcamarche.net/telecharger/telechargement 34055379 malwarebyte s anti malware?thread

= double-clic sur mbam-setup pour lancer l'installation
= Installer simplement sans rien modifier
= Quand le programme lancé ==> faire une mise à jour ensuite cocher Exécuter un examen complet
= Clic Rechercher
= Eventuellement décocher les disque à ne pas analyser
= Clic Lancer l'examen
= En fin de scan , si infection trouvée
==> Clic Afficher résultat
= Fermer vos applications en cours
= Vérifier si tout est coché et clic Supprimer la sélection

un rapport s'ouvre le copier et le coller dans la réponse

Puis redémarrer le pc !!

ensuite :

Télécharge sur le bureau virtumundobegone :
http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe

déconnecte internet et désactive ton antivirus le temps de la manipulation

=> Double clic sur VirtumundoBeGone.exe
=> Clic Continue ==> clic Start
=> Clic Oui
=> A la fin si Vundo est présent , le PC s’éteint et redémarre
- Si Ecran bleu et message : Erreur fatale .. pas de problème
=> Poster le rapport VBG.TXT qui est sur le bureau

Et refais un nouveau rapport hijackthis stp
0
marie-gerard Messages postés 6 Statut Membre
 
Je vous envoi le rapport Malware bytes :

Malwarebytes' Anti-Malware 1.20
Version de la base de données: 963
Windows 5.1.2600 Service Pack 3

16:35:31 18/07/2008
mbam-log-7-18-2008 (16-35-25).txt

Type de recherche: Examen complet (C:\|)
Eléments examinés: 85334
Temps écoulé: 17 minute(s), 58 second(s)

Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 3
Clé(s) du Registre infectée(s): 11
Valeur(s) du Registre infectée(s): 3
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 449
Fichier(s) infecté(s): 3750

Processus mémoire infecté(s):
C:\Documents and Settings\All Users\Application Data\SecuriSoft SARL\WinSpywareProtect\wspwprtct.exe (Rogue.WinSpywareProtect) -> Unloaded process successfully.

Module(s) mémoire infecté(s):
C:\WINDOWS\system32\ojcjmvxa.dll (Trojan.Vundo) -> Unloaded module successfully.
C:\WINDOWS\system32\urqnkjKA.dll (Trojan.Vundo) -> Unloaded module successfully.
C:\WINDOWS\system32\efcCUNHW.dll (Trojan.Vundo) -> Unloaded module successfully.

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4a96484c-225c-4d1e-8fe6-7eb3148b6b85} (Trojan.Vundo) -> Delete on reboot.
HKEY_CLASSES_ROOT\CLSID\{4a96484c-225c-4d1e-8fe6-7eb3148b6b85} (Trojan.Vundo) -> Delete on reboot.
HKEY_CLASSES_ROOT\CLSID\{8ea479bf-a910-4b14-8bb1-cd195871f947} (Trojan.Vundo) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8ea479bf-a910-4b14-8bb1-cd195871f947} (Trojan.Vundo) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\efccunhw (Trojan.Vundo) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\SecuriSoft SARL (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Trojan.Vundo) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\f026df50 (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{8ea479bf-a910-4b14-8bb1-cd195871f947} (Trojan.Vundo) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\s9201 (Rogue.WinSpywareProtect) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo) -> Data: c:\windows\system32\urqnkjka -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\urqnkjka -> Delete on reboot.

Dossier(s) infecté(s):
C:\Casino (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\aroundtheworld (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\aroundtheworld\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\aroundtheworld\windows (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_progressive (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_progressive\gold_dark (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\tables (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\tables\cocktail (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\tables\colors (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\tables\firstlast (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\tables\jackpot (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\tables\numbers (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\tables\sixth (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\tables\steps (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls\tables\total (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_duel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_duel\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_pontoon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_progressive (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_progressive\gold_dark (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_switch (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\bonusbowling (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\bonusbowling\anim (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\bonusbowling\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\craps (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\craps\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\darts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\darts\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\darts\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\darts\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\darts\texts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\dicetwister (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\dicetwister\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\genieshilo (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\genieshilo\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\genieshilo\cards (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\genieshilo\jackpot (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\genieshilo\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\headsortails (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\headsortails\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\headsortails\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\horseracing (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\horseracing\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\horseracing\info (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\horseracing\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\horseracing\stadium (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\horseracing\start (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\horseracing\tables (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\horseracing\texts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno_x (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno_x\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno_x\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno_x\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno_x\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\lobby (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\lobby\ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\lobby\login (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\lobby\menu (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\lobby\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\mahjong (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\mahjong\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\mahjong\paytable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\mahjong\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\mahjong\window_win (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\pachinko (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\pachinko\components (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\pachinko\gems (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\pachinko\minigames (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\pachinko\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\pachinko\yokoku (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\penaltyshootout (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\penaltyshootout\anims (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\penaltyshootout\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\penaltyshootout\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\poker_caribbean (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\poker_holdem (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\poker_paigow (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\poker_tequila (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\popbingo (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\popbingo\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\reddog (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\rockpaperscissors (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\rockpaperscissors\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\rockpaperscissors\info (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\rockpaperscissors\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\rollercoasterdice (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\rollercoasterdice\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\rollercoasterdice\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\rollercoasterdice\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette\zoom (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette00 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette00\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette00\zoom (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette_mini (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette_mini\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette_mini\luxury (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\roulette_mini\luxury\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\3reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\3reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\5reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\9line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\blackjack (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\cards (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\cards\poker (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\cards\textures (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\cards\videopoker_multiline (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\coins (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\coins\tablecoins (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\dollarball (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\dollarball\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\doublescreen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\html (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\html\chat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\html\chat\emoticons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\interface (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\interface\chat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\interface\ui (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\slots (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\slots\lines (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\slots_multispin (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\sounds\dealervoices (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\sounds\dealervoices\numbers (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\tablegames (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\tablegames\gold_dark (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\tablesigns (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\ui (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\videopoker_4line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\videopoker_4line\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\videopoker_deuces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\videopoker_jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\videopoker_multiline (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\shared\videopoker_multiline\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\sicbo (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\sicbo\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\sicbo_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_8ball (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_8ball\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_8ball_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alchemist (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alchemist\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alchemist\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alchemist\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alchemist\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alien25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alien25line\animations (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alien25line\bonus1 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alien25line\bonus2 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alien25line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alien25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_alien25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_amigos (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_amigos\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_amigos_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_beachlife20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_beachlife20line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_beachlife20line\betlines (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_beachlife20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_beachlife20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_beachlife20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_bermuda (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_bermuda\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_bermuda_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_bonusbears25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_bonusbears25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_captain (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_captain\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_captain\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_chinese8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_chinese8line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_chinese8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_chinese8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_cinerama5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_cinerama5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_cinerama5reel\bonus\select (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_cinerama5reel\bonus2 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_cinerama5reel\bonus2\select (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_cinerama5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_cinerama5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_crazy (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_crazy\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_crazy_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_desert20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_desert20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_desert20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_desert20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_diamond5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_diamond5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_diamond5reel\bonus\screen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_diamond5reel\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_diamond5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_diamond5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_europa (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_europa\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_europa_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_europa_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_europa_xl\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_farmersmarket20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_farmersmarket20line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_farmersmarket20line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_farmersmarket20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_farmersmarket20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_footballrules25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_footballrules25line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_footballrules25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_footballrules25line\sounds\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_footballrules25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_forestofwonders25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_forestofwonders25line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_forestofwonders25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_forestofwonders25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_fountain (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_fountain\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_fountain_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_fruitmania5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_fruitmania5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_fruitmania5reel\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_fruitmania5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_fruitmania5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_globaltraveler20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_globaltraveler20line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_globaltraveler20line\betlines (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_globaltraveler20line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_globaltraveler20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_globaltraveler20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_goblin (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_goblin\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_goblin\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_goblin\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_goblin\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_goblin\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_gold8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_gold8line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_gold8line\bonus\screen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_gold8line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_gold8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_gold8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_golf (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_golf\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_golf\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_golf\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_haunted (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_haunted\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_haunted\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_haunted_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_haunted_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_highway (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_highway\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_highway\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_highway\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_jungle (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_jungle\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_jungle_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_jungle_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_lotto20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_lotto20line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_lotto20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_lotto20line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_lotto20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_lotto20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_lovemore20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_lovemore20line\dollarball (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_lovemore20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_lovemore20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_magic (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_magic\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_magic\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_magic\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_magic\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_magic\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_millionaireslane20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_millionaireslane20line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_millionaireslane20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_millionaireslane20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_millionaireslane20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_monkey (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_monkey\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_monkey_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_monkey_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_neptune (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_neptune\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_neptune_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_neptune_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_nightout20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_nightout20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_nightout20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_nightout20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_ocean (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_ocean\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_ocean\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_ocean\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_ocean\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_party (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_party\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_party_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_party_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_profits (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_profits\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_profits\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_profits\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_profits\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_profits\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_pyramids9line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_pyramids9line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_pyramids9line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_pyramids9line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_rock (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_rock\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_rock\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_rock_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_rock_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_safecracker (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_safecracker\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_safecracker\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_safecracker\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\bonus\intro_txt (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\bonus\ninjas (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\doubleup (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\info (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\sounds\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\sounds\doubleup (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\sounds\reelspins (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silentsamurai9line\sounds\symbols (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silver (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silver\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silver\dollarball (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silver\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_silver\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_sultan (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_sultan\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_sultan_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_sultan_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_thrillseekers50line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_thrillseekers50line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_thrillseekers50line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_thrillseekers50line\loading (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_thrillseekers50line\payline (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_thrillseekers50line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_thrillseekers50line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_treasures5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_treasures5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_treasures5reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_treasures5reel_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_treasures5reel_xl\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_tropic (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_tropic\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_tropic\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_tropic\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_tropic\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_uggabugga (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_uggabugga\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_uggabugga\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_uggabugga\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_ultimate8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_ultimate8line\anim (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_ultimate8line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_ultimate8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_ultimate8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_vacation8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_vacation8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_vacation8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wall5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wall5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wall5reel\bonus\select (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wall5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wall5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wanted25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wanted25line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wanted25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wanted25line\sounds\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wanted25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_whatscooking30line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_whatscooking30line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_whatscooking30line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_whatscooking30line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wildspirit20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wildspirit20line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wildspirit20line\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wildspirit20line\doubleup (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wildspirit20line\info (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wildspirit20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wildspirit20line\sounds\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wildspirit20line\sounds\doubleup (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wildspirit20line\sounds\reelspins (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\slots_wildspirit20line\sounds\symbols (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\spinawin (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\spinawin\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\spinawin\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\stravaganza (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\tutorial_wildviking (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\tutorial_wildviking\audio (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\tutorial_wildviking\images (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\tutorial_wildviking\swf (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\tutorial_wildviking\xml (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_10jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_10jacks\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_10orbetter (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_25aces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_25aces\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_4aces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_4deuceswild (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_4jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_50jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_50jacks\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_aces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_deuceswild (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_highlow (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_highlow\doublescreen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_joker (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_joker\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\videopoker_megajacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\wildviking (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\wildviking\gold_dark (Adware.Casino) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\SecuriSoft SARL (Rogue.WinSpywareProtect) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\SecuriSoft SARL\WinSpywareProtect (Rogue.WinSpywareProtect) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\SecuriSoft SARL\WinSpywareProtect\BASE (Rogue.WinSpywareProtect) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\SecuriSoft SARL\WinSpywareProtect\DELETED (Rogue.WinSpywareProtect) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\SecuriSoft SARL\WinSpywareProtect\LOG (Rogue.WinSpywareProtect) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\SecuriSoft SARL\WinSpywareProtect\SAVED (Rogue.WinSpywareProtect) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\WINDOWS\system32\urqnkjKA.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\AKjknqru.ini (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\AKjknqru.ini2 (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ojcjmvxa.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\axvmjcjo.ini (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ypgqldwa.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\awdlqgpy.ini (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\efcCUNHW.dll (Trojan.Vundo) -> Delete on reboot.
C:\Program Files\Wanadoo\SafeInstall\KitWanadoo.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Program Files\Wanadoo Messager\WiseUpdt.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\dobrlmds.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\lzljlj.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\tuvSMfec.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\(offline).db (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\cactivex.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\casino.exe (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\casino.hlp (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\casino.ico (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\CEF83320072.db (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\directsounddriver.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\fileinfo.dat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\fileinfo2.dat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\fileinfo2r.dat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\gdigraphdriver.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\h264dec.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\nvssd450.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\ptsetup.lang (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\ptsetup.log (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\replace.exe (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\unicows.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\_SetupCasino.exe (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\aroundtheworld.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\aroundtheworld.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccaratln.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_progressive.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_video_japanese_ln.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_video_ln.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_video_mini_japanese_ln.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_video_mini_ln.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_video_progressive_ln.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_video_running_ln.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\baccarat_video_vip_ln.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\balls.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjackln.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_5h.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_5h_pontoon.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_5h_progressive.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_5h_surrender.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_duel.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_duel.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_pontoon.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_surrender.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_switch.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\blackjack_video_ln.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\bonusbowling.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\bonusbowling.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\cards.swf (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\cashier.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\cashier.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\common.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\common.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\craps.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\craps.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\darts.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\darts.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\dicetwister.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\dicetwister.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\genieshilo.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\genieshilo.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\genieshilo_jackpot.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\headsortails.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\headsortails.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\horseracing.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\horseracing.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno.gam (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Europa Casino\data\keno_x.gam (Adwar
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
 
ok redémarre ton pc et fais la suite stp
0
marie-gerard Messages postés 6 Statut Membre
 
Le PC a été redemarrer, la mises-à-jours automatique s'est activé. De quelle suite vous parlez ?
0
geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
 
http://www.commentcamarche.net/forum/affich 7463635 virus spywareprotect cheval de troie etc#3

Télécharge sur le bureau virtumundobegone :
http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe

déconnecte internet et désactive ton antivirus le temps de la manipulation

=> Double clic sur VirtumundoBeGone.exe
=> Clic Continue ==> clic Start
=> Clic Oui
=> A la fin si Vundo est présent , le PC s’éteint et redémarre
- Si Ecran bleu et message : Erreur fatale .. pas de problème
=> Poster le rapport VBG.TXT qui est sur le bureau

ensuite refais un nouveau rapport hijackthis stp
0
marie-gerard Messages postés 6 Statut Membre
 
Bonjour, alor le rapport VBG :

[07/18/2008, 16:42:29] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\Propriétaire\Bureau\VirtumundoBeGone.exe" )
[07/18/2008, 16:42:34] - Detected System Information:
[07/18/2008, 16:42:34] - Windows Version: 5.1.2600, Service Pack 3
[07/18/2008, 16:42:34] - Current Username: Propriétaire (Admin)
[07/18/2008, 16:42:34] - Windows is in NORMAL mode.
[07/18/2008, 16:42:34] - Searching for Browser Helper Objects:
[07/18/2008, 16:42:34] - BHO 1: {182f95c0-1453-4576-9ef2-dd56a35ef3ac} ()
[07/18/2008, 16:42:34] - WARNING: BHO has no default name. Checking for Winlogon reference.
[07/18/2008, 16:42:34] - Checking for HKLM\...\Winlogon\Notify\feaqfp
[07/18/2008, 16:42:34] - Key not found: HKLM\...\Winlogon\Notify\feaqfp, continuing.
[07/18/2008, 16:42:34] - BHO 2: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
[07/18/2008, 16:42:34] - Finished Searching Browser Helper Objects
[07/18/2008, 16:42:34] - Finishing up...
[07/18/2008, 16:42:34] - Nothing found! Exiting...

[07/23/2008, 18:16:25] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\Propriétaire\Bureau\VirtumundoBeGone.exe" )
[07/23/2008, 18:16:26] - Detected System Information:
[07/23/2008, 18:16:26] - Windows Version: 5.1.2600, Service Pack 3
[07/23/2008, 18:16:26] - Current Username: Propriétaire (Admin)
[07/23/2008, 18:16:26] - Windows is in NORMAL mode.
[07/23/2008, 18:16:26] - Searching for Browser Helper Objects:
[07/23/2008, 18:16:26] - BHO 1: {182f95c0-1453-4576-9ef2-dd56a35ef3ac} ()
[07/23/2008, 18:16:26] - WARNING: BHO has no default name. Checking for Winlogon reference.
[07/23/2008, 18:16:26] - Checking for HKLM\...\Winlogon\Notify\feaqfp
[07/23/2008, 18:16:26] - Key not found: HKLM\...\Winlogon\Notify\feaqfp, continuing.
[07/23/2008, 18:16:26] - BHO 2: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
[07/23/2008, 18:16:26] - Finished Searching Browser Helper Objects
[07/23/2008, 18:16:26] - Finishing up...
[07/23/2008, 18:16:26] - Nothing found! Exiting...

le rapport HJT :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:17:04, on 23/07/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\7431218\Program\SERVIC~1.EXE
C:\Program Files\Anti-Virus\fsgk32st.exe
C:\Program Files\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo AntiVirus\7431218\program\fsbwsys.exe
C:\Program Files\Common\FSMA32.EXE
C:\Program Files\Anti-Virus\fssm32.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Common\FSMB32.EXE
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Common\FCH32.EXE
C:\Program Files\Anti-Virus\fsqh.exe
C:\Program Files\Common\FAMEH32.EXE
C:\WINDOWS\System32\alg.exe
C:\Program Files\Anti-Virus\fsrw.exe
C:\Program Files\FWES\Program\fsdfwd.exe
C:\Program Files\Anti-Virus\fsav32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
C:\Program Files\Common\FSM32.EXE
C:\Program Files\FSGUI\ispnews.exe
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\PROGRA~1\ANTI-S~1\fsaw.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
C:\Program Files\FSGUI\fsguidll.exe
C:\Program Files\Securitoo AntiVirus\7431218\Program\fspex.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Propriétaire\Mes documents\HJT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: {ca3fe53a-65dd-2fe9-6754-35410c59f281} - {182f95c0-1453-4576-9ef2-dd56a35ef3ac} - C:\WINDOWS\system32\feaqfp.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\FSGUI\FSSW.EXE" /reboot
O4 - HKLM\..\Run: [News Service] "C:\Program Files\FSGUI\ispnews.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AdobeUpdater] C:\Program Files\Fichiers communs\Adobe\Updater5\AdobeUpdater.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Antivirus Firewall.lnk = C:\Program Files\Securitoo AntiVirus\7431218\Program\fspex.exe
O8 - Extra context menu item: &Bloquer cette fenêtre publicitaire - C:\Program Files\Anti-Spyware\blockpopups.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Protection Internet Explorer - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Anti-Spyware\ieshield.dll
O9 - Extra 'Tools' menuitem: Protection Internet Explorer... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Anti-Spyware\ieshield.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.com/Register/Branding/olr3313/OCX/v1018/flashax.cab
O23 - Service: Antivirus Firewall (BackWeb Plug-in - 7431218) - Securitoo Portal - C:\PROGRA~1\SECURI~1\7431218\Program\SERVIC~1.EXE
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corporation - C:\Program Files\Anti-Virus\fsgk32st.exe
O23 - Service: FSBWSYS - F-Secure Corp. - C:\Program Files\Securitoo AntiVirus\7431218\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\FWES\Program\fsdfwd.exe
O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
0
geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
 
Salut !!

il te reste une infection à éliminer...fais ceci stp :

Télécharger l'utilitaire FixVundo (Symantec) : https://www.broadcom.com/support/security-center

Lancer "FixVundo" en double-cliquant sur son icône.

Démarrer l'analyse en Cliquant sur "Start".
A la fin, un rapport d'analyse "FixVundo.log" est disponible dans le dossier de lancement de l'utilitaire.

copier/coller le rapport dans le nouveau message sur le forum

ensuite refais un nouveau rapport hijackthis pour vérifier stp
0
marie-gerard Messages postés 6 Statut Membre
 
Bonjour, voila le rapport hjt :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:50:02, on 30/07/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\7431218\Program\SERVIC~1.EXE
C:\Program Files\Anti-Virus\fsgk32st.exe
C:\Program Files\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo AntiVirus\7431218\program\fsbwsys.exe
C:\Program Files\Anti-Virus\fssm32.exe
C:\Program Files\Common\FSMA32.EXE
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Common\FSMB32.EXE
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Common\FCH32.EXE
C:\Program Files\Anti-Virus\fsqh.exe
C:\Program Files\Common\FAMEH32.EXE
C:\Program Files\FWES\Program\fsdfwd.exe
C:\Program Files\Anti-Virus\fsrw.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Anti-Virus\fsav32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
C:\Program Files\Common\FSM32.EXE
C:\Program Files\FSGUI\ispnews.exe
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\PROGRA~1\ANTI-S~1\fsaw.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\FSGUI\fsguidll.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Securitoo AntiVirus\7431218\Program\fspex.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Propriétaire\Mes documents\HJT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: {ca3fe53a-65dd-2fe9-6754-35410c59f281} - {182f95c0-1453-4576-9ef2-dd56a35ef3ac} - C:\WINDOWS\system32\feaqfp.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\FSGUI\FSSW.EXE" /reboot
O4 - HKLM\..\Run: [News Service] "C:\Program Files\FSGUI\ispnews.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AdobeUpdater] C:\Program Files\Fichiers communs\Adobe\Updater5\AdobeUpdater.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Antivirus Firewall.lnk = C:\Program Files\Securitoo AntiVirus\7431218\Program\fspex.exe
O8 - Extra context menu item: &Bloquer cette fenêtre publicitaire - C:\Program Files\Anti-Spyware\blockpopups.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Protection Internet Explorer - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Anti-Spyware\ieshield.dll
O9 - Extra 'Tools' menuitem: Protection Internet Explorer... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Anti-Spyware\ieshield.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.com/Register/Branding/olr3313/OCX/v1018/flashax.cab
O23 - Service: Antivirus Firewall (BackWeb Plug-in - 7431218) - Securitoo Portal - C:\PROGRA~1\SECURI~1\7431218\Program\SERVIC~1.EXE
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corporation - C:\Program Files\Anti-Virus\fsgk32st.exe
O23 - Service: FSBWSYS - F-Secure Corp. - C:\Program Files\Securitoo AntiVirus\7431218\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\FWES\Program\fsdfwd.exe
O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
0
geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
 
Salut !!

relance hijackthis en cliquant sur scan only et coches ces lignes stp :

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.com/Register/Branding/olr3313/OCX/v1018/flashax.cab
O2 - BHO: {ca3fe53a-65dd-2fe9-6754-35410c59f281} - {182f95c0-1453-4576-9ef2-dd56a35ef3ac} - C:\WINDOWS\system32\feaqfp.dll (file missing)

puis tu cliques sur fix checked.

vas faire les mises à niveau de java et adobe reader à ces adresses :

java : https://www.java.com/fr/download/manual.jsp

adobe reader XP : https://get2.adobe.com/reader/otherversions/

et ensuite désinstalle les versions antérieures.

est ce que tu as encore des problemes ??
0