Virus Micro AV
Loreley
-
Sloubi76 Messages postés 1410 Statut Membre -
Sloubi76 Messages postés 1410 Statut Membre -
Bonjour,
au secours!!! j'ai un virus sur mon ordinateur, ou quelque chos de similaire. Dès que j'allume l'ordi, une fenètre s'ouvre avec une copie un peu grossière du logo du centre de sécurité windows. Ca s'appelle le Micro AV security center 2009. Un scan se lance et je suis prévenue que j'ai énormément de "security threats" (c en anglais). et me demande de télécharger un antivirus. quand je ferme le programme en refusant de télécherger le programme antivirus il ne fait que se réduire, j'ai même droit a un peit message qui me dit que micro av continu a protéger mon ordi. J'ai essayé d'ouvrir le gestionnaire de tâches pour fermer micro av, mais soit disant l'accès m'en est interdis par mon administrateur (c moi l'admin de l'ordi!!!).
En fait, j'ai déjà eu ce virus il y a environ une semaine et j'avais finis pas m'en débarrasser en faisant une restauration système... mais cette fois-ci, il n'y a pas de points de restauration... sauf un il y a 5 minutes avec marqué a coté virus alert!! j'ai quand même essayé, mais ca n'a pas aidé.
Quand je vais sur internet, je tombe sur leur site et on me demande d'intaller un programme qui va chercher tout ce qui est porno sur mon ordi. Quand j'essais de taper une autre adresse la page s'affiche une seconde puis elle est bloquée car soit disant nuisible (je parle de sites comme google). la seule facon pour moi de naviguer sur le net est de cliquer sur la croix à coté de la barre d'adresse avant que la page voulue ne soit bloqué par ce virus.
Depuis que je tape ce message, une nouvelle fenètre internet s'est ouverte 4-5 fois avec l'adresse suivant (ne cliquez SURTOUT PAS dessus, c juste pour vous denner une idée que je vous donne l'adresse: http://scanner.vav-x-scanner.com/27/?advid=4683
De plus, des soit disant alertes windows s'ouvrent toutes les deux minutes, j'y suis informé que mon ordi est plus lent que d'habitude est que c'est surement a cause de virus, malware et autre et me conseille de commencer un scan. Dès fois, les alertes disent que j'ai été attaqué par un worm et me demande si je veux le supprimer, la première fois je me suis faite avoir, j'ai cliqué oui et j'ai été renvoyé sur leur site. On me demande aussi si je veux remplacer les fichiers systèmes par des backup files car ceux ci ont étés attaqué par un malware.
Je dis toujours non, bien sûr.
Autre symptomes: des icones sur mon bureau: "quality porn" "best zoo porn" "error check" "privacy protector" et d'autres que je vire toute les 2 min mais qui reviennent.
Quand je vais dans le menu demarrer presque tout y a disparu, "mes documents" "poste de travail" "panneaux de configuration", etc, il ne reste plus que "imprimantes et télécopieurs". En passant par la puis en affichant les dossiers j'arrive a naviguer, mais le disque C n'apparait plus... Je ne peux pas non plus lancer de recherche à partir de l'explorateur windows, pour ca, je faire un click droit sur "demarrer". Je peux alors chercher qulque chose dans les "disques durs locaux ()" mais sans qu'il n'y ai marqué C. Pourtant, je vois qu'il cherche alors dans C car ca défile en bas de la fenètre rechercher.
Je précise quand même que je ne suis pas tout le temps renvoyé sur le même site, la un autre site de spyware protection viens de s'ouvrir... un coup, on veux que je télécharge un antivirus, un coup, un programme contre les malwares, un coup contre les spywares, etc. mais le prioncipe est toujours le même, me faire croire que mon ordi est infecté et qu'il faut que je télécharge un truc payant sur un de leur site, ah oui, car j'avais pas précisé, ils veulent me faire télécharger un truc PAYANT (donc essayent aussi d'avoir mes coordonnées bancaires).
J'ai lancé plusieur fois spybot search and destroy, il trouve a chanque fois beaucoup de problèmes, que j'efface, mais ca ne semble pas être suffisant puisque ca reviens. J'ai aussi lancé Ad aware, mais sans succès non plus.
Merci de m'avoir lue et svp aidez moi, je suis déséspérée.
bises, Loreley
au secours!!! j'ai un virus sur mon ordinateur, ou quelque chos de similaire. Dès que j'allume l'ordi, une fenètre s'ouvre avec une copie un peu grossière du logo du centre de sécurité windows. Ca s'appelle le Micro AV security center 2009. Un scan se lance et je suis prévenue que j'ai énormément de "security threats" (c en anglais). et me demande de télécharger un antivirus. quand je ferme le programme en refusant de télécherger le programme antivirus il ne fait que se réduire, j'ai même droit a un peit message qui me dit que micro av continu a protéger mon ordi. J'ai essayé d'ouvrir le gestionnaire de tâches pour fermer micro av, mais soit disant l'accès m'en est interdis par mon administrateur (c moi l'admin de l'ordi!!!).
En fait, j'ai déjà eu ce virus il y a environ une semaine et j'avais finis pas m'en débarrasser en faisant une restauration système... mais cette fois-ci, il n'y a pas de points de restauration... sauf un il y a 5 minutes avec marqué a coté virus alert!! j'ai quand même essayé, mais ca n'a pas aidé.
Quand je vais sur internet, je tombe sur leur site et on me demande d'intaller un programme qui va chercher tout ce qui est porno sur mon ordi. Quand j'essais de taper une autre adresse la page s'affiche une seconde puis elle est bloquée car soit disant nuisible (je parle de sites comme google). la seule facon pour moi de naviguer sur le net est de cliquer sur la croix à coté de la barre d'adresse avant que la page voulue ne soit bloqué par ce virus.
Depuis que je tape ce message, une nouvelle fenètre internet s'est ouverte 4-5 fois avec l'adresse suivant (ne cliquez SURTOUT PAS dessus, c juste pour vous denner une idée que je vous donne l'adresse: http://scanner.vav-x-scanner.com/27/?advid=4683
De plus, des soit disant alertes windows s'ouvrent toutes les deux minutes, j'y suis informé que mon ordi est plus lent que d'habitude est que c'est surement a cause de virus, malware et autre et me conseille de commencer un scan. Dès fois, les alertes disent que j'ai été attaqué par un worm et me demande si je veux le supprimer, la première fois je me suis faite avoir, j'ai cliqué oui et j'ai été renvoyé sur leur site. On me demande aussi si je veux remplacer les fichiers systèmes par des backup files car ceux ci ont étés attaqué par un malware.
Je dis toujours non, bien sûr.
Autre symptomes: des icones sur mon bureau: "quality porn" "best zoo porn" "error check" "privacy protector" et d'autres que je vire toute les 2 min mais qui reviennent.
Quand je vais dans le menu demarrer presque tout y a disparu, "mes documents" "poste de travail" "panneaux de configuration", etc, il ne reste plus que "imprimantes et télécopieurs". En passant par la puis en affichant les dossiers j'arrive a naviguer, mais le disque C n'apparait plus... Je ne peux pas non plus lancer de recherche à partir de l'explorateur windows, pour ca, je faire un click droit sur "demarrer". Je peux alors chercher qulque chose dans les "disques durs locaux ()" mais sans qu'il n'y ai marqué C. Pourtant, je vois qu'il cherche alors dans C car ca défile en bas de la fenètre rechercher.
Je précise quand même que je ne suis pas tout le temps renvoyé sur le même site, la un autre site de spyware protection viens de s'ouvrir... un coup, on veux que je télécharge un antivirus, un coup, un programme contre les malwares, un coup contre les spywares, etc. mais le prioncipe est toujours le même, me faire croire que mon ordi est infecté et qu'il faut que je télécharge un truc payant sur un de leur site, ah oui, car j'avais pas précisé, ils veulent me faire télécharger un truc PAYANT (donc essayent aussi d'avoir mes coordonnées bancaires).
J'ai lancé plusieur fois spybot search and destroy, il trouve a chanque fois beaucoup de problèmes, que j'efface, mais ca ne semble pas être suffisant puisque ca reviens. J'ai aussi lancé Ad aware, mais sans succès non plus.
Merci de m'avoir lue et svp aidez moi, je suis déséspérée.
bises, Loreley
A voir également:
- Virus Micro AV
- Virus mcafee - Accueil - Piratage
- Av adapter tcl - Forum Téléviseurs
- Av tube - Télécharger - Téléchargement & Transfert
- Total av desabonnement ✓ - Forum Consommation & Internet
- Total AV a débité mon compte bancaire. [SUJET GROUPÉ.] ✓ - Forum Consommation & Internet
13 réponses
voici le rapport généré par LOP S&D:
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : Version 6.00 R1.01.2470.A1
USER : Dora ( Administrator )
BOOT : Normal boot
Firewall : Norton Internet Worm Protection 2006 (Not Activated)
C:\ (Local Disk) - NTFS - Total : 298 Go Free : 142 Go
D:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 27/09/2008|17:40 )
--------------------\\ Listing des dossiers dans APPLIC~1
[13/11/2006|10:43] C:\DOCUME~1\ADMINI~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[03/03/2008|18:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[10/09/2008|13:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[26/12/2006|20:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[09/12/2006|14:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[18/05/2008|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FLEXnet
[27/09/2008|17:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IM
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IncrediMail
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[23/12/2006|16:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia
[13/05/2008|08:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/09/2007|11:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[01/01/2007|00:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PopCap
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[13/09/2007|09:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[27/09/2008|17:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[04/09/2008|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[27/09/2008|14:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\sxsvodat
[22/12/2006|20:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[22/12/2006|19:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[13/05/2008|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[13/11/2006|10:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\X10 Settings
[22/12/2006|19:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[13/11/2006|10:43] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[24/07/2008|15:57] C:\DOCUME~1\Dora\APPLIC~1\Adobe
[02/04/2007|15:05] C:\DOCUME~1\Dora\APPLIC~1\AdobeUM
[27/12/2006|21:01] C:\DOCUME~1\Dora\APPLIC~1\Apple Computer
[11/05/2007|22:12] C:\DOCUME~1\Dora\APPLIC~1\ArcSoft
[13/11/2006|10:43] C:\DOCUME~1\Dora\APPLIC~1\ATI
[04/07/2007|17:09] C:\DOCUME~1\Dora\APPLIC~1\Canon
[12/01/2007|13:04] C:\DOCUME~1\Dora\APPLIC~1\CD-LabelPrint
[10/08/2008|13:54] C:\DOCUME~1\Dora\APPLIC~1\Corel
[10/03/2008|22:38] C:\DOCUME~1\Dora\APPLIC~1\DivX
[20/01/2007|00:51] C:\DOCUME~1\Dora\APPLIC~1\Help
[13/11/2006|09:46] C:\DOCUME~1\Dora\APPLIC~1\Identities
[22/09/2007|20:37] C:\DOCUME~1\Dora\APPLIC~1\InterVideo
[22/12/2006|20:41] C:\DOCUME~1\Dora\APPLIC~1\Lavasoft
[27/12/2006|21:09] C:\DOCUME~1\Dora\APPLIC~1\Macromedia
[05/09/2008|14:15] C:\DOCUME~1\Dora\APPLIC~1\Microsoft
[10/03/2008|21:21] C:\DOCUME~1\Dora\APPLIC~1\Microsoft Web Folders
[11/01/2008|22:55] C:\DOCUME~1\Dora\APPLIC~1\Mozilla
[31/03/2007|15:04] C:\DOCUME~1\Dora\APPLIC~1\MSNInstaller
[08/09/2008|12:25] C:\DOCUME~1\Dora\APPLIC~1\Notepad++
[08/09/2008|14:39] C:\DOCUME~1\Dora\APPLIC~1\Nvu
[25/11/2007|22:37] C:\DOCUME~1\Dora\APPLIC~1\Real
[11/05/2007|21:43] C:\DOCUME~1\Dora\APPLIC~1\ScanSoft
[27/09/2008|17:32] C:\DOCUME~1\Dora\APPLIC~1\Skype
[05/06/2008|13:43] C:\DOCUME~1\Dora\APPLIC~1\Smilebox
[11/01/2007|11:31] C:\DOCUME~1\Dora\APPLIC~1\Template
[27/09/2008|15:40] C:\DOCUME~1\Dora\APPLIC~1\TmpRecentIcons
[08/09/2008|04:01] C:\DOCUME~1\Dora\APPLIC~1\uTorrent
[12/01/2008|13:12] C:\DOCUME~1\Dora\APPLIC~1\WinRAR
[13/11/2006|10:43] C:\DOCUME~1\Emma\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\Emma\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\Emma\APPLIC~1\Macromedia
[23/02/2008|21:35] C:\DOCUME~1\Emma\APPLIC~1\Microsoft
[23/02/2008|19:54] C:\DOCUME~1\Emma\APPLIC~1\Real
[30/11/2007|12:32] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[13/11/2006|10:43] C:\DOCUME~1\INVIT~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[31/03/2007|22:05] C:\DOCUME~1\INVIT~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[23/03/2008|16:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[23/03/2008|16:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Real
[17/11/2007|11:17] C:\DOCUME~1\INVIT~1\APPLIC~1\Skype
[17/11/2007|02:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Template
[16/01/2008|08:47] C:\DOCUME~1\LOCALS~1\APPLIC~1\DivX
[12/02/2007|12:49] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[24/04/2008|16:38] C:\DOCUME~1\LOCALS~1\APPLIC~1\Real
[13/11/2006|10:40] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander
[25/03/2008|11:59] C:\DOCUME~1\LA4770~1\APPLIC~1\Adobe
[04/01/2007|14:05] C:\DOCUME~1\LA4770~1\APPLIC~1\Apple Computer
[13/11/2006|10:43] C:\DOCUME~1\LA4770~1\APPLIC~1\ATI
[21/03/2008|12:21] C:\DOCUME~1\LA4770~1\APPLIC~1\DivX
[13/11/2006|09:46] C:\DOCUME~1\LA4770~1\APPLIC~1\Identities
[06/01/2007|17:13] C:\DOCUME~1\LA4770~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\LA4770~1\APPLIC~1\Macromedia
[29/06/2008|09:41] C:\DOCUME~1\LA4770~1\APPLIC~1\Microsoft
[17/08/2007|12:02] C:\DOCUME~1\LA4770~1\APPLIC~1\Mozilla
[29/06/2008|09:53] C:\DOCUME~1\LA4770~1\APPLIC~1\Real
[02/04/2007|14:12] C:\DOCUME~1\LA4770~1\APPLIC~1\Template
[29/06/2008|15:54] C:\DOCUME~1\LA4770~1\APPLIC~1\WinRAR
[13/11/2006|09:45] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\ATI
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Identities
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Macromedia
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Real
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[27/09/2008 15:41][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[27/09/2008 17:03][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[14/03/2008|00:37] C:\Program Files\AC3Filter
[03/09/2008|14:11] C:\Program Files\Adobe
[10/09/2008|13:30] C:\Program Files\Apple Software Update
[11/05/2007|22:05] C:\Program Files\ArcSoft
[13/11/2006|10:34] C:\Program Files\ATI Technologies
[18/04/2007|13:51] C:\Program Files\Audacity
[23/12/2006|03:45] C:\Program Files\Blubster
[27/09/2008|16:08] C:\Program Files\BlueVoda Website Builder
[11/05/2007|21:46] C:\Program Files\Canon
[22/12/2006|19:13] C:\Program Files\Common Files
[13/11/2006|09:41] C:\Program Files\ComPlus Applications
[07/12/2006|19:51] C:\Program Files\Corel
[11/06/2008|16:25] C:\Program Files\CUEcards 2000
[05/08/2008|21:52] C:\Program Files\DivX
[27/09/2008|14:13] C:\Program Files\emcxicc
[10/09/2008|13:32] C:\Program Files\Fichiers communs
[24/02/2007|16:07] C:\Program Files\First page
[22/12/2006|20:40] C:\Program Files\Google
[31/08/2008|11:27] C:\Program Files\InstallShield Installation Information
[27/09/2008|16:08] C:\Program Files\InterActual
[20/01/2007|16:06] C:\Program Files\Internet Cleaner
[15/08/2008|23:01] C:\Program Files\Internet Explorer
[13/11/2006|10:40] C:\Program Files\InterVideo
[26/12/2006|20:11] C:\Program Files\iPod
[26/12/2006|20:11] C:\Program Files\iTunes
[22/12/2006|20:40] C:\Program Files\Lavasoft
[17/04/2008|19:35] C:\Program Files\Lettriq
[04/05/2008|12:43] C:\Program Files\Macromedia
[11/12/2006|14:24] C:\Program Files\MAXON
[22/08/2008|17:28] C:\Program Files\Messenger
[27/09/2008|17:37] C:\Program Files\MicroAV
[15/05/2008|02:23] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[13/11/2006|09:43] C:\Program Files\microsoft frontpage
[10/03/2008|21:21] C:\Program Files\Microsoft Office
[13/11/2006|10:38] C:\Program Files\Microsoft Visual Studio
[11/09/2008|00:40] C:\Program Files\Microsoft Works
[13/11/2006|10:38] C:\Program Files\Microsoft.NET
[22/08/2008|16:48] C:\Program Files\Movie Maker
[02/09/2008|19:13] C:\Program Files\Mozilla Firefox
[31/03/2007|15:04] C:\Program Files\MSN
[13/11/2006|09:40] C:\Program Files\MSN Gaming Zone
[22/12/2006|19:24] C:\Program Files\MSXML 4.0
[22/08/2008|16:47] C:\Program Files\NetMeeting
[08/09/2008|12:25] C:\Program Files\Notepad++
[27/09/2008|16:08] C:\Program Files\Nvu
[13/11/2006|09:40] C:\Program Files\Online Services
[05/09/2008|14:19] C:\Program Files\Outlook Express
[27/09/2008|17:37] C:\Program Files\PCHealthCenter
[15/04/2008|14:44] C:\Program Files\Picasa2
[10/09/2008|13:32] C:\Program Files\QuickTime
[07/12/2006|18:00] C:\Program Files\Raccourcis de programmes
[25/11/2007|22:34] C:\Program Files\Real
[22/12/2006|19:04] C:\Program Files\SAGEM
[11/05/2007|21:42] C:\Program Files\ScanSoft
[15/12/2006|13:39] C:\Program Files\Securitoo
[13/11/2006|09:42] C:\Program Files\Services en ligne
[13/09/2007|09:07] C:\Program Files\Skype
[05/06/2008|13:39] C:\Program Files\Smilebox
[27/09/2008|15:43] C:\Program Files\Spybot - Search & Destroy
[21/09/2008|11:39] C:\Program Files\TeaTimer (Spybot - Search & Destroy)
[13/11/2006|09:46] C:\Program Files\Uninstall Information
[10/08/2008|01:45] C:\Program Files\uTorrent
[22/12/2006|19:10] C:\Program Files\Wanadoo
[13/05/2008|08:19] C:\Program Files\Windows Live
[17/09/2008|22:03] C:\Program Files\Windows Live Safety Center
[29/05/2008|18:27] C:\Program Files\Windows Media Connect 2
[29/03/2007|09:42] C:\Program Files\Windows Media Player
[21/09/2008|11:27] C:\Program Files\Windows NT
[13/11/2006|09:40] C:\Program Files\Windows Plus
[13/11/2006|09:42] C:\Program Files\WindowsUpdate
[12/01/2008|13:12] C:\Program Files\WinRAR
[13/11/2006|10:36] C:\Program Files\X10 Hardware
[13/11/2006|09:43] C:\Program Files\xerox
[22/12/2006|19:13] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[03/09/2008|14:15] C:\Program Files\Fichiers communs\Adobe
[10/09/2008|13:32] C:\Program Files\Fichiers communs\Apple
[09/12/2006|21:24] C:\Program Files\Fichiers communs\Canon
[13/11/2006|10:38] C:\Program Files\Fichiers communs\DESIGNER
[11/05/2007|21:43] C:\Program Files\Fichiers communs\InstallShield
[23/01/2007|19:29] C:\Program Files\Fichiers communs\Macromedia
[22/08/2008|01:03] C:\Program Files\Fichiers communs\Microsoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\MSSoap
[13/11/2006|10:37] C:\Program Files\Fichiers communs\ODBC
[25/11/2007|22:34] C:\Program Files\Fichiers communs\Real
[11/05/2007|21:43] C:\Program Files\Fichiers communs\ScanSoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\Services
[13/09/2007|09:07] C:\Program Files\Fichiers communs\Skype
[31/08/2008|11:28] C:\Program Files\Fichiers communs\SourceTec
[13/11/2006|10:37] C:\Program Files\Fichiers communs\SpeechEngines
[22/12/2006|20:32] C:\Program Files\Fichiers communs\Symantec Shared
[22/08/2008|16:47] C:\Program Files\Fichiers communs\System
[07/12/2006|19:58] C:\Program Files\Fichiers communs\Vbox
[13/05/2008|08:19] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/11/2007|22:34] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 62 Processes )
iexplore.exe ~ [PID:2384]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\Dora\LOCALS~1\Temp\nst17.tmp
C:\DOCUME~1\Dora\Cookies\dora@advertstream[1].txt
C:\DOCUME~1\Dora\Cookies\dora@advertising[1].txt
C:\DOCUME~1\Dora\Cookies\dora@banner.cotedazurpalace[2].txt
C:\DOCUME~1\Dora\Cookies\dora@cotedazurpalace[1].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-27 17:40:36
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 67
--------------------\\ Recherche d'autres infections
C:\WINDOWS\system32\YGfMnUtv.ini
C:\WINDOWS\system32\YGfMnUtv.ini2
[b]==> VUNDO <==/b
[F:104][D:545]-> C:\DOCUME~1\Dora\LOCALS~1\Temp
[F:856][D:0]-> C:\DOCUME~1\Dora\Cookies
[F:32883][D:56]-> C:\DOCUME~1\Dora\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 27/09/2008|17:43 - Option : [1]
--------------------\\ Fin du rapport a 17:43:00
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : Version 6.00 R1.01.2470.A1
USER : Dora ( Administrator )
BOOT : Normal boot
Firewall : Norton Internet Worm Protection 2006 (Not Activated)
C:\ (Local Disk) - NTFS - Total : 298 Go Free : 142 Go
D:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 27/09/2008|17:40 )
--------------------\\ Listing des dossiers dans APPLIC~1
[13/11/2006|10:43] C:\DOCUME~1\ADMINI~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[03/03/2008|18:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[10/09/2008|13:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[26/12/2006|20:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[09/12/2006|14:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[18/05/2008|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FLEXnet
[27/09/2008|17:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IM
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IncrediMail
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[23/12/2006|16:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia
[13/05/2008|08:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/09/2007|11:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[01/01/2007|00:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PopCap
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[13/09/2007|09:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[27/09/2008|17:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[04/09/2008|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[27/09/2008|14:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\sxsvodat
[22/12/2006|20:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[22/12/2006|19:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[13/05/2008|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[13/11/2006|10:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\X10 Settings
[22/12/2006|19:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[13/11/2006|10:43] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[24/07/2008|15:57] C:\DOCUME~1\Dora\APPLIC~1\Adobe
[02/04/2007|15:05] C:\DOCUME~1\Dora\APPLIC~1\AdobeUM
[27/12/2006|21:01] C:\DOCUME~1\Dora\APPLIC~1\Apple Computer
[11/05/2007|22:12] C:\DOCUME~1\Dora\APPLIC~1\ArcSoft
[13/11/2006|10:43] C:\DOCUME~1\Dora\APPLIC~1\ATI
[04/07/2007|17:09] C:\DOCUME~1\Dora\APPLIC~1\Canon
[12/01/2007|13:04] C:\DOCUME~1\Dora\APPLIC~1\CD-LabelPrint
[10/08/2008|13:54] C:\DOCUME~1\Dora\APPLIC~1\Corel
[10/03/2008|22:38] C:\DOCUME~1\Dora\APPLIC~1\DivX
[20/01/2007|00:51] C:\DOCUME~1\Dora\APPLIC~1\Help
[13/11/2006|09:46] C:\DOCUME~1\Dora\APPLIC~1\Identities
[22/09/2007|20:37] C:\DOCUME~1\Dora\APPLIC~1\InterVideo
[22/12/2006|20:41] C:\DOCUME~1\Dora\APPLIC~1\Lavasoft
[27/12/2006|21:09] C:\DOCUME~1\Dora\APPLIC~1\Macromedia
[05/09/2008|14:15] C:\DOCUME~1\Dora\APPLIC~1\Microsoft
[10/03/2008|21:21] C:\DOCUME~1\Dora\APPLIC~1\Microsoft Web Folders
[11/01/2008|22:55] C:\DOCUME~1\Dora\APPLIC~1\Mozilla
[31/03/2007|15:04] C:\DOCUME~1\Dora\APPLIC~1\MSNInstaller
[08/09/2008|12:25] C:\DOCUME~1\Dora\APPLIC~1\Notepad++
[08/09/2008|14:39] C:\DOCUME~1\Dora\APPLIC~1\Nvu
[25/11/2007|22:37] C:\DOCUME~1\Dora\APPLIC~1\Real
[11/05/2007|21:43] C:\DOCUME~1\Dora\APPLIC~1\ScanSoft
[27/09/2008|17:32] C:\DOCUME~1\Dora\APPLIC~1\Skype
[05/06/2008|13:43] C:\DOCUME~1\Dora\APPLIC~1\Smilebox
[11/01/2007|11:31] C:\DOCUME~1\Dora\APPLIC~1\Template
[27/09/2008|15:40] C:\DOCUME~1\Dora\APPLIC~1\TmpRecentIcons
[08/09/2008|04:01] C:\DOCUME~1\Dora\APPLIC~1\uTorrent
[12/01/2008|13:12] C:\DOCUME~1\Dora\APPLIC~1\WinRAR
[13/11/2006|10:43] C:\DOCUME~1\Emma\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\Emma\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\Emma\APPLIC~1\Macromedia
[23/02/2008|21:35] C:\DOCUME~1\Emma\APPLIC~1\Microsoft
[23/02/2008|19:54] C:\DOCUME~1\Emma\APPLIC~1\Real
[30/11/2007|12:32] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[13/11/2006|10:43] C:\DOCUME~1\INVIT~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[31/03/2007|22:05] C:\DOCUME~1\INVIT~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[23/03/2008|16:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[23/03/2008|16:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Real
[17/11/2007|11:17] C:\DOCUME~1\INVIT~1\APPLIC~1\Skype
[17/11/2007|02:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Template
[16/01/2008|08:47] C:\DOCUME~1\LOCALS~1\APPLIC~1\DivX
[12/02/2007|12:49] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[24/04/2008|16:38] C:\DOCUME~1\LOCALS~1\APPLIC~1\Real
[13/11/2006|10:40] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander
[25/03/2008|11:59] C:\DOCUME~1\LA4770~1\APPLIC~1\Adobe
[04/01/2007|14:05] C:\DOCUME~1\LA4770~1\APPLIC~1\Apple Computer
[13/11/2006|10:43] C:\DOCUME~1\LA4770~1\APPLIC~1\ATI
[21/03/2008|12:21] C:\DOCUME~1\LA4770~1\APPLIC~1\DivX
[13/11/2006|09:46] C:\DOCUME~1\LA4770~1\APPLIC~1\Identities
[06/01/2007|17:13] C:\DOCUME~1\LA4770~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\LA4770~1\APPLIC~1\Macromedia
[29/06/2008|09:41] C:\DOCUME~1\LA4770~1\APPLIC~1\Microsoft
[17/08/2007|12:02] C:\DOCUME~1\LA4770~1\APPLIC~1\Mozilla
[29/06/2008|09:53] C:\DOCUME~1\LA4770~1\APPLIC~1\Real
[02/04/2007|14:12] C:\DOCUME~1\LA4770~1\APPLIC~1\Template
[29/06/2008|15:54] C:\DOCUME~1\LA4770~1\APPLIC~1\WinRAR
[13/11/2006|09:45] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\ATI
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Identities
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Macromedia
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Real
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[27/09/2008 15:41][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[27/09/2008 17:03][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[14/03/2008|00:37] C:\Program Files\AC3Filter
[03/09/2008|14:11] C:\Program Files\Adobe
[10/09/2008|13:30] C:\Program Files\Apple Software Update
[11/05/2007|22:05] C:\Program Files\ArcSoft
[13/11/2006|10:34] C:\Program Files\ATI Technologies
[18/04/2007|13:51] C:\Program Files\Audacity
[23/12/2006|03:45] C:\Program Files\Blubster
[27/09/2008|16:08] C:\Program Files\BlueVoda Website Builder
[11/05/2007|21:46] C:\Program Files\Canon
[22/12/2006|19:13] C:\Program Files\Common Files
[13/11/2006|09:41] C:\Program Files\ComPlus Applications
[07/12/2006|19:51] C:\Program Files\Corel
[11/06/2008|16:25] C:\Program Files\CUEcards 2000
[05/08/2008|21:52] C:\Program Files\DivX
[27/09/2008|14:13] C:\Program Files\emcxicc
[10/09/2008|13:32] C:\Program Files\Fichiers communs
[24/02/2007|16:07] C:\Program Files\First page
[22/12/2006|20:40] C:\Program Files\Google
[31/08/2008|11:27] C:\Program Files\InstallShield Installation Information
[27/09/2008|16:08] C:\Program Files\InterActual
[20/01/2007|16:06] C:\Program Files\Internet Cleaner
[15/08/2008|23:01] C:\Program Files\Internet Explorer
[13/11/2006|10:40] C:\Program Files\InterVideo
[26/12/2006|20:11] C:\Program Files\iPod
[26/12/2006|20:11] C:\Program Files\iTunes
[22/12/2006|20:40] C:\Program Files\Lavasoft
[17/04/2008|19:35] C:\Program Files\Lettriq
[04/05/2008|12:43] C:\Program Files\Macromedia
[11/12/2006|14:24] C:\Program Files\MAXON
[22/08/2008|17:28] C:\Program Files\Messenger
[27/09/2008|17:37] C:\Program Files\MicroAV
[15/05/2008|02:23] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[13/11/2006|09:43] C:\Program Files\microsoft frontpage
[10/03/2008|21:21] C:\Program Files\Microsoft Office
[13/11/2006|10:38] C:\Program Files\Microsoft Visual Studio
[11/09/2008|00:40] C:\Program Files\Microsoft Works
[13/11/2006|10:38] C:\Program Files\Microsoft.NET
[22/08/2008|16:48] C:\Program Files\Movie Maker
[02/09/2008|19:13] C:\Program Files\Mozilla Firefox
[31/03/2007|15:04] C:\Program Files\MSN
[13/11/2006|09:40] C:\Program Files\MSN Gaming Zone
[22/12/2006|19:24] C:\Program Files\MSXML 4.0
[22/08/2008|16:47] C:\Program Files\NetMeeting
[08/09/2008|12:25] C:\Program Files\Notepad++
[27/09/2008|16:08] C:\Program Files\Nvu
[13/11/2006|09:40] C:\Program Files\Online Services
[05/09/2008|14:19] C:\Program Files\Outlook Express
[27/09/2008|17:37] C:\Program Files\PCHealthCenter
[15/04/2008|14:44] C:\Program Files\Picasa2
[10/09/2008|13:32] C:\Program Files\QuickTime
[07/12/2006|18:00] C:\Program Files\Raccourcis de programmes
[25/11/2007|22:34] C:\Program Files\Real
[22/12/2006|19:04] C:\Program Files\SAGEM
[11/05/2007|21:42] C:\Program Files\ScanSoft
[15/12/2006|13:39] C:\Program Files\Securitoo
[13/11/2006|09:42] C:\Program Files\Services en ligne
[13/09/2007|09:07] C:\Program Files\Skype
[05/06/2008|13:39] C:\Program Files\Smilebox
[27/09/2008|15:43] C:\Program Files\Spybot - Search & Destroy
[21/09/2008|11:39] C:\Program Files\TeaTimer (Spybot - Search & Destroy)
[13/11/2006|09:46] C:\Program Files\Uninstall Information
[10/08/2008|01:45] C:\Program Files\uTorrent
[22/12/2006|19:10] C:\Program Files\Wanadoo
[13/05/2008|08:19] C:\Program Files\Windows Live
[17/09/2008|22:03] C:\Program Files\Windows Live Safety Center
[29/05/2008|18:27] C:\Program Files\Windows Media Connect 2
[29/03/2007|09:42] C:\Program Files\Windows Media Player
[21/09/2008|11:27] C:\Program Files\Windows NT
[13/11/2006|09:40] C:\Program Files\Windows Plus
[13/11/2006|09:42] C:\Program Files\WindowsUpdate
[12/01/2008|13:12] C:\Program Files\WinRAR
[13/11/2006|10:36] C:\Program Files\X10 Hardware
[13/11/2006|09:43] C:\Program Files\xerox
[22/12/2006|19:13] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[03/09/2008|14:15] C:\Program Files\Fichiers communs\Adobe
[10/09/2008|13:32] C:\Program Files\Fichiers communs\Apple
[09/12/2006|21:24] C:\Program Files\Fichiers communs\Canon
[13/11/2006|10:38] C:\Program Files\Fichiers communs\DESIGNER
[11/05/2007|21:43] C:\Program Files\Fichiers communs\InstallShield
[23/01/2007|19:29] C:\Program Files\Fichiers communs\Macromedia
[22/08/2008|01:03] C:\Program Files\Fichiers communs\Microsoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\MSSoap
[13/11/2006|10:37] C:\Program Files\Fichiers communs\ODBC
[25/11/2007|22:34] C:\Program Files\Fichiers communs\Real
[11/05/2007|21:43] C:\Program Files\Fichiers communs\ScanSoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\Services
[13/09/2007|09:07] C:\Program Files\Fichiers communs\Skype
[31/08/2008|11:28] C:\Program Files\Fichiers communs\SourceTec
[13/11/2006|10:37] C:\Program Files\Fichiers communs\SpeechEngines
[22/12/2006|20:32] C:\Program Files\Fichiers communs\Symantec Shared
[22/08/2008|16:47] C:\Program Files\Fichiers communs\System
[07/12/2006|19:58] C:\Program Files\Fichiers communs\Vbox
[13/05/2008|08:19] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/11/2007|22:34] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 62 Processes )
iexplore.exe ~ [PID:2384]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\Dora\LOCALS~1\Temp\nst17.tmp
C:\DOCUME~1\Dora\Cookies\dora@advertstream[1].txt
C:\DOCUME~1\Dora\Cookies\dora@advertising[1].txt
C:\DOCUME~1\Dora\Cookies\dora@banner.cotedazurpalace[2].txt
C:\DOCUME~1\Dora\Cookies\dora@cotedazurpalace[1].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-27 17:40:36
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 67
--------------------\\ Recherche d'autres infections
C:\WINDOWS\system32\YGfMnUtv.ini
C:\WINDOWS\system32\YGfMnUtv.ini2
[b]==> VUNDO <==/b
[F:104][D:545]-> C:\DOCUME~1\Dora\LOCALS~1\Temp
[F:856][D:0]-> C:\DOCUME~1\Dora\Cookies
[F:32883][D:56]-> C:\DOCUME~1\Dora\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 27/09/2008|17:43 - Option : [1]
--------------------\\ Fin du rapport a 17:43:00
re... au fait, toutes les 2 minutes, spybot detecte une modification dy système, je clique toujours sur "refuser la modification", c'est bon? autres question: je continue a lancer le spybot entre temps ou pas (a chaque fois, ca trouve entre 20 et 70 erreurs que je corrige au fur et à mesure, mais j'ai l'impression que c tout le temps les même, comme si elles se réintallaient aussitot, donc peut être que ca ne sert a rien ce que je fais?)
merci!!!!
merci!!!!
désolé, j'ai écris une bétise, ce n'est pas une modification du système, mais du registre que spybot décèle...
update...
vu qu'un des problèmes détectés était smitfraud, j'ai installé smitfraudfix. Depuis, ca va beaucoup mieux, mais j'ai toujours un autre adaware, c'est virtumonde, dont je n'arrive pas à me débarrasser toute seule. Il y a aussi un cookie appelé doubleclick, qui ne part pas quand je le supprime.
est ce que quelqu'un peut m'aider?
vu qu'un des problèmes détectés était smitfraud, j'ai installé smitfraudfix. Depuis, ca va beaucoup mieux, mais j'ai toujours un autre adaware, c'est virtumonde, dont je n'arrive pas à me débarrasser toute seule. Il y a aussi un cookie appelé doubleclick, qui ne part pas quand je le supprime.
est ce que quelqu'un peut m'aider?
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
j'ai suivit les indications données à quelqu'un d'autre, infecté aussi par virtumonde, et j'ai installé malware bytes anti-malware. Il m'a trouvé et supprimé 30 fichiers infectés. Virtumonde semble être parit, mais il en reste encore...
j'ai refait un scan avec LOP S&D voila le rapport; c'est bien ca qu'il te faut? Ou est-ce que j'installe hitjack?
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : Version 6.00 R1.01.2470.A1
USER : Dora ( Administrator )
BOOT : Fail-safe boot
Firewall : Norton Internet Worm Protection 2006 (Not Activated)
C:\ (Local Disk) - NTFS - Total : 298 Go Free : 144 Go
D:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 28/09/2008| 8:36 )
--------------------\\ Listing des dossiers dans APPLIC~1
[13/11/2006|10:43] C:\DOCUME~1\ADMINI~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[03/03/2008|18:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[10/09/2008|13:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[26/12/2006|20:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[09/12/2006|14:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[18/05/2008|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FLEXnet
[27/09/2008|17:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IM
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IncrediMail
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[23/12/2006|16:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia
[27/09/2008|21:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[13/05/2008|08:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/09/2007|11:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[01/01/2007|00:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PopCap
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[13/09/2007|09:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[27/09/2008|17:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[04/09/2008|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[27/09/2008|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\sxsvodat
[22/12/2006|20:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[22/12/2006|19:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[13/05/2008|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[13/11/2006|10:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\X10 Settings
[22/12/2006|19:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[13/11/2006|10:43] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[24/07/2008|15:57] C:\DOCUME~1\Dora\APPLIC~1\Adobe
[02/04/2007|15:05] C:\DOCUME~1\Dora\APPLIC~1\AdobeUM
[27/12/2006|21:01] C:\DOCUME~1\Dora\APPLIC~1\Apple Computer
[11/05/2007|22:12] C:\DOCUME~1\Dora\APPLIC~1\ArcSoft
[13/11/2006|10:43] C:\DOCUME~1\Dora\APPLIC~1\ATI
[04/07/2007|17:09] C:\DOCUME~1\Dora\APPLIC~1\Canon
[12/01/2007|13:04] C:\DOCUME~1\Dora\APPLIC~1\CD-LabelPrint
[10/08/2008|13:54] C:\DOCUME~1\Dora\APPLIC~1\Corel
[10/03/2008|22:38] C:\DOCUME~1\Dora\APPLIC~1\DivX
[20/01/2007|00:51] C:\DOCUME~1\Dora\APPLIC~1\Help
[13/11/2006|09:46] C:\DOCUME~1\Dora\APPLIC~1\Identities
[22/09/2007|20:37] C:\DOCUME~1\Dora\APPLIC~1\InterVideo
[22/12/2006|20:41] C:\DOCUME~1\Dora\APPLIC~1\Lavasoft
[27/12/2006|21:09] C:\DOCUME~1\Dora\APPLIC~1\Macromedia
[27/09/2008|21:02] C:\DOCUME~1\Dora\APPLIC~1\Malwarebytes
[05/09/2008|14:15] C:\DOCUME~1\Dora\APPLIC~1\Microsoft
[10/03/2008|21:21] C:\DOCUME~1\Dora\APPLIC~1\Microsoft Web Folders
[11/01/2008|22:55] C:\DOCUME~1\Dora\APPLIC~1\Mozilla
[31/03/2007|15:04] C:\DOCUME~1\Dora\APPLIC~1\MSNInstaller
[08/09/2008|12:25] C:\DOCUME~1\Dora\APPLIC~1\Notepad++
[08/09/2008|14:39] C:\DOCUME~1\Dora\APPLIC~1\Nvu
[25/11/2007|22:37] C:\DOCUME~1\Dora\APPLIC~1\Real
[11/05/2007|21:43] C:\DOCUME~1\Dora\APPLIC~1\ScanSoft
[28/09/2008|07:42] C:\DOCUME~1\Dora\APPLIC~1\Skype
[05/06/2008|13:43] C:\DOCUME~1\Dora\APPLIC~1\Smilebox
[11/01/2007|11:31] C:\DOCUME~1\Dora\APPLIC~1\Template
[27/09/2008|15:40] C:\DOCUME~1\Dora\APPLIC~1\TmpRecentIcons
[08/09/2008|04:01] C:\DOCUME~1\Dora\APPLIC~1\uTorrent
[12/01/2008|13:12] C:\DOCUME~1\Dora\APPLIC~1\WinRAR
[13/11/2006|10:43] C:\DOCUME~1\Emma\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\Emma\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\Emma\APPLIC~1\Macromedia
[23/02/2008|21:35] C:\DOCUME~1\Emma\APPLIC~1\Microsoft
[23/02/2008|19:54] C:\DOCUME~1\Emma\APPLIC~1\Real
[30/11/2007|12:32] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[13/11/2006|10:43] C:\DOCUME~1\INVIT~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[31/03/2007|22:05] C:\DOCUME~1\INVIT~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[23/03/2008|16:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[23/03/2008|16:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Real
[17/11/2007|11:17] C:\DOCUME~1\INVIT~1\APPLIC~1\Skype
[17/11/2007|02:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Template
[16/01/2008|08:47] C:\DOCUME~1\LOCALS~1\APPLIC~1\DivX
[12/02/2007|12:49] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[24/04/2008|16:38] C:\DOCUME~1\LOCALS~1\APPLIC~1\Real
[13/11/2006|10:40] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander
[25/03/2008|11:59] C:\DOCUME~1\LA4770~1\APPLIC~1\Adobe
[04/01/2007|14:05] C:\DOCUME~1\LA4770~1\APPLIC~1\Apple Computer
[13/11/2006|10:43] C:\DOCUME~1\LA4770~1\APPLIC~1\ATI
[21/03/2008|12:21] C:\DOCUME~1\LA4770~1\APPLIC~1\DivX
[13/11/2006|09:46] C:\DOCUME~1\LA4770~1\APPLIC~1\Identities
[06/01/2007|17:13] C:\DOCUME~1\LA4770~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\LA4770~1\APPLIC~1\Macromedia
[29/06/2008|09:41] C:\DOCUME~1\LA4770~1\APPLIC~1\Microsoft
[17/08/2007|12:02] C:\DOCUME~1\LA4770~1\APPLIC~1\Mozilla
[29/06/2008|09:53] C:\DOCUME~1\LA4770~1\APPLIC~1\Real
[02/04/2007|14:12] C:\DOCUME~1\LA4770~1\APPLIC~1\Template
[29/06/2008|15:54] C:\DOCUME~1\LA4770~1\APPLIC~1\WinRAR
[13/11/2006|09:45] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\ATI
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Identities
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Macromedia
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Real
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[27/09/2008 15:41][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[28/09/2008 07:42][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[14/03/2008|00:37] C:\Program Files\AC3Filter
[03/09/2008|14:11] C:\Program Files\Adobe
[10/09/2008|13:30] C:\Program Files\Apple Software Update
[11/05/2007|22:05] C:\Program Files\ArcSoft
[13/11/2006|10:34] C:\Program Files\ATI Technologies
[18/04/2007|13:51] C:\Program Files\Audacity
[23/12/2006|03:45] C:\Program Files\Blubster
[27/09/2008|16:08] C:\Program Files\BlueVoda Website Builder
[11/05/2007|21:46] C:\Program Files\Canon
[22/12/2006|19:13] C:\Program Files\Common Files
[13/11/2006|09:41] C:\Program Files\ComPlus Applications
[07/12/2006|19:51] C:\Program Files\Corel
[11/06/2008|16:25] C:\Program Files\CUEcards 2000
[05/08/2008|21:52] C:\Program Files\DivX
[27/09/2008|21:12] C:\Program Files\emcxicc
[27/09/2008|20:44] C:\Program Files\Enigma Software Group
[10/09/2008|13:32] C:\Program Files\Fichiers communs
[24/02/2007|16:07] C:\Program Files\First page
[22/12/2006|20:40] C:\Program Files\Google
[31/08/2008|11:27] C:\Program Files\InstallShield Installation Information
[27/09/2008|16:08] C:\Program Files\InterActual
[20/01/2007|16:06] C:\Program Files\Internet Cleaner
[15/08/2008|23:01] C:\Program Files\Internet Explorer
[13/11/2006|10:40] C:\Program Files\InterVideo
[26/12/2006|20:11] C:\Program Files\iPod
[26/12/2006|20:11] C:\Program Files\iTunes
[22/12/2006|20:40] C:\Program Files\Lavasoft
[17/04/2008|19:35] C:\Program Files\Lettriq
[04/05/2008|12:43] C:\Program Files\Macromedia
[27/09/2008|21:02] C:\Program Files\Malwarebytes' Anti-Malware
[11/12/2006|14:24] C:\Program Files\MAXON
[22/08/2008|17:28] C:\Program Files\Messenger
[15/05/2008|02:23] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[13/11/2006|09:43] C:\Program Files\microsoft frontpage
[10/03/2008|21:21] C:\Program Files\Microsoft Office
[13/11/2006|10:38] C:\Program Files\Microsoft Visual Studio
[11/09/2008|00:40] C:\Program Files\Microsoft Works
[13/11/2006|10:38] C:\Program Files\Microsoft.NET
[22/08/2008|16:48] C:\Program Files\Movie Maker
[02/09/2008|19:13] C:\Program Files\Mozilla Firefox
[31/03/2007|15:04] C:\Program Files\MSN
[13/11/2006|09:40] C:\Program Files\MSN Gaming Zone
[22/12/2006|19:24] C:\Program Files\MSXML 4.0
[22/08/2008|16:47] C:\Program Files\NetMeeting
[08/09/2008|12:25] C:\Program Files\Notepad++
[27/09/2008|16:08] C:\Program Files\Nvu
[13/11/2006|09:40] C:\Program Files\Online Services
[05/09/2008|14:19] C:\Program Files\Outlook Express
[15/04/2008|14:44] C:\Program Files\Picasa2
[10/09/2008|13:32] C:\Program Files\QuickTime
[07/12/2006|18:00] C:\Program Files\Raccourcis de programmes
[25/11/2007|22:34] C:\Program Files\Real
[22/12/2006|19:04] C:\Program Files\SAGEM
[11/05/2007|21:42] C:\Program Files\ScanSoft
[15/12/2006|13:39] C:\Program Files\Securitoo
[13/11/2006|09:42] C:\Program Files\Services en ligne
[13/09/2007|09:07] C:\Program Files\Skype
[05/06/2008|13:39] C:\Program Files\Smilebox
[27/09/2008|15:43] C:\Program Files\Spybot - Search & Destroy
[21/09/2008|11:39] C:\Program Files\TeaTimer (Spybot - Search & Destroy)
[13/11/2006|09:46] C:\Program Files\Uninstall Information
[10/08/2008|01:45] C:\Program Files\uTorrent
[22/12/2006|19:10] C:\Program Files\Wanadoo
[13/05/2008|08:19] C:\Program Files\Windows Live
[17/09/2008|22:03] C:\Program Files\Windows Live Safety Center
[29/05/2008|18:27] C:\Program Files\Windows Media Connect 2
[29/03/2007|09:42] C:\Program Files\Windows Media Player
[21/09/2008|11:27] C:\Program Files\Windows NT
[13/11/2006|09:40] C:\Program Files\Windows Plus
[13/11/2006|09:42] C:\Program Files\WindowsUpdate
[12/01/2008|13:12] C:\Program Files\WinRAR
[13/11/2006|10:36] C:\Program Files\X10 Hardware
[13/11/2006|09:43] C:\Program Files\xerox
[22/12/2006|19:13] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[03/09/2008|14:15] C:\Program Files\Fichiers communs\Adobe
[10/09/2008|13:32] C:\Program Files\Fichiers communs\Apple
[09/12/2006|21:24] C:\Program Files\Fichiers communs\Canon
[13/11/2006|10:38] C:\Program Files\Fichiers communs\DESIGNER
[11/05/2007|21:43] C:\Program Files\Fichiers communs\InstallShield
[23/01/2007|19:29] C:\Program Files\Fichiers communs\Macromedia
[22/08/2008|01:03] C:\Program Files\Fichiers communs\Microsoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\MSSoap
[13/11/2006|10:37] C:\Program Files\Fichiers communs\ODBC
[25/11/2007|22:34] C:\Program Files\Fichiers communs\Real
[11/05/2007|21:43] C:\Program Files\Fichiers communs\ScanSoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\Services
[13/09/2007|09:07] C:\Program Files\Fichiers communs\Skype
[31/08/2008|11:28] C:\Program Files\Fichiers communs\SourceTec
[13/11/2006|10:37] C:\Program Files\Fichiers communs\SpeechEngines
[22/12/2006|20:32] C:\Program Files\Fichiers communs\Symantec Shared
[22/08/2008|16:47] C:\Program Files\Fichiers communs\System
[07/12/2006|19:58] C:\Program Files\Fichiers communs\Vbox
[13/05/2008|08:19] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/11/2007|22:34] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 15 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\Dora\LOCALS~1\Temp\nst17.tmp
C:\DOCUME~1\Dora\Cookies\dora@advertstream[1].txt
C:\DOCUME~1\Dora\Cookies\dora@advertising[1].txt
C:\DOCUME~1\Dora\Cookies\dora@banner.cotedazurpalace[2].txt
C:\DOCUME~1\Dora\Cookies\dora@cotedazurpalace[1].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-28 08:36:31
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 67
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:84][D:545]-> C:\DOCUME~1\Dora\LOCALS~1\Temp
[F:861][D:0]-> C:\DOCUME~1\Dora\Cookies
[F:19864][D:56]-> C:\DOCUME~1\Dora\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 27/09/2008|17:43 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 28/09/2008| 8:37 - Option : [1]
--------------------\\ Fin du rapport a 8:37:56
j'ai refait un scan avec LOP S&D voila le rapport; c'est bien ca qu'il te faut? Ou est-ce que j'installe hitjack?
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : Version 6.00 R1.01.2470.A1
USER : Dora ( Administrator )
BOOT : Fail-safe boot
Firewall : Norton Internet Worm Protection 2006 (Not Activated)
C:\ (Local Disk) - NTFS - Total : 298 Go Free : 144 Go
D:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 28/09/2008| 8:36 )
--------------------\\ Listing des dossiers dans APPLIC~1
[13/11/2006|10:43] C:\DOCUME~1\ADMINI~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[03/03/2008|18:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[10/09/2008|13:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[26/12/2006|20:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[09/12/2006|14:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[18/05/2008|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FLEXnet
[27/09/2008|17:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IM
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IncrediMail
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[23/12/2006|16:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia
[27/09/2008|21:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[13/05/2008|08:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/09/2007|11:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[01/01/2007|00:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PopCap
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[13/09/2007|09:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[27/09/2008|17:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[04/09/2008|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[27/09/2008|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\sxsvodat
[22/12/2006|20:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[22/12/2006|19:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[13/05/2008|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[13/11/2006|10:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\X10 Settings
[22/12/2006|19:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[13/11/2006|10:43] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[24/07/2008|15:57] C:\DOCUME~1\Dora\APPLIC~1\Adobe
[02/04/2007|15:05] C:\DOCUME~1\Dora\APPLIC~1\AdobeUM
[27/12/2006|21:01] C:\DOCUME~1\Dora\APPLIC~1\Apple Computer
[11/05/2007|22:12] C:\DOCUME~1\Dora\APPLIC~1\ArcSoft
[13/11/2006|10:43] C:\DOCUME~1\Dora\APPLIC~1\ATI
[04/07/2007|17:09] C:\DOCUME~1\Dora\APPLIC~1\Canon
[12/01/2007|13:04] C:\DOCUME~1\Dora\APPLIC~1\CD-LabelPrint
[10/08/2008|13:54] C:\DOCUME~1\Dora\APPLIC~1\Corel
[10/03/2008|22:38] C:\DOCUME~1\Dora\APPLIC~1\DivX
[20/01/2007|00:51] C:\DOCUME~1\Dora\APPLIC~1\Help
[13/11/2006|09:46] C:\DOCUME~1\Dora\APPLIC~1\Identities
[22/09/2007|20:37] C:\DOCUME~1\Dora\APPLIC~1\InterVideo
[22/12/2006|20:41] C:\DOCUME~1\Dora\APPLIC~1\Lavasoft
[27/12/2006|21:09] C:\DOCUME~1\Dora\APPLIC~1\Macromedia
[27/09/2008|21:02] C:\DOCUME~1\Dora\APPLIC~1\Malwarebytes
[05/09/2008|14:15] C:\DOCUME~1\Dora\APPLIC~1\Microsoft
[10/03/2008|21:21] C:\DOCUME~1\Dora\APPLIC~1\Microsoft Web Folders
[11/01/2008|22:55] C:\DOCUME~1\Dora\APPLIC~1\Mozilla
[31/03/2007|15:04] C:\DOCUME~1\Dora\APPLIC~1\MSNInstaller
[08/09/2008|12:25] C:\DOCUME~1\Dora\APPLIC~1\Notepad++
[08/09/2008|14:39] C:\DOCUME~1\Dora\APPLIC~1\Nvu
[25/11/2007|22:37] C:\DOCUME~1\Dora\APPLIC~1\Real
[11/05/2007|21:43] C:\DOCUME~1\Dora\APPLIC~1\ScanSoft
[28/09/2008|07:42] C:\DOCUME~1\Dora\APPLIC~1\Skype
[05/06/2008|13:43] C:\DOCUME~1\Dora\APPLIC~1\Smilebox
[11/01/2007|11:31] C:\DOCUME~1\Dora\APPLIC~1\Template
[27/09/2008|15:40] C:\DOCUME~1\Dora\APPLIC~1\TmpRecentIcons
[08/09/2008|04:01] C:\DOCUME~1\Dora\APPLIC~1\uTorrent
[12/01/2008|13:12] C:\DOCUME~1\Dora\APPLIC~1\WinRAR
[13/11/2006|10:43] C:\DOCUME~1\Emma\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\Emma\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\Emma\APPLIC~1\Macromedia
[23/02/2008|21:35] C:\DOCUME~1\Emma\APPLIC~1\Microsoft
[23/02/2008|19:54] C:\DOCUME~1\Emma\APPLIC~1\Real
[30/11/2007|12:32] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[13/11/2006|10:43] C:\DOCUME~1\INVIT~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[31/03/2007|22:05] C:\DOCUME~1\INVIT~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[23/03/2008|16:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[23/03/2008|16:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Real
[17/11/2007|11:17] C:\DOCUME~1\INVIT~1\APPLIC~1\Skype
[17/11/2007|02:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Template
[16/01/2008|08:47] C:\DOCUME~1\LOCALS~1\APPLIC~1\DivX
[12/02/2007|12:49] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[24/04/2008|16:38] C:\DOCUME~1\LOCALS~1\APPLIC~1\Real
[13/11/2006|10:40] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander
[25/03/2008|11:59] C:\DOCUME~1\LA4770~1\APPLIC~1\Adobe
[04/01/2007|14:05] C:\DOCUME~1\LA4770~1\APPLIC~1\Apple Computer
[13/11/2006|10:43] C:\DOCUME~1\LA4770~1\APPLIC~1\ATI
[21/03/2008|12:21] C:\DOCUME~1\LA4770~1\APPLIC~1\DivX
[13/11/2006|09:46] C:\DOCUME~1\LA4770~1\APPLIC~1\Identities
[06/01/2007|17:13] C:\DOCUME~1\LA4770~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\LA4770~1\APPLIC~1\Macromedia
[29/06/2008|09:41] C:\DOCUME~1\LA4770~1\APPLIC~1\Microsoft
[17/08/2007|12:02] C:\DOCUME~1\LA4770~1\APPLIC~1\Mozilla
[29/06/2008|09:53] C:\DOCUME~1\LA4770~1\APPLIC~1\Real
[02/04/2007|14:12] C:\DOCUME~1\LA4770~1\APPLIC~1\Template
[29/06/2008|15:54] C:\DOCUME~1\LA4770~1\APPLIC~1\WinRAR
[13/11/2006|09:45] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\ATI
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Identities
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Macromedia
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Real
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[27/09/2008 15:41][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[28/09/2008 07:42][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[14/03/2008|00:37] C:\Program Files\AC3Filter
[03/09/2008|14:11] C:\Program Files\Adobe
[10/09/2008|13:30] C:\Program Files\Apple Software Update
[11/05/2007|22:05] C:\Program Files\ArcSoft
[13/11/2006|10:34] C:\Program Files\ATI Technologies
[18/04/2007|13:51] C:\Program Files\Audacity
[23/12/2006|03:45] C:\Program Files\Blubster
[27/09/2008|16:08] C:\Program Files\BlueVoda Website Builder
[11/05/2007|21:46] C:\Program Files\Canon
[22/12/2006|19:13] C:\Program Files\Common Files
[13/11/2006|09:41] C:\Program Files\ComPlus Applications
[07/12/2006|19:51] C:\Program Files\Corel
[11/06/2008|16:25] C:\Program Files\CUEcards 2000
[05/08/2008|21:52] C:\Program Files\DivX
[27/09/2008|21:12] C:\Program Files\emcxicc
[27/09/2008|20:44] C:\Program Files\Enigma Software Group
[10/09/2008|13:32] C:\Program Files\Fichiers communs
[24/02/2007|16:07] C:\Program Files\First page
[22/12/2006|20:40] C:\Program Files\Google
[31/08/2008|11:27] C:\Program Files\InstallShield Installation Information
[27/09/2008|16:08] C:\Program Files\InterActual
[20/01/2007|16:06] C:\Program Files\Internet Cleaner
[15/08/2008|23:01] C:\Program Files\Internet Explorer
[13/11/2006|10:40] C:\Program Files\InterVideo
[26/12/2006|20:11] C:\Program Files\iPod
[26/12/2006|20:11] C:\Program Files\iTunes
[22/12/2006|20:40] C:\Program Files\Lavasoft
[17/04/2008|19:35] C:\Program Files\Lettriq
[04/05/2008|12:43] C:\Program Files\Macromedia
[27/09/2008|21:02] C:\Program Files\Malwarebytes' Anti-Malware
[11/12/2006|14:24] C:\Program Files\MAXON
[22/08/2008|17:28] C:\Program Files\Messenger
[15/05/2008|02:23] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[13/11/2006|09:43] C:\Program Files\microsoft frontpage
[10/03/2008|21:21] C:\Program Files\Microsoft Office
[13/11/2006|10:38] C:\Program Files\Microsoft Visual Studio
[11/09/2008|00:40] C:\Program Files\Microsoft Works
[13/11/2006|10:38] C:\Program Files\Microsoft.NET
[22/08/2008|16:48] C:\Program Files\Movie Maker
[02/09/2008|19:13] C:\Program Files\Mozilla Firefox
[31/03/2007|15:04] C:\Program Files\MSN
[13/11/2006|09:40] C:\Program Files\MSN Gaming Zone
[22/12/2006|19:24] C:\Program Files\MSXML 4.0
[22/08/2008|16:47] C:\Program Files\NetMeeting
[08/09/2008|12:25] C:\Program Files\Notepad++
[27/09/2008|16:08] C:\Program Files\Nvu
[13/11/2006|09:40] C:\Program Files\Online Services
[05/09/2008|14:19] C:\Program Files\Outlook Express
[15/04/2008|14:44] C:\Program Files\Picasa2
[10/09/2008|13:32] C:\Program Files\QuickTime
[07/12/2006|18:00] C:\Program Files\Raccourcis de programmes
[25/11/2007|22:34] C:\Program Files\Real
[22/12/2006|19:04] C:\Program Files\SAGEM
[11/05/2007|21:42] C:\Program Files\ScanSoft
[15/12/2006|13:39] C:\Program Files\Securitoo
[13/11/2006|09:42] C:\Program Files\Services en ligne
[13/09/2007|09:07] C:\Program Files\Skype
[05/06/2008|13:39] C:\Program Files\Smilebox
[27/09/2008|15:43] C:\Program Files\Spybot - Search & Destroy
[21/09/2008|11:39] C:\Program Files\TeaTimer (Spybot - Search & Destroy)
[13/11/2006|09:46] C:\Program Files\Uninstall Information
[10/08/2008|01:45] C:\Program Files\uTorrent
[22/12/2006|19:10] C:\Program Files\Wanadoo
[13/05/2008|08:19] C:\Program Files\Windows Live
[17/09/2008|22:03] C:\Program Files\Windows Live Safety Center
[29/05/2008|18:27] C:\Program Files\Windows Media Connect 2
[29/03/2007|09:42] C:\Program Files\Windows Media Player
[21/09/2008|11:27] C:\Program Files\Windows NT
[13/11/2006|09:40] C:\Program Files\Windows Plus
[13/11/2006|09:42] C:\Program Files\WindowsUpdate
[12/01/2008|13:12] C:\Program Files\WinRAR
[13/11/2006|10:36] C:\Program Files\X10 Hardware
[13/11/2006|09:43] C:\Program Files\xerox
[22/12/2006|19:13] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[03/09/2008|14:15] C:\Program Files\Fichiers communs\Adobe
[10/09/2008|13:32] C:\Program Files\Fichiers communs\Apple
[09/12/2006|21:24] C:\Program Files\Fichiers communs\Canon
[13/11/2006|10:38] C:\Program Files\Fichiers communs\DESIGNER
[11/05/2007|21:43] C:\Program Files\Fichiers communs\InstallShield
[23/01/2007|19:29] C:\Program Files\Fichiers communs\Macromedia
[22/08/2008|01:03] C:\Program Files\Fichiers communs\Microsoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\MSSoap
[13/11/2006|10:37] C:\Program Files\Fichiers communs\ODBC
[25/11/2007|22:34] C:\Program Files\Fichiers communs\Real
[11/05/2007|21:43] C:\Program Files\Fichiers communs\ScanSoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\Services
[13/09/2007|09:07] C:\Program Files\Fichiers communs\Skype
[31/08/2008|11:28] C:\Program Files\Fichiers communs\SourceTec
[13/11/2006|10:37] C:\Program Files\Fichiers communs\SpeechEngines
[22/12/2006|20:32] C:\Program Files\Fichiers communs\Symantec Shared
[22/08/2008|16:47] C:\Program Files\Fichiers communs\System
[07/12/2006|19:58] C:\Program Files\Fichiers communs\Vbox
[13/05/2008|08:19] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/11/2007|22:34] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 15 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\Dora\LOCALS~1\Temp\nst17.tmp
C:\DOCUME~1\Dora\Cookies\dora@advertstream[1].txt
C:\DOCUME~1\Dora\Cookies\dora@advertising[1].txt
C:\DOCUME~1\Dora\Cookies\dora@banner.cotedazurpalace[2].txt
C:\DOCUME~1\Dora\Cookies\dora@cotedazurpalace[1].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-28 08:36:31
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 67
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:84][D:545]-> C:\DOCUME~1\Dora\LOCALS~1\Temp
[F:861][D:0]-> C:\DOCUME~1\Dora\Cookies
[F:19864][D:56]-> C:\DOCUME~1\Dora\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 27/09/2008|17:43 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 28/09/2008| 8:37 - Option : [1]
--------------------\\ Fin du rapport a 8:37:56
j'ai suivit les indications données à quelqu'un d'autre, infecté aussi par virtumonde, et j'ai installé malware bytes anti-malware. Il m'a trouvé et supprimé 30 fichiers infectés. Virtumonde semble être parit, mais il en reste encore...
j'ai refait un scan avec LOP S&D voila le rapport; c'est bien ca qu'il te faut? Ou est-ce que j'installe hitjack?
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : Version 6.00 R1.01.2470.A1
USER : Dora ( Administrator )
BOOT : Fail-safe boot
Firewall : Norton Internet Worm Protection 2006 (Not Activated)
C:\ (Local Disk) - NTFS - Total : 298 Go Free : 144 Go
D:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 28/09/2008| 8:36 )
--------------------\\ Listing des dossiers dans APPLIC~1
[13/11/2006|10:43] C:\DOCUME~1\ADMINI~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[03/03/2008|18:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[10/09/2008|13:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[26/12/2006|20:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[09/12/2006|14:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[18/05/2008|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FLEXnet
[27/09/2008|17:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IM
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IncrediMail
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[23/12/2006|16:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia
[27/09/2008|21:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[13/05/2008|08:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/09/2007|11:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[01/01/2007|00:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PopCap
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[13/09/2007|09:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[27/09/2008|17:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[04/09/2008|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[27/09/2008|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\sxsvodat
[22/12/2006|20:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[22/12/2006|19:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[13/05/2008|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[13/11/2006|10:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\X10 Settings
[22/12/2006|19:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[13/11/2006|10:43] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[24/07/2008|15:57] C:\DOCUME~1\Dora\APPLIC~1\Adobe
[02/04/2007|15:05] C:\DOCUME~1\Dora\APPLIC~1\AdobeUM
[27/12/2006|21:01] C:\DOCUME~1\Dora\APPLIC~1\Apple Computer
[11/05/2007|22:12] C:\DOCUME~1\Dora\APPLIC~1\ArcSoft
[13/11/2006|10:43] C:\DOCUME~1\Dora\APPLIC~1\ATI
[04/07/2007|17:09] C:\DOCUME~1\Dora\APPLIC~1\Canon
[12/01/2007|13:04] C:\DOCUME~1\Dora\APPLIC~1\CD-LabelPrint
[10/08/2008|13:54] C:\DOCUME~1\Dora\APPLIC~1\Corel
[10/03/2008|22:38] C:\DOCUME~1\Dora\APPLIC~1\DivX
[20/01/2007|00:51] C:\DOCUME~1\Dora\APPLIC~1\Help
[13/11/2006|09:46] C:\DOCUME~1\Dora\APPLIC~1\Identities
[22/09/2007|20:37] C:\DOCUME~1\Dora\APPLIC~1\InterVideo
[22/12/2006|20:41] C:\DOCUME~1\Dora\APPLIC~1\Lavasoft
[27/12/2006|21:09] C:\DOCUME~1\Dora\APPLIC~1\Macromedia
[27/09/2008|21:02] C:\DOCUME~1\Dora\APPLIC~1\Malwarebytes
[05/09/2008|14:15] C:\DOCUME~1\Dora\APPLIC~1\Microsoft
[10/03/2008|21:21] C:\DOCUME~1\Dora\APPLIC~1\Microsoft Web Folders
[11/01/2008|22:55] C:\DOCUME~1\Dora\APPLIC~1\Mozilla
[31/03/2007|15:04] C:\DOCUME~1\Dora\APPLIC~1\MSNInstaller
[08/09/2008|12:25] C:\DOCUME~1\Dora\APPLIC~1\Notepad++
[08/09/2008|14:39] C:\DOCUME~1\Dora\APPLIC~1\Nvu
[25/11/2007|22:37] C:\DOCUME~1\Dora\APPLIC~1\Real
[11/05/2007|21:43] C:\DOCUME~1\Dora\APPLIC~1\ScanSoft
[28/09/2008|07:42] C:\DOCUME~1\Dora\APPLIC~1\Skype
[05/06/2008|13:43] C:\DOCUME~1\Dora\APPLIC~1\Smilebox
[11/01/2007|11:31] C:\DOCUME~1\Dora\APPLIC~1\Template
[27/09/2008|15:40] C:\DOCUME~1\Dora\APPLIC~1\TmpRecentIcons
[08/09/2008|04:01] C:\DOCUME~1\Dora\APPLIC~1\uTorrent
[12/01/2008|13:12] C:\DOCUME~1\Dora\APPLIC~1\WinRAR
[13/11/2006|10:43] C:\DOCUME~1\Emma\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\Emma\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\Emma\APPLIC~1\Macromedia
[23/02/2008|21:35] C:\DOCUME~1\Emma\APPLIC~1\Microsoft
[23/02/2008|19:54] C:\DOCUME~1\Emma\APPLIC~1\Real
[30/11/2007|12:32] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[13/11/2006|10:43] C:\DOCUME~1\INVIT~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[31/03/2007|22:05] C:\DOCUME~1\INVIT~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[23/03/2008|16:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[23/03/2008|16:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Real
[17/11/2007|11:17] C:\DOCUME~1\INVIT~1\APPLIC~1\Skype
[17/11/2007|02:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Template
[16/01/2008|08:47] C:\DOCUME~1\LOCALS~1\APPLIC~1\DivX
[12/02/2007|12:49] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[24/04/2008|16:38] C:\DOCUME~1\LOCALS~1\APPLIC~1\Real
[13/11/2006|10:40] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander
[25/03/2008|11:59] C:\DOCUME~1\LA4770~1\APPLIC~1\Adobe
[04/01/2007|14:05] C:\DOCUME~1\LA4770~1\APPLIC~1\Apple Computer
[13/11/2006|10:43] C:\DOCUME~1\LA4770~1\APPLIC~1\ATI
[21/03/2008|12:21] C:\DOCUME~1\LA4770~1\APPLIC~1\DivX
[13/11/2006|09:46] C:\DOCUME~1\LA4770~1\APPLIC~1\Identities
[06/01/2007|17:13] C:\DOCUME~1\LA4770~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\LA4770~1\APPLIC~1\Macromedia
[29/06/2008|09:41] C:\DOCUME~1\LA4770~1\APPLIC~1\Microsoft
[17/08/2007|12:02] C:\DOCUME~1\LA4770~1\APPLIC~1\Mozilla
[29/06/2008|09:53] C:\DOCUME~1\LA4770~1\APPLIC~1\Real
[02/04/2007|14:12] C:\DOCUME~1\LA4770~1\APPLIC~1\Template
[29/06/2008|15:54] C:\DOCUME~1\LA4770~1\APPLIC~1\WinRAR
[13/11/2006|09:45] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\ATI
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Identities
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Macromedia
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Real
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[27/09/2008 15:41][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[28/09/2008 07:42][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[14/03/2008|00:37] C:\Program Files\AC3Filter
[03/09/2008|14:11] C:\Program Files\Adobe
[10/09/2008|13:30] C:\Program Files\Apple Software Update
[11/05/2007|22:05] C:\Program Files\ArcSoft
[13/11/2006|10:34] C:\Program Files\ATI Technologies
[18/04/2007|13:51] C:\Program Files\Audacity
[23/12/2006|03:45] C:\Program Files\Blubster
[27/09/2008|16:08] C:\Program Files\BlueVoda Website Builder
[11/05/2007|21:46] C:\Program Files\Canon
[22/12/2006|19:13] C:\Program Files\Common Files
[13/11/2006|09:41] C:\Program Files\ComPlus Applications
[07/12/2006|19:51] C:\Program Files\Corel
[11/06/2008|16:25] C:\Program Files\CUEcards 2000
[05/08/2008|21:52] C:\Program Files\DivX
[27/09/2008|21:12] C:\Program Files\emcxicc
[27/09/2008|20:44] C:\Program Files\Enigma Software Group
[10/09/2008|13:32] C:\Program Files\Fichiers communs
[24/02/2007|16:07] C:\Program Files\First page
[22/12/2006|20:40] C:\Program Files\Google
[31/08/2008|11:27] C:\Program Files\InstallShield Installation Information
[27/09/2008|16:08] C:\Program Files\InterActual
[20/01/2007|16:06] C:\Program Files\Internet Cleaner
[15/08/2008|23:01] C:\Program Files\Internet Explorer
[13/11/2006|10:40] C:\Program Files\InterVideo
[26/12/2006|20:11] C:\Program Files\iPod
[26/12/2006|20:11] C:\Program Files\iTunes
[22/12/2006|20:40] C:\Program Files\Lavasoft
[17/04/2008|19:35] C:\Program Files\Lettriq
[04/05/2008|12:43] C:\Program Files\Macromedia
[27/09/2008|21:02] C:\Program Files\Malwarebytes' Anti-Malware
[11/12/2006|14:24] C:\Program Files\MAXON
[22/08/2008|17:28] C:\Program Files\Messenger
[15/05/2008|02:23] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[13/11/2006|09:43] C:\Program Files\microsoft frontpage
[10/03/2008|21:21] C:\Program Files\Microsoft Office
[13/11/2006|10:38] C:\Program Files\Microsoft Visual Studio
[11/09/2008|00:40] C:\Program Files\Microsoft Works
[13/11/2006|10:38] C:\Program Files\Microsoft.NET
[22/08/2008|16:48] C:\Program Files\Movie Maker
[02/09/2008|19:13] C:\Program Files\Mozilla Firefox
[31/03/2007|15:04] C:\Program Files\MSN
[13/11/2006|09:40] C:\Program Files\MSN Gaming Zone
[22/12/2006|19:24] C:\Program Files\MSXML 4.0
[22/08/2008|16:47] C:\Program Files\NetMeeting
[08/09/2008|12:25] C:\Program Files\Notepad++
[27/09/2008|16:08] C:\Program Files\Nvu
[13/11/2006|09:40] C:\Program Files\Online Services
[05/09/2008|14:19] C:\Program Files\Outlook Express
[15/04/2008|14:44] C:\Program Files\Picasa2
[10/09/2008|13:32] C:\Program Files\QuickTime
[07/12/2006|18:00] C:\Program Files\Raccourcis de programmes
[25/11/2007|22:34] C:\Program Files\Real
[22/12/2006|19:04] C:\Program Files\SAGEM
[11/05/2007|21:42] C:\Program Files\ScanSoft
[15/12/2006|13:39] C:\Program Files\Securitoo
[13/11/2006|09:42] C:\Program Files\Services en ligne
[13/09/2007|09:07] C:\Program Files\Skype
[05/06/2008|13:39] C:\Program Files\Smilebox
[27/09/2008|15:43] C:\Program Files\Spybot - Search & Destroy
[21/09/2008|11:39] C:\Program Files\TeaTimer (Spybot - Search & Destroy)
[13/11/2006|09:46] C:\Program Files\Uninstall Information
[10/08/2008|01:45] C:\Program Files\uTorrent
[22/12/2006|19:10] C:\Program Files\Wanadoo
[13/05/2008|08:19] C:\Program Files\Windows Live
[17/09/2008|22:03] C:\Program Files\Windows Live Safety Center
[29/05/2008|18:27] C:\Program Files\Windows Media Connect 2
[29/03/2007|09:42] C:\Program Files\Windows Media Player
[21/09/2008|11:27] C:\Program Files\Windows NT
[13/11/2006|09:40] C:\Program Files\Windows Plus
[13/11/2006|09:42] C:\Program Files\WindowsUpdate
[12/01/2008|13:12] C:\Program Files\WinRAR
[13/11/2006|10:36] C:\Program Files\X10 Hardware
[13/11/2006|09:43] C:\Program Files\xerox
[22/12/2006|19:13] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[03/09/2008|14:15] C:\Program Files\Fichiers communs\Adobe
[10/09/2008|13:32] C:\Program Files\Fichiers communs\Apple
[09/12/2006|21:24] C:\Program Files\Fichiers communs\Canon
[13/11/2006|10:38] C:\Program Files\Fichiers communs\DESIGNER
[11/05/2007|21:43] C:\Program Files\Fichiers communs\InstallShield
[23/01/2007|19:29] C:\Program Files\Fichiers communs\Macromedia
[22/08/2008|01:03] C:\Program Files\Fichiers communs\Microsoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\MSSoap
[13/11/2006|10:37] C:\Program Files\Fichiers communs\ODBC
[25/11/2007|22:34] C:\Program Files\Fichiers communs\Real
[11/05/2007|21:43] C:\Program Files\Fichiers communs\ScanSoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\Services
[13/09/2007|09:07] C:\Program Files\Fichiers communs\Skype
[31/08/2008|11:28] C:\Program Files\Fichiers communs\SourceTec
[13/11/2006|10:37] C:\Program Files\Fichiers communs\SpeechEngines
[22/12/2006|20:32] C:\Program Files\Fichiers communs\Symantec Shared
[22/08/2008|16:47] C:\Program Files\Fichiers communs\System
[07/12/2006|19:58] C:\Program Files\Fichiers communs\Vbox
[13/05/2008|08:19] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/11/2007|22:34] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 15 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\Dora\LOCALS~1\Temp\nst17.tmp
C:\DOCUME~1\Dora\Cookies\dora@advertstream[1].txt
C:\DOCUME~1\Dora\Cookies\dora@advertising[1].txt
C:\DOCUME~1\Dora\Cookies\dora@banner.cotedazurpalace[2].txt
C:\DOCUME~1\Dora\Cookies\dora@cotedazurpalace[1].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-28 08:36:31
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 67
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:84][D:545]-> C:\DOCUME~1\Dora\LOCALS~1\Temp
[F:861][D:0]-> C:\DOCUME~1\Dora\Cookies
[F:19864][D:56]-> C:\DOCUME~1\Dora\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 27/09/2008|17:43 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 28/09/2008| 8:37 - Option : [1]
--------------------\\ Fin du rapport a 8:37:56
j'ai refait un scan avec LOP S&D voila le rapport; c'est bien ca qu'il te faut? Ou est-ce que j'installe hitjack?
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : Version 6.00 R1.01.2470.A1
USER : Dora ( Administrator )
BOOT : Fail-safe boot
Firewall : Norton Internet Worm Protection 2006 (Not Activated)
C:\ (Local Disk) - NTFS - Total : 298 Go Free : 144 Go
D:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 28/09/2008| 8:36 )
--------------------\\ Listing des dossiers dans APPLIC~1
[13/11/2006|10:43] C:\DOCUME~1\ADMINI~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[03/03/2008|18:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[10/09/2008|13:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[26/12/2006|20:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[09/12/2006|14:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[18/05/2008|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FLEXnet
[27/09/2008|17:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IM
[10/03/2008|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IncrediMail
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[23/12/2006|16:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia
[27/09/2008|21:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[13/05/2008|08:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/09/2007|11:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[01/01/2007|00:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PopCap
[11/05/2007|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[13/09/2007|09:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[27/09/2008|17:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[04/09/2008|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[27/09/2008|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\sxsvodat
[22/12/2006|20:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[22/12/2006|19:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[13/05/2008|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[13/11/2006|10:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\X10 Settings
[22/12/2006|19:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[13/11/2006|10:43] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[13/11/2006|10:56] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[24/07/2008|15:57] C:\DOCUME~1\Dora\APPLIC~1\Adobe
[02/04/2007|15:05] C:\DOCUME~1\Dora\APPLIC~1\AdobeUM
[27/12/2006|21:01] C:\DOCUME~1\Dora\APPLIC~1\Apple Computer
[11/05/2007|22:12] C:\DOCUME~1\Dora\APPLIC~1\ArcSoft
[13/11/2006|10:43] C:\DOCUME~1\Dora\APPLIC~1\ATI
[04/07/2007|17:09] C:\DOCUME~1\Dora\APPLIC~1\Canon
[12/01/2007|13:04] C:\DOCUME~1\Dora\APPLIC~1\CD-LabelPrint
[10/08/2008|13:54] C:\DOCUME~1\Dora\APPLIC~1\Corel
[10/03/2008|22:38] C:\DOCUME~1\Dora\APPLIC~1\DivX
[20/01/2007|00:51] C:\DOCUME~1\Dora\APPLIC~1\Help
[13/11/2006|09:46] C:\DOCUME~1\Dora\APPLIC~1\Identities
[22/09/2007|20:37] C:\DOCUME~1\Dora\APPLIC~1\InterVideo
[22/12/2006|20:41] C:\DOCUME~1\Dora\APPLIC~1\Lavasoft
[27/12/2006|21:09] C:\DOCUME~1\Dora\APPLIC~1\Macromedia
[27/09/2008|21:02] C:\DOCUME~1\Dora\APPLIC~1\Malwarebytes
[05/09/2008|14:15] C:\DOCUME~1\Dora\APPLIC~1\Microsoft
[10/03/2008|21:21] C:\DOCUME~1\Dora\APPLIC~1\Microsoft Web Folders
[11/01/2008|22:55] C:\DOCUME~1\Dora\APPLIC~1\Mozilla
[31/03/2007|15:04] C:\DOCUME~1\Dora\APPLIC~1\MSNInstaller
[08/09/2008|12:25] C:\DOCUME~1\Dora\APPLIC~1\Notepad++
[08/09/2008|14:39] C:\DOCUME~1\Dora\APPLIC~1\Nvu
[25/11/2007|22:37] C:\DOCUME~1\Dora\APPLIC~1\Real
[11/05/2007|21:43] C:\DOCUME~1\Dora\APPLIC~1\ScanSoft
[28/09/2008|07:42] C:\DOCUME~1\Dora\APPLIC~1\Skype
[05/06/2008|13:43] C:\DOCUME~1\Dora\APPLIC~1\Smilebox
[11/01/2007|11:31] C:\DOCUME~1\Dora\APPLIC~1\Template
[27/09/2008|15:40] C:\DOCUME~1\Dora\APPLIC~1\TmpRecentIcons
[08/09/2008|04:01] C:\DOCUME~1\Dora\APPLIC~1\uTorrent
[12/01/2008|13:12] C:\DOCUME~1\Dora\APPLIC~1\WinRAR
[13/11/2006|10:43] C:\DOCUME~1\Emma\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\Emma\APPLIC~1\Identities
[13/11/2006|10:37] C:\DOCUME~1\Emma\APPLIC~1\Macromedia
[23/02/2008|21:35] C:\DOCUME~1\Emma\APPLIC~1\Microsoft
[23/02/2008|19:54] C:\DOCUME~1\Emma\APPLIC~1\Real
[30/11/2007|12:32] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[13/11/2006|10:43] C:\DOCUME~1\INVIT~1\APPLIC~1\ATI
[13/11/2006|09:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[31/03/2007|22:05] C:\DOCUME~1\INVIT~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[23/03/2008|16:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[23/03/2008|16:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Real
[17/11/2007|11:17] C:\DOCUME~1\INVIT~1\APPLIC~1\Skype
[17/11/2007|02:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Template
[16/01/2008|08:47] C:\DOCUME~1\LOCALS~1\APPLIC~1\DivX
[12/02/2007|12:49] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[24/04/2008|16:38] C:\DOCUME~1\LOCALS~1\APPLIC~1\Real
[13/11/2006|10:40] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander
[25/03/2008|11:59] C:\DOCUME~1\LA4770~1\APPLIC~1\Adobe
[04/01/2007|14:05] C:\DOCUME~1\LA4770~1\APPLIC~1\Apple Computer
[13/11/2006|10:43] C:\DOCUME~1\LA4770~1\APPLIC~1\ATI
[21/03/2008|12:21] C:\DOCUME~1\LA4770~1\APPLIC~1\DivX
[13/11/2006|09:46] C:\DOCUME~1\LA4770~1\APPLIC~1\Identities
[06/01/2007|17:13] C:\DOCUME~1\LA4770~1\APPLIC~1\Lavasoft
[13/11/2006|10:37] C:\DOCUME~1\LA4770~1\APPLIC~1\Macromedia
[29/06/2008|09:41] C:\DOCUME~1\LA4770~1\APPLIC~1\Microsoft
[17/08/2007|12:02] C:\DOCUME~1\LA4770~1\APPLIC~1\Mozilla
[29/06/2008|09:53] C:\DOCUME~1\LA4770~1\APPLIC~1\Real
[02/04/2007|14:12] C:\DOCUME~1\LA4770~1\APPLIC~1\Template
[29/06/2008|15:54] C:\DOCUME~1\LA4770~1\APPLIC~1\WinRAR
[13/11/2006|09:45] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\ATI
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Identities
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Macromedia
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Microsoft
[21/09/2008|11:27] C:\DOCUME~1\SRAPHI~1\APPLIC~1\Real
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[27/09/2008 15:41][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[28/09/2008 07:42][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[14/03/2008|00:37] C:\Program Files\AC3Filter
[03/09/2008|14:11] C:\Program Files\Adobe
[10/09/2008|13:30] C:\Program Files\Apple Software Update
[11/05/2007|22:05] C:\Program Files\ArcSoft
[13/11/2006|10:34] C:\Program Files\ATI Technologies
[18/04/2007|13:51] C:\Program Files\Audacity
[23/12/2006|03:45] C:\Program Files\Blubster
[27/09/2008|16:08] C:\Program Files\BlueVoda Website Builder
[11/05/2007|21:46] C:\Program Files\Canon
[22/12/2006|19:13] C:\Program Files\Common Files
[13/11/2006|09:41] C:\Program Files\ComPlus Applications
[07/12/2006|19:51] C:\Program Files\Corel
[11/06/2008|16:25] C:\Program Files\CUEcards 2000
[05/08/2008|21:52] C:\Program Files\DivX
[27/09/2008|21:12] C:\Program Files\emcxicc
[27/09/2008|20:44] C:\Program Files\Enigma Software Group
[10/09/2008|13:32] C:\Program Files\Fichiers communs
[24/02/2007|16:07] C:\Program Files\First page
[22/12/2006|20:40] C:\Program Files\Google
[31/08/2008|11:27] C:\Program Files\InstallShield Installation Information
[27/09/2008|16:08] C:\Program Files\InterActual
[20/01/2007|16:06] C:\Program Files\Internet Cleaner
[15/08/2008|23:01] C:\Program Files\Internet Explorer
[13/11/2006|10:40] C:\Program Files\InterVideo
[26/12/2006|20:11] C:\Program Files\iPod
[26/12/2006|20:11] C:\Program Files\iTunes
[22/12/2006|20:40] C:\Program Files\Lavasoft
[17/04/2008|19:35] C:\Program Files\Lettriq
[04/05/2008|12:43] C:\Program Files\Macromedia
[27/09/2008|21:02] C:\Program Files\Malwarebytes' Anti-Malware
[11/12/2006|14:24] C:\Program Files\MAXON
[22/08/2008|17:28] C:\Program Files\Messenger
[15/05/2008|02:23] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[13/11/2006|09:43] C:\Program Files\microsoft frontpage
[10/03/2008|21:21] C:\Program Files\Microsoft Office
[13/11/2006|10:38] C:\Program Files\Microsoft Visual Studio
[11/09/2008|00:40] C:\Program Files\Microsoft Works
[13/11/2006|10:38] C:\Program Files\Microsoft.NET
[22/08/2008|16:48] C:\Program Files\Movie Maker
[02/09/2008|19:13] C:\Program Files\Mozilla Firefox
[31/03/2007|15:04] C:\Program Files\MSN
[13/11/2006|09:40] C:\Program Files\MSN Gaming Zone
[22/12/2006|19:24] C:\Program Files\MSXML 4.0
[22/08/2008|16:47] C:\Program Files\NetMeeting
[08/09/2008|12:25] C:\Program Files\Notepad++
[27/09/2008|16:08] C:\Program Files\Nvu
[13/11/2006|09:40] C:\Program Files\Online Services
[05/09/2008|14:19] C:\Program Files\Outlook Express
[15/04/2008|14:44] C:\Program Files\Picasa2
[10/09/2008|13:32] C:\Program Files\QuickTime
[07/12/2006|18:00] C:\Program Files\Raccourcis de programmes
[25/11/2007|22:34] C:\Program Files\Real
[22/12/2006|19:04] C:\Program Files\SAGEM
[11/05/2007|21:42] C:\Program Files\ScanSoft
[15/12/2006|13:39] C:\Program Files\Securitoo
[13/11/2006|09:42] C:\Program Files\Services en ligne
[13/09/2007|09:07] C:\Program Files\Skype
[05/06/2008|13:39] C:\Program Files\Smilebox
[27/09/2008|15:43] C:\Program Files\Spybot - Search & Destroy
[21/09/2008|11:39] C:\Program Files\TeaTimer (Spybot - Search & Destroy)
[13/11/2006|09:46] C:\Program Files\Uninstall Information
[10/08/2008|01:45] C:\Program Files\uTorrent
[22/12/2006|19:10] C:\Program Files\Wanadoo
[13/05/2008|08:19] C:\Program Files\Windows Live
[17/09/2008|22:03] C:\Program Files\Windows Live Safety Center
[29/05/2008|18:27] C:\Program Files\Windows Media Connect 2
[29/03/2007|09:42] C:\Program Files\Windows Media Player
[21/09/2008|11:27] C:\Program Files\Windows NT
[13/11/2006|09:40] C:\Program Files\Windows Plus
[13/11/2006|09:42] C:\Program Files\WindowsUpdate
[12/01/2008|13:12] C:\Program Files\WinRAR
[13/11/2006|10:36] C:\Program Files\X10 Hardware
[13/11/2006|09:43] C:\Program Files\xerox
[22/12/2006|19:13] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[03/09/2008|14:15] C:\Program Files\Fichiers communs\Adobe
[10/09/2008|13:32] C:\Program Files\Fichiers communs\Apple
[09/12/2006|21:24] C:\Program Files\Fichiers communs\Canon
[13/11/2006|10:38] C:\Program Files\Fichiers communs\DESIGNER
[11/05/2007|21:43] C:\Program Files\Fichiers communs\InstallShield
[23/01/2007|19:29] C:\Program Files\Fichiers communs\Macromedia
[22/08/2008|01:03] C:\Program Files\Fichiers communs\Microsoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\MSSoap
[13/11/2006|10:37] C:\Program Files\Fichiers communs\ODBC
[25/11/2007|22:34] C:\Program Files\Fichiers communs\Real
[11/05/2007|21:43] C:\Program Files\Fichiers communs\ScanSoft Shared
[13/11/2006|09:42] C:\Program Files\Fichiers communs\Services
[13/09/2007|09:07] C:\Program Files\Fichiers communs\Skype
[31/08/2008|11:28] C:\Program Files\Fichiers communs\SourceTec
[13/11/2006|10:37] C:\Program Files\Fichiers communs\SpeechEngines
[22/12/2006|20:32] C:\Program Files\Fichiers communs\Symantec Shared
[22/08/2008|16:47] C:\Program Files\Fichiers communs\System
[07/12/2006|19:58] C:\Program Files\Fichiers communs\Vbox
[13/05/2008|08:19] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/11/2007|22:34] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 15 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\Dora\LOCALS~1\Temp\nst17.tmp
C:\DOCUME~1\Dora\Cookies\dora@advertstream[1].txt
C:\DOCUME~1\Dora\Cookies\dora@advertising[1].txt
C:\DOCUME~1\Dora\Cookies\dora@banner.cotedazurpalace[2].txt
C:\DOCUME~1\Dora\Cookies\dora@cotedazurpalace[1].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-28 08:36:31
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 67
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:84][D:545]-> C:\DOCUME~1\Dora\LOCALS~1\Temp
[F:861][D:0]-> C:\DOCUME~1\Dora\Cookies
[F:19864][D:56]-> C:\DOCUME~1\Dora\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 27/09/2008|17:43 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 28/09/2008| 8:37 - Option : [1]
--------------------\\ Fin du rapport a 8:37:56
ok, j'avais vraiment besoin de l'ordi, donc j'ai un peu tout essayé, mais maintenant que j'ai réussit a finir mes recherches, et a imprimmer mon dossier, j'arrète d'essayer tout et n'importe quoi ;-)
Le rapport de malware est en deux fois car je l'ai lancé hier soir, mais j'ai pas eu le temps de le finir, donc je l'ai arrété, j'ai enlevé les fichiers qu'il avait trouvé (27) et j'ai recommencé ce matin, donc voila le premier rapport, et je te mets le deuxième dans un post different, pour la lisibilité.
Par contre: ma session fontionne bien, mais la session de mon copain, spybot y trouve toujours ce fichu virtumonde... je pensais qu'en desinfectant l'ordi à partir de ma session, ca desinfecterait toutes les sessions, je le trompes? Est ce qu'il faut que je lance les programmes comme smitfraudfix, lop S&D, etc de toutes les sessions a chaque fois?
Malwarebytes' Anti-Malware 1.28
Version de la base de données: 1134
Windows 5.1.2600 Service Pack 3
27/09/2008 21:12:37
mbam-log-2008-09-27 (21-12-37).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 46856
Temps écoulé: 8 minute(s), 59 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 1
Clé(s) du Registre infectée(s): 14
Valeur(s) du Registre infectée(s): 3
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 7
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\WINDOWS\system32\vtUnMfGY.dll (Trojan.Vundo.H) -> Delete on reboot.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{376efd74-7aa4-44a4-9e39-e374ed3139a9} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ddcarqoo (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{376efd74-7aa4-44a4-9e39-e374ed3139a9} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ed5c97b4-aa68-476c-9417-60609c571e87} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{ed5c97b4-aa68-476c-9417-60609c571e87} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{641264E0-E065-832E-EA53-04402133D3BB} (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\popcaploader.popcaploaderctrl2 (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\c:/windows/downloaded program files/popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{c9c5deaf-0a1f-4660-8279-9edfad6fefe1} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e4e3e0f8-cd30-4380-8ce9-b96904bdefca} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{fe8a736f-4124-4d9c-b4b1-3b12381efabe} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{df780f87-ff2b-4df8-92d0-73db16a1543a} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{df780f87-ff2b-4df8-92d0-73db16a1543a} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\popcaploader.popcaploaderctrl2.1 (Adware.PopCap) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\infoenweb (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\bryenfvi5l (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\WINDOWS\Downloaded Program Files\popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\vtunmfgy -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\vtunmfgy -> Delete on reboot.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\WINDOWS\system32\ddcArqoo.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\vtUnMfGY.dll (Trojan.Vundo.H) -> Delete on reboot.
C:\WINDOWS\system32\YGfMnUtv.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\YGfMnUtv.ini2 (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\Program Files\emcxicc\infoenweb.dll (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\sxsvodat\shsjapwf.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\WINDOWS\Downloaded Program Files\popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
Le rapport de malware est en deux fois car je l'ai lancé hier soir, mais j'ai pas eu le temps de le finir, donc je l'ai arrété, j'ai enlevé les fichiers qu'il avait trouvé (27) et j'ai recommencé ce matin, donc voila le premier rapport, et je te mets le deuxième dans un post different, pour la lisibilité.
Par contre: ma session fontionne bien, mais la session de mon copain, spybot y trouve toujours ce fichu virtumonde... je pensais qu'en desinfectant l'ordi à partir de ma session, ca desinfecterait toutes les sessions, je le trompes? Est ce qu'il faut que je lance les programmes comme smitfraudfix, lop S&D, etc de toutes les sessions a chaque fois?
Malwarebytes' Anti-Malware 1.28
Version de la base de données: 1134
Windows 5.1.2600 Service Pack 3
27/09/2008 21:12:37
mbam-log-2008-09-27 (21-12-37).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 46856
Temps écoulé: 8 minute(s), 59 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 1
Clé(s) du Registre infectée(s): 14
Valeur(s) du Registre infectée(s): 3
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 7
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\WINDOWS\system32\vtUnMfGY.dll (Trojan.Vundo.H) -> Delete on reboot.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{376efd74-7aa4-44a4-9e39-e374ed3139a9} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ddcarqoo (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{376efd74-7aa4-44a4-9e39-e374ed3139a9} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ed5c97b4-aa68-476c-9417-60609c571e87} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{ed5c97b4-aa68-476c-9417-60609c571e87} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{641264E0-E065-832E-EA53-04402133D3BB} (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\popcaploader.popcaploaderctrl2 (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\c:/windows/downloaded program files/popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{c9c5deaf-0a1f-4660-8279-9edfad6fefe1} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e4e3e0f8-cd30-4380-8ce9-b96904bdefca} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{fe8a736f-4124-4d9c-b4b1-3b12381efabe} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{df780f87-ff2b-4df8-92d0-73db16a1543a} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{df780f87-ff2b-4df8-92d0-73db16a1543a} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\popcaploader.popcaploaderctrl2.1 (Adware.PopCap) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\infoenweb (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\bryenfvi5l (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\WINDOWS\Downloaded Program Files\popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\vtunmfgy -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\vtunmfgy -> Delete on reboot.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\WINDOWS\system32\ddcArqoo.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\vtUnMfGY.dll (Trojan.Vundo.H) -> Delete on reboot.
C:\WINDOWS\system32\YGfMnUtv.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\YGfMnUtv.ini2 (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\Program Files\emcxicc\infoenweb.dll (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\sxsvodat\shsjapwf.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\WINDOWS\Downloaded Program Files\popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
ok, j'avais vraiment besoin de l'ordi, donc j'ai un peu tout essayé, mais maintenant que j'ai réussit a finir mes recherches, et a imprimmer mon dossier, j'arrète d'essayer tout et n'importe quoi ;-)
Le rapport de malware est en deux fois car je l'ai lancé hier soir, mais j'ai pas eu le temps de le finir, donc je l'ai arrété, j'ai enlevé les fichiers qu'il avait trouvé (27) et j'ai recommencé ce matin, donc voila le premier rapport, et je te mets le deuxième dans un post different, pour la lisibilité.
Par contre: ma session fontionne bien, mais la session de mon copain, spybot y trouve toujours ce fichu virtumonde... je pensais qu'en desinfectant l'ordi à partir de ma session, ca desinfecterait toutes les sessions, je le trompes? Est ce qu'il faut que je lance les programmes comme smitfraudfix, lop S&D, etc de toutes les sessions a chaque fois?
Malwarebytes' Anti-Malware 1.28
Version de la base de données: 1134
Windows 5.1.2600 Service Pack 3
27/09/2008 21:12:37
mbam-log-2008-09-27 (21-12-37).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 46856
Temps écoulé: 8 minute(s), 59 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 1
Clé(s) du Registre infectée(s): 14
Valeur(s) du Registre infectée(s): 3
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 7
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\WINDOWS\system32\vtUnMfGY.dll (Trojan.Vundo.H) -> Delete on reboot.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{376efd74-7aa4-44a4-9e39-e374ed3139a9} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ddcarqoo (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{376efd74-7aa4-44a4-9e39-e374ed3139a9} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ed5c97b4-aa68-476c-9417-60609c571e87} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{ed5c97b4-aa68-476c-9417-60609c571e87} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{641264E0-E065-832E-EA53-04402133D3BB} (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\popcaploader.popcaploaderctrl2 (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\c:/windows/downloaded program files/popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{c9c5deaf-0a1f-4660-8279-9edfad6fefe1} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e4e3e0f8-cd30-4380-8ce9-b96904bdefca} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{fe8a736f-4124-4d9c-b4b1-3b12381efabe} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{df780f87-ff2b-4df8-92d0-73db16a1543a} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{df780f87-ff2b-4df8-92d0-73db16a1543a} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\popcaploader.popcaploaderctrl2.1 (Adware.PopCap) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\infoenweb (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\bryenfvi5l (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\WINDOWS\Downloaded Program Files\popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\vtunmfgy -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\vtunmfgy -> Delete on reboot.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\WINDOWS\system32\ddcArqoo.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\vtUnMfGY.dll (Trojan.Vundo.H) -> Delete on reboot.
C:\WINDOWS\system32\YGfMnUtv.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\YGfMnUtv.ini2 (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\Program Files\emcxicc\infoenweb.dll (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\sxsvodat\shsjapwf.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\WINDOWS\Downloaded Program Files\popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
Le rapport de malware est en deux fois car je l'ai lancé hier soir, mais j'ai pas eu le temps de le finir, donc je l'ai arrété, j'ai enlevé les fichiers qu'il avait trouvé (27) et j'ai recommencé ce matin, donc voila le premier rapport, et je te mets le deuxième dans un post different, pour la lisibilité.
Par contre: ma session fontionne bien, mais la session de mon copain, spybot y trouve toujours ce fichu virtumonde... je pensais qu'en desinfectant l'ordi à partir de ma session, ca desinfecterait toutes les sessions, je le trompes? Est ce qu'il faut que je lance les programmes comme smitfraudfix, lop S&D, etc de toutes les sessions a chaque fois?
Malwarebytes' Anti-Malware 1.28
Version de la base de données: 1134
Windows 5.1.2600 Service Pack 3
27/09/2008 21:12:37
mbam-log-2008-09-27 (21-12-37).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 46856
Temps écoulé: 8 minute(s), 59 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 1
Clé(s) du Registre infectée(s): 14
Valeur(s) du Registre infectée(s): 3
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 7
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\WINDOWS\system32\vtUnMfGY.dll (Trojan.Vundo.H) -> Delete on reboot.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{376efd74-7aa4-44a4-9e39-e374ed3139a9} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ddcarqoo (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{376efd74-7aa4-44a4-9e39-e374ed3139a9} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ed5c97b4-aa68-476c-9417-60609c571e87} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{ed5c97b4-aa68-476c-9417-60609c571e87} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{641264E0-E065-832E-EA53-04402133D3BB} (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\popcaploader.popcaploaderctrl2 (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\c:/windows/downloaded program files/popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{c9c5deaf-0a1f-4660-8279-9edfad6fefe1} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e4e3e0f8-cd30-4380-8ce9-b96904bdefca} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{fe8a736f-4124-4d9c-b4b1-3b12381efabe} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{df780f87-ff2b-4df8-92d0-73db16a1543a} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{df780f87-ff2b-4df8-92d0-73db16a1543a} (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\popcaploader.popcaploaderctrl2.1 (Adware.PopCap) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\infoenweb (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\bryenfvi5l (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\WINDOWS\Downloaded Program Files\popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\vtunmfgy -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\vtunmfgy -> Delete on reboot.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\WINDOWS\system32\ddcArqoo.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\vtUnMfGY.dll (Trojan.Vundo.H) -> Delete on reboot.
C:\WINDOWS\system32\YGfMnUtv.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\YGfMnUtv.ini2 (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\Program Files\emcxicc\infoenweb.dll (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\sxsvodat\shsjapwf.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\WINDOWS\Downloaded Program Files\popcaploader.dll (Adware.PopCap) -> Quarantined and deleted successfully.
mince, je m'apercois que je fais des doublons, je ne sais pas trop pourquoi... en tout cas, voila le rapport de ce matin, ensuite je télécharge hitjack, je fais un scan et je t'envois le rapport.
Malwarebytes' Anti-Malware 1.28
Version de la base de données: 1134
Windows 5.1.2600 Service Pack 3
28/09/2008 08:22:01
mbam-log-2008-09-28 (08-22-01).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 209723
Temps écoulé: 37 minute(s), 4 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 423
Fichier(s) infecté(s): 109
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\VSPlugin (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yurf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur6.exe (Trojan.Agent) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
C:\Casino (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\aroundtheworld (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\aroundtheworld\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\aroundtheworld\windows (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\baccarat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\baccarat_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\cocktail (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\colors (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\firstlast (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\jackpot (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\numbers (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\sixth (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\steps (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\total (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_duel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_duel\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_pontoon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_progressive (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_progressive\gold_dark (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_switch (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\bonusbowling (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\bonusbowling\anim (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\bonusbowling\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\casinowar (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\craps (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\craps\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts\texts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\dicetwister (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\dicetwister\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo\cards (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo\jackpot (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\headsortails (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\headsortails\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\headsortails\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\info (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\stadium (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\start (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\tables (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\texts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby\gameicon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby\ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby\login (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby\menu (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\mahjong (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\mahjong\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\mahjong\paytable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\mahjong\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\mahjong\window_win (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\components (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\gems (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\minigames (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\yokoku (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\penaltyshootout (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\penaltyshootout\anims (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\penaltyshootout\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\penaltyshootout\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_3card (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_caribbean (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_holdem (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_letthemride (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_paigow (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_tequila (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\popbingo (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\popbingo\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\reddog (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rockpaperscissors (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rockpaperscissors\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rockpaperscissors\info (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rockpaperscissors\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rollercoasterdice (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rollercoasterdice\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rollercoasterdice\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rollercoasterdice\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette\zoom (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette00 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette00\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette00\zoom (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette_mini (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette_mini\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette_mini\future (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette_mini\future\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\3reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\3reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\5reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\9line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\blackjack (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\cards (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\cards\poker (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\cards\textures (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\cards\videopoker_multiline (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\coins (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\coins\tablecoins (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\dollarball (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\dollarball\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\doublescreen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\html (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\html\chat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\html\chat\emoticons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\interface (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\interface\chat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\interface\ui (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\slots_multispin (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\sounds\dealervoices (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\sounds\dealervoices\numbers (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\tablegames (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\tablegames\gold_dark (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\tablesigns (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\ui (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_4line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_4line\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_deuces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_multiline (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_multiline\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\sicbo (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\sicbo\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\sicbo_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_8ball (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_8ball\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_8ball_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alchemist (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alchemist\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alchemist\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alchemist\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alchemist\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\animations (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\bonus1 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\bonus2 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_amigos (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_amigos\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_amigos_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line\betlines (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_bermuda (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_bermuda\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_bermuda_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_bonusbears25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_bonusbears25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_captain (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_captain\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_captain\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_chinese8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_chinese8line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_chinese8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_chinese8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\bonus\select (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\bonus2 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\bonus2\select (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_crazy (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_crazy\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_crazy_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom3reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom3reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom3reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom3reel_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom3reel_xl\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom5reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom5reel_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom5reel_xl\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_desert20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_desert20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_desert20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_desert20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel\bonus\screen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_footballrules25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_footballrules25line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_footballrules25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_footballrules25line\sounds\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_footballrules25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_forestofwonders25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_forestofwonders25line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_forestofwonders25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_forestofwonders25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fountain (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fountain\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fountain_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fruitmania5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fruitmania5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fruitmania5reel\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fruitmania5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fruitmania5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gameball8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gameball8line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gameball8line\line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gameball8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gameball8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line\bonus\screen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_golf (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_golf\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_golf\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_golf\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_haunted (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_haunted\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_haunted\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_haunted_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_haunted_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_highway (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_highway\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_highway\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_highway\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_jungle (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_jungle\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_jungle_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_jungle_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lovemore20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lovemore20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lovemore20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_monkey (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_monkey\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_monkey_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_monkey_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_neptune (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_neptune\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_neptune_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_neptune_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_nightout20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_nightout20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_nightout20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_nightout20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ocean (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ocean\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ocean\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ocean\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ocean\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_party (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_party\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_party_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_party_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_planet8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_planet8line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_planet8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_pyramids9line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_pyramids9line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_pyramids9line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_pyramids9line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_rock (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_rock\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_rock\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_rock_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_rock_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_safecracker (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_safecracker\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_safecracker\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_safecracker\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_silver (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_silver\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_silver\dollarball (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_silver\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_silver\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million\animations (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million\betlines (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_sultan (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_sultan\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_sultan_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_sultan_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line\betlines (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\loading (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\payline (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_tropic (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_tropic\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_tropic\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_tropic\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_tropic\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_uggabugga (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_uggabugga\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_uggabugga\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_uggabugga\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ultimate8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ultimate8line\anim (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ultimate8line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ultimate8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ultimate8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_vacation8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_vacation8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_vacation8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wall5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wall5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wall5reel\bonus\select (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wall5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wall5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wanted25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wanted25line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wanted25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wanted25line\sounds\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wanted25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_whatscooking30line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_whatscooking30line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_whatscooking30line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_whatscooking30line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\spinawin (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\spinawin\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\spinawin\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial_wildviking (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial_wildviking\audio (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial_wildviking\images (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial_wildviking\swf (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial_wildviking\xml (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_10jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_10jacks\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_10orbetter (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_25aces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_25aces\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_4aces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_4deuceswild (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_4jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_50jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_50jacks\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_aces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_deuceswild (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_highlow (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_highlow\doublescreen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_joker (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_joker\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_megajacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\wildviking (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\wildviking\gold_dark (Adware.Casino) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
C:\System Volume Information\_restore{CC82CBDC-DF61-4B78-84D3-C43A60C72CBD}\RP634\A0100762.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CC82CBDC-DF61-4B78-84D3-C43A60C72CBD}\RP635\A0102325.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CC82CBDC-DF61-4B78-84D3-C43A60C72CBD}\RP635\A0102365.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ddcArqoo.dll.bak (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\rqRIbYpo.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\cactivex.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\casino.exe (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\casino.hlp (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\directsounddriver.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\gdigraphdriver.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\h264dec.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\nvssd450.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\replace.exe (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\unicows.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\_SetupCasino[1].exe (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\aroundtheworld.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\baccarat.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\baccaratln.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjackln.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_duel.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\bonusbowling.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\cashier.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\casinowar.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\common.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\craps.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\dicetwister.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\headsortails.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\loader.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\penaltyshootout.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pokergames.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\popbingo.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\reddog.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rockpaperscissors.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rollercoasterdice.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rouletteln.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulettemini.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\sicbo.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\sicboln.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slotmachines.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\solomahjong.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\spinawin.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopokers.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\wildviking.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts\fonts\vni-thufap1.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\descs.data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\horses.data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\jockeys.data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\owners.data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\trainers.data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x\fonts\bankgothicmdbt_14.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\pachinko_ballpath.ini (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\bankgothicmdbt_24.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\blackchancery90.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\boink_let_23.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\boink_let_32.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\fixedsysexcelsior20020.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\futurabdcnbt_18.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\futuramdbt_14.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\helveticaneueboldcond_15.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\helvetica_nbc18.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\impact_15.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\impact_19.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\kabelbd.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\kabelultbt.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\lcd2_17.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\lcd36.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\lithograph.fon (Adware.
Malwarebytes' Anti-Malware 1.28
Version de la base de données: 1134
Windows 5.1.2600 Service Pack 3
28/09/2008 08:22:01
mbam-log-2008-09-28 (08-22-01).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 209723
Temps écoulé: 37 minute(s), 4 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 423
Fichier(s) infecté(s): 109
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\VSPlugin (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yurf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur6.exe (Trojan.Agent) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
C:\Casino (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\aroundtheworld (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\aroundtheworld\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\aroundtheworld\windows (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\baccarat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\baccarat_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\cocktail (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\colors (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\firstlast (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\jackpot (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\numbers (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\sixth (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\steps (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls\tables\total (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_duel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_duel\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_pontoon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_progressive (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_progressive\gold_dark (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_switch (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\bonusbowling (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\bonusbowling\anim (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\bonusbowling\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\casinowar (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\craps (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\craps\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts\texts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\dicetwister (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\dicetwister\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo\cards (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo\jackpot (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\headsortails (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\headsortails\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\headsortails\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\info (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\stadium (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\start (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\tables (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\texts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby\gameicon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby\ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby\login (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby\menu (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\mahjong (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\mahjong\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\mahjong\paytable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\mahjong\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\mahjong\window_win (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\components (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\gems (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\minigames (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\yokoku (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\penaltyshootout (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\penaltyshootout\anims (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\penaltyshootout\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\penaltyshootout\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_3card (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_caribbean (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_holdem (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_letthemride (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_paigow (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\poker_tequila (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\popbingo (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\popbingo\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\reddog (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rockpaperscissors (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rockpaperscissors\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rockpaperscissors\info (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rockpaperscissors\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rollercoasterdice (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rollercoasterdice\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rollercoasterdice\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rollercoasterdice\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette\zoom (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette00 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette00\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette00\zoom (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette_mini (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette_mini\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette_mini\future (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette_mini\future\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\3reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\3reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\5reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\9line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\blackjack (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\cards (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\cards\poker (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\cards\textures (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\cards\videopoker_multiline (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\coins (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\coins\tablecoins (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\dollarball (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\dollarball\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\doublescreen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\html (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\html\chat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\html\chat\emoticons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\interface (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\interface\chat (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\interface\ui (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\slots_multispin (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\sounds\dealervoices (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\sounds\dealervoices\numbers (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\tablegames (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\tablegames\gold_dark (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\tablesigns (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\ui (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_4line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_4line\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_deuces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_multiline (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\videopoker_multiline\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\sicbo (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\sicbo\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\sicbo_ln (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_8ball (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_8ball\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_8ball_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alchemist (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alchemist\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alchemist\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alchemist\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alchemist\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\animations (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\bonus1 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\bonus2 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_alien25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_amigos (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_amigos\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_amigos_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line\betlines (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_beachlife20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_bermuda (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_bermuda\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_bermuda_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_bonusbears25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_bonusbears25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_captain (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_captain\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_captain\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_chinese8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_chinese8line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_chinese8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_chinese8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\bonus\select (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\bonus2 (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\bonus2\select (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_cinerama5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_crazy (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_crazy\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_crazy_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom3reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom3reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom3reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom3reel_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom3reel_xl\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom5reel_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom5reel_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_custom5reel_xl\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_desert20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_desert20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_desert20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_desert20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel\bonus\screen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_diamond5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_footballrules25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_footballrules25line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_footballrules25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_footballrules25line\sounds\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_footballrules25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_forestofwonders25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_forestofwonders25line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_forestofwonders25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_forestofwonders25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fountain (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fountain\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fountain_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fruitmania5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fruitmania5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fruitmania5reel\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fruitmania5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_fruitmania5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gameball8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gameball8line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gameball8line\line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gameball8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gameball8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_goblin\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line\bonus\screen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_gold8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_golf (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_golf\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_golf\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_golf\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_haunted (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_haunted\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_haunted\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_haunted_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_haunted_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_highway (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_highway\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_highway\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_highway\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_jungle (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_jungle\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_jungle_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_jungle_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lotto20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lovemore20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lovemore20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_lovemore20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_magic\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_monkey (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_monkey\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_monkey_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_monkey_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_neptune (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_neptune\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_neptune_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_neptune_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_nightout20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_nightout20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_nightout20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_nightout20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ocean (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ocean\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ocean\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ocean\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ocean\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_party (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_party\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_party_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_party_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_planet8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_planet8line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_planet8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_profits\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_pyramids9line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_pyramids9line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_pyramids9line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_pyramids9line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_rock (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_rock\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_rock\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_rock_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_rock_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_safecracker (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_safecracker\3d (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_safecracker\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_safecracker\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_silver (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_silver\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_silver\dollarball (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_silver\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_silver\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million\animations (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million\betlines (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_spin2million\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_sultan (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_sultan\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_sultan_xl (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_sultan_xl\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line\betlines (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line\bonusgame (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_take5million20line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\loading (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\payline (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_thrillseekers50line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_tropic (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_tropic\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_tropic\fonts (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_tropic\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_tropic\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_uggabugga (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_uggabugga\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_uggabugga\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_uggabugga\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ultimate8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ultimate8line\anim (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ultimate8line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ultimate8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_ultimate8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_vacation8line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_vacation8line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_vacation8line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wall5reel (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wall5reel\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wall5reel\bonus\select (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wall5reel\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wall5reel\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wanted25line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wanted25line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wanted25line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wanted25line\sounds\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_wanted25line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_whatscooking30line (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_whatscooking30line\bonus (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_whatscooking30line\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slots_whatscooking30line\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\spinawin (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\spinawin\buttons (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\spinawin\sounds (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial_wildviking (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial_wildviking\audio (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial_wildviking\images (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial_wildviking\swf (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial_wildviking\xml (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_10jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_10jacks\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_10orbetter (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_25aces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_25aces\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_4aces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_4deuceswild (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_4jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_50jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_50jacks\wintable (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_aces (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_deuceswild (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_highlow (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_highlow\doublescreen (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_jacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_joker (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_joker\animation (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopoker_megajacks (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\wildviking (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\wildviking\gold_dark (Adware.Casino) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
C:\System Volume Information\_restore{CC82CBDC-DF61-4B78-84D3-C43A60C72CBD}\RP634\A0100762.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CC82CBDC-DF61-4B78-84D3-C43A60C72CBD}\RP635\A0102325.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CC82CBDC-DF61-4B78-84D3-C43A60C72CBD}\RP635\A0102365.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ddcArqoo.dll.bak (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\rqRIbYpo.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\cactivex.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\casino.exe (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\casino.hlp (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\directsounddriver.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\gdigraphdriver.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\h264dec.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\nvssd450.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\replace.exe (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\unicows.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\_SetupCasino[1].exe (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\aroundtheworld.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\baccarat.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\baccaratln.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\balls.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjackln.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\blackjack_duel.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\bonusbowling.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\cashier.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\casinowar.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\common.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\craps.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\dicetwister.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\genieshilo.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\headsortails.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\loader.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\lobby.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\penaltyshootout.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pokergames.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\popbingo.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\reddog.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rockpaperscissors.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rollercoasterdice.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulette.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\rouletteln.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\roulettemini.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\sicbo.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\sicboln.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\slotmachines.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\solomahjong.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\spinawin.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\tutorial.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\videopokers.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\wildviking.dll (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\darts\fonts\vni-thufap1.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\descs.data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\horses.data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\jockeys.data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\owners.data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\horseracing\trainers.data (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\keno_x\fonts\bankgothicmdbt_14.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\pachinko\pachinko_ballpath.ini (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\bankgothicmdbt_24.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\blackchancery90.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\boink_let_23.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\boink_let_32.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\fixedsysexcelsior20020.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\futurabdcnbt_18.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\futuramdbt_14.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\helveticaneueboldcond_15.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\helvetica_nbc18.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\impact_15.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\impact_19.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\kabelbd.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\kabelultbt.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\lcd2_17.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\lcd36.fon (Adware.Casino) -> Quarantined and deleted successfully.
C:\Casino\Cote dAzur Palace Casino\data\shared\fonts\lithograph.fon (Adware.
Loreley
Si ce n'est pas déjà fait relance Malware et supprime les fichiers en quarantaine, ensuite les points de restauration :
- Panneau de configuration --> Système --> Restauration du système
cocher " Désactiver la restauration .... "
Ceci va supprimer les points de restauration existants et infectés
- Tu vas recréer un point de restauration propre.
Pour recréer un point de restauration :
Démarrer --> Programmes --> Accessoires --> Outils système --> Restauration système
Choisis "Créer un point de restauration". Suis les invites.
et reboot ta machine pour terminer la désinfection Malware.
Normalement les problèmes ne devraient plus apparaitre quelle que soit la session, choisi une session différente de la tienne et tiens moi au courant.
@ +
Si ce n'est pas déjà fait relance Malware et supprime les fichiers en quarantaine, ensuite les points de restauration :
- Panneau de configuration --> Système --> Restauration du système
cocher " Désactiver la restauration .... "
Ceci va supprimer les points de restauration existants et infectés
- Tu vas recréer un point de restauration propre.
Pour recréer un point de restauration :
Démarrer --> Programmes --> Accessoires --> Outils système --> Restauration système
Choisis "Créer un point de restauration". Suis les invites.
et reboot ta machine pour terminer la désinfection Malware.
Normalement les problèmes ne devraient plus apparaitre quelle que soit la session, choisi une session différente de la tienne et tiens moi au courant.
@ +
ok, je vais faire ca, en attendant, je te met le rapport hijackthis que j'ai plus eu le temps de mettre tout à l'heure. Je te tiens informé.
Merci de ton aide!!!!!
Merci de ton aide!!!!!
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:52:09, on 28/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\arservice.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\ARPWRMSG.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\WINDOWS\system32\bgsmsnd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.erog.fr/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {376EFD74-7AA4-44A4-9E39-E374ED3139A9} - (no file)
O2 - BHO: (no name) - {517CECB0-9112-4963-A15A-AF69C88C4C74} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: pdfMachine - {56CF4856-ECB4-4e46-A897-A378821F97B9} - C:\WINDOWS\system32\bgstb.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: (no name) - {EC8B2BD1-8915-41F2-80AC-DF1609DBD0F6} - (no file)
O2 - BHO: (no name) - {F651F0C7-057A-4D0D-A9D5-9FC2EE283400} - (no file)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O3 - Toolbar: pdfMachine - {56CF4856-ECB4-4e46-A897-A378821F97B9} - C:\WINDOWS\system32\bgstb.dll
O3 - Toolbar: peltodgx - {BAB8F6DC-41B1-440F-A066-AAC224906880} - C:\WINDOWS\peltodgx.dll (file missing)
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [AlwaysReady Power Message APP] ARPWRMSG.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
O4 - HKLM\..\Run: [Muscbrigade] c:\Musicbrigade\Musicbrigade.exe check
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [Blubster] C:\Program Files\Blubster\Blubster.exe SILENT
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [bgsmsnd.exe] C:\WINDOWS\system32\bgsmsnd.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [\YUR6.exe] C:\Windows\system32\YUR6.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-21-3170308123-602024452-957631965-1007\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Johan')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Internet Cleaner - {45819E58-6E84-4A5D-BD65-A706981E5BE8} - C:\Program Files\Internet Cleaner\ICleaner.exe (HKCU)
O9 - Extra 'Tools' menuitem: Internet Cleaner - {45819E58-6E84-4A5D-BD65-A706981E5BE8} - C:\Program Files\Internet Cleaner\ICleaner.exe (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O21 - SSODL: rwlfsdmk - {934C74EE-EE7A-472F-A9DF-C4103C71C2B3} - C:\WINDOWS\rwlfsdmk.dll (file missing)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
Scan saved at 19:52:09, on 28/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\arservice.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\ARPWRMSG.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\WINDOWS\system32\bgsmsnd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.erog.fr/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {376EFD74-7AA4-44A4-9E39-E374ED3139A9} - (no file)
O2 - BHO: (no name) - {517CECB0-9112-4963-A15A-AF69C88C4C74} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: pdfMachine - {56CF4856-ECB4-4e46-A897-A378821F97B9} - C:\WINDOWS\system32\bgstb.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: (no name) - {EC8B2BD1-8915-41F2-80AC-DF1609DBD0F6} - (no file)
O2 - BHO: (no name) - {F651F0C7-057A-4D0D-A9D5-9FC2EE283400} - (no file)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O3 - Toolbar: pdfMachine - {56CF4856-ECB4-4e46-A897-A378821F97B9} - C:\WINDOWS\system32\bgstb.dll
O3 - Toolbar: peltodgx - {BAB8F6DC-41B1-440F-A066-AAC224906880} - C:\WINDOWS\peltodgx.dll (file missing)
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [AlwaysReady Power Message APP] ARPWRMSG.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
O4 - HKLM\..\Run: [Muscbrigade] c:\Musicbrigade\Musicbrigade.exe check
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [Blubster] C:\Program Files\Blubster\Blubster.exe SILENT
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [bgsmsnd.exe] C:\WINDOWS\system32\bgsmsnd.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [\YUR6.exe] C:\Windows\system32\YUR6.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-21-3170308123-602024452-957631965-1007\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Johan')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Internet Cleaner - {45819E58-6E84-4A5D-BD65-A706981E5BE8} - C:\Program Files\Internet Cleaner\ICleaner.exe (HKCU)
O9 - Extra 'Tools' menuitem: Internet Cleaner - {45819E58-6E84-4A5D-BD65-A706981E5BE8} - C:\Program Files\Internet Cleaner\ICleaner.exe (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O21 - SSODL: rwlfsdmk - {934C74EE-EE7A-472F-A9DF-C4103C71C2B3} - C:\WINDOWS\rwlfsdmk.dll (file missing)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
Lorey,
Télécharge Lop S&D.zip.
Dézippe-le sur ton Bureau uniquement.
Ouvre le dossier Lop S&D puis double-clique sur Scan.bat. Tape sur "R" puis valide en appuyant sur "Entrée".
Un rapport sera généré, poste son contenu ici.
Télécharge Lop S&D.zip.
Dézippe-le sur ton Bureau uniquement.
Ouvre le dossier Lop S&D puis double-clique sur Scan.bat. Tape sur "R" puis valide en appuyant sur "Entrée".
Un rapport sera généré, poste son contenu ici.
Loreley,
Il reste des saletés.
Commences par ceci :
Télécharges SmitfraudFix (de S!Ri, balltrap34 et moe31 ) :
http://siri.urz.free.fr/Fix/SmitfraudFix.exe
!! Déconnectes toi, fermes toute tes applications et désactives tes défenses ( anti-virus ,anti-spyware,...) le temps de la manipe !!
Installes le soft à la racine de C\ ( et pas ailleurs! --->"C\:SmitfraudFix.exe" ) .
Tuto ( aide ) : http://siri.urz.free.fr/Fix/SmitfraudFix.php
Utilisation ---> option 1 / Recherche :
Double clique sur l'icône "Smitfraudfix.exe" et sélectionnes 1 (et pas sur autre chose sans notre accord !) pour créer un rapport des fichiers responsables de l'infection.
Postes le rapport ( "rapport.txt" qui se trouve sous C\: ) et attends la suite .
(Attention : "process.exe" ( un composant de l'outil ) est détecté par certains antivirus comme étant un RiskTool. Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus. Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité.)
@ +
Il reste des saletés.
Commences par ceci :
Télécharges SmitfraudFix (de S!Ri, balltrap34 et moe31 ) :
http://siri.urz.free.fr/Fix/SmitfraudFix.exe
!! Déconnectes toi, fermes toute tes applications et désactives tes défenses ( anti-virus ,anti-spyware,...) le temps de la manipe !!
Installes le soft à la racine de C\ ( et pas ailleurs! --->"C\:SmitfraudFix.exe" ) .
Tuto ( aide ) : http://siri.urz.free.fr/Fix/SmitfraudFix.php
Utilisation ---> option 1 / Recherche :
Double clique sur l'icône "Smitfraudfix.exe" et sélectionnes 1 (et pas sur autre chose sans notre accord !) pour créer un rapport des fichiers responsables de l'infection.
Postes le rapport ( "rapport.txt" qui se trouve sous C\: ) et attends la suite .
(Attention : "process.exe" ( un composant de l'outil ) est détecté par certains antivirus comme étant un RiskTool. Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus. Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité.)
@ +