Processus et pb framedyn.dll

Merci Michel Latouffe pour ta réponse.
Comme conseillé, je crée un post.
J'ai bien télécharger spybot serach and destroy, mais lors de l'exécution j'ai un probleme: fichier framedyn.dll introuvable.

Si quelqu'un pouvait m'indiquer comment restaurer cet dll sachant que je n'ai pas de cd windows install et que la restauration du système ne fonctionne pas non plus a cause de ce problème.

Merci d'avance

25 réponses

Résumé de la discussion

Problème récurrent lors de l’utilisation de Spybot Search and Destroy : un fichier framedyn.dll introuvable empêche l’exécution et complique la restauration du système sans CD d’installation. Des échanges détaillent des outils de détection et de suppression, comme HijackThis, Look2Me-Destroyer et Ewido, pour identifier et éliminer les infections multiples telles que Look2Me et d’autres composants indésirables. Plusieurs messages proposent des procédures pas à pas, incluant l’exécution d’outils en mode tâche, l’analyse de rapports HijackThis et la suppression de processus et services signalés comme manquants ou suspects. En cas d infection persistante, des conseils portent sur la vérification des services avec file missing et sur l’importance d’imprimer les instructions pour guider le processus de nettoyage.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    De rien,

    bonne continuation

    A+
    0
    1. Ok merci pr ton aide Regis

      A+
      0
      1. Contributeur sécurité
        Salut

        Ok c est mieux

        Pour les services, j en vois que 2:

        celui ci
        O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)

        et kaspersky !

        Le premier tu peux le desactiver si tu veux, pas grande utilité.

        A+
        0
        1. J'ai fait ce que tu m'as dit et voila le rapport:

          Logfile of HijackThis v1.99.1
          Scan saved at 14:21:58, on 24/07/2006
          Platform: Windows XP (WinNT 5.01.2600)
          MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

          Running processes:
          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\system32\spoolsv.exe
          C:\WINDOWS\Explorer.EXE
          C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
          C:\WINDOWS\System32\CTsvcCDA.EXE
          C:\Program Files\ewido anti-spyware 4.0\guard.exe
          C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
          C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
          C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
          C:\WINDOWS\System32\nvsvc32.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\System32\MsPMSPSv.exe
          C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
          C:\WINDOWS\System32\rundll32.exe
          C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
          C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
          C:\Hijackthis\HijackThis.exe

          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
          F2 - REG:system.ini: UserInit=userinit.exe
          O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
          O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
          O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
          O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
          O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
          O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
          O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
          O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
          O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
          O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
          O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
          O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
          O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
          O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
          O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
          O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
          O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
          O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)
          O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing)
          O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
          O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
          O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing)
          O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
          O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
          O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

          Il me semble que le service lsass est désactivé meme si je n'ai pas pu le trouvé ds C:\windows.

          T'u as vu tous les services avec file missing, je peux les désactiver et les supprimer non?

          A+
          0
          1. Contributeur sécurité
            Re,

            OUi en effet,

            Fixe ceci
            O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\lsass.exe (file missing)

            Supprime
            C:\WINDOWS\lsass.exe

            ¤Arrête ces services :

            Clique sur Démarrer->exécuter->tape: services.msc

            Double-clique: Service: Local Security Authority Subsystem Service

            Règle-le sur "Arrêté" et "Désactivé".

            Redemarre et verifie qu il n y est plus

            a+
            0
            1. Slt

              Ok voila le rapport Hijack:

              Logfile of HijackThis v1.99.1
              Scan saved at 11:23:42, on 24/07/2006
              Platform: Windows XP (WinNT 5.01.2600)
              MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\Explorer.EXE
              C:\WINDOWS\system32\spoolsv.exe
              C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
              C:\WINDOWS\System32\CTsvcCDA.EXE
              C:\Program Files\ewido anti-spyware 4.0\guard.exe
              C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
              C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
              C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
              C:\WINDOWS\System32\nvsvc32.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\System32\MsPMSPSv.exe
              C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
              C:\WINDOWS\System32\rundll32.exe
              C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
              C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
              C:\Program Files\Winamp\winamp.exe
              C:\Program Files\Crazy Browser\Crazy Browser.exe
              C:\Program Files\MSN Messenger\msnmsgr.exe
              C:\Hijackthis\HijackThis.exe

              R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
              F2 - REG:system.ini: UserInit=userinit.exe
              O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
              O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
              O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
              O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
              O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
              O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
              O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
              O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
              O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
              O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
              O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
              O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
              O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
              O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
              O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
              O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
              O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
              O17 - HKLM\System\CCS\Services\Tcpip\..\{76F3BC01-0477-40B4-9531-A9E6EBD12330}: NameServer = 86.64.145.145 84.103.237.145
              O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
              O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)
              O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing)
              O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
              O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
              O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing)
              O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
              O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\lsass.exe (file missing)
              O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
              O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

              A+
              0
              1. Contributeur sécurité
                Salut

                Excuse moi, j ai du oublié quelque chose, remet un hijack this pour que je verifie stp

                a+
                0
                1. Salut

                  Non plus de pubs. C nickel!!

                  Merci Regis pr ton aide

                  A+
                  0
                  1. Contributeur sécurité
                    Salut,

                    Tu n as plus de pubs?

                    Pour le faire seul, il faut apprendre.
                    Donner quelques astuces ne suffiront pas !
                    Si tu veux apprendre, tu peux t inscrire sur mon forum dont l adresse est dans mon profil, prochainement je vais donner des conseils, explications sur ce domaine de la desinfection.

                    Bonne soirée.
                    a+
                    0
                    1. slt Regis,

                      Désolé pr le rapport Hijackthis il me semblait que je l'avais mis. Le revoila:

                      Logfile of HijackThis v1.99.1
                      Scan saved at 17:54:19, on 22/07/2006
                      Platform: Windows XP (WinNT 5.01.2600)
                      MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

                      Running processes:
                      C:\WINDOWS\System32\smss.exe
                      C:\WINDOWS\system32\winlogon.exe
                      C:\WINDOWS\system32\services.exe
                      C:\WINDOWS\system32\lsass.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\WINDOWS\system32\spoolsv.exe
                      C:\WINDOWS\Explorer.EXE
                      C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                      C:\WINDOWS\System32\CTsvcCDA.EXE
                      C:\Program Files\ewido anti-spyware 4.0\guard.exe
                      C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
                      C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                      C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                      C:\WINDOWS\System32\nvsvc32.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\WINDOWS\System32\MsPMSPSv.exe
                      C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                      C:\WINDOWS\System32\rundll32.exe
                      C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                      C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                      C:\Program Files\Crazy Browser\Crazy Browser.exe
                      C:\Hijackthis\HijackThis.exe

                      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                      F2 - REG:system.ini: UserInit=userinit.exe
                      O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
                      O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
                      O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
                      O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
                      O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
                      O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
                      O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
                      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
                      O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                      O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
                      O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
                      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                      O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                      O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                      O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
                      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
                      O17 - HKLM\System\CCS\Services\Tcpip\..\{76F3BC01-0477-40B4-9531-A9E6EBD12330}: NameServer = 84.103.237.145 86.64.145.145
                      O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
                      O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)
                      O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing)
                      O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
                      O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
                      O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing)
                      O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                      O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\lsass.exe (file missing)
                      O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
                      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

                      Il n'ya plus la ligne 020 c'est que L2M a été effacé non?
                      Ca doit etre bon la non?

                      Au fait si t'as quelques tuyaux pour repérer les mauvais processus ou des astuces pour nettoyer mon PC, ce serait cool..

                      J'aimerais bien la prochaine fois essayer de le faire tt seul pr éviter d'embéter d'autres personnes.

                      Dis moi si ya encore des trucs a enlever maisca a leur d'etre bon.

                      Merci encore pr ton aide

                      A+
                      0
                      1. Contributeur sécurité
                        ok,

                        Peux tu remettre un HijackThis?

                        a+
                        0
                        1. Donc j'ai fait ce que tu mas dit.

                          Le rapport L2MDestroyer:

                          Look2Me-Destroyer V1.0.12

                          Scanning for infected files.....
                          Scan started at 21/07/2006 15:20:07

                          Infected! C:\WINDOWS\system32\mv4ql9h51.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056276.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056282.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056285.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056290.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056294.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056299.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057301.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057308.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057373.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057379.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057401.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057406.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057418.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057427.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057433.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057439.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057444.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057450.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057455.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057478.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057487.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057493.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058492.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058497.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058506.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058511.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058536.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058542.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058547.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058551.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058556.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058560.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058565.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058569.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058589.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058594.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058612.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058622.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058628.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058633.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058639.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058644.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058648.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058654.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058681.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058690.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058696.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058702.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058708.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058711.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058717.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058723.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058729.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058733.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058739.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058745.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058750.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058754.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058760.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058769.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058775.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058780.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058786.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059785.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059790.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059795.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059799.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059808.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059814.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059823.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059830.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059834.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059840.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059846.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059851.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059854.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059859.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060858.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060861.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060866.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060870.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060875.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060879.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060905.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060910.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060918.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060923.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060929.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060935.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060940.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060946.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060984.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060989.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060993.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0061028.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061034.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061072.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061079.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061088.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061097.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061156.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061207.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061213.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061235.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062255.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062291.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062297.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063314.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063319.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063325.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063337.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063364.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063369.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063375.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063380.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064379.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064386.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064437.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064443.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064450.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064458.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064474.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064480.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064494.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064500.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064506.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064511.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064516.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064522.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065516.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065525.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065531.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065537.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065545.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065551.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065559.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065568.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065574.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065580.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065585.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066580.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066586.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066588.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066593.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066595.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066601.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066606.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066610.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066623.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066627.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066634.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066639.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066648.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066654.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066666.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066673.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066680.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066686.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066697.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066703.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066709.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066715.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066721.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066733.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066744.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0067733.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0067740.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0067745.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP88\A0067754.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP88\A0067763.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP88\A0067769.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP88\A0068763.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068776.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068781.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068787.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068793.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068798.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068802.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068808.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068825.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068830.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068842.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068848.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068855.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068861.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068868.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068873.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068903.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068908.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068915.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068920.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068924.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068929.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068933.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068941.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068945.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068951.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068960.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068978.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068987.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068992.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0069003.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0069008.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0070015.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0070021.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0070027.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0070031.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0070036.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0071031.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0071037.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0072054.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0072060.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0072067.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0072076.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0072086.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0073094.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074086.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074092.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074114.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074119.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074126.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074131.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075126.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075131.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075393.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075399.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075404.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075413.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075505.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075511.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075520.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075530.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075535.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075543.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075548.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075551.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075559.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075564.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075567.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075572.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075577.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075583.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075595.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075596.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075597.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075600.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075601.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075602.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075603.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075604.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075605.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075606.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075607.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075608.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075609.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075610.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075611.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075612.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075613.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075614.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075615.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075616.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075617.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075618.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075619.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075620.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075621.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075622.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075623.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075624.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075625.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075626.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075627.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075628.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075629.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075630.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075631.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075632.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075633.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075634.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075635.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075636.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075637.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075638.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075639.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075640.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075641.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075642.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075643.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075644.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075645.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075646.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075648.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075649.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075650.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075651.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075653.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075654.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075655.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075656.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075657.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075658.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075659.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075660.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075661.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075662.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075663.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075664.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075665.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075666.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075667.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075668.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075669.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075670.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075671.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075672.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075673.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075674.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075675.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075676.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075677.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075678.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075679.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075680.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075681.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075682.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075683.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075684.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075685.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075686.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075687.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075688.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075689.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075834.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075839.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075843.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075844.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075851.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075857.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075863.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075866.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075893.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075902.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075908.dll
                          Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075914.dll
                          Infected! C:\WINDOWS\system32\kjddv.dll
                          Infected! C:\WINDOWS\system32\mv4ql9h51.dll
                          Infected! C:\WINDOWS\system32\p0p60a7sed.dll
                          Infected! C:\WINDOWS\system32\rWsctrs.dll

                          Attempting to delete infected files...

                          Attempting to delete: C:\WINDOWS\system32\mv4ql9h51.dll
                          C:\WINDOWS\system32\mv4ql9h51.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056276.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056276.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056282.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056282.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056285.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056285.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056290.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056290.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056294.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056294.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056299.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056299.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057301.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057301.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057308.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057308.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057373.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057373.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057379.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057379.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057401.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057401.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057406.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057406.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057418.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057418.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057427.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057427.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057433.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057433.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057439.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057439.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057444.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057444.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057450.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057450.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057455.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057455.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057478.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057478.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057487.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057487.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057493.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057493.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058492.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058492.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058497.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058497.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058506.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058506.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058511.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058511.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058536.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058536.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058542.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058542.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058547.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058547.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058551.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058551.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058556.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058556.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058560.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058560.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058565.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058565.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058569.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058569.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058589.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058589.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058594.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058594.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058612.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058612.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058622.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058622.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058628.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058628.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058633.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058633.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058639.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058639.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058644.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058644.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058648.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058648.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058654.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058654.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058681.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058681.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058690.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058690.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058696.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058696.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058702.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058702.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058708.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058708.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058711.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058711.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058717.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058717.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058723.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058723.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058729.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058729.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058733.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058733.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058739.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058739.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058745.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058745.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058750.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058750.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058754.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058754.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058760.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058760.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058769.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058769.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058775.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058775.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058780.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058780.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058786.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058786.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059785.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059785.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059790.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059790.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059795.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059795.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059799.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059799.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059808.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059808.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059814.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059814.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059823.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059823.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059830.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059830.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059834.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059834.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059840.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059840.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059846.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059846.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059851.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059851.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059854.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059854.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059859.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059859.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060858.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060858.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060861.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060861.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060866.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060866.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060870.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060870.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060875.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060875.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060879.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060879.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060905.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060905.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060910.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060910.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060918.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060918.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060923.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060923.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060929.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060929.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060935.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060935.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060940.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060940.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060946.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060946.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060984.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060984.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060989.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060989.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060993.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060993.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0061028.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0061028.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061034.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061034.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061072.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061072.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061079.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061079.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061088.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061088.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061097.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061097.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061156.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061156.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061207.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061207.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061213.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061213.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061235.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061235.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062255.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062255.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062291.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062291.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062297.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062297.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063314.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063314.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063319.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063319.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063325.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063325.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063337.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063337.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063364.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063364.dll Deleted successfully!

                          Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063369.dll
                          C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063369.dll Deleted s
                          0
                          1. Contributeur sécurité
                            Salut

                            Oui normal, Look to me est toujours present:
                            O20 - Winlogon Notify: SMDEn - C:\WINDOWS\system32\h84m0ih1e84.dll

                            Alors, procedons comme ceci:

                            Prière d'imprimer ces instructions, ou de les coller dans un fichier texte, pour lecture durant ce fix. Regarde bien les trois petites notes au bas, avant de débuter.
                            Télécharge Look2Me-Destroyer.exe (par Atribune) sur ton Bureau.
                            http://www.atribune.org/ccount/click.php?id=7

                            Ferme toutes les fenêtres actives avant de passer à l'étape suivante.
                            • Double-clique Look2Me-Destroyer.exe afin de lancer l'outil.
                            • Coche Run this program as a task
                            • Un message s'affichera, te disant ceci : "Look2Me-Destroyer will close and re-open in approximately 10 seconds". Clique OK
                            • Il se relancera après les 10 secondes, puis clique sur le bouton Scan for L2M ; les icônes de ton Bureau vont disparaître : c'est normal.
                            • Lorsque le scan termine, clique sur le bouton Remove L2M
                            • Un message Done Scanning apparaîtra, clique OK.
                            • Un nouveau message s'affichera : Done removing infected files! Look2Me-Destroyer will now shutdown your computer ; clique OK.
                            • Ton PC va maintenant s'éteindre.
                            • Démarre ton PC normalement.
                            • Colle le rapport généré, situé ici : C:\Look2Me-Destroyer.txt , ainsi qu'un nouveau rapport HijackThis! dans ta prochaine réponse.
                            *Si Look2Me-Destroyer ne se relance pas automatiquement après les 10 secondes, redémarre et essaie à nouveau.

                            **Si tu reçois un message de ton parefeu que l'outil tente d'accéder à l'internet : accepte.

                            ***Si un message runtime error '339' s'affiche : télécharge MSWINSCK.OCX du lien ci-bas, et place-le dans le dossier C:\Windows\System32.
                            http://www.ascentive.com/support/new/images/lib/MSWINSCK.OCX
                            0
                            1. Re salut

                              Apres quelques minutes sur le net j'ai encor quelques pubs, moins qu'avant quand meme. Alors je sais pas si y a autre chose a faire.

                              Tiens moi o courant si tu vois..

                              A+
                              0
                              1. Salut

                                Bon j'ai fait tt ce que tu ma dit. Voila le rapport Hijackthis:

                                Logfile of HijackThis v1.99.1
                                Scan saved at 13:14:11, on 21/07/2006
                                Platform: Windows XP (WinNT 5.01.2600)
                                MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

                                Running processes:
                                C:\WINDOWS\System32\smss.exe
                                C:\WINDOWS\system32\winlogon.exe
                                C:\WINDOWS\system32\services.exe
                                C:\WINDOWS\system32\lsass.exe
                                C:\WINDOWS\system32\svchost.exe
                                C:\WINDOWS\System32\svchost.exe
                                C:\WINDOWS\system32\rundll32.exe
                                C:\WINDOWS\system32\spoolsv.exe
                                C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                                C:\WINDOWS\System32\CTsvcCDA.EXE
                                C:\Program Files\ewido anti-spyware 4.0\guard.exe
                                C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
                                C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                                C:\WINDOWS\System32\nvsvc32.exe
                                C:\WINDOWS\System32\svchost.exe
                                C:\WINDOWS\System32\MsPMSPSv.exe
                                C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                                C:\WINDOWS\Explorer.EXE
                                C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                                C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                                C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                                C:\WINDOWS\System32\rundll32.exe
                                C:\Hijackthis\HijackThis.exe

                                R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                                R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                                F2 - REG:system.ini: UserInit=userinit.exe
                                O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
                                O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
                                O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
                                O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
                                O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
                                O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
                                O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
                                O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
                                O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                                O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
                                O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
                                O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                                O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                                O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                                O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                                O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
                                O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
                                O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
                                O20 - Winlogon Notify: SMDEn - C:\WINDOWS\system32\h84m0ih1e84.dll
                                O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)
                                O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing)
                                O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
                                O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
                                O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing)
                                O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                                O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\lsass.exe (file missing)
                                O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
                                O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

                                Si tu vois des erreurs tiens moi o courant.

                                J'attends encore u n peu pour voir si j'ai encore des pubs.

                                Sinon encore merci pr ton aide.

                                A+
                                0
                                1. Contributeur sécurité
                                  Bonjour,

                                  Méthode à suivre dans l'ordre...

                                  désinstalle EmpirePoker
                                  -----------------------------------------
                                  ¤Télécharge ces logiciels mais que tu n‘utilises pas tout de suite:

                                  1/

                                  Spybot S&D 1.4
                                  https://www.safer-networking.org/

                                  Démo d’utilisation (merci à Balltrap34 pour cette réalisation).
                                  http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm

                                  2/

                                  Ad-Aware SE 1.06
                                  https://www.adaware.com/
                                  -Une aide:
                                  http://usa.lucretius-ada.com/zcvisitor/8782d344-4821-11ea-83ce-0a2cdf2c6be7?campaignid=0d1dff40-82d7-11e9-9533-0a157bfa6bfc
                                  - installe le patch français, tu pourras le trouver ici:
                                  http://download.lavasoft.de.edgesuite.net/public/pllangs.exe
                                  et une petite vidéo d'utilisation ici:(merci à Moe31 pour cette réalisation).
                                  http://pageperso.aol.fr/balltrap34/adawrevid.asf

                                  3/ Ewido:

                                  http://perso.orange.fr/entraide-hijackthis/Ewido/

                                  Installation puis mises à jour.

                                  4/ Ccleaner :

                                  https://www.pcastuces.com/logitheque/ccleaner.htm
                                  ----------------------------------------------------------------------------
                                  ¤Affiche tous les fichiers et dossiers :
                                  Clique sur démarrer/panneau de configuration/outil/option des dossiers/affichage

                                  Coche « afficher les fichiers et dossiers cachés »

                                  Décoche la case "Masquer les fichiers protégés du système d'exploitation (recommandé)"

                                  Décoche « masquer les extensions dont le type est connu »
                                  Puis fais «Ok» pour valider les changements.

                                  Et appliquer !
                                  ----------------------------------------------------------------------------
                                  ¤Relance HijackThis, coche les cases devant ces lignes et ensuite clique sur fix checked :

                                  O9 - Extra button: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing)

                                  O9 - Extra 'Tools' menuitem: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing)

                                  O20 - Winlogon Notify: H323TSP - C:\WINDOWS\system32\i2240cfqef2e0.dll

                                  ----------------------------------------------------------------------------
                                  ¤Démarre en mode sans échec :
                                  Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
                                  Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
                                  Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
                                  (Si F8 ne marche pas utilise la touche F5).
                                  ----------------------------------------------------------------------------
                                  ¤Recherche et supprime ceci:
                                  attention seulement les fichiers (si présents).

                                  C:\Program Files\EmpirePoker
                                  ----------------------------------------------------------------------------
                                  ¤ Lancer et exécuter Ewido pour un scan complet et copier/coller le rapport en forum.
                                  ----------------------------------------------------------------------------
                                  ¤ Passe Ad-Aware et supprime tout ce qu’il trouve + supprime les quarantaines…
                                  ----------------------------------------------------------------------------
                                  ¤ Passe Spybot et corrige tout ce qu’il trouve + vaccine + supprime les quarantaines…
                                  -------------------------------------------------------------------------------------------
                                  ¤ Lance CCleaner.

                                  Suppression des fichiers temporaires

                                  Va dans la section "Options" situé dans la marge gauche. Va dans "Avancé" et décoche "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures". Retourne ensuite dans la section "Nettoyeur"
                                  Fais bien attention de cocher toutes les cases dans la marge gauche (Internet Explorer/Windows Explorer/Système/Avancé)
                                  • Clique sur Analyse
                                  • Patiente le temps du scan, qui peut prendre un peu de temps si c'est la première fois.
                                  • Une fois le scan terminé, clique sur Lancer le Nettoyage

                                  Suppression des incohérence du registre

                                  • Clique sur l'icône Erreurs situés dans la marge à gauche.
                                  • Puis clique sur Analyser les erreurs
                                  • Patiente pendant que CCleaner scan ton registre.
                                  • Une fois le scan terminé, coche toutes les entrèes qu'il t'aura trouvée.
                                  • Tu peux cliquer ensuite sur Corriger les erreurs.
                                  Si tu n'est pas sur de ce que tu fais, tu peux choisir de sauvegarder les entrées cochées pour les restaurer ultérieurement
                                  ----------------------------------------------------------------------------
                                  ¤ Vide ta Corbeille.
                                  ----------------------------------------------------------------------------
                                  ¤ Redémarre en mode normal, relance Hijackthis et copie/colle un nouveau rapport sur le forum.

                                  Précise tes soucis s’il en reste....

                                  Tiens-moi au courant

                                  A+
                                  0
                                  1. Ok j'ai suivi ton conseil et j'ai supprimé Look2me.
                                    Je te montre le log de Hijackthis pour voir si c'est bon maintenant:

                                    Logfile of HijackThis v1.99.1
                                    Scan saved at 18:23:13, on 20/07/2006
                                    Platform: Windows XP (WinNT 5.01.2600)
                                    MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

                                    Running processes:
                                    C:\WINDOWS\System32\smss.exe
                                    C:\WINDOWS\system32\winlogon.exe
                                    C:\WINDOWS\system32\services.exe
                                    C:\WINDOWS\system32\lsass.exe
                                    C:\WINDOWS\system32\svchost.exe
                                    C:\WINDOWS\System32\svchost.exe
                                    C:\WINDOWS\system32\spoolsv.exe
                                    C:\WINDOWS\system32\rundll32.exe
                                    C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                                    C:\WINDOWS\System32\CTsvcCDA.EXE
                                    C:\Program Files\ewido anti-spyware 4.0\guard.exe
                                    C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
                                    C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                                    C:\WINDOWS\System32\nvsvc32.exe
                                    C:\WINDOWS\System32\svchost.exe
                                    C:\WINDOWS\System32\MsPMSPSv.exe
                                    C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                                    C:\WINDOWS\Explorer.EXE
                                    C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                                    C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                                    C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                                    C:\WINDOWS\System32\rundll32.exe
                                    C:\Hijackthis\HijackThis.exe

                                    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                                    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                                    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
                                    O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
                                    O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
                                    O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
                                    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
                                    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
                                    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
                                    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
                                    O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                                    O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
                                    O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
                                    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                                    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                                    O9 - Extra button: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing)
                                    O9 - Extra 'Tools' menuitem: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing)
                                    O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                                    O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                                    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
                                    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
                                    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
                                    O20 - Winlogon Notify: H323TSP - C:\WINDOWS\system32\i2240cfqef2e0.dll
                                    O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)
                                    O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing)
                                    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
                                    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
                                    O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing)
                                    O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                                    O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\lsass.exe (file missing)
                                    O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
                                    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

                                    Merci Regis

                                    A+
                                    0
                                    1. Contributeur sécurité
                                      Salut

                                      Tu as choisis de ne pas excuter d actions, peux tu relancer un scan et de supprimer cette fois.

                                      a+
                                      0
                                      1. J'ai finalement exécuter les actions recommandées par ewido.
                                        Mais lors de la mise en quarantaine de Look2Me, une erreur est marquée : Error while quarantaine.

                                        Il a pas du reussir a le supprimer... Que dois je faire?

                                        A+
                                        0
                                        1. J'ai lancé ton antispyware, voila le rapport:

                                          ---------------------------------------------------------
                                          ewido anti-spyware - Scan Report
                                          ---------------------------------------------------------

                                          + Created at: 14:08:55 20/07/2006

                                          + Scan result:

                                          C:\Downloads\Everest Poker.exe -> Adware.Casino : No action taken.
                                          C:\WINDOWS\system32\CYEMUPIADEFAULT.DLL -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\CaDetres.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\CzDetres.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\IkagXpr5.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\MFPRPFR.DLL -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\MIPI.DLL -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\amlui.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\awmeter.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\azao0193e.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\brdispl.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\c4000edmeh0a0.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\cJbview.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\ccmmdlg.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\chb.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\csyptui.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\cwprops.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\d8j02i1mg8.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\dalayx.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\decompos.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\demsadsn.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\dn0001dme.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\dnjm0111e.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\ehs.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\en0ql1d51.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\enjol1131.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\enn2l15o1.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\f00olad31d0.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\f2l00c3mef.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\fHl00c3mef.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\fQ0olad31d0.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\fklemgmt.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\fp4003hme.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\fp6003jme.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\g222lcfo1f2c.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\gp4ml3h11.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\gp68l3ju1.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\gpjol3131.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\gpr8l39u1.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\h24mlch11f4.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\h6l2lg3o16.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\hJ4mlch11f4.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\hmzcon04.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\hrr0059me.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\i2600cjmefoa0.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\iohlpapi.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\jt6u07j9e.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\k0800almedqa0.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\kjdblr.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\ktn8l75u1.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\ktrql7951.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\kxdtat.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\l4j80e1ueh.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\l6j80g1ue6.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\lFprxy.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\lckrn13n.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\mead.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\mjricons.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\mkc40.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\mkident.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\mlxml3.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\moident.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\mpiseq.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\mprtdep.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\mrprivs.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\mtrepl40.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\nbrspt.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\nuiew.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\nwrsel.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\o8luli3918.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\oje2disp.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\ponppagn.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\pprfctrs.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\pslstore.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\pwspl.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\pzlstore.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\rgr20.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\rtgwizc.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\sdcpack.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\sdofr.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\sllwoa.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\t2r8lc9u1f.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\tgcfgwmi.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\ttd32.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wbvcore.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wbweb.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wgnsta.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wivcore.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wknfax.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wrn32spl.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wtpdinfo.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wupui.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wvstream.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wxnrnr.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wxvdmod.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\wzbcheck.dll -> Adware.Look2Me : No action taken.
                                          C:\WINDOWS\system32\xdlehlp.dll -> Adware.Look2Me : No action taken.
                                          [1164] C:\WINDOWS\system32\aekctrs.dll -> Adware.Look2Me : No action taken.
                                          [2044] C:\WINDOWS\system32\aekctrs.dll -> Adware.Look2Me : No action taken.
                                          HKU\.DEFAULT\Software\DNS -> Adware.Shorty : No action taken.
                                          HKU\S-1-5-18\Software\DNS -> Adware.Shorty : No action taken.
                                          C:\WINDOWS\system32\ms32sgss.exe -> Backdoor.Rbot : No action taken.
                                          C:\WINDOWS\system32\TFTP1560 -> Backdoor.Rbot.aoe : No action taken.
                                          C:\WINDOWS\system32\__delete_on_reboot__m_s_p_r_e_x_e_._e_x_e_ -> Backdoor.Rbot.aoe : No action taken.
                                          C:\WINDOWS\__delete_on_reboot__l_s_a_s_s_._e_x_e_ -> Backdoor.SdBot.xd : No action taken.
                                          C:\WINDOWS\gimmygames11.exe -> Downloader.Adload.u : No action taken.
                                          C:\Program Files\Fichiers communs\orwq\orwqp.exe -> Downloader.TSUpdate.f : No action taken.
                                          C:\Program Files\Fichiers communs\orwq\orwqa.exe -> Downloader.TSUpdate.l : No action taken.
                                          C:\Program Files\Fichiers communs\orwq\orwqm.exe -> Downloader.TSUpdate.n : No action taken.
                                          C:\Program Files\Fichiers communs\orwq\orwql.exe -> Downloader.TSUpdate.p : No action taken.
                                          C:\Downloads\NERO 6.3.0.0 FR Pack 1-2-3-4-5 Complet et Keygen ( Burning ROM - Vision Express 2 - InCD - Media Player .zip/NERO 6.3.0.0 Pack 1-2-3-4-5 Complet et Keygen (Burning ROM-Vision Express 2-InCD-Media Player-NeroMix)/KEYGEN/NeroKey.exe -> Hijacker.StartPage.afh : No action taken.
                                          C:\Downloads\Nero\NERO 6.3.0.0 Pack 1-2-3-4-5 Complet et Keygen (Burning ROM-Vision Express 2-InCD-Media Player-NeroMix)\KEYGEN\NeroKey.exe -> Hijacker.StartPage.afh : No action taken.
                                          C:\mousepad.exe_tobedeleted -> Hijacker.VB.li : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@247realmedia[2].txt -> TrackingCookie.247realmedia : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@advertising[2].txt -> TrackingCookie.Advertising : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@estat[1].txt -> TrackingCookie.Estat : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.
                                          C:\Documents and Settings\fred home\Cookies\fred home@weborama[1].txt -> TrackingCookie.Weborama : No action taken.
                                          C:\WINDOWS\winsysupd11.exe -> Trojan.VB.ajo : No action taken.

                                          ::Report end

                                          Je fais les actions recommandées? T'as vu il y a un fichier de Hijack, je levire aussi?
                                          0
                                          • 1
                                          • 2