Processus et pb framedyn.dll

Merci Michel Latouffe pour ta réponse.
Comme conseillé, je crée un post.
J'ai bien télécharger spybot serach and destroy, mais lors de l'exécution j'ai un probleme: fichier framedyn.dll introuvable.

Si quelqu'un pouvait m'indiquer comment restaurer cet dll sachant que je n'ai pas de cd windows install et que la restauration du système ne fonctionne pas non plus a cause de ce problème.

Merci d'avance

25 réponses

Résumé de la discussion

Problème récurrent lors de l’utilisation de Spybot Search and Destroy : un fichier framedyn.dll introuvable empêche l’exécution et complique la restauration du système sans CD d’installation. Des échanges détaillent des outils de détection et de suppression, comme HijackThis, Look2Me-Destroyer et Ewido, pour identifier et éliminer les infections multiples telles que Look2Me et d’autres composants indésirables. Plusieurs messages proposent des procédures pas à pas, incluant l’exécution d’outils en mode tâche, l’analyse de rapports HijackThis et la suppression de processus et services signalés comme manquants ou suspects. En cas d infection persistante, des conseils portent sur la vérification des services avec file missing et sur l’importance d’imprimer les instructions pour guider le processus de nettoyage.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    Salut

    Pour l'instant, je ne vois que ce moyen:

    Erreur avec le fichier Framedyn.dll

    Restaurer le fichier Framedyn.dll à partir du CD d'installation d'XP ou du dossier windows\system32\dllcache, et l'enregistrer dans le dossier windows\system32\wbem.
    La meilleure procédure est d'utiliser l'utilitaire de configuration du système, par Démarrer/Exécuter... saisir msconfig. Sous l'onglet Général, cliquer sur le bouton "Extraire le fichier..." et compléter les champs. Le fichier d'origine se trouve dans le dossier i386 du CD d'installation.

    Vérifier que le chemin vers le dossier windows\system32\wbem figure dans la variable d'environnement système Path. Pour vérifier:
    Ouvrir les Propriétés du système par la séquence de touches Windows + Attn (Pause). Sous l'onglet Avancé, cliquer sur le bouton Variables d'environnement. Si nécessaire, compléter la variable en ajoutant ;%SystemRoot%\system32\wbem" (sans espace avant et après le point-virgule " ; ").
    Si l'erreur persiste, copier le fichier Framedyn.dll dans les dossiers windows\system32 et windows\system32\restore.

    A+
    0
    1. Merci pr ton aide regis59

      J'ai mis un peu de temps a recuperer un CD d'install XP, mais ca y est je l'ai.
      Malheureusement, lors de l'extraction du fichier comme tu me l'as expliqué, je ne trouve pas le fichier a décompresser. Je vois le repertoire I386 mais après quel est la bonne procédure a suivre.

      Si tu pouvais me donner quelques détails supplémentaires..

      Merci

      A+
      0
      1. Ok c bon regis59

        j'ai copier coller framedyn.dll dans windows\system32 et windows\system32\restore.

        Ca semble fonctionner, la restauration du système refonctionne et search and destroy ne me fait plus d'erreur lorsqu'il se lance.

        Maintenant j'aimerais enlever les processus actifs et nettoyer mon PC car j'ai enormement de pubs quand je suis sur le net.

        J'ai lancer CCleaner et Search and destroy pour enlever les processus inutiles mais j'ai toujours des pubs.

        Voici mon log de Hijackthis:

        Logfile of HijackThis v1.99.1
        Scan saved at 11:47:18, on 20/07/2006
        Platform: Windows XP (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\WINDOWS\system32\rundll32.exe
        C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
        C:\WINDOWS\System32\CTsvcCDA.EXE
        C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
        C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
        C:\WINDOWS\lsass.exe
        C:\WINDOWS\System32\nvsvc32.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\System32\MsPMSPSv.exe
        C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
        C:\WINDOWS\Explorer.EXE
        C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
        C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
        C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
        C:\WINDOWS\System32\msprexe.exe
        C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
        C:\WINDOWS\System32\rundll32.exe
        C:\Program Files\Crazy Browser\Crazy Browser.exe
        C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
        C:\Hijackthis\HijackThis.exe

        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
        O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
        O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
        O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
        O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
        O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
        O4 - HKLM\..\Run: [Windows Management System] msprexe.exe
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
        O4 - HKLM\..\RunServices: [Windows Management System] msprexe.exe
        O4 - HKCU\..\Run: [Windows Management System] msprexe.exe
        O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
        O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
        O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
        O9 - Extra button: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing)
        O9 - Extra 'Tools' menuitem: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing)
        O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
        O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
        O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
        O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
        O17 - HKLM\System\CCS\Services\Tcpip\..\{76F3BC01-0477-40B4-9531-A9E6EBD12330}: NameServer = 84.103.237.143 86.64.145.143
        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
        O20 - Winlogon Notify: policies - C:\WINDOWS\system32\g0220afoed2c0.dll
        O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)
        O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing)
        O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
        O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing)
        O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
        O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\lsass.exe
        O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

        Merci encore pour l'aide

        A+
        0
        1. Contributeur sécurité
          Salut;

          Télécharge l2mfix ici:

          http://www.downloads.subratam.org/l2mfix.exe

          Double clic sur l2mfix.exe pour lancer l'extraction.
          Dans le dossier l2mfix, double clic sur l2mfix.bat et choisis l'option #1 (et pas autre chose) et valide avec la touche entrée.
          Le bloc note va s'ouvrir avec le résultat du scan.
          Fais un copier coller du résultat sur le forum.

          A+
          0
          1. Salut

            l2mfix.bat n'a pas l'air de fonctionner. Je ne peux pas choisir l'option 1 après.

            Sinon le rapport de Hijackthis ne te convient pas?

            A+
            0
        2. Contributeur sécurité
          Salut

          SI SI, sauf que tu as plusieurs infections, notamment Look to me, que l on peut voir ici:
          O20 - Winlogon Notify: policies - C:\WINDOWS\system32\g0220afoed2c0.dll

          LM2FIX permet de le supprimer mais c est pas grave, on va faire autrement:

          Telecharge Ewido:

          http://perso.orange.fr/entraide-hijackthis/Ewido/

          Supprme tout ce qu'il trouvera.

          a+
          0
          1. J'ai lancé ton antispyware, voila le rapport:

            ---------------------------------------------------------
            ewido anti-spyware - Scan Report
            ---------------------------------------------------------

            + Created at: 14:08:55 20/07/2006

            + Scan result:

            C:\Downloads\Everest Poker.exe -> Adware.Casino : No action taken.
            C:\WINDOWS\system32\CYEMUPIADEFAULT.DLL -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\CaDetres.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\CzDetres.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\IkagXpr5.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\MFPRPFR.DLL -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\MIPI.DLL -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\amlui.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\awmeter.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\azao0193e.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\brdispl.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\c4000edmeh0a0.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\cJbview.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\ccmmdlg.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\chb.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\csyptui.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\cwprops.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\d8j02i1mg8.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\dalayx.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\decompos.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\demsadsn.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\dn0001dme.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\dnjm0111e.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\ehs.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\en0ql1d51.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\enjol1131.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\enn2l15o1.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\f00olad31d0.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\f2l00c3mef.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\fHl00c3mef.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\fQ0olad31d0.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\fklemgmt.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\fp4003hme.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\fp6003jme.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\g222lcfo1f2c.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\gp4ml3h11.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\gp68l3ju1.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\gpjol3131.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\gpr8l39u1.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\h24mlch11f4.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\h6l2lg3o16.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\hJ4mlch11f4.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\hmzcon04.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\hrr0059me.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\i2600cjmefoa0.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\iohlpapi.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\jt6u07j9e.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\k0800almedqa0.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\kjdblr.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\ktn8l75u1.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\ktrql7951.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\kxdtat.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\l4j80e1ueh.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\l6j80g1ue6.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\lFprxy.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\lckrn13n.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\mead.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\mjricons.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\mkc40.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\mkident.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\mlxml3.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\moident.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\mpiseq.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\mprtdep.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\mrprivs.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\mtrepl40.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\nbrspt.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\nuiew.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\nwrsel.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\o8luli3918.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\oje2disp.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\ponppagn.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\pprfctrs.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\pslstore.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\pwspl.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\pzlstore.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\rgr20.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\rtgwizc.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\sdcpack.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\sdofr.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\sllwoa.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\t2r8lc9u1f.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\tgcfgwmi.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\ttd32.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wbvcore.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wbweb.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wgnsta.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wivcore.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wknfax.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wrn32spl.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wtpdinfo.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wupui.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wvstream.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wxnrnr.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wxvdmod.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\wzbcheck.dll -> Adware.Look2Me : No action taken.
            C:\WINDOWS\system32\xdlehlp.dll -> Adware.Look2Me : No action taken.
            [1164] C:\WINDOWS\system32\aekctrs.dll -> Adware.Look2Me : No action taken.
            [2044] C:\WINDOWS\system32\aekctrs.dll -> Adware.Look2Me : No action taken.
            HKU\.DEFAULT\Software\DNS -> Adware.Shorty : No action taken.
            HKU\S-1-5-18\Software\DNS -> Adware.Shorty : No action taken.
            C:\WINDOWS\system32\ms32sgss.exe -> Backdoor.Rbot : No action taken.
            C:\WINDOWS\system32\TFTP1560 -> Backdoor.Rbot.aoe : No action taken.
            C:\WINDOWS\system32\__delete_on_reboot__m_s_p_r_e_x_e_._e_x_e_ -> Backdoor.Rbot.aoe : No action taken.
            C:\WINDOWS\__delete_on_reboot__l_s_a_s_s_._e_x_e_ -> Backdoor.SdBot.xd : No action taken.
            C:\WINDOWS\gimmygames11.exe -> Downloader.Adload.u : No action taken.
            C:\Program Files\Fichiers communs\orwq\orwqp.exe -> Downloader.TSUpdate.f : No action taken.
            C:\Program Files\Fichiers communs\orwq\orwqa.exe -> Downloader.TSUpdate.l : No action taken.
            C:\Program Files\Fichiers communs\orwq\orwqm.exe -> Downloader.TSUpdate.n : No action taken.
            C:\Program Files\Fichiers communs\orwq\orwql.exe -> Downloader.TSUpdate.p : No action taken.
            C:\Downloads\NERO 6.3.0.0 FR Pack 1-2-3-4-5 Complet et Keygen ( Burning ROM - Vision Express 2 - InCD - Media Player .zip/NERO 6.3.0.0 Pack 1-2-3-4-5 Complet et Keygen (Burning ROM-Vision Express 2-InCD-Media Player-NeroMix)/KEYGEN/NeroKey.exe -> Hijacker.StartPage.afh : No action taken.
            C:\Downloads\Nero\NERO 6.3.0.0 Pack 1-2-3-4-5 Complet et Keygen (Burning ROM-Vision Express 2-InCD-Media Player-NeroMix)\KEYGEN\NeroKey.exe -> Hijacker.StartPage.afh : No action taken.
            C:\mousepad.exe_tobedeleted -> Hijacker.VB.li : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@247realmedia[2].txt -> TrackingCookie.247realmedia : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@advertising[2].txt -> TrackingCookie.Advertising : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@estat[1].txt -> TrackingCookie.Estat : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.
            C:\Documents and Settings\fred home\Cookies\fred home@weborama[1].txt -> TrackingCookie.Weborama : No action taken.
            C:\WINDOWS\winsysupd11.exe -> Trojan.VB.ajo : No action taken.

            ::Report end

            Je fais les actions recommandées? T'as vu il y a un fichier de Hijack, je levire aussi?
            0
            1. J'ai finalement exécuter les actions recommandées par ewido.
              Mais lors de la mise en quarantaine de Look2Me, une erreur est marquée : Error while quarantaine.

              Il a pas du reussir a le supprimer... Que dois je faire?

              A+
              0
              1. Contributeur sécurité
                Salut

                Tu as choisis de ne pas excuter d actions, peux tu relancer un scan et de supprimer cette fois.

                a+
                0
                1. Ok j'ai suivi ton conseil et j'ai supprimé Look2me.
                  Je te montre le log de Hijackthis pour voir si c'est bon maintenant:

                  Logfile of HijackThis v1.99.1
                  Scan saved at 18:23:13, on 20/07/2006
                  Platform: Windows XP (WinNT 5.01.2600)
                  MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

                  Running processes:
                  C:\WINDOWS\System32\smss.exe
                  C:\WINDOWS\system32\winlogon.exe
                  C:\WINDOWS\system32\services.exe
                  C:\WINDOWS\system32\lsass.exe
                  C:\WINDOWS\system32\svchost.exe
                  C:\WINDOWS\System32\svchost.exe
                  C:\WINDOWS\system32\spoolsv.exe
                  C:\WINDOWS\system32\rundll32.exe
                  C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                  C:\WINDOWS\System32\CTsvcCDA.EXE
                  C:\Program Files\ewido anti-spyware 4.0\guard.exe
                  C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
                  C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                  C:\WINDOWS\System32\nvsvc32.exe
                  C:\WINDOWS\System32\svchost.exe
                  C:\WINDOWS\System32\MsPMSPSv.exe
                  C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                  C:\WINDOWS\Explorer.EXE
                  C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                  C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                  C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                  C:\WINDOWS\System32\rundll32.exe
                  C:\Hijackthis\HijackThis.exe

                  R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                  R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                  O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
                  O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
                  O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
                  O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
                  O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
                  O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
                  O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
                  O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
                  O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                  O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
                  O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
                  O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                  O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                  O9 - Extra button: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing)
                  O9 - Extra 'Tools' menuitem: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing)
                  O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                  O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                  O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
                  O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
                  O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
                  O20 - Winlogon Notify: H323TSP - C:\WINDOWS\system32\i2240cfqef2e0.dll
                  O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)
                  O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing)
                  O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
                  O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
                  O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing)
                  O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                  O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\lsass.exe (file missing)
                  O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
                  O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

                  Merci Regis

                  A+
                  0
                  1. Contributeur sécurité
                    Bonjour,

                    Méthode à suivre dans l'ordre...

                    désinstalle EmpirePoker
                    -----------------------------------------
                    ¤Télécharge ces logiciels mais que tu n‘utilises pas tout de suite:

                    1/

                    Spybot S&D 1.4
                    https://www.safer-networking.org/

                    Démo d’utilisation (merci à Balltrap34 pour cette réalisation).
                    http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm

                    2/

                    Ad-Aware SE 1.06
                    https://www.adaware.com/
                    -Une aide:
                    http://usa.lucretius-ada.com/zcvisitor/8782d344-4821-11ea-83ce-0a2cdf2c6be7?campaignid=0d1dff40-82d7-11e9-9533-0a157bfa6bfc
                    - installe le patch français, tu pourras le trouver ici:
                    http://download.lavasoft.de.edgesuite.net/public/pllangs.exe
                    et une petite vidéo d'utilisation ici:(merci à Moe31 pour cette réalisation).
                    http://pageperso.aol.fr/balltrap34/adawrevid.asf

                    3/ Ewido:

                    http://perso.orange.fr/entraide-hijackthis/Ewido/

                    Installation puis mises à jour.

                    4/ Ccleaner :

                    https://www.pcastuces.com/logitheque/ccleaner.htm
                    ----------------------------------------------------------------------------
                    ¤Affiche tous les fichiers et dossiers :
                    Clique sur démarrer/panneau de configuration/outil/option des dossiers/affichage

                    Coche « afficher les fichiers et dossiers cachés »

                    Décoche la case "Masquer les fichiers protégés du système d'exploitation (recommandé)"

                    Décoche « masquer les extensions dont le type est connu »
                    Puis fais «Ok» pour valider les changements.

                    Et appliquer !
                    ----------------------------------------------------------------------------
                    ¤Relance HijackThis, coche les cases devant ces lignes et ensuite clique sur fix checked :

                    O9 - Extra button: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing)

                    O9 - Extra 'Tools' menuitem: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing)

                    O20 - Winlogon Notify: H323TSP - C:\WINDOWS\system32\i2240cfqef2e0.dll

                    ----------------------------------------------------------------------------
                    ¤Démarre en mode sans échec :
                    Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
                    Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
                    Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
                    (Si F8 ne marche pas utilise la touche F5).
                    ----------------------------------------------------------------------------
                    ¤Recherche et supprime ceci:
                    attention seulement les fichiers (si présents).

                    C:\Program Files\EmpirePoker
                    ----------------------------------------------------------------------------
                    ¤ Lancer et exécuter Ewido pour un scan complet et copier/coller le rapport en forum.
                    ----------------------------------------------------------------------------
                    ¤ Passe Ad-Aware et supprime tout ce qu’il trouve + supprime les quarantaines…
                    ----------------------------------------------------------------------------
                    ¤ Passe Spybot et corrige tout ce qu’il trouve + vaccine + supprime les quarantaines…
                    -------------------------------------------------------------------------------------------
                    ¤ Lance CCleaner.

                    Suppression des fichiers temporaires

                    Va dans la section "Options" situé dans la marge gauche. Va dans "Avancé" et décoche "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures". Retourne ensuite dans la section "Nettoyeur"
                    Fais bien attention de cocher toutes les cases dans la marge gauche (Internet Explorer/Windows Explorer/Système/Avancé)
                    • Clique sur Analyse
                    • Patiente le temps du scan, qui peut prendre un peu de temps si c'est la première fois.
                    • Une fois le scan terminé, clique sur Lancer le Nettoyage

                    Suppression des incohérence du registre

                    • Clique sur l'icône Erreurs situés dans la marge à gauche.
                    • Puis clique sur Analyser les erreurs
                    • Patiente pendant que CCleaner scan ton registre.
                    • Une fois le scan terminé, coche toutes les entrèes qu'il t'aura trouvée.
                    • Tu peux cliquer ensuite sur Corriger les erreurs.
                    Si tu n'est pas sur de ce que tu fais, tu peux choisir de sauvegarder les entrées cochées pour les restaurer ultérieurement
                    ----------------------------------------------------------------------------
                    ¤ Vide ta Corbeille.
                    ----------------------------------------------------------------------------
                    ¤ Redémarre en mode normal, relance Hijackthis et copie/colle un nouveau rapport sur le forum.

                    Précise tes soucis s’il en reste....

                    Tiens-moi au courant

                    A+
                    0
                    1. Salut

                      Bon j'ai fait tt ce que tu ma dit. Voila le rapport Hijackthis:

                      Logfile of HijackThis v1.99.1
                      Scan saved at 13:14:11, on 21/07/2006
                      Platform: Windows XP (WinNT 5.01.2600)
                      MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

                      Running processes:
                      C:\WINDOWS\System32\smss.exe
                      C:\WINDOWS\system32\winlogon.exe
                      C:\WINDOWS\system32\services.exe
                      C:\WINDOWS\system32\lsass.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\WINDOWS\system32\rundll32.exe
                      C:\WINDOWS\system32\spoolsv.exe
                      C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                      C:\WINDOWS\System32\CTsvcCDA.EXE
                      C:\Program Files\ewido anti-spyware 4.0\guard.exe
                      C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
                      C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                      C:\WINDOWS\System32\nvsvc32.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\WINDOWS\System32\MsPMSPSv.exe
                      C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                      C:\WINDOWS\Explorer.EXE
                      C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                      C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                      C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                      C:\WINDOWS\System32\rundll32.exe
                      C:\Hijackthis\HijackThis.exe

                      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                      F2 - REG:system.ini: UserInit=userinit.exe
                      O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
                      O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
                      O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
                      O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
                      O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
                      O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
                      O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
                      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
                      O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                      O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
                      O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
                      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                      O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                      O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                      O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
                      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
                      O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
                      O20 - Winlogon Notify: SMDEn - C:\WINDOWS\system32\h84m0ih1e84.dll
                      O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)
                      O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing)
                      O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
                      O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
                      O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing)
                      O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                      O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\lsass.exe (file missing)
                      O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
                      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

                      Si tu vois des erreurs tiens moi o courant.

                      J'attends encore u n peu pour voir si j'ai encore des pubs.

                      Sinon encore merci pr ton aide.

                      A+
                      0
                      1. Re salut

                        Apres quelques minutes sur le net j'ai encor quelques pubs, moins qu'avant quand meme. Alors je sais pas si y a autre chose a faire.

                        Tiens moi o courant si tu vois..

                        A+
                        0
                        1. Contributeur sécurité
                          Salut

                          Oui normal, Look to me est toujours present:
                          O20 - Winlogon Notify: SMDEn - C:\WINDOWS\system32\h84m0ih1e84.dll

                          Alors, procedons comme ceci:

                          Prière d'imprimer ces instructions, ou de les coller dans un fichier texte, pour lecture durant ce fix. Regarde bien les trois petites notes au bas, avant de débuter.
                          Télécharge Look2Me-Destroyer.exe (par Atribune) sur ton Bureau.
                          http://www.atribune.org/ccount/click.php?id=7

                          Ferme toutes les fenêtres actives avant de passer à l'étape suivante.
                          • Double-clique Look2Me-Destroyer.exe afin de lancer l'outil.
                          • Coche Run this program as a task
                          • Un message s'affichera, te disant ceci : "Look2Me-Destroyer will close and re-open in approximately 10 seconds". Clique OK
                          • Il se relancera après les 10 secondes, puis clique sur le bouton Scan for L2M ; les icônes de ton Bureau vont disparaître : c'est normal.
                          • Lorsque le scan termine, clique sur le bouton Remove L2M
                          • Un message Done Scanning apparaîtra, clique OK.
                          • Un nouveau message s'affichera : Done removing infected files! Look2Me-Destroyer will now shutdown your computer ; clique OK.
                          • Ton PC va maintenant s'éteindre.
                          • Démarre ton PC normalement.
                          • Colle le rapport généré, situé ici : C:\Look2Me-Destroyer.txt , ainsi qu'un nouveau rapport HijackThis! dans ta prochaine réponse.
                          *Si Look2Me-Destroyer ne se relance pas automatiquement après les 10 secondes, redémarre et essaie à nouveau.

                          **Si tu reçois un message de ton parefeu que l'outil tente d'accéder à l'internet : accepte.

                          ***Si un message runtime error '339' s'affiche : télécharge MSWINSCK.OCX du lien ci-bas, et place-le dans le dossier C:\Windows\System32.
                          http://www.ascentive.com/support/new/images/lib/MSWINSCK.OCX
                          0
                          1. Donc j'ai fait ce que tu mas dit.

                            Le rapport L2MDestroyer:

                            Look2Me-Destroyer V1.0.12

                            Scanning for infected files.....
                            Scan started at 21/07/2006 15:20:07

                            Infected! C:\WINDOWS\system32\mv4ql9h51.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056276.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056282.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056285.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056290.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056294.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056299.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057301.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057308.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057373.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057379.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057401.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057406.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057418.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057427.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057433.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057439.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057444.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057450.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057455.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057478.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057487.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057493.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058492.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058497.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058506.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058511.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058536.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058542.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058547.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058551.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058556.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058560.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058565.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058569.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058589.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058594.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058612.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058622.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058628.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058633.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058639.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058644.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058648.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058654.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058681.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058690.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058696.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058702.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058708.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058711.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058717.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058723.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058729.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058733.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058739.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058745.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058750.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058754.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058760.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058769.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058775.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058780.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058786.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059785.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059790.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059795.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059799.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059808.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059814.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059823.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059830.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059834.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059840.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059846.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059851.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059854.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059859.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060858.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060861.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060866.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060870.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060875.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060879.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060905.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060910.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060918.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060923.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060929.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060935.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060940.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060946.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060984.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060989.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060993.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0061028.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061034.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061072.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061079.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061088.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061097.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061156.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061207.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061213.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061235.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062255.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062291.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062297.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063314.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063319.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063325.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063337.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063364.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063369.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063375.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063380.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064379.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064386.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064437.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064443.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064450.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064458.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064474.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064480.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064494.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064500.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064506.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064511.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064516.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0064522.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065516.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065525.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065531.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065537.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065545.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065551.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065559.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065568.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065574.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065580.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0065585.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066580.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066586.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066588.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066593.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066595.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066601.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066606.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066610.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066623.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066627.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066634.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066639.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066648.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066654.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066666.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066673.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066680.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066686.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066697.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066703.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066709.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066715.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066721.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066733.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0066744.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0067733.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0067740.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0067745.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP88\A0067754.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP88\A0067763.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP88\A0067769.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP88\A0068763.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068776.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068781.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068787.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068793.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068798.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068802.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068808.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068825.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068830.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068842.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068848.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068855.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068861.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068868.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068873.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068903.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068908.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068915.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068920.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068924.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068929.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068933.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068941.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068945.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068951.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068960.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068978.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068987.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP89\A0068992.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0069003.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0069008.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0070015.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0070021.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0070027.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0070031.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0070036.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0071031.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0071037.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0072054.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0072060.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0072067.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0072076.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0072086.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0073094.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074086.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074092.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074114.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074119.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074126.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP90\A0074131.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075126.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075131.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075393.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075399.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075404.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075413.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075505.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075511.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075520.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075530.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP91\A0075535.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075543.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075548.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075551.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075559.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075564.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075567.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075572.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075577.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075583.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075595.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075596.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075597.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075600.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075601.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075602.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075603.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075604.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075605.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075606.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075607.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075608.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075609.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075610.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075611.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075612.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075613.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075614.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075615.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075616.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075617.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075618.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075619.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075620.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075621.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075622.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075623.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075624.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075625.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075626.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075627.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075628.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075629.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075630.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075631.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075632.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075633.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075634.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075635.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075636.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075637.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075638.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075639.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075640.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075641.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075642.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075643.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075644.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075645.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075646.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075648.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075649.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075650.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075651.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075653.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075654.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075655.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075656.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075657.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075658.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075659.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075660.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075661.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075662.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075663.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075664.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075665.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075666.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075667.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075668.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075669.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075670.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075671.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075672.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075673.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075674.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075675.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075676.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075677.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075678.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075679.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075680.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075681.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075682.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075683.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075684.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075685.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075686.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075687.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075688.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075689.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075834.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075839.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075843.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075844.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075851.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075857.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075863.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075866.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075893.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075902.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075908.dll
                            Infected! C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP92\A0075914.dll
                            Infected! C:\WINDOWS\system32\kjddv.dll
                            Infected! C:\WINDOWS\system32\mv4ql9h51.dll
                            Infected! C:\WINDOWS\system32\p0p60a7sed.dll
                            Infected! C:\WINDOWS\system32\rWsctrs.dll

                            Attempting to delete infected files...

                            Attempting to delete: C:\WINDOWS\system32\mv4ql9h51.dll
                            C:\WINDOWS\system32\mv4ql9h51.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056276.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056276.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056282.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056282.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056285.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056285.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056290.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056290.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056294.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056294.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056299.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0056299.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057301.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057301.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057308.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057308.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057373.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057373.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057379.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057379.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057401.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057401.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057406.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057406.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057418.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057418.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057427.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057427.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057433.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057433.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057439.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057439.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057444.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057444.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057450.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057450.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057455.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057455.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057478.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057478.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057487.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057487.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057493.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0057493.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058492.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058492.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058497.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058497.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058506.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058506.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058511.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058511.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058536.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058536.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058542.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058542.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058547.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP85\A0058547.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058551.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058551.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058556.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058556.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058560.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058560.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058565.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058565.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058569.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058569.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058589.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058589.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058594.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058594.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058612.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058612.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058622.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058622.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058628.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058628.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058633.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058633.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058639.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058639.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058644.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058644.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058648.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058648.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058654.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058654.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058681.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058681.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058690.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058690.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058696.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058696.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058702.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058702.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058708.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058708.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058711.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058711.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058717.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058717.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058723.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058723.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058729.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058729.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058733.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058733.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058739.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058739.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058745.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058745.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058750.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058750.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058754.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058754.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058760.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058760.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058769.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058769.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058775.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058775.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058780.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058780.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058786.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0058786.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059785.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059785.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059790.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059790.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059795.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059795.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059799.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059799.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059808.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059808.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059814.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059814.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059823.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059823.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059830.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059830.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059834.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059834.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059840.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059840.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059846.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059846.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059851.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059851.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059854.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059854.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059859.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0059859.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060858.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060858.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060861.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060861.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060866.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060866.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060870.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060870.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060875.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060875.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060879.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060879.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060905.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060905.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060910.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060910.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060918.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060918.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060923.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060923.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060929.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060929.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060935.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060935.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060940.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060940.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060946.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060946.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060984.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060984.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060989.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060989.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060993.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0060993.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0061028.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP86\A0061028.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061034.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061034.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061072.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061072.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061079.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061079.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061088.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061088.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061097.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061097.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061156.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061156.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061207.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061207.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061213.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061213.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061235.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0061235.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062255.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062255.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062291.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062291.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062297.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0062297.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063314.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063314.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063319.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063319.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063325.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063325.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063337.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063337.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063364.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063364.dll Deleted successfully!

                            Attempting to delete: C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063369.dll
                            C:\System Volume Information\_restore{E9B70A3E-6102-4F7C-88AA-73DFF7665979}\RP87\A0063369.dll Deleted s
                            0
                            1. Contributeur sécurité
                              ok,

                              Peux tu remettre un HijackThis?

                              a+
                              0
                              1. slt Regis,

                                Désolé pr le rapport Hijackthis il me semblait que je l'avais mis. Le revoila:

                                Logfile of HijackThis v1.99.1
                                Scan saved at 17:54:19, on 22/07/2006
                                Platform: Windows XP (WinNT 5.01.2600)
                                MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

                                Running processes:
                                C:\WINDOWS\System32\smss.exe
                                C:\WINDOWS\system32\winlogon.exe
                                C:\WINDOWS\system32\services.exe
                                C:\WINDOWS\system32\lsass.exe
                                C:\WINDOWS\system32\svchost.exe
                                C:\WINDOWS\System32\svchost.exe
                                C:\WINDOWS\system32\spoolsv.exe
                                C:\WINDOWS\Explorer.EXE
                                C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                                C:\WINDOWS\System32\CTsvcCDA.EXE
                                C:\Program Files\ewido anti-spyware 4.0\guard.exe
                                C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
                                C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                                C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                                C:\WINDOWS\System32\nvsvc32.exe
                                C:\WINDOWS\System32\svchost.exe
                                C:\WINDOWS\System32\MsPMSPSv.exe
                                C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                                C:\WINDOWS\System32\rundll32.exe
                                C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                                C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                                C:\Program Files\Crazy Browser\Crazy Browser.exe
                                C:\Hijackthis\HijackThis.exe

                                R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                                R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                                F2 - REG:system.ini: UserInit=userinit.exe
                                O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
                                O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
                                O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
                                O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
                                O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
                                O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
                                O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
                                O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
                                O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                                O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
                                O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
                                O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                                O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                                O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                                O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                                O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
                                O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
                                O17 - HKLM\System\CCS\Services\Tcpip\..\{76F3BC01-0477-40B4-9531-A9E6EBD12330}: NameServer = 84.103.237.145 86.64.145.145
                                O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
                                O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)
                                O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing)
                                O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
                                O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
                                O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing)
                                O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                                O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\lsass.exe (file missing)
                                O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
                                O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

                                Il n'ya plus la ligne 020 c'est que L2M a été effacé non?
                                Ca doit etre bon la non?

                                Au fait si t'as quelques tuyaux pour repérer les mauvais processus ou des astuces pour nettoyer mon PC, ce serait cool..

                                J'aimerais bien la prochaine fois essayer de le faire tt seul pr éviter d'embéter d'autres personnes.

                                Dis moi si ya encore des trucs a enlever maisca a leur d'etre bon.

                                Merci encore pr ton aide

                                A+
                                0
                                1. Contributeur sécurité
                                  Salut,

                                  Tu n as plus de pubs?

                                  Pour le faire seul, il faut apprendre.
                                  Donner quelques astuces ne suffiront pas !
                                  Si tu veux apprendre, tu peux t inscrire sur mon forum dont l adresse est dans mon profil, prochainement je vais donner des conseils, explications sur ce domaine de la desinfection.

                                  Bonne soirée.
                                  a+
                                  0
                                  1. Salut

                                    Non plus de pubs. C nickel!!

                                    Merci Regis pr ton aide

                                    A+
                                    0
                                    1. Contributeur sécurité
                                      Salut

                                      Excuse moi, j ai du oublié quelque chose, remet un hijack this pour que je verifie stp

                                      a+
                                      0
                                      1. Slt

                                        Ok voila le rapport Hijack:

                                        Logfile of HijackThis v1.99.1
                                        Scan saved at 11:23:42, on 24/07/2006
                                        Platform: Windows XP (WinNT 5.01.2600)
                                        MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

                                        Running processes:
                                        C:\WINDOWS\System32\smss.exe
                                        C:\WINDOWS\system32\winlogon.exe
                                        C:\WINDOWS\system32\services.exe
                                        C:\WINDOWS\system32\lsass.exe
                                        C:\WINDOWS\system32\svchost.exe
                                        C:\WINDOWS\System32\svchost.exe
                                        C:\WINDOWS\Explorer.EXE
                                        C:\WINDOWS\system32\spoolsv.exe
                                        C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                                        C:\WINDOWS\System32\CTsvcCDA.EXE
                                        C:\Program Files\ewido anti-spyware 4.0\guard.exe
                                        C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
                                        C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                                        C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                                        C:\WINDOWS\System32\nvsvc32.exe
                                        C:\WINDOWS\System32\svchost.exe
                                        C:\WINDOWS\System32\MsPMSPSv.exe
                                        C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                                        C:\WINDOWS\System32\rundll32.exe
                                        C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                                        C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
                                        C:\Program Files\Winamp\winamp.exe
                                        C:\Program Files\Crazy Browser\Crazy Browser.exe
                                        C:\Program Files\MSN Messenger\msnmsgr.exe
                                        C:\Hijackthis\HijackThis.exe

                                        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                                        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                                        F2 - REG:system.ini: UserInit=userinit.exe
                                        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
                                        O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
                                        O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
                                        O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
                                        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
                                        O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
                                        O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
                                        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
                                        O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
                                        O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
                                        O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
                                        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                                        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
                                        O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                                        O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
                                        O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
                                        O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
                                        O17 - HKLM\System\CCS\Services\Tcpip\..\{76F3BC01-0477-40B4-9531-A9E6EBD12330}: NameServer = 86.64.145.145 84.103.237.145
                                        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
                                        O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)
                                        O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing)
                                        O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
                                        O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
                                        O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing)
                                        O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                                        O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\lsass.exe (file missing)
                                        O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
                                        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

                                        A+
                                        0
                                        • 1
                                        • 2