Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Salut a tous!

 

Voila, le PC d'une amie a moi connait depuis peu quelques rates... Certains programmes tels qu'IE, iTunes et bien d'autres, ne daignent plus s'ouvrir ou fonctionner correctement.

D'apres ce que je sais, ses problemes ont debute une fois son antivirus (AVG???) expire.

Je ne peux pas vous en dire beacoup plus car je n'ai pas vraiment eu le temps d'examiner la bete mais je suis pret a prendre tous vos conseils, et les suivre a la lettre afin d'arranger la situation.

J'ai simplement eu le temps d'installer HJT sur son PC et d'en ressortir ce rapport.

 

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 12:02:29 PM, on 9/18/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Dell\DellDock\DockLogin.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\WLTRYSVC.EXE

C:\WINDOWS\System32\bcmwltry.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe

C:\PROGRA~1\AVG\AVG8\avgfws8.exe

C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe

C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe

C:\WINDOWS\system32\CTsvcCDA.exe

C:\WINDOWS\eHome\ehRecvr.exe

C:\WINDOWS\eHome\ehSched.exe

C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\HPZipm12.exe

C:\WINDOWS\ehome\RMSvc.exe

C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Stardock\MyColors\wbload.exe

C:\WINDOWS\system32\dllhost.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\WLTRAY.exe

C:\WINDOWS\stsystra.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe

C:\WINDOWS\system32\Rundll32.exe

C:\Program Files\Creative\VoiceCenter\AndreaVC.exe

C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe

C:\WINDOWS\vVX3000.exe

C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\Messenger\msmsgs.exe

C:\DOCUME~1\EMILEE~1\LOCALS~1\Temp\clclean.0001

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\wuauclt.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\Windows Live\Contacts\wlcomm.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\WINDOWS\system32\dwwin.exe

C:\WINDOWS\system32\dumprep.exe

C:\WINDOWS\system32\dwwin.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=0060928

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=0060928

R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll

R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: StumbleUpon Launcher - {145B29F4-A56B-4b90-BBAC-45784EBEBBB7} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll

O2 - BHO: TBSB02751 - {25875464-7327-417C-8264-902D99CF6FD1} - C:\Program Files\Search Enhancer Toolbar\NCL.dll (file missing)

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll

O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)

O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll

O3 - Toolbar: StumbleUpon Toolbar - {5093EB4C-3E93-40AB-9266-B607BA87BDC8} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll

O3 - Toolbar: Search Enhancer Toolbar - {BFB5F154-9212-46F3-B547-AC6106030A54} - C:\Program Files\Search Enhancer Toolbar\NCL.dll (file missing)

O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

O4 - HKLM\..\Run: [broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe

O4 - HKLM\..\Run: [sigmatelSysTrayApp] stsystra.exe

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay

O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r

O4 - HKLM\..\Run: [MBMon] Rundll32 CTMBHA.DLL,MBMon

O4 - HKLM\..\Run: [updReg] C:\WINDOWS\UpdReg.EXE

O4 - HKLM\..\Run: [VoiceCenter] "C:\Program Files\Creative\VoiceCenter\AndreaVC.exe" /tray

O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"

O4 - HKLM\..\Run: [iSUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup

O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [pp] C:\windows\pp11.exe

O4 - HKLM\..\Run: [sysfbtray] C:\windows\freddy58.exe

O4 - HKLM\..\Run: [sysmstray] C:\windows\mstre21.exe

O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe

O4 - HKLM\..\Run: [AVGIDS] "C:\Program Files\AVG\AVG8\IdentityProtection\agent\bin\AVGIDSUI.exe"

O4 - HKCU\..\Run: [setDefaultMIDI] MIDIDef.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...html?p=ZJfox000

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000

O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O8 - Extra context menu item: StumbleUpon PhotoBlog It! - res://StumbleUponIEBar.dll/blogimage

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.1...toUploader5.cab

O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.0...oUploader55.cab

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll

O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll

O20 - AppInit_DLLs: karna.dat

O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll

O22 - SharedTaskScheduler: anomuran - {eb4c6870-721f-4989-9c90-8cbfa46d0298} - (no file)

O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe

O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe

O23 - Service: AVG8 Firewall (avgfws8) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgfws8.exe

O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe

O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe

O23 - Service: Dock Login Service (DockLoginService) - Stardock Corporation - C:\Program Files\Dell\DellDock\DockLogin.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: StumbleUponUpdateService - stumbleupon.com - C:\Program Files\StumbleUpon\StumbleUponUpdateService.exe

O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE

O24 - Desktop Component 0: (no name) - C:\Documents and Settings\Emilee Seda\My Documents\My Pictures\Spring Break Miami '05\100_0188.JPG

O24 - Desktop Component 2: (no name) - http://www.desktopcountdown.com/countdown/...ent=South+Beach

 

--

End of file - 12639 bytes

 

 

 

Merci d'avance pour votre aide!!

Posté(e) (modifié)

Bonjour pecko14 :P

 

Si Avg a expiré, il faut le remplacer sans tarder à moins que la licence n'ait été renouvellée...?

 

Désinstaller AVG: AVG: http://www.grisoft.com/fr.36 ou:

 

Pour désinstaller AVG8 AV proprement:

  • Télécharger l'archive avg8.zip
  • Décompresser tous les fichiers de l'archive avg8.zip dans un dossier dédié.
  • Exécutez le fichier KLeaner.exe
  • Attendre jusqu'à ce que l'utilitaire ait achevé ses travaux

 

---------------------------------------------

*Redémarrez votre PC.

 

************

Remplacer par Antivir, de toute façon plus performant: http://www.vista-xp.fr/forum/topic4162.html

 

**************

1) Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.

 

  • Lance l'installation du programme en exécutant le fichier téléchargé.
  • Double-clique sur le raccourci de Toolbar-S&D.
  • --> Sous VISTA: clic droit Exécuter en temps qu'administrateur.
  • Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
  • Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
    Poste le rapport généré. (C:\TB.txt)

 

--------------------------------------------------------------

2) Relance Toolbar-S&D en double-cliquant sur le raccourci. Tape sur "2" puis valide en appuyant sur "Entrée".

 

--> Sous VISTA: clic droit Exécuter en temps qu'administrateur.

Ne ferme pas la fenêtre lors de la suppression !

Un rapport sera généré, poste son contenu dans ta réponse.

 

NB: Si ton Bureau ne réapparaissait pas, appuie simultanément sur Ctrl+Alt+Suppr pour ouvrir le Gestionnaire des tâches.

Rends-toi sur l'onglet "Processus". Clique en haut à gauche sur Fichier et choisis "Exécuter..."

Tape explorer puis valide.

 

--------------

3) Télécharge SmitfraudFix sur ton bureau.


  • Double-clique sur smitfraudfix.exe
    Sous Vista --> clic droit Exécuter en temps qu'administrateur.
  • Sélectionne 1 pour créer un rapport des fichiers responsables de l'infection.
  • Poste le rapport sur le forum dans ta prochaine réponse.
    Process.exe est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool. Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus. Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.

 

-------------------

4)

 

Redémarrer l'ordinateur en mode sans échec (tapoter F8 au boot pour obtenir le menu de démarrage

Choisir Mode sans échec à l'aide des flèches directionnelles du clavier. Valider.

 

Double-clique sur smitfraudfix.exe

  • SOUS VISTA: clic droit/exécuter en temps qu'administrateur
  • Sélectionne 2 pour supprimer les fichiers responsables de l'infection.
  • A la question Voulez-vous nettoyer le registre ? réponds O (oui) afin de débloquer le fond d'écran et supprimer les clés de démarrage automatique de l'infection.
    Le fix déterminera si le fichier wininet.dll est infecté.
  • A la question Corriger le fichier infecté ? réponds O (oui) pour remplacer le fichier corrompu.
  • Redémarre en mode normal et poste le rapport sur le forum.
    N.B.: Cette étape élimine les fichiers infectieux détectés à l'étape #1
    Attention : l'option 2 de l'outil supprime le fond d'écran !

 

process.exe est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky...) comme étant un RiskTool.

Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.

-------------------

 

Poster ces 4 rapports puis faire un nouveau log Hijackthis que tu posteras dans un nouveau post si nécessaire, car cela fait pas mal de rapports pour une seule réponse. :P

 

@++

Modifié par Apollo
Posté(e)

Salut Apollo et merci pour ta reponse rapide!

 

Alors tout d'abord, je dois te dire que j'ai du faire tout ce que tu m'as dit en mode sans echec parce que rien ne fonctionnait en mode normal.

J'ai desinstalle AVG, mais pas encore installe Avira, je le ferai des que possible.

En attendant voici les rapports que tu m'as demande.

 

 

1er rapport ToolBarSD :

 

 

-----------\\ ToolBar S&D 1.2.9 XP/Vista

 

Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 3

X86-based PC ( Multiprocessor Free : Intel® Core2 CPU T7200 @ 2.00GHz )

BIOS : Phoenix ROM BIOS PLUS Version 1.10 A08

USER : Emilee Seda ( Administrator )

BOOT : Fail-safe boot

Antivirus : AVG Internet Security 8.5 (Activated)

Firewall : AVG Firewall 8.5 (Not Activated)

C:\ (Local Disk) - NTFS - Total:51 Go (Free:9 Go)

D:\ (Local Disk) - NTFS - Total:16 Go (Free:5 Go)

E:\ (CD or DVD)

F:\ (USB) - FAT32 - Total:3827 Mo (Free:0 Go)

 

"C:\ToolBar SD" ( MAJ : 22-08-2009|18:42 )

Option : [1] ( Sat 09/19/2009|19:38 )

 

-----------\\ Searching for Files - Folders ...

 

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@flalottery[2].txt

C:\DOCUME~1\EMILEE~1\APPLIC~1\FunWebProducts

C:\DOCUME~1\EMILEE~1\APPLIC~1\FunWebProducts\Data

C:\DOCUME~1\EMILEE~1\APPLIC~1\FunWebProducts\Data\Emilee Seda

C:\DOCUME~1\EMILEE~1\APPLIC~1\FunWebProducts\Data\Emilee Seda\avatar.dat

C:\DOCUME~1\EMILEE~1\APPLIC~1\FunWebProducts\Data\Emilee Seda\register.dat

 

-----------\\ Extensions

 

(Emilee Seda) - {20a82645-c095-46ed-80e3-08825760534b} => chrome_user

(Emilee Seda) - {AE93811A-5C9A-4d34-8462-F7B864FC4696} => stumbleupon

 

 

-----------\\ [..\Internet Explorer\Main]

 

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Local Page"="C:\\WINDOWS\\system32\\blank.htm"

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"'>http://go.microsoft.com/fwlink/?LinkId=69157"'>http://go.microsoft.com/fwlink/?LinkId=69157"'>http://go.microsoft.com/fwlink/?LinkId=69157"'>http://go.microsoft.com/fwlink/?LinkId=69157"

"Search Page"="http://www.google.com"'>http://www.google.com"

"Search Bar"="http://www.google.com/ie"'>http://www.google.com/ie"'>http://www.google.com/ie"'>http://www.google.com/ie"

"Default_Search_URL"="http://www.google.com/ie"

"SearchMigratedDefaultURL"="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"'>http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"

"Url"="http://go.microsoft.com/fwlink/?LinkId=68928"'>http://go.microsoft.com/fwlink/?LinkId=68928"

"Url"="http://go.microsoft.com/fwlink/?LinkId=68929"'>http://go.microsoft.com/fwlink/?LinkId=68929"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]

"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"

"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896"

"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"

"Local Page"="C:\\WINDOWS\\system32\\blank.htm"

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

"Home_Page"="http://www.dell.com"'>http://www.dell.com"

"Help_Page"="http://support.dell.com"'>http://support.dell.com"

 

 

--------------------\\ Searching for other infections

 

--------------------\\ KoobFace !

 

C:\WINDOWS\mmsmark2.dat

 

--------------------\\ Cracks & Keygens ..

 

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@cracktwo[1].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@smackinthecrack[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@smackinthecrack[3].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@stopacrack[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@www.cracktwo[1].txt

C:\DOCUME~1\EMILEE~1\Local Settings\Temp\Cookies\emilee_seda@saynotocrack[1].txt

C:\DOCUME~1\EMILEE~1\Local Settings\Temporary Internet Files\Content.IE5\Y3FW4LYU\tyrannosaur_crack[1].png

 

 

 

1 - "C:\ToolBar SD\TB_1.txt" - Sat 09/19/2009|19:43 - Option : [1]

 

-----------\\ Scan completed at 19:43:45.28

 

 

 

 

2eme rapport ToolBarSD :

 

 

-----------\\ ToolBar S&D 1.2.9 XP/Vista

 

Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 3

X86-based PC ( Multiprocessor Free : Intel® Core2 CPU T7200 @ 2.00GHz )

BIOS : Phoenix ROM BIOS PLUS Version 1.10 A08

USER : Emilee Seda ( Administrator )

BOOT : Fail-safe boot

Antivirus : AVG Internet Security 8.5 (Activated)

Firewall : AVG Firewall 8.5 (Not Activated)

C:\ (Local Disk) - NTFS - Total:51 Go (Free:9 Go)

D:\ (Local Disk) - NTFS - Total:16 Go (Free:5 Go)

E:\ (CD or DVD)

 

"C:\ToolBar SD" ( MAJ : 22-08-2009|18:42 )

Option : [2] ( Sat 09/19/2009|19:46 )

 

-----------\\ FIX

 

Deleted! - C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@flalottery[2].txt

Deleted! - C:\DOCUME~1\EMILEE~1\APPLIC~1\FunWebProducts\Data

Deleted! - C:\DOCUME~1\EMILEE~1\APPLIC~1\FunWebProducts

 

-----------\\ Searching for Files - Folders ...

 

 

-----------\\ Extensions

 

(Emilee Seda) - {20a82645-c095-46ed-80e3-08825760534b} => chrome_user

(Emilee Seda) - {AE93811A-5C9A-4d34-8462-F7B864FC4696} => stumbleupon

 

 

-----------\\ [..\Internet Explorer\Main]

 

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Local Page"="C:\\WINDOWS\\system32\\blank.htm"

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

"Search Page"="http://www.google.com"

"Search Bar"="http://www.google.com/ie"

"Default_Search_URL"="http://www.google.com/ie"

"SearchMigratedDefaultURL"="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"

"Url"="http://go.microsoft.com/fwlink/?LinkId=68928"

"Url"="http://go.microsoft.com/fwlink/?LinkId=68929"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]

"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"

"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"

"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"

"Local Page"="C:\\WINDOWS\\system32\\blank.htm"

"Start Page"="http://www.msn.com/"

"Home_Page"="http://www.dell.com"

"Help_Page"="http://support.dell.com"

 

 

--------------------\\ Searching for other infections

 

--------------------\\ KoobFace !

 

C:\WINDOWS\mmsmark2.dat

 

--------------------\\ Cracks & Keygens ..

 

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@cracktwo[1].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@smackinthecrack[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@smackinthecrack[3].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@stopacrack[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@www.cracktwo[1].txt

C:\DOCUME~1\EMILEE~1\Local Settings\Temp\Cookies\emilee_seda@saynotocrack[1].txt

C:\DOCUME~1\EMILEE~1\Local Settings\Temporary Internet Files\Content.IE5\Y3FW4LYU\tyrannosaur_crack[1].png

 

 

 

1 - "C:\ToolBar SD\TB_1.txt" - Sat 09/19/2009|19:43 - Option : [1]

2 - "C:\ToolBar SD\TB_2.txt" - Sat 09/19/2009|19:47 - Option : [2]

 

-----------\\ Scan completed at 19:47:34.59

 

 

 

 

1er rapport SmitFraudFix :

 

SmitFraudFix v2.424

 

Scan done at 19:49:50.90, Sat 09/19/2009

Run from C:\Documents and Settings\Emilee Seda\Desktop\SmitfraudFix

OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT

The filesystem type is NTFS

Fix run in safe mode

 

ªªªªªªªªªªªªªªªªªªªªªªªª Process

 

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Documents and Settings\Emilee Seda\Desktop\SmitfraudFix\Policies.exe

C:\WINDOWS\system32\cmd.exe

 

ªªªªªªªªªªªªªªªªªªªªªªªª hosts

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\WINDOWS

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\WINDOWS\system

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\WINDOWS\Web

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\WINDOWS\system32

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\WINDOWS\system32\LogFiles

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\Documents and Settings\Emilee Seda

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\DOCUME~1\EMILEE~1\LOCALS~1\Temp

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\Documents and Settings\Emilee Seda\Application Data

 

C:\Documents and Settings\Emilee Seda\Application Data\Skinux FOUND !

 

ªªªªªªªªªªªªªªªªªªªªªªªª Start Menu

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\DOCUME~1\EMILEE~1\FAVORI~1

 

C:\DOCUME~1\EMILEE~1\FAVORI~1\Online Security Test.url FOUND !

 

ªªªªªªªªªªªªªªªªªªªªªªªª Desktop

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª C:\Program Files

 

C:\Program Files\Video Add-on\ FOUND !

 

ªªªªªªªªªªªªªªªªªªªªªªªª Corrupted keys

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Desktop Components

 

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]

"Source"="C:\\Documents and Settings\\Emilee Seda\\My Documents\\My Pictures\\Spring Break Miami '05\\100_0188.JPG"

"SubscribedURL"="C:\\Documents and Settings\\Emilee Seda\\My Documents\\My Pictures\\Spring Break Miami '05\\100_0188.JPG"

"FriendlyName"=""

 

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\1]

"Source"="About:Home"

"SubscribedURL"="About:Home"

"FriendlyName"="My Current Home Page"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\2]

"Source"="http://www.desktopcountdown.com/countdown/?lang=en&mon=5&day=30&year=2008&hour=0&min=0&sec=0&event=South+Beach"'>http://www.desktopcountdown.com/countdown/?lang=en&mon=5&day=30&year=2008&hour=0&min=0&sec=0&event=South+Beach"

"SubscribedURL"="http://www.desktopcountdown.com/countdown/?lang=en&mon=5&day=30&year=2008&hour=0&min=0&sec=0&event=South+Beach"

"FriendlyName"=""

 

ªªªªªªªªªªªªªªªªªªªªªªªª o4Patch

!!!Attention, following keys are not inevitably infected!!!

 

o4Patch

Credits: Malware Analysis & Diagnostic

Code: S!Ri

 

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª IEDFix

!!!Attention, following keys are not inevitably infected!!!

 

IEDFix

Credits: Malware Analysis & Diagnostic

Code: S!Ri

 

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Agent.OMZ.Fix

!!!Attention, following keys are not inevitably infected!!!

 

Agent.OMZ.Fix

Credits: Malware Analysis & Diagnostic

Code: S!Ri

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª VACFix

!!!Attention, following keys are not inevitably infected!!!

 

VACFix

Credits: Malware Analysis & Diagnostic

Code: S!Ri

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª 404Fix

!!!Attention, following keys are not inevitably infected!!!

 

404Fix

Credits: Malware Analysis & Diagnostic

Code: S!Ri

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Sharedtaskscheduler

!!!Attention, following keys are not inevitably infected!!!

 

SrchSTS.exe by S!Ri

Search SharedTaskScheduler's .dll

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]

"{eb4c6870-721f-4989-9c90-8cbfa46d0298}"="anomuran"

 

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª AppInit_DLLs

!!!Attention, following keys are not inevitably infected!!!

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"="karna.dat"

"LoadAppInit_DLLs"=dword:00000001

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Winlogon

!!!Attention, following keys are not inevitably infected!!!

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]

"Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"

 

ªªªªªªªªªªªªªªªªªªªªªªªª RK

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]

"System"=""

 

 

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª DNS

 

HKLM\SYSTEM\CCS\Services\Tcpip\..\{5D793298-D940-48F8-97C0-897957A0AD4D}: DhcpNameServer=93.188.161.105 93.188.166.105

HKLM\SYSTEM\CS1\Services\Tcpip\..\{5D793298-D940-48F8-97C0-897957A0AD4D}: DhcpNameServer=93.188.161.105 93.188.166.105

HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=93.188.161.105 93.188.166.105

HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=93.188.161.105 93.188.166.105

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Scanning for wininet.dll infection

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª End

 

 

 

 

2eme rapport SmitFraudFix :

 

SmitFraudFix v2.424

 

Scan done at 19:53:53.46, Sat 09/19/2009

Run from C:\Documents and Settings\Emilee Seda\Desktop\SmitfraudFix

OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT

The filesystem type is NTFS

Fix run in safe mode

 

ªªªªªªªªªªªªªªªªªªªªªªªª SharedTaskScheduler Before SmitFraudFix

!!!Attention, following keys are not inevitably infected!!!

 

SrchSTS.exe by S!Ri

Search SharedTaskScheduler's .dll

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]

"{eb4c6870-721f-4989-9c90-8cbfa46d0298}"="anomuran"

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Killing process

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª hosts

 

 

127.0.0.1 localhost

127.0.0.1 bin.errorprotector.com ## added by CiD

127.0.0.1 br.errorsafe.com ## added by CiD

127.0.0.1 br.winantivirus.com ## added by CiD

127.0.0.1 br.winfixer.com ## added by CiD

127.0.0.1 de.errorsafe.com ## added by CiD

127.0.0.1 de.winantivirus.com ## added by CiD

127.0.0.1 download.cdn.winsoftware.com ## added by CiD

127.0.0.1 download.errorsafe.com ## added by CiD

127.0.0.1 download.systemdoctor.com ## added by CiD

...

 

ªªªªªªªªªªªªªªªªªªªªªªªª VACFix

 

VACFix

Credits: Malware Analysis & Diagnostic

Code: S!Ri

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Winsock2 Fix

 

S!Ri's WS2Fix: LSP not Found.

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Generic Renos Fix

 

GenericRenosFix by S!Ri

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Deleting infected files

 

C:\Documents and Settings\Emilee Seda\Application Data\Skinux\ Deleted

C:\DOCUME~1\EMILEE~1\FAVORI~1\Online Security Test.url Deleted

C:\Program Files\Video Add-on\ Deleted

 

ªªªªªªªªªªªªªªªªªªªªªªªª IEDFix

 

IEDFix

Credits: Malware Analysis & Diagnostic

Code: S!Ri

 

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Agent.OMZ.Fix

 

Agent.OMZ.Fix

Credits: Malware Analysis & Diagnostic

Code: S!Ri

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª 404Fix

 

404Fix

Credits: Malware Analysis & Diagnostic

Code: S!Ri

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª RK

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª DNS

 

HKLM\SYSTEM\CCS\Services\Tcpip\..\{5D793298-D940-48F8-97C0-897957A0AD4D}: DhcpNameServer=93.188.161.105 93.188.166.105

HKLM\SYSTEM\CS1\Services\Tcpip\..\{5D793298-D940-48F8-97C0-897957A0AD4D}: DhcpNameServer=93.188.161.105 93.188.166.105

HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=93.188.161.105 93.188.166.105

HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=93.188.161.105 93.188.166.105

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Deleting Temp Files

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Winlogon.System

!!!Attention, following keys are not inevitably infected!!!

 

"System"=""

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª RK.2

 

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª Registry Cleaning

 

Registry Cleaning done.

 

ªªªªªªªªªªªªªªªªªªªªªªªª SharedTaskScheduler After SmitFraudFix

!!!Attention, following keys are not inevitably infected!!!

 

SrchSTS.exe by S!Ri

Search SharedTaskScheduler's .dll

 

 

ªªªªªªªªªªªªªªªªªªªªªªªª End

 

 

 

 

Voila! J'imagine que ca te fait beaucoup de boulot, j'te laisse le temps de te pencher la dessus et j'attend de tes nouvelles.

Bon courage. :P

 

@+

Posté(e)

Bonjour,

 

1) Télécharge Lop S&D.exe sur ton Bureau.

http://eric.71.mespages.googlepages.com/LopSD.exe

 

Ou: http://eric71.geekstogo.com/tools/LopSD.exe

 

Double-clique dessus pour lancer l'installation

Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau

Sous Vista: Clic droit/exécuter en temps qu'administrateur ***

 

Sélectionne la langue souhaitée , puis choisis l'option 1 (Recherche)

Patiente jusqu'à la fin du scan

Poste le rapport généré (C:\lopR.txt)

 

(Si le Bureau ne réapparait pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide)

 

--------------------------------------------

 

2) Relance Lop S&D

 

 

Choisis cette fois ci l'Option 2 (Suppression)

Ne ferme pas la fenêtre lors de la suppression !

Poste le rapport généré (C:\lopR.txt)

 

(Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide)

 

---------

3) Télécharge Malwarebytes' Anti-Malware (MBAM)

 

Ce logiciel est à garder.

 

Uniquement en cas de problème de mise à jour:

 

Télécharger mises à jour MBAM

 

Exécute le fichier après l'installation de MBAM

 

Connecter les supports amovibles (clés usb etc.) avant de lancer l'analyse.

 

  • Double clique sur le fichier téléchargé pour lancer le processus d'installation.
  • Dans l'onglet "Mise à jour", clique sur le bouton "Recherche de mise à jour": si le pare-feu demande l'autorisation à MBAM de se connecter, accepte.
  • Une fois la mise à jour terminée, rends-toi dans l'onglet "Recherche".
  • Sélectionne "Exécuter un examen complet"
  • Clique sur "Rechercher"
  • L'analyse démarre, le scan est relativement long, c'est normal.
  • A la fin de l'analyse, un message s'affiche :
    L'examen s'est terminé normalement. Clique sur 'Afficher les résultats' pour afficher tous les objets trouvés.
    Clique sur "Ok" pour poursuivre. Si MBAM n'a rien trouvé, il te le dira aussi.
  • Ferme tes navigateurs.
  • Si des malwares ont été détectés, clique sur Afficher les résultats.
    Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection, MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
  • MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport et poste-le dans ta prochaine réponse.

Si MBAM demande à redémarrer le pc, fais-le.

 

!!! Ne pas vider la quarantaine de MBAM sans avis !!!

 

Poste également un nouveau log Hijackthis stp.

 

@++

Posté(e)

Re Apollo!!

 

J'ai bien fait tout ce que tu m'as demande. Par contre pour Lop S&D j'ai encore du le lancer en mode sans echec car il ne voulait pas fonctionner autrement.

Voici donc les rapports que tu m'as demande.

 

1er rapport LOP :

 

 

--------------------\\ Lop S&D 4.2.5-0 XP/Vista

 

Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 3

X86-based PC ( Multiprocessor Free : Intel® Core2 CPU T7200 @ 2.00GHz )

BIOS : Phoenix ROM BIOS PLUS Version 1.10 A08

USER : Emilee Seda ( Administrator )

BOOT : Fail-safe boot

Antivirus : AVG Internet Security 8.5 (Activated)

Firewall : AVG Firewall 8.5 (Not Activated)

C:\ (Local Disk) - NTFS - Total:51 Go (Free:11 Go)

D:\ (Local Disk) - NTFS - Total:16 Go (Free:5 Go)

E:\ (CD or DVD)

F:\ (USB) - FAT32 - Total:3827 Mo (Free:2 Go)

 

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )

Option : [1] ( Sun 09/20/2009|11:23 )

 

--------------------\\ Listing folders in APPLIC~1

 

[09/28/2006|15:05] C:\DOCUME~1\ADMINI~1\APPLIC~1\ATI

[09/28/2006|15:24] C:\DOCUME~1\ADMINI~1\APPLIC~1\GTek

[08/16/2005|05:50] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities

[09/17/2009|11:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft

[09/28/2006|15:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec

 

[10/05/2008|19:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}

[05/06/2009|18:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{65723BD7-8477-4ADF-8686-B75D0C3C0E4D}

[05/07/2009|00:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{7AFFC3A8-183F-40D4-A968-735F60EC7C84}

[08/10/2009|18:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{BFB5F154-9212-46F3-B547-AC6106030A54}

[12/17/2008|00:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe

[02/23/2007|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL

[12/14/2006|14:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads

[12/14/2006|14:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL OCP

[10/21/2007|18:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple

[10/04/2006|11:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer

[12/24/2008|02:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ArcSoft

[08/17/2009|02:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVG Security Toolbar

[09/19/2009|19:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg8

[09/28/2006|15:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Creative Labs

[05/06/2009|18:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Dell

[08/17/2009|02:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations

[05/15/2009|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google

[09/28/2006|15:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GTek

[12/28/2006|16:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HotSync

[10/17/2006|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP

[12/02/2008|09:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP Product Assistant

[09/28/2006|15:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield

[02/11/2009|14:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files

[12/24/2008|02:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kodak

[12/11/2006|22:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee

[11/30/2006|20:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!

[09/16/2009|11:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft

[11/30/2008|19:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\myitlab

[02/14/2008|08:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Swift Sound

[12/11/2006|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Network Associates

[09/28/2006|15:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime

[10/28/2007|23:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Rdr hide the extra

[08/08/2009|21:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype

[10/26/2007|16:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com

[12/09/2007|11:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec

[10/24/2007|09:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP

[02/06/2007|23:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\VideoEgg

[08/08/2009|21:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint

[10/03/2006|22:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage

[10/09/2008|00:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\zqzmxgdo

 

[03/21/2007|21:45] C:\DOCUME~1\APPLIC~1\APPLIC~1\Microsoft

 

[09/28/2006|15:05] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI

[09/28/2006|15:24] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Gtek

[08/16/2005|05:50] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities

[08/16/2005|05:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[09/28/2006|15:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

 

[12/14/2007|01:23] C:\DOCUME~1\EMILEE~1\APPLIC~1\Adobe

[01/14/2007|13:45] C:\DOCUME~1\EMILEE~1\APPLIC~1\AdobeUM

[02/16/2009|10:58] C:\DOCUME~1\EMILEE~1\APPLIC~1\Amazon

[10/05/2006|06:41] C:\DOCUME~1\EMILEE~1\APPLIC~1\Apple Computer

[12/24/2008|02:25] C:\DOCUME~1\EMILEE~1\APPLIC~1\ArcSoft

[09/28/2006|15:05] C:\DOCUME~1\EMILEE~1\APPLIC~1\ATI

[08/17/2009|02:10] C:\DOCUME~1\EMILEE~1\APPLIC~1\AVG8

[03/23/2007|15:12] C:\DOCUME~1\EMILEE~1\APPLIC~1\CyberLink

[11/28/2008|19:05] C:\DOCUME~1\EMILEE~1\APPLIC~1\DataCast

[05/06/2009|18:51] C:\DOCUME~1\EMILEE~1\APPLIC~1\Dell

[04/29/2009|19:05] C:\DOCUME~1\EMILEE~1\APPLIC~1\dvdcss

[08/08/2009|21:42] C:\DOCUME~1\EMILEE~1\APPLIC~1\eMusic

[08/08/2009|21:41] C:\DOCUME~1\EMILEE~1\APPLIC~1\FMZilla

[05/15/2009|21:46] C:\DOCUME~1\EMILEE~1\APPLIC~1\Google

[09/28/2006|15:24] C:\DOCUME~1\EMILEE~1\APPLIC~1\Gtek

[12/28/2006|16:33] C:\DOCUME~1\EMILEE~1\APPLIC~1\HotSync

[10/17/2006|12:45] C:\DOCUME~1\EMILEE~1\APPLIC~1\HP

[08/16/2005|05:50] C:\DOCUME~1\EMILEE~1\APPLIC~1\Identities

[12/02/2008|09:59] C:\DOCUME~1\EMILEE~1\APPLIC~1\Image Zone Express

[11/13/2007|00:25] C:\DOCUME~1\EMILEE~1\APPLIC~1\IrfanView

[11/09/2006|22:07] C:\DOCUME~1\EMILEE~1\APPLIC~1\Leadertech

[12/09/2007|11:30] C:\DOCUME~1\EMILEE~1\APPLIC~1\Macromedia

[07/27/2008|10:01] C:\DOCUME~1\EMILEE~1\APPLIC~1\Microsoft

[06/15/2009|09:45] C:\DOCUME~1\EMILEE~1\APPLIC~1\Move Networks

[06/07/2009|14:24] C:\DOCUME~1\EMILEE~1\APPLIC~1\Mozilla

[08/11/2009|23:22] C:\DOCUME~1\EMILEE~1\APPLIC~1\MSNInstaller

[03/21/2007|21:45] C:\DOCUME~1\EMILEE~1\APPLIC~1\MySpace

[06/15/2008|19:13] C:\DOCUME~1\EMILEE~1\APPLIC~1\NCH Swift Sound

[10/08/2008|23:32] C:\DOCUME~1\EMILEE~1\APPLIC~1\Phone Start

[02/12/2008|14:03] C:\DOCUME~1\EMILEE~1\APPLIC~1\Printer Info Cache

[03/14/2007|11:01] C:\DOCUME~1\EMILEE~1\APPLIC~1\Real

[03/24/2007|13:11] C:\DOCUME~1\EMILEE~1\APPLIC~1\Screenshot Sender

[06/15/2008|19:16] C:\DOCUME~1\EMILEE~1\APPLIC~1\Slide

[11/09/2006|22:07] C:\DOCUME~1\EMILEE~1\APPLIC~1\Sonic

[09/16/2009|10:14] C:\DOCUME~1\EMILEE~1\APPLIC~1\StumbleUpon

[10/05/2006|05:52] C:\DOCUME~1\EMILEE~1\APPLIC~1\Sun

[06/15/2008|19:13] C:\DOCUME~1\EMILEE~1\APPLIC~1\SUPERAntiSpyware.com

[09/28/2006|15:10] C:\DOCUME~1\EMILEE~1\APPLIC~1\Symantec

[11/16/2006|22:40] C:\DOCUME~1\EMILEE~1\APPLIC~1\U3

[02/06/2007|23:42] C:\DOCUME~1\EMILEE~1\APPLIC~1\VideoEgg

[01/17/2007|08:05] C:\DOCUME~1\EMILEE~1\APPLIC~1\Viewpoint

[04/29/2009|18:57] C:\DOCUME~1\EMILEE~1\APPLIC~1\vlc

 

[09/17/2009|11:10] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

 

[09/17/2009|11:10] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

 

--------------------\\ Scheduled Tasks located in C:\WINDOWS\Tasks

 

[09/02/2009 01:12][--a------] C:\WINDOWS\tasks\EasyShare Registration Task.job

[09/20/2009 10:00][--ah-----] C:\WINDOWS\tasks\B3F05C1893EBC7E0.job

[09/17/2009 14:27][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job

[09/20/2009 11:19][--ah-----] C:\WINDOWS\tasks\SA.DAT

[08/10/2004 06:00][-r-h-c---] C:\WINDOWS\tasks\desktop.ini

 

( B3F05C1893EBC7E0.job )=( c:\docume~1\emilee~1\applic~1\phones~1\FunkGridHold.exe )

 

--------------------\\ Listing Folders in C:\Program Files

 

[10/04/2006|12:02] C:\Program Files\360Share Pro

[12/17/2008|00:15] C:\Program Files\Adobe

[03/09/2007|21:49] C:\Program Files\Adverts

[02/16/2009|10:49] C:\Program Files\Amazon

[10/04/2006|19:44] C:\Program Files\AOD

[10/05/2008|19:39] C:\Program Files\Apple Software Update

[01/06/2009|10:54] C:\Program Files\Aqua Dock

[12/24/2008|02:24] C:\Program Files\ArcSoft

[01/06/2009|10:55] C:\Program Files\a-squared Anti-Malware

[01/06/2009|10:55] C:\Program Files\a-squared Free

[03/23/2007|14:56] C:\Program Files\ATI Technologies

[08/17/2009|02:22] C:\Program Files\AVG

[10/09/2008|00:45] C:\Program Files\BAE

[01/05/2007|23:20] C:\Program Files\Berlitz

[09/28/2006|15:00] C:\Program Files\Broadcom

[08/17/2009|08:51] C:\Program Files\BrowserCtl

[09/16/2009|10:18] C:\Program Files\Common Files

[08/16/2005|05:38] C:\Program Files\ComPlus Applications

[09/28/2006|14:57] C:\Program Files\CONEXANT

[09/28/2006|15:14] C:\Program Files\Corel Corporation

[01/06/2009|11:03] C:\Program Files\Creative

[09/28/2006|15:03] C:\Program Files\Creative Installation Information

[09/28/2006|15:05] C:\Program Files\CyberLink

[05/06/2009|18:46] C:\Program Files\Dell

[07/20/2009|23:20] C:\Program Files\Dell Support

[03/23/2007|14:25] C:\Program Files\DellConnect

[09/28/2006|15:01] C:\Program Files\Digital Line Detect

[08/08/2009|21:42] C:\Program Files\eMusic Download Manager

[06/15/2008|19:06] C:\Program Files\GemMaster

[05/15/2009|21:44] C:\Program Files\Google

[10/17/2006|12:38] C:\Program Files\Hewlett-Packard

[12/02/2008|09:55] C:\Program Files\HP

[08/08/2009|21:36] C:\Program Files\InstallShield Installation Information

[08/20/2009|13:12] C:\Program Files\Internet Explorer

[02/11/2009|14:33] C:\Program Files\ioazzzc

[10/05/2008|19:26] C:\Program Files\iPod

[02/22/2007|01:43] C:\Program Files\IrfanView

[10/05/2008|19:27] C:\Program Files\iTunes

[09/28/2006|14:52] C:\Program Files\Java

[09/20/2008|19:44] C:\Program Files\KingsIsle Entertainment

[12/24/2008|02:24] C:\Program Files\Kodak

[08/19/2009|02:28] C:\Program Files\LimeWire

[07/28/2009|00:50] C:\Program Files\LIVEUPDATE

[11/28/2008|19:05] C:\Program Files\MarkAny

[05/06/2009|18:22] C:\Program Files\Messenger

[05/21/2009|21:30] C:\Program Files\Messenger Plus! Live

[09/16/2009|11:41] C:\Program Files\Microsoft

[03/07/2007|16:48] C:\Program Files\Microsoft ActiveSync

[09/17/2009|09:42] C:\Program Files\Microsoft CAPICOM 2.1.0.2

[08/16/2005|05:43] C:\Program Files\microsoft frontpage

[03/08/2007|11:49] C:\Program Files\Microsoft Office

[10/18/2008|00:51] C:\Program Files\Microsoft Plus! Digital Media Edition

[09/28/2006|15:06] C:\Program Files\Microsoft Plus! Photo Story 2 LE

[09/17/2009|09:44] C:\Program Files\Microsoft Silverlight

[09/28/2006|15:27] C:\Program Files\Microsoft SQL Server

[09/16/2009|11:39] C:\Program Files\Microsoft SQL Server Compact Edition

[09/16/2009|11:40] C:\Program Files\Microsoft Sync Framework

[09/28/2006|15:21] C:\Program Files\Microsoft Visual Studio

[09/17/2009|09:41] C:\Program Files\Microsoft Works

[09/28/2006|15:01] C:\Program Files\Modem Helper

[05/06/2009|16:40] C:\Program Files\Movie Maker

[09/20/2009|00:25] C:\Program Files\Mozilla Firefox

[05/06/2009|19:21] C:\Program Files\MSBuild

[08/11/2009|23:21] C:\Program Files\MSN

[08/16/2005|05:37] C:\Program Files\MSN Gaming Zone

[09/16/2009|11:36] C:\Program Files\MSN Messenger

[11/13/2008|10:32] C:\Program Files\MSXML 4.0

[06/16/2008|00:49] C:\Program Files\MUSICMATCH

[03/21/2007|21:45] C:\Program Files\MySpace

[02/13/2008|23:53] C:\Program Files\NCH Software

[05/06/2009|16:37] C:\Program Files\NetMeeting

[12/11/2006|22:39] C:\Program Files\Network Associates

[08/16/2005|05:38] C:\Program Files\Online Services

[08/14/2009|08:25] C:\Program Files\Outlook Express

[06/15/2008|19:09] C:\Program Files\Palm

[11/30/2006|20:24] C:\Program Files\Phone Start

[03/08/2007|11:55] C:\Program Files\ProfileWatcher

[10/05/2008|19:24] C:\Program Files\QuickTime

[06/15/2008|19:11] C:\Program Files\Real

[05/06/2009|19:21] C:\Program Files\Reference Assemblies

[08/16/2005|21:58] C:\Program Files\RGB

[11/28/2008|19:05] C:\Program Files\Samsung

[01/06/2009|11:00] C:\Program Files\Samurize

[09/13/2009|13:03] C:\Program Files\Search Enhancer Toolbar

[09/28/2006|14:57] C:\Program Files\Sigmatel

[06/15/2008|19:16] C:\Program Files\Slide

[10/30/2006|08:55] C:\Program Files\Sonic

[01/06/2009|11:00] C:\Program Files\SpywareBlaster

[05/07/2009|00:02] C:\Program Files\Stardock

[06/11/2009|08:01] C:\Program Files\StumbleUpon

[06/15/2008|19:13] C:\Program Files\SUPERAntiSpyware

[09/28/2006|14:59] C:\Program Files\Synaptics

[09/18/2009|12:00] C:\Program Files\Trend Micro

[08/16/2005|05:50] C:\Program Files\Uninstall Information

[02/06/2007|23:42] C:\Program Files\VideoEgg

[04/29/2009|18:55] C:\Program Files\VideoLAN

[09/28/2006|14:55] C:\Program Files\WIDCOMM

[09/28/2006|15:11] C:\Program Files\WildTangent

[09/16/2009|11:41] C:\Program Files\Windows Live

[09/16/2009|11:34] C:\Program Files\Windows Live SkyDrive

[05/24/2007|10:03] C:\Program Files\Windows Media Connect 2

[01/06/2009|11:00] C:\Program Files\Windows Media Player

[05/06/2009|16:37] C:\Program Files\Windows NT

[08/16/2005|05:37] C:\Program Files\Windows Plus

[08/16/2005|05:40] C:\Program Files\WindowsUpdate

[08/16/2005|05:43] C:\Program Files\xerox

 

--------------------\\ Listing Folders in C:\Program Files\Common Files

 

[12/17/2008|00:15] C:\Program Files\Common Files\Adobe

[02/23/2007|21:12] C:\Program Files\Common Files\AOL

[01/06/2009|10:52] C:\Program Files\Common Files\Apple

[12/24/2008|02:25] C:\Program Files\Common Files\ArcSoft

[10/03/2006|23:45] C:\Program Files\Common Files\Cisco Systems

[09/28/2006|15:03] C:\Program Files\Common Files\Creative

[09/28/2006|15:02] C:\Program Files\Common Files\Creative Labs Shared

[09/28/2006|15:22] C:\Program Files\Common Files\DESIGNER

[10/17/2006|12:37] C:\Program Files\Common Files\Hewlett-Packard

[02/12/2008|14:02] C:\Program Files\Common Files\HP

[09/28/2006|15:09] C:\Program Files\Common Files\InstallShield

[09/28/2006|14:51] C:\Program Files\Common Files\Java

[12/24/2008|02:23] C:\Program Files\Common Files\Kodak

[09/16/2009|11:34] C:\Program Files\Common Files\Microsoft Shared

[08/16/2005|05:40] C:\Program Files\Common Files\MSSoap

[09/28/2006|15:08] C:\Program Files\Common Files\Nullsoft

[08/16/2005|05:33] C:\Program Files\Common Files\ODBC

[05/15/2009|21:46] C:\Program Files\Common Files\Real

[08/16/2005|05:40] C:\Program Files\Common Files\Services

[12/10/2006|13:51] C:\Program Files\Common Files\Sonic Shared

[08/16/2005|05:33] C:\Program Files\Common Files\SpeechEngines

[05/07/2009|00:01] C:\Program Files\Common Files\Stardock

[12/09/2007|11:41] C:\Program Files\Common Files\Symantec Shared

[05/06/2009|16:37] C:\Program Files\Common Files\System

[09/28/2006|15:07] C:\Program Files\Common Files\TiVo Shared

[09/16/2009|10:18] C:\Program Files\Common Files\Windows Live

[05/15/2009|21:46] C:\Program Files\Common Files\xing shared

 

--------------------\\ Process

 

( 14 Processes )

 

... OK !

 

--------------------\\ Searching with S_Lop

 

No Lop folder found !

 

--------------------\\ Searching for Lop Files - Folders

 

C:\DOCUME~1\EMILEE~1\APPLIC~1\phones~1

C:\Program Files\phones~1

C:\Program Files\Adverts

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@realfoodmedia.advertserve[1].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@snap9.advertserve[1].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@advertising.edvisors[1].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@advertising.healthguru[1].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@advertising.healthguru[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@advertising.kissthisguy[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@traveladvertising[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@vegaschatter[2].txt

C:\WINDOWS\Tasks\B3F05C1893EBC7E0.job

 

--------------------\\ Searching within the Registry

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

 

..... OK !

 

--------------------\\ Checking the Hosts file

 

Hosts file MODIFIED

 

127.0.0.1 bin.errorprotector.com ## added by CiD

127.0.0.1 br.errorsafe.com ## added by CiD

127.0.0.1 br.winantivirus.com ## added by CiD

127.0.0.1 br.winfixer.com ## added by CiD

127.0.0.1 de.errorsafe.com ## added by CiD

127.0.0.1 de.winantivirus.com ## added by CiD

127.0.0.1 download.cdn.winsoftware.com ## added by CiD

127.0.0.1 download.errorsafe.com ## added by CiD

127.0.0.1 download.systemdoctor.com ## added by CiD

127.0.0.1 download.winantispyware.com ## added by CiD

127.0.0.1 download.windrivecleaner.com ## added by CiD

127.0.0.1 download.winfixer.com ## added by CiD

127.0.0.1 drivecleaner.com ## added by CiD

127.0.0.1 dynamique.drivecleaner.com ## added by CiD

127.0.0.1 errorprotector.com ## added by CiD

127.0.0.1 errorsafe.com ## added by CiD

127.0.0.1 es.winantivirus.com ## added by CiD

127.0.0.1 fr.winantivirus.com ## added by CiD

127.0.0.1 fr.winfixer.com ## added by CiD

127.0.0.1 go.drivecleaner.com ## added by CiD

127.0.0.1 go.errorsafe.com ## added by CiD

127.0.0.1 go.winantispyware.com ## added by CiD

127.0.0.1 go.winantivirus.com ## added by CiD

127.0.0.1 hk.winantivirus.com ## added by CiD

127.0.0.1 instlog.errorsafe.com ## added by CiD

127.0.0.1 instlog.winantivirus.com ## added by CiD

127.0.0.1 jsp.drivecleaner.com ## added by CiD

127.0.0.1 kb.errorsafe.com ## added by CiD

127.0.0.1 kb.winantivirus.com ## added by CiD

127.0.0.1 nl.errorsafe.com ## added by CiD

127.0.0.1 se.errorsafe.com ## added by CiD

127.0.0.1 secure.drivecleaner.com ## added by CiD

127.0.0.1 secure.errorsafe.com ## added by CiD

127.0.0.1 secure.winantispam.com ## added by CiD

127.0.0.1 secure.winantispy.com ## added by CiD

127.0.0.1 secure.winantivirus.com ## added by CiD

127.0.0.1 support.winantivirus.com ## added by CiD

127.0.0.1 ulog.winantivirus.com ## added by CiD

127.0.0.1 utils.errorsafe.com ## added by CiD

127.0.0.1 utils.winantivirus.com ## added by CiD

127.0.0.1 winantispyware.com ## added by CiD

127.0.0.1 winantivirus.com ## added by CiD

127.0.0.1 winfixer.com ## added by CiD

127.0.0.1 www.drivecleaner.com ## added by CiD

127.0.0.1 www.errorprotector.com ## added by CiD

127.0.0.1 www.errorsafe.com ## added by CiD

127.0.0.1 www.systemdoctor.com ## added by CiD

127.0.0.1 www.win-anti-virus-pro.com ## added by CiD

127.0.0.1 www.win-virus-pro.com ## added by CiD

127.0.0.1 www.winantispam.com ## added by CiD

127.0.0.1 www.winantispy.com ## added by CiD

127.0.0.1 www.winantispyware.com ## added by CiD

127.0.0.1 www.winantivirus.com ## added by CiD

127.0.0.1 www.winantiviruspro.com ## added by CiD

127.0.0.1 www.windrivecleaner.com ## added by CiD

127.0.0.1 www.windrivesafe.com ## added by CiD

127.0.0.1 www.winfixer.com ## added by CiD

127.0.0.1 cdn.drivecleaner.com ## added by CiD

127.0.0.1 cdn.errorsafe.com ## added by CiD

127.0.0.1 cdn.winsoftware.com ## added by CiD

127.0.0.1 download.cdn.drivecleaner.com ## added by CiD

127.0.0.1 download.cdn.errorsafe.com ## added by CiD

127.0.0.1 instlog.winfixer.com ## added by CiD

127.0.0.1 trial.updates.winsoftware.com ## added by CiD

127.0.0.1 utils.winfixer.com ## added by CiD

127.0.0.1 winfixer2006.com ## added by CiD

127.0.0.1 winsoftware.com ## added by CiD

127.0.0.1 www.utils.winfixer.com ## added by CiD

127.0.0.1 www.winfixer2006.com ## added by CiD

127.0.0.1 www.winsoftware.com ## added by CiD

 

-> 72 [ 70 ## added by CiD ]

 

--------------------\\ Searching for hidden files with Catchme

 

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2009-09-20 11:23:48

Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden files ...

scan completed successfully

hidden processes: 0

hidden files: 0

 

--------------------\\ Searching for other infections

 

--------------------\\ KoobFace !

 

C:\WINDOWS\mmsmark2.dat

 

--------------------\\ Cracks & Keygens ..

 

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@cracktwo[1].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@smackinthecrack[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@smackinthecrack[3].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@stopacrack[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@www.cracktwo[1].txt

C:\DOCUME~1\EMILEE~1\Local Settings\Temp\Cookies\emilee_seda@saynotocrack[1].txt

C:\DOCUME~1\EMILEE~1\Local Settings\Temporary Internet Files\Content.IE5\Y3FW4LYU\tyrannosaur_crack[1].png

 

 

[F:3750][D:176]-> C:\DOCUME~1\EMILEE~1\LOCALS~1\Temp

[F:5635][D:0]-> C:\DOCUME~1\EMILEE~1\Cookies

[F:18446][D:362]-> C:\DOCUME~1\EMILEE~1\LOCALS~1\TEMPOR~1\content.IE5

 

1 - "C:\Lop SD\LopR_1.txt" - Sun 09/20/2009|11:29 - Option : [1]

 

--------------------\\ Scan completed at 11:29:37

 

 

 

 

2eme rapport LOP :

 

 

--------------------\\ Lop S&D 4.2.5-0 XP/Vista

 

Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 3

X86-based PC ( Multiprocessor Free : Intel® Core2 CPU T7200 @ 2.00GHz )

BIOS : Phoenix ROM BIOS PLUS Version 1.10 A08

USER : Emilee Seda ( Administrator )

BOOT : Fail-safe boot

Antivirus : AVG Internet Security 8.5 (Activated)

Firewall : AVG Firewall 8.5 (Not Activated)

C:\ (Local Disk) - NTFS - Total:51 Go (Free:11 Go)

D:\ (Local Disk) - NTFS - Total:16 Go (Free:5 Go)

E:\ (CD or DVD)

F:\ (USB) - FAT32 - Total:3827 Mo (Free:2 Go)

 

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )

Option : [2] ( Sun 09/20/2009|11:50 )

 

 

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ FIX

 

Deleted! - C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@realfoodmedia.advertserve[1].txt

Deleted! - C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@snap9.advertserve[1].txt

Deleted! - C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@advertising.edvisors[1].txt

Deleted! - C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@advertising.healthguru[1].txt

Deleted! - C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@advertising.healthguru[2].txt

Deleted! - C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@advertising.kissthisguy[2].txt

Deleted! - C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@traveladvertising[2].txt

Deleted! - C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@vegaschatter[2].txt

Deleted! - C:\WINDOWS\Tasks\B3F05C1893EBC7E0.job

Deleted! - C:\DOCUME~1\EMILEE~1\APPLIC~1\phones~1

Deleted! - C:\Program Files\phones~1

Deleted! - C:\Program Files\Adverts

-

[ Hosts file ] .. Restored!

 

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

 

Deleted! - C:\DOCUME~1\EMILEE~1\APPLIC~1\Viewpoint

Deleted! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint

 

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

 

 

--------------------\\ Listing folders in APPLIC~1

 

[09/28/2006|15:05] C:\DOCUME~1\ADMINI~1\APPLIC~1\ATI

[09/28/2006|15:24] C:\DOCUME~1\ADMINI~1\APPLIC~1\GTek

[08/16/2005|05:50] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities

[09/17/2009|11:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft

[09/28/2006|15:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec

 

[10/05/2008|19:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}

[05/06/2009|18:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{65723BD7-8477-4ADF-8686-B75D0C3C0E4D}

[05/07/2009|00:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{7AFFC3A8-183F-40D4-A968-735F60EC7C84}

[08/10/2009|18:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{BFB5F154-9212-46F3-B547-AC6106030A54}

[12/17/2008|00:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe

[02/23/2007|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL

[12/14/2006|14:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads

[12/14/2006|14:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL OCP

[10/21/2007|18:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple

[10/04/2006|11:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer

[12/24/2008|02:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ArcSoft

[08/17/2009|02:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVG Security Toolbar

[09/19/2009|19:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg8

[09/28/2006|15:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Creative Labs

[05/06/2009|18:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Dell

[08/17/2009|02:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations

[05/15/2009|21:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google

[09/28/2006|15:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GTek

[12/28/2006|16:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HotSync

[10/17/2006|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP

[12/02/2008|09:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP Product Assistant

[09/28/2006|15:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield

[02/11/2009|14:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files

[12/24/2008|02:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kodak

[12/11/2006|22:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee

[11/30/2006|20:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!

[09/16/2009|11:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft

[11/30/2008|19:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\myitlab

[02/14/2008|08:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Swift Sound

[12/11/2006|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Network Associates

[09/28/2006|15:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime

[10/28/2007|23:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Rdr hide the extra

[08/08/2009|21:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype

[10/26/2007|16:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com

[12/09/2007|11:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec

[10/24/2007|09:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP

[02/06/2007|23:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\VideoEgg

[10/03/2006|22:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage

[10/09/2008|00:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\zqzmxgdo

 

[03/21/2007|21:45] C:\DOCUME~1\APPLIC~1\APPLIC~1\Microsoft

 

[09/28/2006|15:05] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI

[09/28/2006|15:24] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Gtek

[08/16/2005|05:50] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities

[08/16/2005|05:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[09/28/2006|15:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

 

[12/14/2007|01:23] C:\DOCUME~1\EMILEE~1\APPLIC~1\Adobe

[01/14/2007|13:45] C:\DOCUME~1\EMILEE~1\APPLIC~1\AdobeUM

[02/16/2009|10:58] C:\DOCUME~1\EMILEE~1\APPLIC~1\Amazon

[10/05/2006|06:41] C:\DOCUME~1\EMILEE~1\APPLIC~1\Apple Computer

[12/24/2008|02:25] C:\DOCUME~1\EMILEE~1\APPLIC~1\ArcSoft

[09/28/2006|15:05] C:\DOCUME~1\EMILEE~1\APPLIC~1\ATI

[08/17/2009|02:10] C:\DOCUME~1\EMILEE~1\APPLIC~1\AVG8

[03/23/2007|15:12] C:\DOCUME~1\EMILEE~1\APPLIC~1\CyberLink

[11/28/2008|19:05] C:\DOCUME~1\EMILEE~1\APPLIC~1\DataCast

[05/06/2009|18:51] C:\DOCUME~1\EMILEE~1\APPLIC~1\Dell

[04/29/2009|19:05] C:\DOCUME~1\EMILEE~1\APPLIC~1\dvdcss

[08/08/2009|21:42] C:\DOCUME~1\EMILEE~1\APPLIC~1\eMusic

[08/08/2009|21:41] C:\DOCUME~1\EMILEE~1\APPLIC~1\FMZilla

[05/15/2009|21:46] C:\DOCUME~1\EMILEE~1\APPLIC~1\Google

[09/28/2006|15:24] C:\DOCUME~1\EMILEE~1\APPLIC~1\Gtek

[12/28/2006|16:33] C:\DOCUME~1\EMILEE~1\APPLIC~1\HotSync

[10/17/2006|12:45] C:\DOCUME~1\EMILEE~1\APPLIC~1\HP

[08/16/2005|05:50] C:\DOCUME~1\EMILEE~1\APPLIC~1\Identities

[12/02/2008|09:59] C:\DOCUME~1\EMILEE~1\APPLIC~1\Image Zone Express

[11/13/2007|00:25] C:\DOCUME~1\EMILEE~1\APPLIC~1\IrfanView

[11/09/2006|22:07] C:\DOCUME~1\EMILEE~1\APPLIC~1\Leadertech

[12/09/2007|11:30] C:\DOCUME~1\EMILEE~1\APPLIC~1\Macromedia

[07/27/2008|10:01] C:\DOCUME~1\EMILEE~1\APPLIC~1\Microsoft

[06/15/2009|09:45] C:\DOCUME~1\EMILEE~1\APPLIC~1\Move Networks

[06/07/2009|14:24] C:\DOCUME~1\EMILEE~1\APPLIC~1\Mozilla

[08/11/2009|23:22] C:\DOCUME~1\EMILEE~1\APPLIC~1\MSNInstaller

[03/21/2007|21:45] C:\DOCUME~1\EMILEE~1\APPLIC~1\MySpace

[06/15/2008|19:13] C:\DOCUME~1\EMILEE~1\APPLIC~1\NCH Swift Sound

[02/12/2008|14:03] C:\DOCUME~1\EMILEE~1\APPLIC~1\Printer Info Cache

[03/14/2007|11:01] C:\DOCUME~1\EMILEE~1\APPLIC~1\Real

[03/24/2007|13:11] C:\DOCUME~1\EMILEE~1\APPLIC~1\Screenshot Sender

[06/15/2008|19:16] C:\DOCUME~1\EMILEE~1\APPLIC~1\Slide

[11/09/2006|22:07] C:\DOCUME~1\EMILEE~1\APPLIC~1\Sonic

[09/16/2009|10:14] C:\DOCUME~1\EMILEE~1\APPLIC~1\StumbleUpon

[10/05/2006|05:52] C:\DOCUME~1\EMILEE~1\APPLIC~1\Sun

[06/15/2008|19:13] C:\DOCUME~1\EMILEE~1\APPLIC~1\SUPERAntiSpyware.com

[09/28/2006|15:10] C:\DOCUME~1\EMILEE~1\APPLIC~1\Symantec

[11/16/2006|22:40] C:\DOCUME~1\EMILEE~1\APPLIC~1\U3

[02/06/2007|23:42] C:\DOCUME~1\EMILEE~1\APPLIC~1\VideoEgg

[04/29/2009|18:57] C:\DOCUME~1\EMILEE~1\APPLIC~1\vlc

 

[09/17/2009|11:10] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

 

[09/17/2009|11:10] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

 

--------------------\\ Scheduled Tasks located in C:\WINDOWS\Tasks

 

[09/02/2009 01:12][--a------] C:\WINDOWS\tasks\EasyShare Registration Task.job

[09/17/2009 14:27][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job

[09/20/2009 11:19][--ah-----] C:\WINDOWS\tasks\SA.DAT

[08/10/2004 06:00][-r-h-c---] C:\WINDOWS\tasks\desktop.ini

 

--------------------\\ Listing Folders in C:\Program Files

 

[10/04/2006|12:02] C:\Program Files\360Share Pro

[12/17/2008|00:15] C:\Program Files\Adobe

[02/16/2009|10:49] C:\Program Files\Amazon

[10/04/2006|19:44] C:\Program Files\AOD

[10/05/2008|19:39] C:\Program Files\Apple Software Update

[01/06/2009|10:54] C:\Program Files\Aqua Dock

[12/24/2008|02:24] C:\Program Files\ArcSoft

[01/06/2009|10:55] C:\Program Files\a-squared Anti-Malware

[01/06/2009|10:55] C:\Program Files\a-squared Free

[03/23/2007|14:56] C:\Program Files\ATI Technologies

[08/17/2009|02:22] C:\Program Files\AVG

[10/09/2008|00:45] C:\Program Files\BAE

[01/05/2007|23:20] C:\Program Files\Berlitz

[09/28/2006|15:00] C:\Program Files\Broadcom

[08/17/2009|08:51] C:\Program Files\BrowserCtl

[09/16/2009|10:18] C:\Program Files\Common Files

[08/16/2005|05:38] C:\Program Files\ComPlus Applications

[09/28/2006|14:57] C:\Program Files\CONEXANT

[09/28/2006|15:14] C:\Program Files\Corel Corporation

[01/06/2009|11:03] C:\Program Files\Creative

[09/28/2006|15:03] C:\Program Files\Creative Installation Information

[09/28/2006|15:05] C:\Program Files\CyberLink

[05/06/2009|18:46] C:\Program Files\Dell

[07/20/2009|23:20] C:\Program Files\Dell Support

[03/23/2007|14:25] C:\Program Files\DellConnect

[09/28/2006|15:01] C:\Program Files\Digital Line Detect

[08/08/2009|21:42] C:\Program Files\eMusic Download Manager

[06/15/2008|19:06] C:\Program Files\GemMaster

[05/15/2009|21:44] C:\Program Files\Google

[10/17/2006|12:38] C:\Program Files\Hewlett-Packard

[12/02/2008|09:55] C:\Program Files\HP

[08/08/2009|21:36] C:\Program Files\InstallShield Installation Information

[08/20/2009|13:12] C:\Program Files\Internet Explorer

[02/11/2009|14:33] C:\Program Files\ioazzzc

[10/05/2008|19:26] C:\Program Files\iPod

[02/22/2007|01:43] C:\Program Files\IrfanView

[10/05/2008|19:27] C:\Program Files\iTunes

[09/28/2006|14:52] C:\Program Files\Java

[09/20/2008|19:44] C:\Program Files\KingsIsle Entertainment

[12/24/2008|02:24] C:\Program Files\Kodak

[08/19/2009|02:28] C:\Program Files\LimeWire

[07/28/2009|00:50] C:\Program Files\LIVEUPDATE

[11/28/2008|19:05] C:\Program Files\MarkAny

[05/06/2009|18:22] C:\Program Files\Messenger

[05/21/2009|21:30] C:\Program Files\Messenger Plus! Live

[09/16/2009|11:41] C:\Program Files\Microsoft

[03/07/2007|16:48] C:\Program Files\Microsoft ActiveSync

[09/17/2009|09:42] C:\Program Files\Microsoft CAPICOM 2.1.0.2

[08/16/2005|05:43] C:\Program Files\microsoft frontpage

[03/08/2007|11:49] C:\Program Files\Microsoft Office

[10/18/2008|00:51] C:\Program Files\Microsoft Plus! Digital Media Edition

[09/28/2006|15:06] C:\Program Files\Microsoft Plus! Photo Story 2 LE

[09/17/2009|09:44] C:\Program Files\Microsoft Silverlight

[09/28/2006|15:27] C:\Program Files\Microsoft SQL Server

[09/16/2009|11:39] C:\Program Files\Microsoft SQL Server Compact Edition

[09/16/2009|11:40] C:\Program Files\Microsoft Sync Framework

[09/28/2006|15:21] C:\Program Files\Microsoft Visual Studio

[09/17/2009|09:41] C:\Program Files\Microsoft Works

[09/28/2006|15:01] C:\Program Files\Modem Helper

[05/06/2009|16:40] C:\Program Files\Movie Maker

[09/20/2009|00:25] C:\Program Files\Mozilla Firefox

[05/06/2009|19:21] C:\Program Files\MSBuild

[08/11/2009|23:21] C:\Program Files\MSN

[08/16/2005|05:37] C:\Program Files\MSN Gaming Zone

[09/16/2009|11:36] C:\Program Files\MSN Messenger

[11/13/2008|10:32] C:\Program Files\MSXML 4.0

[06/16/2008|00:49] C:\Program Files\MUSICMATCH

[03/21/2007|21:45] C:\Program Files\MySpace

[02/13/2008|23:53] C:\Program Files\NCH Software

[05/06/2009|16:37] C:\Program Files\NetMeeting

[12/11/2006|22:39] C:\Program Files\Network Associates

[08/16/2005|05:38] C:\Program Files\Online Services

[08/14/2009|08:25] C:\Program Files\Outlook Express

[06/15/2008|19:09] C:\Program Files\Palm

[03/08/2007|11:55] C:\Program Files\ProfileWatcher

[10/05/2008|19:24] C:\Program Files\QuickTime

[06/15/2008|19:11] C:\Program Files\Real

[05/06/2009|19:21] C:\Program Files\Reference Assemblies

[08/16/2005|21:58] C:\Program Files\RGB

[11/28/2008|19:05] C:\Program Files\Samsung

[01/06/2009|11:00] C:\Program Files\Samurize

[09/13/2009|13:03] C:\Program Files\Search Enhancer Toolbar

[09/28/2006|14:57] C:\Program Files\Sigmatel

[06/15/2008|19:16] C:\Program Files\Slide

[10/30/2006|08:55] C:\Program Files\Sonic

[01/06/2009|11:00] C:\Program Files\SpywareBlaster

[05/07/2009|00:02] C:\Program Files\Stardock

[06/11/2009|08:01] C:\Program Files\StumbleUpon

[06/15/2008|19:13] C:\Program Files\SUPERAntiSpyware

[09/28/2006|14:59] C:\Program Files\Synaptics

[09/18/2009|12:00] C:\Program Files\Trend Micro

[08/16/2005|05:50] C:\Program Files\Uninstall Information

[02/06/2007|23:42] C:\Program Files\VideoEgg

[04/29/2009|18:55] C:\Program Files\VideoLAN

[09/28/2006|14:55] C:\Program Files\WIDCOMM

[09/28/2006|15:11] C:\Program Files\WildTangent

[09/16/2009|11:41] C:\Program Files\Windows Live

[09/16/2009|11:34] C:\Program Files\Windows Live SkyDrive

[05/24/2007|10:03] C:\Program Files\Windows Media Connect 2

[01/06/2009|11:00] C:\Program Files\Windows Media Player

[05/06/2009|16:37] C:\Program Files\Windows NT

[08/16/2005|05:37] C:\Program Files\Windows Plus

[08/16/2005|05:40] C:\Program Files\WindowsUpdate

[08/16/2005|05:43] C:\Program Files\xerox

 

--------------------\\ Listing Folders in C:\Program Files\Common Files

 

[12/17/2008|00:15] C:\Program Files\Common Files\Adobe

[02/23/2007|21:12] C:\Program Files\Common Files\AOL

[01/06/2009|10:52] C:\Program Files\Common Files\Apple

[12/24/2008|02:25] C:\Program Files\Common Files\ArcSoft

[10/03/2006|23:45] C:\Program Files\Common Files\Cisco Systems

[09/28/2006|15:03] C:\Program Files\Common Files\Creative

[09/28/2006|15:02] C:\Program Files\Common Files\Creative Labs Shared

[09/28/2006|15:22] C:\Program Files\Common Files\DESIGNER

[10/17/2006|12:37] C:\Program Files\Common Files\Hewlett-Packard

[02/12/2008|14:02] C:\Program Files\Common Files\HP

[09/28/2006|15:09] C:\Program Files\Common Files\InstallShield

[09/28/2006|14:51] C:\Program Files\Common Files\Java

[12/24/2008|02:23] C:\Program Files\Common Files\Kodak

[09/16/2009|11:34] C:\Program Files\Common Files\Microsoft Shared

[08/16/2005|05:40] C:\Program Files\Common Files\MSSoap

[09/28/2006|15:08] C:\Program Files\Common Files\Nullsoft

[08/16/2005|05:33] C:\Program Files\Common Files\ODBC

[05/15/2009|21:46] C:\Program Files\Common Files\Real

[08/16/2005|05:40] C:\Program Files\Common Files\Services

[12/10/2006|13:51] C:\Program Files\Common Files\Sonic Shared

[08/16/2005|05:33] C:\Program Files\Common Files\SpeechEngines

[05/07/2009|00:01] C:\Program Files\Common Files\Stardock

[12/09/2007|11:41] C:\Program Files\Common Files\Symantec Shared

[05/06/2009|16:37] C:\Program Files\Common Files\System

[09/28/2006|15:07] C:\Program Files\Common Files\TiVo Shared

[09/16/2009|10:18] C:\Program Files\Common Files\Windows Live

[05/15/2009|21:46] C:\Program Files\Common Files\xing shared

 

--------------------\\ Process

 

( 14 Processes )

 

... OK !

 

--------------------\\ Searching with S_Lop

 

No Lop folder found !

 

--------------------\\ Searching for Lop Files - Folders

 

No Lop folder found !

 

--------------------\\ Searching within the Registry

 

..... OK !

 

--------------------\\ Checking the Hosts file

 

Hosts file CLEAN

 

 

--------------------\\ Searching for hidden files with Catchme

 

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2009-09-20 11:50:59

Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden files ...

scan completed successfully

hidden processes: 0

hidden files: 0

 

--------------------\\ Searching for other infections

 

--------------------\\ KoobFace !

 

C:\WINDOWS\mmsmark2.dat

 

--------------------\\ Cracks & Keygens ..

 

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@cracktwo[1].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@smackinthecrack[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@smackinthecrack[3].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@stopacrack[2].txt

C:\DOCUME~1\EMILEE~1\Cookies\emilee_seda@www.cracktwo[1].txt

C:\DOCUME~1\EMILEE~1\Local Settings\Temp\Cookies\emilee_seda@saynotocrack[1].txt

C:\DOCUME~1\EMILEE~1\Local Settings\Temporary Internet Files\Content.IE5\Y3FW4LYU\tyrannosaur_crack[1].png

 

 

[F:3750][D:176]-> C:\DOCUME~1\EMILEE~1\LOCALS~1\Temp

[F:5627][D:0]-> C:\DOCUME~1\EMILEE~1\Cookies

[F:18446][D:362]-> C:\DOCUME~1\EMILEE~1\LOCALS~1\TEMPOR~1\content.IE5

 

1 - "C:\Lop SD\LopR_1.txt" - Sun 09/20/2009|11:29 - Option : [1]

2 - "C:\Lop SD\LopR_2.txt" - Sun 09/20/2009|11:52 - Option : [2]

 

--------------------\\ Scan completed at 11:52:40

 

 

 

 

 

Rapport MBAM :

 

Malwarebytes' Anti-Malware 1.41

Database version: 2825

Windows 5.1.2600 Service Pack 3

 

9/20/2009 4:25:32 PM

mbam-log-2009-09-20 (16-25-21).txt

 

Scan type: Full Scan (C:\|D:\|E:\|F:\|)

Objects scanned: 239507

Time elapsed: 1 hour(s), 5 minute(s), 9 second(s)

 

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 66

Registry Values Infected: 6

Registry Data Items Infected: 3

Folders Infected: 23

Files Infected: 486

 

Memory Processes Infected:

(No malicious items detected)

 

Memory Modules Infected:

(No malicious items detected)

 

Registry Keys Infected:

HKEY_CLASSES_ROOT\videoegg.activexloader (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{168dc258-1455-4e61-8590-9dac2f27b675} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{1a8642f1-dc80-4edc-a39d-0fb62a58b455} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{3f91eb90-ef62-44ee-a685-fac29af111cd} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{5c29c7e4-5321-4cad-be2e-877666bed5df} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{83dfb6ee-ab18-41b5-86d4-b544a141d67e} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{88d6cf0e-cf70-4c24-bf6e-e4e414bc649c} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{8f6a82a2-d7b1-443e-bb9f-f7dc887dd618} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{9856e2d8-ffb2-4fe5-8cad-d5ad6a35a804} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{a3d06987-c35e-49e4-8fe2-ac67b9fbfb4c} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{a58c497b-3ee2-45e7-9594-daca6be2a0d0} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{ad0a3058-fd49-4f98-a514-fd055201835e} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{ad5915ea-b61a-4dba-b5c8-ef4b2df0a3c7} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{af2e62b6-f9e1-4d4f-a10a-9dc8e6dcbcc0} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{bb187c0d-6f53-4f3e-9590-98fd3a7364a2} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{c5041fd9-4819-4dc4-b20e-c950b5b03d2a} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{d17726cc-d4dd-4c4a-9671-471d56e413b5} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{db8cce99-59c6-4552-8bfc-058feb38d6ce} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{dc3a04ee-cdd7-4407-915c-a5502f97eecd} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{e1a63484-a022-4d42-830a-fbd411514440} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{e282c728-189d-419e-8ee2-1601f4b39ba5} (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\videoegg.activexloader.1 (Adware.VideoEgg) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{0656a137-b161-cadd-9777-e37a75727e78} (Fake.Dropped.Malware) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{0b682cc1-fb40-4006-a5dd-99edd3c9095d} (Fake.Dropped.Malware) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{0e1230f8-ea50-42a9-983c-d22abc2eeb4c} (Fake.Dropped.Malware) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{54645654-2225-4455-44a1-9f4543d34545} (Fake.Dropped.Malware) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{5c7f15e1-f31a-44fd-aa1a-2ec63aaffd3a} (Fake.Dropped.Malware) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{9dd4258a-7138-49c4-8d34-587879a5c7a4} (Fake.Dropped.Malware) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{b8c0220d-763d-49a4-95f4-61dfdec66ee6} (Fake.Dropped.Malware) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{c3bcc488-1ae7-11d4-ab82-0010a4ec2338} (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000000da-0786-4633-87c6-1aa7a4429ef1} (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9dd4258a-7138-49c4-8d34-587879a5c7a4} (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b8c0220d-763d-49a4-95f4-61dfdec66ee6} (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c3bcc488-1ae7-11d4-ab82-0010a4ec2338} (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{42f2c9ba-614f-47c0-b3e3-ecfd34eed658} (Adware.ISTBar) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b499d34e-58ef-4927-ab9f-7af52b2c4c82} (Trojan.FakeAlert) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6ca49fdd-4aeb-4f08-a394-c0a1f82caa16} (Trojan.Zlob) -> No action taken.

HKEY_CURRENT_USER\HOL5_VXIEWER.FULL.1 (Trojan.FakeAlert) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\AntiSpywareShield (Rogue.AntiSpywareShield) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Classes\applications\accessdiver.exe (Trojan.FakeAlert) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Classes\hol5_vxiewer.full.1 (Trojan.FakeAlert) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\dpcproxy (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\fwbd (Trojan.FakeAlert) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Golden Palace Casino PT (Trojan.DNSChanger) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\HolLol (Trojan.FakeAlert) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Inet Delivery (Trojan.FakeAlert) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Invictus (Trojan.FakeAlert) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\logons (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Golden Palace Casino NEW (Trojan.DNSChanger) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Inet Delivery (Trojan.FakeAlert) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mslAgent (Trojan.FakeAlert) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\mwc (Malware.Trace) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\wkey (Malware.Trace) -> No action taken.

HKEY_CURRENT_USER\System\CurrentControlSet\Services\iTunesMusic (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\System\CurrentControlSet\Services\rdriv (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\typelib (Fake.Dropped.Malware) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\xp_antispyware (Rogue.XPAntiSpyware) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videoegg.com/publisher,version=0.2.0 (Adware.VideoEgg) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videoegg.com/updater,version=0.2.0 (Adware.VideoEgg) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\XP_AntiSpyware (Rogue.XPAntiSpyware) -> No action taken.

HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\browserctl (Trojan.Agent) -> No action taken.

HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\browserctldrv (Trojan.Agent) -> No action taken.

 

Registry Values Infected:

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{0e1230f8-ea50-42a9-983c-d22abc2eeb4c} (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{0656a137-b161-cadd-9777-e37a75727e78} (Fake.Dropped.Malware) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\SystemCheck2 (Trojan.Agent) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\browserctl (Trojan.Agent) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysfbtray (Worm.KoobFace) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysmstray (Worm.KoobFace) -> No action taken.

 

Registry Data Items Infected:

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

 

Folders Infected:

C:\Documents and Settings\All Users\Application Data\VideoEgg (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461 (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\messages (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060 (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\messages (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152 (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\messages (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Updater (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Updater\2663 (Adware.VideoEgg) -> No action taken.

C:\Program Files\BrowserCtl (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\smp (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\mslagent (Adware.EGDAccess) -> No action taken.

 

Files Infected:

C:\Program Files\VideoEgg\Loader\2663\npvideoegg-loader.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\All Users\Application Data\VideoEgg\user.dat (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\publisher.ver (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\avcodec.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\crashRpt.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\dataCollection.tmp (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\FLVEncoder.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\lame_enc.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\LevelMeter.ax (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\libcurlve.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\libpng.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\npvideoegg-publisher.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\report.log (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\VideoEgg_FLVWriter.ax (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\zlib.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\aol_watermark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\audio_combo.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\audio_source.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\big_gray_logo.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\big_logo_cropped.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\blank_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\button_browse_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\button_browse_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\button_browse_up.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\camcorders_title.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\camcorder_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\camcorder_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\corners_bottom_left.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\corners_bottom_left_curve.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\corners_bottom_right.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\corners_top_right.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done_capture.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done_capture_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done_capture_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dropshadow_bottom_left.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dropshadow_horiz.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dropshadow_vertical.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dropzone.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dv_fast_forward.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dv_pause.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dv_play.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dv_rewind.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dv_stop.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\email_instructions.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\email_sent.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\email_sent_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\email_sent_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\eraser.CUR (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\eraser_cursor.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\file_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\file_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\help.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_camcorder.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_camcorders.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_camcorder_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_camcorder_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_ff.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_file_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_file_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_pause.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_phone_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_phone_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_play.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_rewind.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_stop.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_webcam.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_webcams.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_webcam_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_webcam_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\loading.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\loading_movie.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\locating.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\logo.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\logo_bottom.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\logo_middle.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\logo_top.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\mobile_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\mobile_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\mobile_slide_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\movie_placeholder.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\ok.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\ok_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\ok_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_fast_forward.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_fast_forward_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_fill.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_pause.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_play.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_rewind.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_rewind_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_rewind_to_start.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\playhead.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\powered_by.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\progress.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\refresh_list_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\refresh_list_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\refresh_list_up.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\restart.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\restart_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_capture.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_capture_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_capture_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_capture_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_over_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_slider.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\stop_capture.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\stop_capture_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\stop_capture_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\stop_capture_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\stop_slider.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\tab_slide_deselected.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\tape_control.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_camcorder.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_camcorder_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_file.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_file_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_phone.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_phone_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_webcam.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_webcam_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\title.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\upload.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading_fill.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading_high.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading_low.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading_medium.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading_thumbnail.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\upload_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\upload_from.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\upload_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_gray.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_green.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_high.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_low.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_orange.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_red.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_slider.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\waiting_for_email.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\webcams_title.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\webcam_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\webcam_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\messages\messages.en-US.bundle (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\avcodec.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\crashRpt.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\FLVEncoder.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\lame_enc.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\LevelMeter.ax (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\libcurlve.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\libpng.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\npvideoegg-publisher.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\VideoEgg_FLVWriter.ax (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\zlib.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\aol_watermark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\audio_combo.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\audio_source.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\big_gray_logo.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\big_logo_cropped.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\blank_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\button_browse_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\button_browse_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\button_browse_up.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\camcorders_title.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\camcorder_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\camcorder_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\corners_bottom_left.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\corners_bottom_left_curve.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\corners_bottom_right.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\corners_top_right.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done_capture.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done_capture_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done_capture_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dropshadow_bottom_left.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dropshadow_horiz.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dropshadow_vertical.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dropzone.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dv_fast_forward.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dv_pause.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dv_play.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dv_rewind.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dv_stop.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\email_instructions.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\email_sent.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\email_sent_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\email_sent_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\eraser.CUR (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\eraser_cursor.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\file_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\file_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\help.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_camcorder.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_camcorders.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_camcorder_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_camcorder_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_ff.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_file_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_file_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_pause.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_phone_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_phone_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_play.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_rewind.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_stop.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_webcam.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_webcams.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_webcam_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_webcam_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\loading.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\loading_movie.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\locating.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\logo.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\logo_bottom.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\logo_middle.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\logo_top.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\mobile_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\mobile_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\mobile_slide_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\movie_placeholder.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\ok.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\ok_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\ok_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_fast_forward.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_fast_forward_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_fill.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_pause.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_play.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_rewind.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_rewind_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_rewind_to_start.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\playhead.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\powered_by.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\progress.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\refresh_list_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\refresh_list_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\refresh_list_up.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\restart.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\restart_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_capture.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_capture_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_capture_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_capture_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_over_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_slider.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\stop_capture.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\stop_capture_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\stop_capture_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\stop_capture_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\stop_slider.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\tab_slide_deselected.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\tape_control.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_camcorder.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_camcorder_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_file.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_file_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_phone.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_phone_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_webcam.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_webcam_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\title.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\upload.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading_fill.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading_high.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading_low.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading_medium.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading_thumbnail.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\upload_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\upload_from.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\upload_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_gray.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_green.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_high.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_low.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_orange.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_red.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_slider.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\waiting_for_email.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\webcams_title.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\webcam_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\webcam_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\messages\messages.en-US.bundle (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\avcodec.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\crashRpt.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\dbghelp.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\FLVEncoder.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\lame_enc.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\LevelMeter.ax (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\libcurlve.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\libpng.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\npvideoegg-publisher.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\VideoEgg_FLVWriter.ax (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\zlib.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\aol_watermark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\audio_combo.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\audio_source.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\big_gray_logo.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\big_logo_cropped.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\blank_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\button_browse_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\button_browse_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\button_browse_up.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\camcorders_title.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\camcorder_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\camcorder_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\corners_bottom_left.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\corners_bottom_left_curve.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\corners_bottom_right.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\corners_top_right.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done_capture.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done_capture_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done_capture_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dropshadow_bottom_left.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dropshadow_horiz.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dropshadow_vertical.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dropzone.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dv_fast_forward.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dv_pause.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dv_play.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dv_rewind.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dv_stop.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\email_instructions.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\email_sent.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\email_sent_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\email_sent_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\eraser.CUR (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\eraser_cursor.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\file_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\file_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\help.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_camcorder.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_camcorders.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_camcorder_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_camcorder_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_ff.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_file_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_file_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_pause.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_phone_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_phone_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_play.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_rewind.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_stop.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_webcam.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_webcams.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_webcam_dark.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_webcam_light.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\loading.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\loading_movie.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\locating.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\logo.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\logo_bottom.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\logo_middle.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\logo_top.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\mobile_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\mobile_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\mobile_slide_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\movie_placeholder.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\ok.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\ok_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\ok_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_fast_forward.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_fast_forward_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_fill.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_pause.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_play.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_rewind.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_rewind_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_rewind_to_start.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\playhead.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\powered_by.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\progress.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\refresh_list_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\refresh_list_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\refresh_list_up.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\restart.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\restart_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_capture.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_capture_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_capture_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_capture_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_over_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_slider.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\stop_capture.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\stop_capture_disabled.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\stop_capture_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\stop_capture_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\stop_slider.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\tab_slide_deselected.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\tape_control.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_camcorder.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_camcorder_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_file.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_file_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_phone.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_phone_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_webcam.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_webcam_highlight.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\title.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\upload.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading_fill.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading_high.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading_low.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading_medium.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading_thumbnail.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\upload_down.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\upload_from.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\upload_over.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_gray.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_green.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_high.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_low.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_orange.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_red.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_slider.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\waiting_for_email.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\webcams_title.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\webcam_btn_highlighted.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\webcam_slide.png (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\messages\messages.en-US.bundle (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Updater\updater.ver (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Updater\2663\libcurlve.dll (Adware.VideoEgg) -> No action taken.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Updater\2663\updater.dll (Adware.VideoEgg) -> No action taken.

C:\WINDOWS\system32\smp\msrc.exe (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\system32\akttzn.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\bdn.com (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\bsva-egihsg52.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\hxiwlgpm.dat (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\hxiwlgpm.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\medup020.dll (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\msgp.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\mssecu.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\msvchost.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\mtr2.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\mwin32.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\netode.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\newsd32.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\ps1.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\psof1.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\psoft1.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\regm64.dll (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\Rundl1.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\ssvchost.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\sysreq.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\taack.dat (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\taack.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\thun.dll (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\thun32.dll (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\VBIEWER.OCX (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\vbsys2.dll (Trojan.Clicker) -> No action taken.

C:\WINDOWS\system32\Winlogonpc.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\winSystem.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\system32\WINWGPX.EXE (Trojan.Agent) -> No action taken.

C:\Documents and Settings\Emilee Seda\delself.bat (Malware.Trace) -> No action taken.

C:\WINDOWS\0535251103110107106.yux (KoobFace.Trace) -> No action taken.

C:\WINDOWS\010112010146120114.xe (KoobFace.Trace) -> No action taken.

C:\WINDOWS\0101120101464950.xe (KoobFace.Trace) -> No action taken.

C:\WINDOWS\0101120101465653.xe (KoobFace.Trace) -> No action taken.

C:\WINDOWS\a.bat (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\base64.tmp (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\bdn.com (Trojan.Agent) -> No action taken.

C:\WINDOWS\ectbbyn.dat (KoobFace.Trace) -> No action taken.

C:\WINDOWS\FVProtect.exe (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\iTunesMusic.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\mmsmark2.dat (KoobFace.Trace) -> No action taken.

C:\WINDOWS\mssecu.exe (Trojan.Agent) -> No action taken.

C:\WINDOWS\prxid93ps.dat (Malware.Trace) -> No action taken.

C:\WINDOWS\userconfig9x.dll (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\winSystem.exe (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\zip1.tmp (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\zip2.tmp (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\zip3.tmp (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\zipped.tmp (Fake.Dropped.Malware) -> No action taken.

C:\WINDOWS\ex23567.dat (KoobFace.Trace) -> No action taken.

 

 

 

 

Nouveau rapport HJT :

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 16:35:51, on 9/20/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Dell\DellDock\DockLogin.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\WLTRYSVC.EXE

C:\WINDOWS\System32\bcmwltry.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Stardock\MyColors\wbload.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe

C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe

C:\WINDOWS\system32\CTsvcCDA.exe

C:\WINDOWS\eHome\ehRecvr.exe

C:\WINDOWS\eHome\ehSched.exe

C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\WLTRAY.exe

C:\WINDOWS\stsystra.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe

C:\WINDOWS\system32\Rundll32.exe

C:\Program Files\Creative\VoiceCenter\AndreaVC.exe

C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe

C:\WINDOWS\vVX3000.exe

C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

C:\WINDOWS\system32\ctfmon.exe

C:\DOCUME~1\EMILEE~1\LOCALS~1\Temp\clclean.0001

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\Messenger\msmsgs.exe

C:\WINDOWS\ehome\RMSvc.exe

C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\dllhost.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\Windows Live\Contacts\wlcomm.exe

C:\WINDOWS\system32\dwwin.exe

C:\WINDOWS\system32\dwwin.exe

C:\WINDOWS\system32\dwwin.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=0060928

R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll

R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: StumbleUpon Launcher - {145B29F4-A56B-4b90-BBAC-45784EBEBBB7} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll

O2 - BHO: TBSB02751 - {25875464-7327-417C-8264-902D99CF6FD1} - C:\Program Files\Search Enhancer Toolbar\NCL.dll (file missing)

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll

O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)

O3 - Toolbar: StumbleUpon Toolbar - {5093EB4C-3E93-40AB-9266-B607BA87BDC8} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll

O3 - Toolbar: Search Enhancer Toolbar - {BFB5F154-9212-46F3-B547-AC6106030A54} - C:\Program Files\Search Enhancer Toolbar\NCL.dll (file missing)

O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

O4 - HKLM\..\Run: [broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe

O4 - HKLM\..\Run: [sigmatelSysTrayApp] stsystra.exe

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay

O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r

O4 - HKLM\..\Run: [MBMon] Rundll32 CTMBHA.DLL,MBMon

O4 - HKLM\..\Run: [updReg] C:\WINDOWS\UpdReg.EXE

O4 - HKLM\..\Run: [VoiceCenter] "C:\Program Files\Creative\VoiceCenter\AndreaVC.exe" /tray

O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"

O4 - HKLM\..\Run: [iSUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup

O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [sysfbtray] C:\windows\freddy58.exe

O4 - HKLM\..\Run: [sysmstray] C:\windows\mstre21.exe

O4 - HKCU\..\Run: [setDefaultMIDI] MIDIDef.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000

O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O8 - Extra context menu item: StumbleUpon PhotoBlog It! - res://StumbleUponIEBar.dll/blogimage

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.1...toUploader5.cab

O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.0...oUploader55.cab

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)

O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll

O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)

O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe

O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe

O23 - Service: Dock Login Service (DockLoginService) - Stardock Corporation - C:\Program Files\Dell\DellDock\DockLogin.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: StumbleUponUpdateService - stumbleupon.com - C:\Program Files\StumbleUpon\StumbleUponUpdateService.exe

O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE

O24 - Desktop Component 2: (no name) - http://www.desktopcountdown.com/countdown/...ent=South+Beach

 

--

End of file - 10663 bytes

 

 

 

 

Voila, j'espere que ca te fait pas trop de boulot d'un coup. ;-)

 

@+

Posté(e)

No action taken????

 

Dis-moi que tu n'as pas oublié de fixer tout ça!

 

Registry Keys Infected: 66

Registry Values Infected: 6

Registry Data Items Infected: 3

Folders Infected: 23

Files Infected: 486

 

Sinon, il faut recommencer en suivant les instructions...

 

[*] Si des malwares ont été détectés, clique sur Afficher les résultats.

Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection, MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.

[*] MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport et poste-le dans ta prochaine réponse.

Si MBAM demande à redémarrer le pc, fais-le.

 

@++

Posté(e)

Re!

 

Je croyais pourtant que ca avait fonctionne mais vu que le PC ramait, j'ai du fermer MBAM via le gestionnaire de taches. Je vais refaire ca des que possible en mode sans echec cette fois-ci histoire qu'il n'y ait plus de probleme.

Je te renvoie un rapport au plus vite.

 

@+

Posté(e)

Desole pour le contre temps, j'ai relance MBAM et supprime les malwares. Voici le nouveau rapport.

 

 

Malwarebytes' Anti-Malware 1.41

Database version: 2825

Windows 5.1.2600 Service Pack 3 (Safe Mode)

 

9/20/2009 7:58:43 PM

mbam-log-2009-09-20 (19-58-43).txt

 

Scan type: Full Scan (C:\|D:\|E:\|F:\|)

Objects scanned: 243141

Time elapsed: 2 hour(s), 12 minute(s), 49 second(s)

 

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 66

Registry Values Infected: 6

Registry Data Items Infected: 3

Folders Infected: 23

Files Infected: 486

 

Memory Processes Infected:

(No malicious items detected)

 

Memory Modules Infected:

(No malicious items detected)

 

Registry Keys Infected:

HKEY_CLASSES_ROOT\videoegg.activexloader (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{168dc258-1455-4e61-8590-9dac2f27b675} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{1a8642f1-dc80-4edc-a39d-0fb62a58b455} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{3f91eb90-ef62-44ee-a685-fac29af111cd} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{5c29c7e4-5321-4cad-be2e-877666bed5df} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{83dfb6ee-ab18-41b5-86d4-b544a141d67e} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{88d6cf0e-cf70-4c24-bf6e-e4e414bc649c} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{8f6a82a2-d7b1-443e-bb9f-f7dc887dd618} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{9856e2d8-ffb2-4fe5-8cad-d5ad6a35a804} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{a3d06987-c35e-49e4-8fe2-ac67b9fbfb4c} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{a58c497b-3ee2-45e7-9594-daca6be2a0d0} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{ad0a3058-fd49-4f98-a514-fd055201835e} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{ad5915ea-b61a-4dba-b5c8-ef4b2df0a3c7} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{af2e62b6-f9e1-4d4f-a10a-9dc8e6dcbcc0} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{bb187c0d-6f53-4f3e-9590-98fd3a7364a2} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{c5041fd9-4819-4dc4-b20e-c950b5b03d2a} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{d17726cc-d4dd-4c4a-9671-471d56e413b5} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{db8cce99-59c6-4552-8bfc-058feb38d6ce} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{dc3a04ee-cdd7-4407-915c-a5502f97eecd} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{e1a63484-a022-4d42-830a-fbd411514440} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{e282c728-189d-419e-8ee2-1601f4b39ba5} (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\videoegg.activexloader.1 (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{0656a137-b161-cadd-9777-e37a75727e78} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{0b682cc1-fb40-4006-a5dd-99edd3c9095d} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{0e1230f8-ea50-42a9-983c-d22abc2eeb4c} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{54645654-2225-4455-44a1-9f4543d34545} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{5c7f15e1-f31a-44fd-aa1a-2ec63aaffd3a} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{9dd4258a-7138-49c4-8d34-587879a5c7a4} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{b8c0220d-763d-49a4-95f4-61dfdec66ee6} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{c3bcc488-1ae7-11d4-ab82-0010a4ec2338} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000000da-0786-4633-87c6-1aa7a4429ef1} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9dd4258a-7138-49c4-8d34-587879a5c7a4} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b8c0220d-763d-49a4-95f4-61dfdec66ee6} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c3bcc488-1ae7-11d4-ab82-0010a4ec2338} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{42f2c9ba-614f-47c0-b3e3-ecfd34eed658} (Adware.ISTBar) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b499d34e-58ef-4927-ab9f-7af52b2c4c82} (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6ca49fdd-4aeb-4f08-a394-c0a1f82caa16} (Trojan.Zlob) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\HOL5_VXIEWER.FULL.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\AntiSpywareShield (Rogue.AntiSpywareShield) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Classes\applications\accessdiver.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Classes\hol5_vxiewer.full.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\dpcproxy (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\fwbd (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Golden Palace Casino PT (Trojan.DNSChanger) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\HolLol (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Inet Delivery (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Invictus (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\logons (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Golden Palace Casino NEW (Trojan.DNSChanger) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Inet Delivery (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mslAgent (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\mwc (Malware.Trace) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\wkey (Malware.Trace) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\System\CurrentControlSet\Services\iTunesMusic (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\System\CurrentControlSet\Services\rdriv (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\typelib (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\xp_antispyware (Rogue.XPAntiSpyware) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videoegg.com/publisher,version=0.2.0 (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videoegg.com/updater,version=0.2.0 (Adware.VideoEgg) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\XP_AntiSpyware (Rogue.XPAntiSpyware) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\browserctl (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\browserctldrv (Trojan.Agent) -> Quarantined and deleted successfully.

 

Registry Values Infected:

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{0e1230f8-ea50-42a9-983c-d22abc2eeb4c} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{0656a137-b161-cadd-9777-e37a75727e78} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\SystemCheck2 (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\browserctl (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysfbtray (Worm.KoobFace) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysmstray (Worm.KoobFace) -> Quarantined and deleted successfully.

 

Registry Data Items Infected:

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

 

Folders Infected:

C:\Documents and Settings\All Users\Application Data\VideoEgg (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461 (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\messages (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060 (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\messages (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152 (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\messages (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Updater (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Updater\2663 (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Program Files\BrowserCtl (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\smp (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\mslagent (Adware.EGDAccess) -> Quarantined and deleted successfully.

 

Files Infected:

C:\Program Files\VideoEgg\Loader\2663\npvideoegg-loader.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\All Users\Application Data\VideoEgg\user.dat (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\publisher.ver (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\avcodec.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\crashRpt.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\dataCollection.tmp (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\FLVEncoder.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\lame_enc.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\LevelMeter.ax (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\libcurlve.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\libpng.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\npvideoegg-publisher.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\report.log (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\VideoEgg_FLVWriter.ax (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\zlib.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\aol_watermark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\audio_combo.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\audio_source.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\big_gray_logo.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\big_logo_cropped.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\blank_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\button_browse_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\button_browse_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\button_browse_up.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\camcorders_title.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\camcorder_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\camcorder_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\corners_bottom_left.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\corners_bottom_left_curve.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\corners_bottom_right.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\corners_top_right.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done_capture.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done_capture_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done_capture_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\done_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dropshadow_bottom_left.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dropshadow_horiz.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dropshadow_vertical.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dropzone.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dv_fast_forward.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dv_pause.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dv_play.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dv_rewind.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\dv_stop.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\email_instructions.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\email_sent.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\email_sent_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\email_sent_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\eraser.CUR (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\eraser_cursor.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\file_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\file_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\help.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_camcorder.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_camcorders.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_camcorder_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_camcorder_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_ff.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_file_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_file_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_pause.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_phone_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_phone_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_play.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_rewind.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_stop.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_webcam.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_webcams.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_webcam_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\icon_webcam_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\loading.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\loading_movie.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\locating.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\logo.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\logo_bottom.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\logo_middle.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\logo_top.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\mobile_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\mobile_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\mobile_slide_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\movie_placeholder.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\ok.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\ok_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\ok_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_fast_forward.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_fast_forward_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_fill.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_pause.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_play.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_rewind.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_rewind_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\player_rewind_to_start.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\playhead.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\powered_by.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\progress.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\refresh_list_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\refresh_list_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\refresh_list_up.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\restart.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\restart_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_capture.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_capture_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_capture_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_capture_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_over_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\start_slider.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\stop_capture.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\stop_capture_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\stop_capture_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\stop_capture_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\stop_slider.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\tab_slide_deselected.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\tape_control.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_camcorder.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_camcorder_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_file.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_file_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_phone.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_phone_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_webcam.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\text_webcam_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\title.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\upload.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading_fill.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading_high.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading_low.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading_medium.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\uploading_thumbnail.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\upload_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\upload_from.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\upload_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_gray.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_green.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_high.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_low.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_orange.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_red.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\volume_slider.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\waiting_for_email.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\webcams_title.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\webcam_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\images\webcam_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\3461\resources\VideoEgg\messages\messages.en-US.bundle (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\avcodec.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\crashRpt.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\FLVEncoder.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\lame_enc.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\LevelMeter.ax (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\libcurlve.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\libpng.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\npvideoegg-publisher.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\VideoEgg_FLVWriter.ax (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\zlib.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\aol_watermark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\audio_combo.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\audio_source.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\big_gray_logo.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\big_logo_cropped.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\blank_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\button_browse_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\button_browse_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\button_browse_up.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\camcorders_title.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\camcorder_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\camcorder_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\corners_bottom_left.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\corners_bottom_left_curve.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\corners_bottom_right.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\corners_top_right.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done_capture.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done_capture_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done_capture_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\done_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dropshadow_bottom_left.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dropshadow_horiz.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dropshadow_vertical.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dropzone.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dv_fast_forward.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dv_pause.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dv_play.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dv_rewind.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\dv_stop.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\email_instructions.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\email_sent.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\email_sent_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\email_sent_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\eraser.CUR (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\eraser_cursor.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\file_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\file_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\help.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_camcorder.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_camcorders.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_camcorder_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_camcorder_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_ff.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_file_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_file_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_pause.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_phone_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_phone_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_play.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_rewind.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_stop.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_webcam.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_webcams.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_webcam_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\icon_webcam_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\loading.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\loading_movie.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\locating.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\logo.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\logo_bottom.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\logo_middle.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\logo_top.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\mobile_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\mobile_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\mobile_slide_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\movie_placeholder.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\ok.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\ok_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\ok_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_fast_forward.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_fast_forward_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_fill.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_pause.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_play.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_rewind.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_rewind_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\player_rewind_to_start.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\playhead.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\powered_by.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\progress.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\refresh_list_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\refresh_list_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\refresh_list_up.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\restart.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\restart_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_capture.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_capture_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_capture_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_capture_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_over_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\start_slider.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\stop_capture.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\stop_capture_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\stop_capture_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\stop_capture_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\stop_slider.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\tab_slide_deselected.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\tape_control.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_camcorder.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_camcorder_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_file.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_file_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_phone.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_phone_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_webcam.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\text_webcam_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\title.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\upload.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading_fill.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading_high.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading_low.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading_medium.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\uploading_thumbnail.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\upload_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\upload_from.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\upload_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_gray.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_green.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_high.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_low.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_orange.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_red.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\volume_slider.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\waiting_for_email.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\webcams_title.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\webcam_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\images\webcam_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4060\resources\VideoEgg\messages\messages.en-US.bundle (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\avcodec.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\crashRpt.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\dbghelp.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\FLVEncoder.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\lame_enc.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\LevelMeter.ax (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\libcurlve.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\libpng.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\npvideoegg-publisher.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\VideoEgg_FLVWriter.ax (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\zlib.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\aol_watermark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\audio_combo.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\audio_source.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\big_gray_logo.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\big_logo_cropped.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\blank_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\button_browse_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\button_browse_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\button_browse_up.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\camcorders_title.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\camcorder_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\camcorder_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\corners_bottom_left.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\corners_bottom_left_curve.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\corners_bottom_right.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\corners_top_right.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done_capture.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done_capture_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done_capture_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\done_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dropshadow_bottom_left.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dropshadow_horiz.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dropshadow_vertical.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dropzone.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dv_fast_forward.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dv_pause.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dv_play.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dv_rewind.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\dv_stop.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\email_instructions.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\email_sent.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\email_sent_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\email_sent_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\eraser.CUR (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\eraser_cursor.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\file_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\file_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\help.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_camcorder.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_camcorders.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_camcorder_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_camcorder_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_ff.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_file_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_file_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_pause.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_phone_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_phone_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_play.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_rewind.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_stop.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_webcam.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_webcams.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_webcam_dark.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\icon_webcam_light.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\loading.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\loading_movie.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\locating.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\logo.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\logo_bottom.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\logo_middle.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\logo_top.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\mobile_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\mobile_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\mobile_slide_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\movie_placeholder.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\ok.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\ok_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\ok_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_fast_forward.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_fast_forward_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_fill.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_pause.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_play.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_rewind.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_rewind_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\player_rewind_to_start.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\playhead.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\powered_by.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\progress.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\refresh_list_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\refresh_list_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\refresh_list_up.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\restart.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\restart_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_capture.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_capture_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_capture_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_capture_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_over_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\start_slider.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\stop_capture.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\stop_capture_disabled.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\stop_capture_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\stop_capture_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\stop_slider.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\tab_slide_deselected.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\tape_control.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_camcorder.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_camcorder_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_file.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_file_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_phone.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_phone_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_webcam.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\text_webcam_highlight.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\title.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\upload.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading_fill.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading_high.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading_low.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading_medium.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\uploading_thumbnail.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\upload_down.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\upload_from.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\upload_over.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_gray.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_green.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_high.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_low.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_orange.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_red.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\volume_slider.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\waiting_for_email.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\webcams_title.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\webcam_btn_highlighted.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\images\webcam_slide.png (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Publisher\4152\resources\VideoEgg\messages\messages.en-US.bundle (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Updater\updater.ver (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Updater\2663\libcurlve.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\Application Data\VideoEgg\Updater\2663\updater.dll (Adware.VideoEgg) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\smp\msrc.exe (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\akttzn.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\bdn.com (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\bsva-egihsg52.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\hxiwlgpm.dat (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\hxiwlgpm.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\medup020.dll (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\msgp.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\mssecu.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\msvchost.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\mtr2.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\mwin32.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\netode.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\newsd32.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\ps1.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\psof1.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\psoft1.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\regm64.dll (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\Rundl1.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\ssvchost.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\sysreq.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\taack.dat (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\taack.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\thun.dll (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\thun32.dll (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\VBIEWER.OCX (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\vbsys2.dll (Trojan.Clicker) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\Winlogonpc.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\winSystem.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\WINWGPX.EXE (Trojan.Agent) -> Quarantined and deleted successfully.

C:\Documents and Settings\Emilee Seda\delself.bat (Malware.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\0535251103110107106.yux (KoobFace.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\010112010146120114.xe (KoobFace.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\0101120101464950.xe (KoobFace.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\0101120101465653.xe (KoobFace.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\a.bat (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\base64.tmp (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\bdn.com (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\ectbbyn.dat (KoobFace.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\FVProtect.exe (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\iTunesMusic.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\mmsmark2.dat (KoobFace.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\mssecu.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\prxid93ps.dat (Malware.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\userconfig9x.dll (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\winSystem.exe (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\zip1.tmp (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\zip2.tmp (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\zip3.tmp (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\zipped.tmp (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\ex23567.dat (KoobFace.Trace) -> Quarantined and deleted successfully.

 

 

 

Et voici un nouveau rapport HJT :

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 20:03:35, on 9/20/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Dell\DellDock\DockLogin.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\WLTRYSVC.EXE

C:\WINDOWS\System32\bcmwltry.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe

C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe

C:\WINDOWS\system32\CTsvcCDA.exe

C:\WINDOWS\eHome\ehRecvr.exe

C:\WINDOWS\eHome\ehSched.exe

C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\HPZipm12.exe

C:\WINDOWS\ehome\RMSvc.exe

C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\dllhost.exe

C:\Program Files\Stardock\MyColors\wbload.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\WLTRAY.exe

C:\WINDOWS\stsystra.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe

C:\WINDOWS\system32\Rundll32.exe

C:\Program Files\Creative\VoiceCenter\AndreaVC.exe

C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe

C:\DOCUME~1\EMILEE~1\LOCALS~1\Temp\clclean.0001

C:\WINDOWS\vVX3000.exe

C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\Messenger\msmsgs.exe

C:\WINDOWS\system32\wuauclt.exe

C:\WINDOWS\system32\wbem\wmiapsrv.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\Windows Live\Contacts\wlcomm.exe

C:\WINDOWS\system32\dwwin.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=0060928

R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll

R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: StumbleUpon Launcher - {145B29F4-A56B-4b90-BBAC-45784EBEBBB7} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll

O2 - BHO: TBSB02751 - {25875464-7327-417C-8264-902D99CF6FD1} - C:\Program Files\Search Enhancer Toolbar\NCL.dll (file missing)

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll

O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)

O3 - Toolbar: StumbleUpon Toolbar - {5093EB4C-3E93-40AB-9266-B607BA87BDC8} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll

O3 - Toolbar: Search Enhancer Toolbar - {BFB5F154-9212-46F3-B547-AC6106030A54} - C:\Program Files\Search Enhancer Toolbar\NCL.dll (file missing)

O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

O4 - HKLM\..\Run: [broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe

O4 - HKLM\..\Run: [sigmatelSysTrayApp] stsystra.exe

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay

O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r

O4 - HKLM\..\Run: [MBMon] Rundll32 CTMBHA.DLL,MBMon

O4 - HKLM\..\Run: [updReg] C:\WINDOWS\UpdReg.EXE

O4 - HKLM\..\Run: [VoiceCenter] "C:\Program Files\Creative\VoiceCenter\AndreaVC.exe" /tray

O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"

O4 - HKLM\..\Run: [iSUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup

O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript

O4 - HKCU\..\Run: [setDefaultMIDI] MIDIDef.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000

O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O8 - Extra context menu item: StumbleUpon PhotoBlog It! - res://StumbleUponIEBar.dll/blogimage

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.1...toUploader5.cab

O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.0...oUploader55.cab

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)

O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll

O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)

O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe

O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe

O23 - Service: Dock Login Service (DockLoginService) - Stardock Corporation - C:\Program Files\Dell\DellDock\DockLogin.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: StumbleUponUpdateService - stumbleupon.com - C:\Program Files\StumbleUpon\StumbleUponUpdateService.exe

O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE

O24 - Desktop Component 2: (no name) - http://www.desktopcountdown.com/countdown/...ent=South+Beach

 

--

End of file - 10732 bytes

 

 

 

Bon courage a toi!!

Posté(e)

Bonjour,

 

flechedroitets2.pngOTM

 

Télécharge systemsr4.pngOTM de OldTimer sur ton Bureau en cliquant sur ce lien:

 

OTM

 

  • Double-clique sur OTM.exe pour le lancer (l'extension .exe peut ne pas apparaître)
     
    ---> sous VISTA: clic droit: exécuter en temps qu'administrateur.
     
    Vérifie que la case Unregister Dll's and OCX's.exe soit bien cochée!
     
  • Copie l'entièreté du code ci-dessous (depuis :Processes)
    :Processes
    
    explorer.exe
    
    :Files
    c:\program files\search enhancer toolbar\ncl.dll
    
    
    :Reg
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25875464-7327-417C-8264-902D99CF6FD1}]
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{25875464-7327-417C-8264-902D99CF6FD1}]
    [-HKEY_CLASSES_ROOT\CLSID\{BFB5F154-9212-46F3-B547-AC6106030A54}]
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BFB5F154-9212-46F3-B547-AC6106030A54}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    "{BFB5F154-9212-46F3-B547-AC6106030A54}"=-
    
    :Commands
    [purity]
    [emptytemp]
    [start explorer]
    [reboot]


     

  • Colle ce code dans la partie jaune de OtMoveIt3 intitulée:
    "Paste Instructions for Items to be Moved" img-025804xb055.png
     
  • Clique sur le bouton Moveit! pour lancer le nettoyage: img-025919bxiq4.png
     
  • Copie-colle dans ta prochaine réponse tout ce qui se trouve dans la fenêtre Results img-030027q93ue.png
    --> Un rapport sera généré dans le dossier C:\ _OTMoveIt\MovedFiles avec la date et l'heure du passage de l'outil (mmddyyyy_hhmmss.log)
  • Ferme OTM en cliquant sur Exit: img-030110c5gvf.png

Note : Si un fichier ou un dossier ne peut être supprimé directement, l'outil peut demander un redémarrage pour terminer le processus. Clique alors sur "Yes" pour accepter.

 

L'outil va continuer après le reboot et donnera un rapport texte, colle-le ici à la suite stp.

 

-------------

Fais ensuite ceci:

 

Antivir est un antivirus gratuit, efficace et léger, maintenant en français, dont les mises à jour sont quotidiennes et les nouvelles menaces sont rapidement intégrées dans sa base virale. (D'où la meilleure protection).

 

 

 

PS: Quand un fichier infecté est détecté par Antivir, une fenêtre semblable à celle-ci s'ouvre:

 

Avira-Francais-037.jpg

 

Antivir te demande ce qu'il doit faire du fichier infecté.

Choisis Déplacer en quarantaine puis clique sur OK.

 

Tu peux automatiser ce type d'action en cochant une case), comme ci dessous :

 

img-112858s188k.gif

Cela permet de ne pas rester à la surveiller.:P

 

Mets-le à jour puis lance une analyse complète.

Poste le rapport obtenu stp.

 

 

 

@++

Posté(e)

Re!

 

Voici deja le rapport OTM que tu m'as demande :

 

All processes killed

========== PROCESSES ==========

No active process named explorer.exe was found!

========== FILES ==========

File/Folder c:\program files\search enhancer toolbar\ncl.dll not found.

========== REGISTRY ==========

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25875464-7327-417C-8264-902D99CF6FD1}\ deleted successfully.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25875464-7327-417C-8264-902D99CF6FD1}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{25875464-7327-417C-8264-902D99CF6FD1}\ deleted successfully.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25875464-7327-417C-8264-902D99CF6FD1}\ not found.

Registry key HKEY_CLASSES_ROOT\CLSID\{BFB5F154-9212-46F3-B547-AC6106030A54}\ deleted successfully.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BFB5F154-9212-46F3-B547-AC6106030A54}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BFB5F154-9212-46F3-B547-AC6106030A54}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BFB5F154-9212-46F3-B547-AC6106030A54}\ not found.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{BFB5F154-9212-46F3-B547-AC6106030A54} deleted successfully.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BFB5F154-9212-46F3-B547-AC6106030A54}\ not found.

========== COMMANDS ==========

 

[EMPTYTEMP]

 

User: Administrator

->Temp folder emptied: 59964 bytes

->Temporary Internet Files folder emptied: 32768 bytes

 

User: All Users

 

User: Application Data

 

User: Default User

->Temp folder emptied: 59964 bytes

->Temporary Internet Files folder emptied: 32768 bytes

 

User: Emilee Seda

File delete failed. C:\Documents and Settings\Emilee Seda\Local Settings\Temp\Temporary Internet Files\Content.IE5\CXVFT8I1\MUSIKUK;kr=A;vertexp=05d;kt=K;ko=p;kpid=6;afc=1;kga=-1;k1=alternative;u=pPQQMsbcAYg%7C6;kgg=-1;kcr=us;khd=0;dc_dedup=1;shortform=1;dc_seed=215454529;tile=1;ord=324146538[1].

htm scheduled to be deleted on reboot.

File delete failed. C:\Documents and Settings\Emilee Seda\Local Settings\Temp\clclean.0001.dir.0017\~df394b.tmp scheduled to be deleted on reboot.

File delete failed. C:\Documents and Settings\Emilee Seda\Local Settings\Temp\clclean.0001.dir.0017\~efe2.tmp scheduled to be deleted on reboot.

->Temp folder emptied: 1179420266 bytes

->Temporary Internet Files folder emptied: 709419233 bytes

->Java cache emptied: 13660349 bytes

->FireFox cache emptied: 94139695 bytes

 

User: LocalService

->Temp folder emptied: 0 bytes

File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.

->Temporary Internet Files folder emptied: 2386057 bytes

 

User: NetworkService

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 619308 bytes

 

%systemdrive% .tmp files removed: 0 bytes

%systemroot% .tmp files removed: 19569 bytes

%systemroot%\System32 .tmp files removed: 12184081 bytes

File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_bb0.dat scheduled to be deleted on reboot.

Windows Temp folder emptied: 127229077 bytes

RecycleBin emptied: 569720816 bytes

 

Total Files Cleaned = -1512.51 mb

 

 

OTM by OldTimer - Version 3.0.0.6 log created on 09212009_132325

 

Files moved on Reboot...

File C:\Documents and Settings\Emilee Seda\Local Settings\Temp\Temporary Internet Files\Content.IE5\CXVFT8I1\MUSIKUK;kr=A;vertexp=05d;kt=K;ko=p;kpid=6;afc=1;kga=-1;k1=alternative;u=pPQQMsbcAYg%7C6;kgg=-1;kcr=us;khd=0;dc_dedup=1;shortform=1;dc_seed=215454529;tile=1;ord=324146538[1].

htm not found!

C:\Documents and Settings\Emilee Seda\Local Settings\Temp\clclean.0001.dir.0017\~df394b.tmp moved successfully.

C:\Documents and Settings\Emilee Seda\Local Settings\Temp\clclean.0001.dir.0017\~efe2.tmp moved successfully.

File C:\WINDOWS\temp\Perflib_Perfdata_bb0.dat not found!

 

Registry entries deleted on Reboot...

 

 

J'ai encore quelques petites difficultes a installer AntiVir mais je vais reessayer rapidemant et je posterai un rapport une fois l'analyse realisee.

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...