Aller au contenu

udolfo

Membres
  • Compteur de contenus

    50
  • Inscription

  • Dernière visite

udolfo's Achievements

Member

Member (4/12)

0

Réputation sur la communauté

  1. Bonjour Voici le rapport Delfix. Merci beaucoup pour ton aide et peut-être à bientôt . ++ # DelFix v8.9 - Rapport créé le 04/08/2012 à 11:09:29 # Mis à jour le 27/07/12 par Xplode # Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits) # Nom d'utilisateur : Christine - CHRISTINE-PC (Administrateur) # Exécuté depuis : C:\Users\Christine\Desktop\delfix.exe # Option [suppression] ~~~~~~ Dossiers(s) ~~~~~~ Supprimé : C:\ZHP Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP Supprimé : C:\Program Files (x86)\ZHPDiag ~~~~~~ Fichier(s) ~~~~~~ Supprimé : C:\AdwCleaner[s1].txt Supprimé : C:\ComboFix.txt Supprimé : C:\JavaRa.log Supprimé : C:\PhysicalDisk0_MBR.bin Supprimé : C:\TDSSKiller.2.7.48.0_25.07.2012_11.20.24_log.txt Supprimé : C:\TDSSKiller.2.7.48.0_25.07.2012_11.23.00_log.txt Supprimé : C:\TDSSKiller.2.7.48.0_25.07.2012_11.23.34_log.txt Supprimé : C:\Users\Christine\Desktop\adwcleaner.exe Supprimé : C:\Users\Christine\Desktop\tdsskiller.exe Supprimé : C:\Users\Christine\Desktop\ZHPDiag.txt Supprimé : C:\Users\Christine\Desktop\ZHPDiag2.exe Supprimé : C:\Users\Public\Desktop\MBRCheck.lnk Supprimé : C:\Users\Public\Desktop\ZHPDiag.lnk Supprimé : C:\Users\Public\Desktop\ZHPFix.lnk ~~~~~~ Registre ~~~~~~ Clé Supprimée : HKLM\SOFTWARE\AdwCleaner Clé Supprimée : HKLM\SOFTWARE\Swearware Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZHPDiag_is1 ~~~~~~ Autres ~~~~~~ -> Prefetch Vidé ************************* DelFix[s1].txt - [1450 octets] - [04/08/2012 11:09:29] ########## EOF - C:\DelFix[s1].txt - [1574 octets] ##########
  2. Hello Apollo, voila j'ai posté le rapport chez Avira et fait les verifications de sécurité. Pour le momment tout ce déroule sans problèmes, je pense que nous pouvons passer à lé désinstalation. Merci ++
  3. Non pour l'instant Avira ne detecte plus rien, le rapport ci-dessus est le dernier rapport d'Avira. Veux tu que je fasse une autre détection avec un autre programme ? ++
  4. Ok j'ai fait ça et ensuite j'ai relancé un scan Avira, voici le rapport il semblerait qu'il y a une amélioration ? Avira Free Antivirus Report file date: mercredi 25 juillet 2012 15:37 Scanning for 3986618 virus strains and unwanted programs. The program is running as an unrestricted full version. Online services are available. Licensee : Avira AntiVir Personal - Free Antivirus Serial number : 0000149996-ADJIE-0000001 Platform : Windows 7 Home Premium Windows version : (Service Pack 1) [6.1.7601] Boot mode : Normally booted Username : Système Computer name : CHRISTINE-PC Version information: BUILD.DAT : 12.0.0.1125 41829 Bytes 2/05/2012 17:40:00 AVSCAN.EXE : 12.3.0.15 466896 Bytes 8/05/2012 16:25:34 AVSCAN.DLL : 12.3.0.15 54736 Bytes 8/05/2012 16:25:34 LUKE.DLL : 12.3.0.15 68304 Bytes 8/05/2012 16:25:34 AVSCPLR.DLL : 12.3.0.14 97032 Bytes 8/05/2012 16:25:34 AVREG.DLL : 12.3.0.17 232200 Bytes 10/05/2012 16:25:13 VBASE000.VDF : 7.10.0.0 19875328 Bytes 6/11/2009 18:18:34 VBASE001.VDF : 7.11.0.0 13342208 Bytes 14/12/2010 23:33:08 VBASE002.VDF : 7.11.19.170 14374912 Bytes 20/12/2011 19:36:44 VBASE003.VDF : 7.11.21.238 4472832 Bytes 1/02/2012 19:38:06 VBASE004.VDF : 7.11.26.44 4329472 Bytes 28/03/2012 18:19:15 VBASE005.VDF : 7.11.34.116 4034048 Bytes 29/06/2012 18:03:31 VBASE006.VDF : 7.11.34.117 2048 Bytes 29/06/2012 18:03:31 VBASE007.VDF : 7.11.34.118 2048 Bytes 29/06/2012 18:03:31 VBASE008.VDF : 7.11.34.119 2048 Bytes 29/06/2012 18:03:31 VBASE009.VDF : 7.11.34.120 2048 Bytes 29/06/2012 18:03:31 VBASE010.VDF : 7.11.34.121 2048 Bytes 29/06/2012 18:03:31 VBASE011.VDF : 7.11.34.122 2048 Bytes 29/06/2012 18:03:31 VBASE012.VDF : 7.11.34.123 2048 Bytes 29/06/2012 18:03:31 VBASE013.VDF : 7.11.34.124 2048 Bytes 29/06/2012 18:03:31 VBASE014.VDF : 7.11.34.201 169472 Bytes 2/07/2012 15:38:48 VBASE015.VDF : 7.11.35.19 122368 Bytes 4/07/2012 15:38:48 VBASE016.VDF : 7.11.35.87 146944 Bytes 6/07/2012 19:59:02 VBASE017.VDF : 7.11.35.143 126464 Bytes 9/07/2012 16:55:57 VBASE018.VDF : 7.11.35.235 151552 Bytes 12/07/2012 16:55:58 VBASE019.VDF : 7.11.36.45 118784 Bytes 13/07/2012 19:25:25 VBASE020.VDF : 7.11.36.107 123904 Bytes 16/07/2012 08:29:02 VBASE021.VDF : 7.11.36.147 238592 Bytes 17/07/2012 08:29:02 VBASE022.VDF : 7.11.36.209 135168 Bytes 19/07/2012 08:29:17 VBASE023.VDF : 7.11.37.19 116224 Bytes 21/07/2012 12:08:31 VBASE024.VDF : 7.11.37.79 149504 Bytes 23/07/2012 19:04:33 VBASE025.VDF : 7.11.37.80 2048 Bytes 23/07/2012 19:04:33 VBASE026.VDF : 7.11.37.81 2048 Bytes 23/07/2012 19:04:33 VBASE027.VDF : 7.11.37.82 2048 Bytes 23/07/2012 19:04:33 VBASE028.VDF : 7.11.37.83 2048 Bytes 23/07/2012 19:04:33 VBASE029.VDF : 7.11.37.84 2048 Bytes 23/07/2012 19:04:33 VBASE030.VDF : 7.11.37.85 2048 Bytes 23/07/2012 19:04:33 VBASE031.VDF : 7.11.37.128 948224 Bytes 24/07/2012 19:19:57 Engine version : 8.2.10.118 AEVDF.DLL : 8.1.2.10 102772 Bytes 10/07/2012 16:55:58 AESCRIPT.DLL : 8.1.4.34 455035 Bytes 20/07/2012 08:30:51 AESCN.DLL : 8.1.8.2 131444 Bytes 9/02/2012 19:39:48 AESBX.DLL : 8.2.5.12 606578 Bytes 14/06/2012 19:19:18 AERDL.DLL : 8.1.9.15 639348 Bytes 14/12/2011 23:32:23 AEPACK.DLL : 8.3.0.16 807287 Bytes 20/07/2012 08:30:46 AEOFFICE.DLL : 8.1.2.42 201083 Bytes 20/07/2012 08:30:40 AEHEUR.DLL : 8.1.4.76 5063031 Bytes 20/07/2012 08:30:15 AEHELP.DLL : 8.1.23.2 258422 Bytes 28/06/2012 18:04:07 AEGEN.DLL : 8.1.5.34 434548 Bytes 20/07/2012 08:29:25 AEEXP.DLL : 8.1.0.68 86389 Bytes 20/07/2012 08:30:55 AEEMU.DLL : 8.1.3.2 393587 Bytes 10/07/2012 16:55:58 AECORE.DLL : 8.1.27.2 201078 Bytes 10/07/2012 16:55:58 AEBB.DLL : 8.1.1.0 53618 Bytes 14/12/2011 23:32:19 AVWINLL.DLL : 12.3.0.15 27344 Bytes 8/05/2012 16:25:34 AVPREF.DLL : 12.3.0.15 51920 Bytes 8/05/2012 16:25:34 AVREP.DLL : 12.3.0.15 179208 Bytes 8/05/2012 16:25:34 AVARKT.DLL : 12.3.0.15 211408 Bytes 8/05/2012 16:25:34 AVEVTLOG.DLL : 12.3.0.15 169168 Bytes 8/05/2012 16:25:34 SQLITE3.DLL : 3.7.0.1 398288 Bytes 8/05/2012 16:25:34 AVSMTP.DLL : 12.3.0.15 63440 Bytes 8/05/2012 16:25:34 NETNT.DLL : 12.3.0.15 17104 Bytes 8/05/2012 16:25:34 RCIMAGE.DLL : 12.3.0.15 4450000 Bytes 8/05/2012 16:25:34 RCTEXT.DLL : 12.3.0.15 96720 Bytes 8/05/2012 16:25:34 Configuration settings for the scan: Jobname.............................: Complete system scan Configuration file..................: C:\Program Files (x86)\Avira\AntiVir Desktop\sysscan.avp Logging.............................: default Primary action......................: Interactive Secondary action....................: Ignore Scan master boot sector.............: on Scan boot sector....................: on Boot sectors........................: C:, E:, F:, Process scan........................: on Extended process scan...............: on Scan registry.......................: on Search for rootkits.................: on Integrity checking of system files..: off Scan all files......................: All files Scan archives.......................: on Recursion depth.....................: 20 Smart extensions....................: on Macro heuristic.....................: on File heuristic......................: extended Start of the scan: mercredi 25 juillet 2012 15:37 Starting master boot sector scan: Master boot sector HD0 [iNFO] No virus was found! Master boot sector HD1 [iNFO] No virus was found! Master boot sector HD2 [iNFO] No virus was found! Start scanning boot sectors: Boot sector 'C:\' [iNFO] No virus was found! Boot sector 'E:\' [iNFO] No virus was found! Boot sector 'F:\' [iNFO] No virus was found! Starting search for hidden objects. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Media Player NSS\3.0\Events\{5C2BF226-D9FC-4589-9641-17DFFEF221E2} [NOTE] The registry entry is invisible. The scan of running processes will be started Scan process 'daemonu.exe' - '59' Module(s) have been scanned Scan process 'avscan.exe' - '84' Module(s) have been scanned Scan process 'avcenter.exe' - '86' Module(s) have been scanned Scan process 'KiesTrayAgent.exe' - '59' Module(s) have been scanned Scan process 'jusched.exe' - '26' Module(s) have been scanned Scan process 'avgnt.exe' - '77' Module(s) have been scanned Scan process 'Kies.exe' - '80' Module(s) have been scanned Scan process 'KiesPDLR.exe' - '52' Module(s) have been scanned Scan process 'vVX3000.exe' - '28' Module(s) have been scanned Scan process 'avguard.exe' - '70' Module(s) have been scanned Scan process 'armsvc.exe' - '25' Module(s) have been scanned Scan process 'sched.exe' - '41' Module(s) have been scanned Scan process 'nvSCPAPISvr.exe' - '30' Module(s) have been scanned Starting to scan executable files (registry). The registry was scanned ( '1417' files ). Starting the file scan: Begin scan in 'C:\' C:\Program Files (x86)\InstStudio-Scrap\setup-txt-1.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-10.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-11.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-12.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-13.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-14.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-15.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-16.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-17.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-18.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-19.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-2.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-20.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-21.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-22.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-23.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-24.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-25.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-26.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-27.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-28.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-29.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-3.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-30.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-31.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-4.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-5.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-6.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-7.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-8.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-9.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-1.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-2.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-3.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-4.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-5.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-6.bin [WARNING] Error multiple volume Begin scan in 'E:\' E:\hiberfil.sys [WARNING] The file could not be opened! E:\Users\Christine\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\19MHIXD9\Firefox%20Setup%203.5.7[2].exe --> Object [WARNING] The file could not be read! [WARNING] The file could not be read! E:\Users\Christine\Documents\avira_free_antivirus_en.exe [WARNING] The file is password protected E:\Users\Christine\Documents\DVDFab\Temp\Update\Update.exe [WARNING] Invalid end of file Begin scan in 'F:\' <Disque 1> F:\Program Files\WinRAR\rarnew.dat [WARNING] Error no files to extract End of the scan: mercredi 25 juillet 2012 16:26 Used time: 48:28 Minute(s) The scan has been done completely. 44777 Scanned directories 918170 Files were scanned 0 Viruses and/or unwanted programs were found 0 Files were classified as suspicious 0 Files were deleted 0 Viruses and unwanted programs were repaired 0 Files were moved to quarantine 0 Files were renamed 1 Files cannot be scanned 918169 Files not concerned 8260 Archives were scanned 43 Warnings 1 Notes 566570 Objects were scanned with rootkit scan 1 Hidden objects were found ++
  5. Yop, Alors voici le rapport d'Avira et ensuite TDS Avira Free Antivirus Report file date: mercredi 25 juillet 2012 11:26 Scanning for 3986618 virus strains and unwanted programs. The program is running as an unrestricted full version. Online services are available. Licensee : Avira AntiVir Personal - Free Antivirus Serial number : 0000149996-ADJIE-0000001 Platform : Windows 7 Home Premium Windows version : (Service Pack 1) [6.1.7601] Boot mode : Normally booted Username : Système Computer name : CHRISTINE-PC Version information: BUILD.DAT : 12.0.0.1125 41829 Bytes 2/05/2012 17:40:00 AVSCAN.EXE : 12.3.0.15 466896 Bytes 8/05/2012 16:25:34 AVSCAN.DLL : 12.3.0.15 54736 Bytes 8/05/2012 16:25:34 LUKE.DLL : 12.3.0.15 68304 Bytes 8/05/2012 16:25:34 AVSCPLR.DLL : 12.3.0.14 97032 Bytes 8/05/2012 16:25:34 AVREG.DLL : 12.3.0.17 232200 Bytes 10/05/2012 16:25:13 VBASE000.VDF : 7.10.0.0 19875328 Bytes 6/11/2009 18:18:34 VBASE001.VDF : 7.11.0.0 13342208 Bytes 14/12/2010 23:33:08 VBASE002.VDF : 7.11.19.170 14374912 Bytes 20/12/2011 19:36:44 VBASE003.VDF : 7.11.21.238 4472832 Bytes 1/02/2012 19:38:06 VBASE004.VDF : 7.11.26.44 4329472 Bytes 28/03/2012 18:19:15 VBASE005.VDF : 7.11.34.116 4034048 Bytes 29/06/2012 18:03:31 VBASE006.VDF : 7.11.34.117 2048 Bytes 29/06/2012 18:03:31 VBASE007.VDF : 7.11.34.118 2048 Bytes 29/06/2012 18:03:31 VBASE008.VDF : 7.11.34.119 2048 Bytes 29/06/2012 18:03:31 VBASE009.VDF : 7.11.34.120 2048 Bytes 29/06/2012 18:03:31 VBASE010.VDF : 7.11.34.121 2048 Bytes 29/06/2012 18:03:31 VBASE011.VDF : 7.11.34.122 2048 Bytes 29/06/2012 18:03:31 VBASE012.VDF : 7.11.34.123 2048 Bytes 29/06/2012 18:03:31 VBASE013.VDF : 7.11.34.124 2048 Bytes 29/06/2012 18:03:31 VBASE014.VDF : 7.11.34.201 169472 Bytes 2/07/2012 15:38:48 VBASE015.VDF : 7.11.35.19 122368 Bytes 4/07/2012 15:38:48 VBASE016.VDF : 7.11.35.87 146944 Bytes 6/07/2012 19:59:02 VBASE017.VDF : 7.11.35.143 126464 Bytes 9/07/2012 16:55:57 VBASE018.VDF : 7.11.35.235 151552 Bytes 12/07/2012 16:55:58 VBASE019.VDF : 7.11.36.45 118784 Bytes 13/07/2012 19:25:25 VBASE020.VDF : 7.11.36.107 123904 Bytes 16/07/2012 08:29:02 VBASE021.VDF : 7.11.36.147 238592 Bytes 17/07/2012 08:29:02 VBASE022.VDF : 7.11.36.209 135168 Bytes 19/07/2012 08:29:17 VBASE023.VDF : 7.11.37.19 116224 Bytes 21/07/2012 12:08:31 VBASE024.VDF : 7.11.37.79 149504 Bytes 23/07/2012 19:04:33 VBASE025.VDF : 7.11.37.80 2048 Bytes 23/07/2012 19:04:33 VBASE026.VDF : 7.11.37.81 2048 Bytes 23/07/2012 19:04:33 VBASE027.VDF : 7.11.37.82 2048 Bytes 23/07/2012 19:04:33 VBASE028.VDF : 7.11.37.83 2048 Bytes 23/07/2012 19:04:33 VBASE029.VDF : 7.11.37.84 2048 Bytes 23/07/2012 19:04:33 VBASE030.VDF : 7.11.37.85 2048 Bytes 23/07/2012 19:04:33 VBASE031.VDF : 7.11.37.128 948224 Bytes 24/07/2012 19:19:57 Engine version : 8.2.10.118 AEVDF.DLL : 8.1.2.10 102772 Bytes 10/07/2012 16:55:58 AESCRIPT.DLL : 8.1.4.34 455035 Bytes 20/07/2012 08:30:51 AESCN.DLL : 8.1.8.2 131444 Bytes 9/02/2012 19:39:48 AESBX.DLL : 8.2.5.12 606578 Bytes 14/06/2012 19:19:18 AERDL.DLL : 8.1.9.15 639348 Bytes 14/12/2011 23:32:23 AEPACK.DLL : 8.3.0.16 807287 Bytes 20/07/2012 08:30:46 AEOFFICE.DLL : 8.1.2.42 201083 Bytes 20/07/2012 08:30:40 AEHEUR.DLL : 8.1.4.76 5063031 Bytes 20/07/2012 08:30:15 AEHELP.DLL : 8.1.23.2 258422 Bytes 28/06/2012 18:04:07 AEGEN.DLL : 8.1.5.34 434548 Bytes 20/07/2012 08:29:25 AEEXP.DLL : 8.1.0.68 86389 Bytes 20/07/2012 08:30:55 AEEMU.DLL : 8.1.3.2 393587 Bytes 10/07/2012 16:55:58 AECORE.DLL : 8.1.27.2 201078 Bytes 10/07/2012 16:55:58 AEBB.DLL : 8.1.1.0 53618 Bytes 14/12/2011 23:32:19 AVWINLL.DLL : 12.3.0.15 27344 Bytes 8/05/2012 16:25:34 AVPREF.DLL : 12.3.0.15 51920 Bytes 8/05/2012 16:25:34 AVREP.DLL : 12.3.0.15 179208 Bytes 8/05/2012 16:25:34 AVARKT.DLL : 12.3.0.15 211408 Bytes 8/05/2012 16:25:34 AVEVTLOG.DLL : 12.3.0.15 169168 Bytes 8/05/2012 16:25:34 SQLITE3.DLL : 3.7.0.1 398288 Bytes 8/05/2012 16:25:34 AVSMTP.DLL : 12.3.0.15 63440 Bytes 8/05/2012 16:25:34 NETNT.DLL : 12.3.0.15 17104 Bytes 8/05/2012 16:25:34 RCIMAGE.DLL : 12.3.0.15 4450000 Bytes 8/05/2012 16:25:34 RCTEXT.DLL : 12.3.0.15 96720 Bytes 8/05/2012 16:25:34 Configuration settings for the scan: Jobname.............................: Complete system scan Configuration file..................: C:\Program Files (x86)\Avira\AntiVir Desktop\sysscan.avp Logging.............................: default Primary action......................: Interactive Secondary action....................: Ignore Scan master boot sector.............: on Scan boot sector....................: on Boot sectors........................: C:, E:, F:, Process scan........................: on Extended process scan...............: on Scan registry.......................: on Search for rootkits.................: on Integrity checking of system files..: off Scan all files......................: All files Scan archives.......................: on Recursion depth.....................: 20 Smart extensions....................: on Macro heuristic.....................: on File heuristic......................: extended Start of the scan: mercredi 25 juillet 2012 11:26 Starting master boot sector scan: Master boot sector HD0 [iNFO] No virus was found! Master boot sector HD1 [iNFO] No virus was found! Master boot sector HD2 [iNFO] No virus was found! Start scanning boot sectors: Boot sector 'C:\' [iNFO] No virus was found! Boot sector 'E:\' [iNFO] No virus was found! Boot sector 'F:\' [iNFO] No virus was found! Starting search for hidden objects. The scan of running processes will be started Scan process 'avscan.exe' - '84' Module(s) have been scanned Scan process 'avcenter.exe' - '86' Module(s) have been scanned Scan process 'tdsskiller.exe' - '58' Module(s) have been scanned Scan process 'plugin-container.exe' - '72' Module(s) have been scanned Scan process 'firefox.exe' - '167' Module(s) have been scanned Scan process 'daemonu.exe' - '59' Module(s) have been scanned Scan process 'KiesTrayAgent.exe' - '76' Module(s) have been scanned Scan process 'jusched.exe' - '26' Module(s) have been scanned Scan process 'avgnt.exe' - '77' Module(s) have been scanned Scan process 'Kies.exe' - '80' Module(s) have been scanned Scan process 'KiesPDLR.exe' - '52' Module(s) have been scanned Scan process 'vVX3000.exe' - '28' Module(s) have been scanned Scan process 'avguard.exe' - '74' Module(s) have been scanned Scan process 'armsvc.exe' - '25' Module(s) have been scanned Scan process 'sched.exe' - '42' Module(s) have been scanned Scan process 'nvSCPAPISvr.exe' - '30' Module(s) have been scanned Starting to scan executable files (registry). The registry was scanned ( '1418' files ). Starting the file scan: Begin scan in 'C:\' C:\Program Files (x86)\InstStudio-Scrap\setup-txt-1.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-10.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-11.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-12.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-13.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-14.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-15.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-16.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-17.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-18.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-19.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-2.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-20.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-21.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-22.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-23.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-24.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-25.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-26.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-27.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-28.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-29.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-3.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-30.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-31.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-4.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-5.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-6.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-7.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-8.bin [WARNING] Error multiple volume C:\Program Files (x86)\InstStudio-Scrap\setup-txt-9.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-1.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-2.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-3.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-4.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-5.bin [WARNING] Error multiple volume C:\Program Files (x86)\Studio-Scrap4\user-setup-studio-scrap-6.bin [WARNING] Error multiple volume C:\Qoobox\Quarantine\C\Windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\n.vir [DETECTION] Is the TR/ATRAPS.Gen2 Trojan C:\Qoobox\Quarantine\C\Windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\U\[email protected] [DETECTION] Is the TR/ATRAPS.Gen Trojan C:\Qoobox\Quarantine\C\Windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\U\[email protected] [DETECTION] Is the TR/ATRAPS.Gen2 Trojan C:\Qoobox\Quarantine\C\Windows\System32\services.exe.vir [DETECTION] Contains code of the W32/Patched.UA Windows virus Begin scan in 'E:\' E:\hiberfil.sys [WARNING] The file could not be opened! E:\Users\Christine\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\19MHIXD9\Firefox%20Setup%203.5.7[2].exe --> Object [WARNING] The file could not be read! [WARNING] The file could not be read! E:\Users\Christine\Documents\avira_free_antivirus_en.exe [WARNING] The file is password protected E:\Users\Christine\Documents\DVDFab\Temp\Update\Update.exe [WARNING] Invalid end of file Begin scan in 'F:\' <Disque 1> F:\Program Files\WinRAR\rarnew.dat [WARNING] Error no files to extract Beginning disinfection: C:\Qoobox\Quarantine\C\Windows\System32\services.exe.vir [DETECTION] Contains code of the W32/Patched.UA Windows virus [NOTE] The file was repaired! C:\Qoobox\Quarantine\C\Windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\U\[email protected] [DETECTION] Is the TR/ATRAPS.Gen2 Trojan [NOTE] The file was moved to the quarantine directory under the name '56096aa4.qua'. C:\Qoobox\Quarantine\C\Windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\U\[email protected] [DETECTION] Is the TR/ATRAPS.Gen Trojan [NOTE] The file was moved to the quarantine directory under the name '4e9e4503.qua'. C:\Qoobox\Quarantine\C\Windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\n.vir [DETECTION] Is the TR/ATRAPS.Gen2 Trojan [NOTE] The file was moved to the quarantine directory under the name '1c7b1fe9.qua'. End of the scan: mercredi 25 juillet 2012 12:15 Used time: 48:57 Minute(s) The scan has been done completely. 44945 Scanned directories 918944 Files were scanned 4 Viruses and/or unwanted programs were found 0 Files were classified as suspicious 0 Files were deleted 1 Viruses and unwanted programs were repaired 3 Files were moved to quarantine 0 Files were renamed 1 Files cannot be scanned 918939 Files not concerned 8322 Archives were scanned 43 Warnings 4 Notes 566599 Objects were scanned with rootkit scan 0 Hidden objects were found 11:23:34.0866 3696 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:32 11:23:34.0919 3696 ============================================================ 11:23:34.0919 3696 Current date / time: 2012/07/25 11:23:34.0919 11:23:34.0919 3696 SystemInfo: 11:23:34.0919 3696 11:23:34.0919 3696 OS Version: 6.1.7601 ServicePack: 1.0 11:23:34.0919 3696 Product type: Workstation 11:23:34.0920 3696 ComputerName: CHRISTINE-PC 11:23:34.0920 3696 UserName: Christine 11:23:34.0920 3696 Windows directory: C:\Windows 11:23:34.0920 3696 System windows directory: C:\Windows 11:23:34.0920 3696 Running under WOW64 11:23:34.0920 3696 Processor architecture: Intel x64 11:23:34.0920 3696 Number of processors: 4 11:23:34.0920 3696 Page size: 0x1000 11:23:34.0920 3696 Boot type: Normal boot 11:23:34.0920 3696 ============================================================ 11:23:35.0218 3696 Drive \Device\Harddisk0\DR0 - Size: 0xEE8156000 (59.63 Gb), SectorSize: 0x200, Cylinders: 0x72C4, SectorsPerTrack: 0x13, TracksPerCylinder: 0xE0, Type 'K0', Flags 0x00000040 11:23:35.0218 3696 Drive \Device\Harddisk1\DR1 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 11:23:35.0219 3696 Drive \Device\Harddisk2\DR2 - Size: 0x114FF30000 (69.25 Gb), SectorSize: 0x200, Cylinders: 0x234F, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 11:23:35.0223 3696 ============================================================ 11:23:35.0223 3696 \Device\Harddisk0\DR0: 11:23:35.0223 3696 MBR partitions: 11:23:35.0223 3696 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 11:23:35.0223 3696 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x770D000 11:23:35.0223 3696 \Device\Harddisk1\DR1: 11:23:35.0224 3696 MBR partitions: 11:23:35.0224 3696 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x2542D682 11:23:35.0224 3696 \Device\Harddisk2\DR2: 11:23:35.0224 3696 MBR partitions: 11:23:35.0224 3696 \Device\Harddisk2\DR2\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x8A7E800 11:23:35.0224 3696 ============================================================ 11:23:35.0225 3696 C: <-> \Device\Harddisk0\DR0\Partition1 11:23:35.0225 3696 E: <-> \Device\Harddisk2\DR2\Partition0 11:23:35.0226 3696 F: <-> \Device\Harddisk1\DR1\Partition0 11:23:35.0226 3696 ============================================================ 11:23:35.0226 3696 Initialize success 11:23:35.0226 3696 ============================================================ 11:23:41.0429 2400 ============================================================ 11:23:41.0429 2400 Scan started 11:23:41.0429 2400 Mode: Manual; SigCheck; TDLFS; 11:23:41.0429 2400 ============================================================ 11:23:41.0793 2400 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys 11:23:41.0831 2400 1394ohci - ok 11:23:41.0841 2400 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys 11:23:41.0854 2400 ACPI - ok 11:23:41.0857 2400 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys 11:23:41.0872 2400 AcpiPmi - ok 11:23:41.0878 2400 AdobeARMservice (11a52cf7b265631deeb24c6149309eff) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 11:23:41.0885 2400 AdobeARMservice - ok 11:23:41.0905 2400 AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 11:23:41.0915 2400 AdobeFlashPlayerUpdateSvc - ok 11:23:41.0929 2400 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys 11:23:41.0948 2400 adp94xx - ok 11:23:41.0959 2400 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys 11:23:41.0976 2400 adpahci - ok 11:23:41.0983 2400 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys 11:23:41.0998 2400 adpu320 - ok 11:23:42.0003 2400 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll 11:23:42.0035 2400 AeLookupSvc - ok 11:23:42.0050 2400 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys 11:23:42.0070 2400 AFD - ok 11:23:42.0075 2400 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys 11:23:42.0087 2400 agp440 - ok 11:23:42.0092 2400 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe 11:23:42.0107 2400 ALG - ok 11:23:42.0110 2400 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys 11:23:42.0119 2400 aliide - ok 11:23:42.0121 2400 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys 11:23:42.0133 2400 amdide - ok 11:23:42.0137 2400 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys 11:23:42.0147 2400 AmdK8 - ok 11:23:42.0151 2400 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys 11:23:42.0164 2400 AmdPPM - ok 11:23:42.0170 2400 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys 11:23:42.0179 2400 amdsata - ok 11:23:42.0186 2400 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys 11:23:42.0200 2400 amdsbs - ok 11:23:42.0204 2400 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys 11:23:42.0216 2400 amdxata - ok 11:23:42.0222 2400 AntiVirSchedulerService (0a1cc583e8147004e4ad4625d7fbf88c) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe 11:23:42.0231 2400 AntiVirSchedulerService - ok 11:23:42.0236 2400 AntiVirService (c9a36ef935aced86aedf93e97e606911) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe 11:23:42.0243 2400 AntiVirService - ok 11:23:42.0247 2400 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys 11:23:42.0277 2400 AppID - ok 11:23:42.0280 2400 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll 11:23:42.0311 2400 AppIDSvc - ok 11:23:42.0315 2400 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll 11:23:42.0342 2400 Appinfo - ok 11:23:42.0348 2400 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys 11:23:42.0361 2400 arc - ok 11:23:42.0366 2400 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys 11:23:42.0380 2400 arcsas - ok 11:23:42.0383 2400 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 11:23:42.0412 2400 AsyncMac - ok 11:23:42.0416 2400 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys 11:23:42.0427 2400 atapi - ok 11:23:42.0445 2400 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll 11:23:42.0484 2400 AudioEndpointBuilder - ok 11:23:42.0489 2400 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll 11:23:42.0527 2400 AudioSrv - ok 11:23:42.0532 2400 avgntflt (26e38b5a58c6c55fafbc563eeddb0867) C:\Windows\system32\DRIVERS\avgntflt.sys 11:23:42.0548 2400 avgntflt - ok 11:23:42.0554 2400 avipbb (9d1f00beff84cbbf46d7f052bc7e0565) C:\Windows\system32\DRIVERS\avipbb.sys 11:23:42.0568 2400 avipbb - ok 11:23:42.0571 2400 avkmgr (248db59fc86de44d2779f4c7fb1a567d) C:\Windows\system32\DRIVERS\avkmgr.sys 11:23:42.0584 2400 avkmgr - ok 11:23:42.0589 2400 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll 11:23:42.0607 2400 AxInstSV - ok 11:23:42.0621 2400 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys 11:23:42.0637 2400 b06bdrv - ok 11:23:42.0647 2400 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 11:23:42.0658 2400 b57nd60a - ok 11:23:42.0666 2400 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll 11:23:42.0681 2400 BDESVC - ok 11:23:42.0684 2400 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys 11:23:42.0715 2400 Beep - ok 11:23:42.0734 2400 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll 11:23:42.0773 2400 BFE - ok 11:23:42.0780 2400 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys 11:23:42.0794 2400 blbdrive - ok 11:23:42.0799 2400 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys 11:23:42.0808 2400 bowser - ok 11:23:42.0812 2400 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys 11:23:42.0827 2400 BrFiltLo - ok 11:23:42.0830 2400 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys 11:23:42.0844 2400 BrFiltUp - ok 11:23:42.0849 2400 BridgeMP (5c2f352a4e961d72518261257aae204b) C:\Windows\system32\DRIVERS\bridge.sys 11:23:42.0878 2400 BridgeMP - ok 11:23:42.0885 2400 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll 11:23:42.0919 2400 Browser - ok 11:23:42.0928 2400 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 11:23:42.0946 2400 Brserid - ok 11:23:42.0950 2400 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 11:23:42.0965 2400 BrSerWdm - ok 11:23:42.0968 2400 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 11:23:42.0982 2400 BrUsbMdm - ok 11:23:42.0985 2400 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 11:23:42.0998 2400 BrUsbSer - ok 11:23:43.0003 2400 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys 11:23:43.0019 2400 BTHMODEM - ok 11:23:43.0026 2400 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll 11:23:43.0059 2400 bthserv - ok 11:23:43.0062 2400 catchme - ok 11:23:43.0068 2400 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 11:23:43.0099 2400 cdfs - ok 11:23:43.0106 2400 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys 11:23:43.0121 2400 cdrom - ok 11:23:43.0126 2400 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll 11:23:43.0158 2400 CertPropSvc - ok 11:23:43.0162 2400 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys 11:23:43.0178 2400 circlass - ok 11:23:43.0190 2400 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 11:23:43.0204 2400 CLFS - ok 11:23:43.0209 2400 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 11:23:43.0219 2400 clr_optimization_v2.0.50727_32 - ok 11:23:43.0224 2400 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 11:23:43.0233 2400 clr_optimization_v2.0.50727_64 - ok 11:23:43.0240 2400 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 11:23:43.0249 2400 clr_optimization_v4.0.30319_32 - ok 11:23:43.0257 2400 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 11:23:43.0265 2400 clr_optimization_v4.0.30319_64 - ok 11:23:43.0269 2400 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys 11:23:43.0282 2400 CmBatt - ok 11:23:43.0285 2400 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys 11:23:43.0298 2400 cmdide - ok 11:23:43.0312 2400 CNG (9ac4f97c2d3e93367e2148ea940cd2cd) C:\Windows\system32\Drivers\cng.sys 11:23:43.0337 2400 CNG - ok 11:23:43.0341 2400 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys 11:23:43.0354 2400 Compbatt - ok 11:23:43.0357 2400 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys 11:23:43.0374 2400 CompositeBus - ok 11:23:43.0376 2400 COMSysApp - ok 11:23:43.0380 2400 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys 11:23:43.0393 2400 crcdisk - ok 11:23:43.0402 2400 CryptSvc (4f5414602e2544a4554d95517948b705) C:\Windows\system32\cryptsvc.dll 11:23:43.0415 2400 CryptSvc - ok 11:23:43.0419 2400 dc3d (1ca90212a99db6975c344826d11055c9) C:\Windows\system32\DRIVERS\dc3d.sys 11:23:43.0431 2400 dc3d - ok 11:23:43.0448 2400 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll 11:23:43.0479 2400 DcomLaunch - ok 11:23:43.0489 2400 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll 11:23:43.0524 2400 defragsvc - ok 11:23:43.0529 2400 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys 11:23:43.0556 2400 DfsC - ok 11:23:43.0562 2400 dg_ssudbus (6060106ce00f32f63f1a73160e46e9d2) C:\Windows\system32\DRIVERS\ssudbus.sys 11:23:43.0574 2400 dg_ssudbus - ok 11:23:43.0585 2400 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll 11:23:43.0620 2400 Dhcp - ok 11:23:43.0624 2400 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 11:23:43.0654 2400 discache - ok 11:23:43.0658 2400 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys 11:23:43.0671 2400 Disk - ok 11:23:43.0679 2400 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll 11:23:43.0695 2400 Dnscache - ok 11:23:43.0704 2400 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll 11:23:43.0737 2400 dot3svc - ok 11:23:43.0744 2400 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll 11:23:43.0771 2400 DPS - ok 11:23:43.0774 2400 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 11:23:43.0787 2400 drmkaud - ok 11:23:43.0812 2400 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys 11:23:43.0836 2400 DXGKrnl - ok 11:23:43.0842 2400 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll 11:23:43.0873 2400 EapHost - ok 11:23:43.0953 2400 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys 11:23:43.0994 2400 ebdrv - ok 11:23:44.0012 2400 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe 11:23:44.0022 2400 EFS - ok 11:23:44.0041 2400 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe 11:23:44.0062 2400 ehRecvr - ok 11:23:44.0068 2400 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe 11:23:44.0079 2400 ehSched - ok 11:23:44.0095 2400 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys 11:23:44.0113 2400 elxstor - ok 11:23:44.0117 2400 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys 11:23:44.0129 2400 ErrDev - ok 11:23:44.0144 2400 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll 11:23:44.0180 2400 EventSystem - ok 11:23:44.0187 2400 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 11:23:44.0220 2400 exfat - ok 11:23:44.0227 2400 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 11:23:44.0256 2400 fastfat - ok 11:23:44.0275 2400 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe 11:23:44.0294 2400 Fax - ok 11:23:44.0298 2400 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys 11:23:44.0308 2400 fdc - ok 11:23:44.0311 2400 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll 11:23:44.0341 2400 fdPHost - ok 11:23:44.0345 2400 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll 11:23:44.0376 2400 FDResPub - ok 11:23:44.0380 2400 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 11:23:44.0393 2400 FileInfo - ok 11:23:44.0397 2400 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 11:23:44.0426 2400 Filetrace - ok 11:23:44.0430 2400 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys 11:23:44.0442 2400 flpydisk - ok 11:23:44.0452 2400 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys 11:23:44.0469 2400 FltMgr - ok 11:23:44.0498 2400 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll 11:23:44.0521 2400 FontCache - ok 11:23:44.0526 2400 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 11:23:44.0533 2400 FontCache3.0.0.0 - ok 11:23:44.0538 2400 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 11:23:44.0551 2400 FsDepends - ok 11:23:44.0554 2400 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys 11:23:44.0563 2400 Fs_Rec - ok 11:23:44.0571 2400 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys 11:23:44.0590 2400 fvevol - ok 11:23:44.0595 2400 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys 11:23:44.0607 2400 gagp30kx - ok 11:23:44.0628 2400 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll 11:23:44.0660 2400 gpsvc - ok 11:23:44.0667 2400 gusvc (c1b577b2169900f4cf7190c39f085794) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe 11:23:44.0681 2400 gusvc - ok 11:23:44.0685 2400 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 11:23:44.0699 2400 hcw85cir - ok 11:23:44.0709 2400 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys 11:23:44.0729 2400 HdAudAddService - ok 11:23:44.0735 2400 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys 11:23:44.0747 2400 HDAudBus - ok 11:23:44.0750 2400 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys 11:23:44.0759 2400 HidBatt - ok 11:23:44.0764 2400 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys 11:23:44.0779 2400 HidBth - ok 11:23:44.0783 2400 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys 11:23:44.0797 2400 HidIr - ok 11:23:44.0801 2400 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\System32\hidserv.dll 11:23:44.0833 2400 hidserv - ok 11:23:44.0836 2400 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys 11:23:44.0849 2400 HidUsb - ok 11:23:44.0853 2400 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll 11:23:44.0884 2400 hkmsvc - ok 11:23:44.0892 2400 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll 11:23:44.0910 2400 HomeGroupListener - ok 11:23:44.0917 2400 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll 11:23:44.0934 2400 HomeGroupProvider - ok 11:23:44.0938 2400 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys 11:23:44.0951 2400 HpSAMD - ok 11:23:44.0971 2400 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys 11:23:45.0003 2400 HTTP - ok 11:23:45.0006 2400 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys 11:23:45.0017 2400 hwpolicy - ok 11:23:45.0022 2400 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys 11:23:45.0037 2400 i8042prt - ok 11:23:45.0049 2400 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys 11:23:45.0062 2400 iaStorV - ok 11:23:45.0084 2400 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 11:23:45.0100 2400 idsvc - ok 11:23:45.0104 2400 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys 11:23:45.0116 2400 iirsp - ok 11:23:45.0138 2400 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll 11:23:45.0178 2400 IKEEXT - ok 11:23:45.0277 2400 IntcAzAudAddService (1fb38d4a26b9bf7bb61fbe0bd769fe92) C:\Windows\system32\drivers\RTKVHD64.sys 11:23:45.0292 2400 Suspicious file (Forged): C:\Windows\system32\drivers\RTKVHD64.sys. Real md5: 1fb38d4a26b9bf7bb61fbe0bd769fe92, Fake md5: bfa86d2af83f1c812cc5db683a7ce3f9 11:23:45.0298 2400 IntcAzAudAddService ( ForgedFile.Multi.Generic ) - warning 11:23:45.0298 2400 IntcAzAudAddService - detected ForgedFile.Multi.Generic (1) 11:23:45.0318 2400 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys 11:23:45.0330 2400 intelide - ok 11:23:45.0334 2400 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys 11:23:45.0348 2400 intelppm - ok 11:23:45.0353 2400 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll 11:23:45.0385 2400 IPBusEnum - ok 11:23:45.0389 2400 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys 11:23:45.0419 2400 IpFilterDriver - ok 11:23:45.0435 2400 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll 11:23:45.0472 2400 iphlpsvc - ok 11:23:45.0477 2400 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys 11:23:45.0491 2400 IPMIDRV - ok 11:23:45.0496 2400 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 11:23:45.0524 2400 IPNAT - ok 11:23:45.0528 2400 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 11:23:45.0543 2400 IRENUM - ok 11:23:45.0546 2400 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys 11:23:45.0558 2400 isapnp - ok 11:23:45.0566 2400 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys 11:23:45.0582 2400 iScsiPrt - ok 11:23:45.0587 2400 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys 11:23:45.0597 2400 kbdclass - ok 11:23:45.0600 2400 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys 11:23:45.0613 2400 kbdhid - ok 11:23:45.0616 2400 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 11:23:45.0626 2400 KeyIso - ok 11:23:45.0630 2400 KSecDD (97a7070aea4c058b6418519e869a63b4) C:\Windows\system32\Drivers\ksecdd.sys 11:23:45.0640 2400 KSecDD - ok 11:23:45.0646 2400 KSecPkg (26c43a7c2862447ec59deda188d1da07) C:\Windows\system32\Drivers\ksecpkg.sys 11:23:45.0661 2400 KSecPkg - ok 11:23:45.0664 2400 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 11:23:45.0693 2400 ksthunk - ok 11:23:45.0704 2400 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll 11:23:45.0740 2400 KtmRm - ok 11:23:45.0745 2400 L1E (b8e670d7ef61615fa03104552854fac9) C:\Windows\system32\DRIVERS\L1E62x64.sys 11:23:45.0756 2400 L1E - ok 11:23:45.0764 2400 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\System32\srvsvc.dll 11:23:45.0798 2400 LanmanServer - ok 11:23:45.0804 2400 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll 11:23:45.0836 2400 LanmanWorkstation - ok 11:23:45.0843 2400 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 11:23:45.0873 2400 lltdio - ok 11:23:45.0883 2400 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll 11:23:45.0916 2400 lltdsvc - ok 11:23:45.0919 2400 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll 11:23:45.0950 2400 lmhosts - ok 11:23:45.0958 2400 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys 11:23:45.0971 2400 LSI_FC - ok 11:23:45.0976 2400 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys 11:23:45.0989 2400 LSI_SAS - ok 11:23:45.0993 2400 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys 11:23:46.0006 2400 LSI_SAS2 - ok 11:23:46.0012 2400 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys 11:23:46.0025 2400 LSI_SCSI - ok 11:23:46.0031 2400 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 11:23:46.0062 2400 luafv - ok 11:23:46.0067 2400 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll 11:23:46.0081 2400 Mcx2Svc - ok 11:23:46.0085 2400 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys 11:23:46.0094 2400 megasas - ok 11:23:46.0102 2400 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys 11:23:46.0118 2400 MegaSR - ok 11:23:46.0123 2400 Microsoft SharePoint Workspace Audit Service - ok 11:23:46.0130 2400 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll 11:23:46.0162 2400 MMCSS - ok 11:23:46.0165 2400 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 11:23:46.0194 2400 Modem - ok 11:23:46.0198 2400 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 11:23:46.0212 2400 monitor - ok 11:23:46.0216 2400 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys 11:23:46.0226 2400 mouclass - ok 11:23:46.0229 2400 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 11:23:46.0241 2400 mouhid - ok 11:23:46.0245 2400 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys 11:23:46.0259 2400 mountmgr - ok 11:23:46.0265 2400 MozillaMaintenance (46297fa8e30a6007f14118fc2b942fbc) C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 11:23:46.0279 2400 MozillaMaintenance - ok 11:23:46.0285 2400 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys 11:23:46.0295 2400 mpio - ok 11:23:46.0299 2400 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 11:23:46.0329 2400 mpsdrv - ok 11:23:46.0352 2400 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll 11:23:46.0392 2400 MpsSvc - ok 11:23:46.0398 2400 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys 11:23:46.0416 2400 MRxDAV - ok 11:23:46.0423 2400 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys 11:23:46.0437 2400 mrxsmb - ok 11:23:46.0446 2400 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys 11:23:46.0458 2400 mrxsmb10 - ok 11:23:46.0464 2400 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys 11:23:46.0477 2400 mrxsmb20 - ok 11:23:46.0480 2400 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys 11:23:46.0492 2400 msahci - ok 11:23:46.0499 2400 MSCamSvc (a592a054d78750b4d73abaa4c94decdf) C:\Program Files\Microsoft LifeCam\MSCamS64.exe 11:23:46.0507 2400 MSCamSvc - ok 11:23:46.0513 2400 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys 11:23:46.0527 2400 msdsm - ok 11:23:46.0533 2400 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe 11:23:46.0549 2400 MSDTC - ok 11:23:46.0555 2400 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 11:23:46.0585 2400 Msfs - ok 11:23:46.0588 2400 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 11:23:46.0616 2400 mshidkmdf - ok 11:23:46.0619 2400 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys 11:23:46.0630 2400 msisadrv - ok 11:23:46.0637 2400 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll 11:23:46.0669 2400 MSiSCSI - ok 11:23:46.0671 2400 msiserver - ok 11:23:46.0675 2400 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 11:23:46.0702 2400 MSKSSRV - ok 11:23:46.0705 2400 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 11:23:46.0733 2400 MSPCLOCK - ok 11:23:46.0736 2400 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 11:23:46.0764 2400 MSPQM - ok 11:23:46.0775 2400 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys 11:23:46.0792 2400 MsRPC - ok 11:23:46.0797 2400 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys 11:23:46.0806 2400 mssmbios - ok 11:23:46.0808 2400 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 11:23:46.0835 2400 MSTEE - ok 11:23:46.0838 2400 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys 11:23:46.0847 2400 MTConfig - ok 11:23:46.0850 2400 MTsensor (19b006b181e3875fd254f7b67acf1e7c) C:\Windows\system32\DRIVERS\ASACPI.sys 11:23:46.0859 2400 MTsensor - ok 11:23:46.0864 2400 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 11:23:46.0874 2400 Mup - ok 11:23:46.0888 2400 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll 11:23:46.0918 2400 napagent - ok 11:23:46.0929 2400 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 11:23:46.0944 2400 NativeWifiP - ok 11:23:46.0970 2400 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys 11:23:46.0989 2400 NDIS - ok 11:23:46.0993 2400 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 11:23:47.0023 2400 NdisCap - ok 11:23:47.0026 2400 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 11:23:47.0055 2400 NdisTapi - ok 11:23:47.0059 2400 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys 11:23:47.0088 2400 Ndisuio - ok 11:23:47.0095 2400 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys 11:23:47.0126 2400 NdisWan - ok 11:23:47.0130 2400 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys 11:23:47.0160 2400 NDProxy - ok 11:23:47.0163 2400 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 11:23:47.0191 2400 NetBIOS - ok 11:23:47.0199 2400 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys 11:23:47.0227 2400 NetBT - ok 11:23:47.0230 2400 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 11:23:47.0240 2400 Netlogon - ok 11:23:47.0251 2400 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll 11:23:47.0287 2400 Netman - ok 11:23:47.0300 2400 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll 11:23:47.0338 2400 netprofm - ok 11:23:47.0344 2400 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe 11:23:47.0352 2400 NetTcpPortSharing - ok 11:23:47.0356 2400 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys 11:23:47.0369 2400 nfrd960 - ok 11:23:47.0380 2400 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll 11:23:47.0409 2400 NlaSvc - ok 11:23:47.0412 2400 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 11:23:47.0439 2400 Npfs - ok 11:23:47.0442 2400 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll 11:23:47.0473 2400 nsi - ok 11:23:47.0477 2400 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 11:23:47.0506 2400 nsiproxy - ok 11:23:47.0548 2400 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys 11:23:47.0576 2400 Ntfs - ok 11:23:47.0595 2400 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 11:23:47.0622 2400 Null - ok 11:23:47.0629 2400 NVHDA (8d4aac74b571fc356560e5b308955e93) C:\Windows\system32\drivers\nvhda64v.sys 11:23:47.0644 2400 NVHDA - ok 11:23:47.0967 2400 nvlddmkm (0eb204639119370f5f8f2871fbf4e14b) C:\Windows\system32\DRIVERS\nvlddmkm.sys 11:23:48.0143 2400 nvlddmkm - ok 11:23:48.0170 2400 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys 11:23:48.0181 2400 nvraid - ok 11:23:48.0188 2400 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys 11:23:48.0199 2400 nvstor - ok 11:23:48.0222 2400 nvsvc (32ff8ee6dcee5c0cb91ff892fb1ca364) C:\Windows\system32\nvvsvc.exe 11:23:48.0240 2400 nvsvc - ok 11:23:48.0299 2400 nvUpdatusService (bd012dc22c78be1071bc21eb125d782f) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 11:23:48.0333 2400 nvUpdatusService - ok 11:23:48.0356 2400 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys 11:23:48.0370 2400 nv_agp - ok 11:23:48.0374 2400 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys 11:23:48.0388 2400 ohci1394 - ok 11:23:48.0395 2400 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 11:23:48.0408 2400 ose - ok 11:23:48.0529 2400 osppsvc (61bffb5f57ad12f83ab64b7181829b34) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 11:23:48.0594 2400 osppsvc - ok 11:23:48.0620 2400 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll 11:23:48.0637 2400 p2pimsvc - ok 11:23:48.0650 2400 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll 11:23:48.0668 2400 p2psvc - ok 11:23:48.0675 2400 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys 11:23:48.0689 2400 Parport - ok 11:23:48.0694 2400 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys 11:23:48.0707 2400 partmgr - ok 11:23:48.0715 2400 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll 11:23:48.0735 2400 PcaSvc - ok 11:23:48.0742 2400 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys 11:23:48.0757 2400 pci - ok 11:23:48.0760 2400 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys 11:23:48.0771 2400 pciide - ok 11:23:48.0779 2400 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys 11:23:48.0791 2400 pcmcia - ok 11:23:48.0795 2400 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 11:23:48.0807 2400 pcw - ok 11:23:48.0825 2400 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 11:23:48.0863 2400 PEAUTH - ok 11:23:48.0878 2400 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe 11:23:48.0889 2400 PerfHost - ok 11:23:48.0928 2400 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll 11:23:48.0972 2400 pla - ok 11:23:48.0985 2400 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll 11:23:49.0005 2400 PlugPlay - ok 11:23:49.0009 2400 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll 11:23:49.0022 2400 PNRPAutoReg - ok 11:23:49.0033 2400 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll 11:23:49.0050 2400 PNRPsvc - ok 11:23:49.0056 2400 Point64 (33328fa8a580885ab0065be6db266e9f) C:\Windows\system32\DRIVERS\point64.sys 11:23:49.0066 2400 Point64 - ok 11:23:49.0080 2400 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll 11:23:49.0115 2400 PolicyAgent - ok 11:23:49.0124 2400 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll 11:23:49.0158 2400 Power - ok 11:23:49.0164 2400 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys 11:23:49.0191 2400 PptpMiniport - ok 11:23:49.0195 2400 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys 11:23:49.0209 2400 Processor - ok 11:23:49.0217 2400 ProfSvc (53e83f1f6cf9d62f32801cf66d8352a8) C:\Windows\system32\profsvc.dll 11:23:49.0229 2400 ProfSvc - ok 11:23:49.0233 2400 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 11:23:49.0242 2400 ProtectedStorage - ok 11:23:49.0248 2400 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys 11:23:49.0275 2400 Psched - ok 11:23:49.0313 2400 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys 11:23:49.0339 2400 ql2300 - ok 11:23:49.0360 2400 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys 11:23:49.0371 2400 ql40xx - ok 11:23:49.0379 2400 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll 11:23:49.0395 2400 QWAVE - ok 11:23:49.0399 2400 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 11:23:49.0412 2400 QWAVEdrv - ok 11:23:49.0416 2400 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 11:23:49.0445 2400 RasAcd - ok 11:23:49.0449 2400 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 11:23:49.0480 2400 RasAgileVpn - ok 11:23:49.0485 2400 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll 11:23:49.0516 2400 RasAuto - ok 11:23:49.0522 2400 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys 11:23:49.0549 2400 Rasl2tp - ok 11:23:49.0560 2400 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll 11:23:49.0595 2400 RasMan - ok 11:23:49.0600 2400 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 11:23:49.0632 2400 RasPppoe - ok 11:23:49.0637 2400 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 11:23:49.0668 2400 RasSstp - ok 11:23:49.0678 2400 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys 11:23:49.0711 2400 rdbss - ok 11:23:49.0715 2400 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys 11:23:49.0726 2400 rdpbus - ok 11:23:49.0729 2400 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 11:23:49.0758 2400 RDPCDD - ok 11:23:49.0762 2400 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 11:23:49.0791 2400 RDPENCDD - ok 11:23:49.0795 2400 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 11:23:49.0824 2400 RDPREFMP - ok 11:23:49.0831 2400 RDPWD (e61608aa35e98999af9aaeeea6114b0a) C:\Windows\system32\drivers\RDPWD.sys 11:23:49.0845 2400 RDPWD - ok 11:23:49.0853 2400 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys 11:23:49.0869 2400 rdyboost - ok 11:23:49.0875 2400 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll 11:23:49.0903 2400 RemoteAccess - ok 11:23:49.0910 2400 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll 11:23:49.0939 2400 RemoteRegistry - ok 11:23:49.0944 2400 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll 11:23:49.0976 2400 RpcEptMapper - ok 11:23:49.0978 2400 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe 11:23:49.0991 2400 RpcLocator - ok 11:23:50.0005 2400 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll 11:23:50.0037 2400 RpcSs - ok 11:23:50.0042 2400 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 11:23:50.0073 2400 rspndr - ok 11:23:50.0077 2400 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 11:23:50.0087 2400 SamSs - ok 11:23:50.0092 2400 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys 11:23:50.0105 2400 sbp2port - ok 11:23:50.0113 2400 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll 11:23:50.0142 2400 SCardSvr - ok 11:23:50.0146 2400 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys 11:23:50.0175 2400 scfilter - ok 11:23:50.0203 2400 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll 11:23:50.0247 2400 Schedule - ok 11:23:50.0277 2400 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll 11:23:50.0307 2400 SCPolicySvc - ok 11:23:50.0314 2400 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll 11:23:50.0331 2400 SDRSVC - ok 11:23:50.0336 2400 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 11:23:50.0366 2400 secdrv - ok 11:23:50.0370 2400 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll 11:23:50.0400 2400 seclogon - ok 11:23:50.0404 2400 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\system32\sens.dll 11:23:50.0433 2400 SENS - ok 11:23:50.0437 2400 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll 11:23:50.0451 2400 SensrSvc - ok 11:23:50.0454 2400 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys 11:23:50.0466 2400 Serenum - ok 11:23:50.0470 2400 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys 11:23:50.0484 2400 Serial - ok 11:23:50.0487 2400 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys 11:23:50.0499 2400 sermouse - ok 11:23:50.0509 2400 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll 11:23:50.0541 2400 SessionEnv - ok 11:23:50.0544 2400 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys 11:23:50.0553 2400 sffdisk - ok 11:23:50.0556 2400 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys 11:23:50.0567 2400 sffp_mmc - ok 11:23:50.0570 2400 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys 11:23:50.0584 2400 sffp_sd - ok 11:23:50.0587 2400 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys 11:23:50.0598 2400 sfloppy - ok 11:23:50.0610 2400 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll 11:23:50.0644 2400 SharedAccess - ok 11:23:50.0656 2400 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll 11:23:50.0692 2400 ShellHWDetection - ok 11:23:50.0696 2400 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys 11:23:50.0709 2400 SiSRaid2 - ok 11:23:50.0714 2400 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys 11:23:50.0726 2400 SiSRaid4 - ok 11:23:50.0731 2400 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 11:23:50.0762 2400 Smb - ok 11:23:50.0768 2400 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe 11:23:50.0782 2400 SNMPTRAP - ok 11:23:50.0786 2400 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 11:23:50.0795 2400 spldr - ok 11:23:50.0810 2400 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe 11:23:50.0842 2400 Spooler - ok 11:23:50.0935 2400 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe 11:23:50.0991 2400 sppsvc - ok 11:23:51.0011 2400 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll 11:23:51.0043 2400 sppuinotify - ok 11:23:51.0059 2400 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys 11:23:51.0077 2400 srv - ok 11:23:51.0090 2400 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys 11:23:51.0107 2400 srv2 - ok 11:23:51.0114 2400 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys 11:23:51.0129 2400 srvnet - ok 11:23:51.0136 2400 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll 11:23:51.0170 2400 SSDPSRV - ok 11:23:51.0175 2400 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll 11:23:51.0208 2400 SstpSvc - ok 11:23:51.0215 2400 ssudmdm (855335bf5792e56164f98c012e3d92dd) C:\Windows\system32\DRIVERS\ssudmdm.sys 11:23:51.0228 2400 ssudmdm - ok 11:23:51.0241 2400 Stereo Service (fc0a58529a02b1eed55ddc58696b7908) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 11:23:51.0253 2400 Stereo Service - ok 11:23:51.0257 2400 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys 11:23:51.0269 2400 stexstor - ok 11:23:51.0286 2400 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll 11:23:51.0305 2400 stisvc - ok 11:23:51.0308 2400 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys 11:23:51.0320 2400 swenum - ok 11:23:51.0334 2400 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll 11:23:51.0367 2400 swprv - ok 11:23:51.0411 2400 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll 11:23:51.0440 2400 SysMain - ok 11:23:51.0460 2400 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll 11:23:51.0475 2400 TabletInputService - ok 11:23:51.0485 2400 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll 11:23:51.0520 2400 TapiSrv - ok 11:23:51.0524 2400 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll 11:23:51.0557 2400 TBS - ok 11:23:51.0607 2400 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys 11:23:51.0645 2400 Tcpip - ok 11:23:51.0709 2400 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys 11:23:51.0747 2400 TCPIP6 - ok 11:23:51.0768 2400 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys 11:23:51.0798 2400 tcpipreg - ok 11:23:51.0803 2400 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 11:23:51.0814 2400 TDPIPE - ok 11:23:51.0817 2400 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys 11:23:51.0827 2400 TDTCP - ok 11:23:51.0832 2400 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys 11:23:51.0859 2400 tdx - ok 11:23:51.0864 2400 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys 11:23:51.0874 2400 TermDD - ok 11:23:51.0892 2400 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll 11:23:51.0932 2400 TermService - ok 11:23:51.0936 2400 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll 11:23:51.0954 2400 Themes - ok 11:23:51.0958 2400 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll 11:23:51.0990 2400 THREADORDER - ok 11:23:51.0996 2400 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll 11:23:52.0029 2400 TrkWks - ok 11:23:52.0037 2400 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe 11:23:52.0064 2400 TrustedInstaller - ok 11:23:52.0071 2400 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys 11:23:52.0100 2400 tssecsrv - ok 11:23:52.0105 2400 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys 11:23:52.0118 2400 TsUsbFlt - ok 11:23:52.0124 2400 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys 11:23:52.0155 2400 tunnel - ok 11:23:52.0160 2400 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys 11:23:52.0173 2400 uagp35 - ok 11:23:52.0183 2400 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys 11:23:52.0215 2400 udfs - ok 11:23:52.0222 2400 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe 11:23:52.0238 2400 UI0Detect - ok 11:23:52.0243 2400 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys 11:23:52.0256 2400 uliagpkx - ok 11:23:52.0259 2400 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys 11:23:52.0273 2400 umbus - ok 11:23:52.0276 2400 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys 11:23:52.0288 2400 UmPass - ok 11:23:52.0299 2400 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll 11:23:52.0335 2400 upnphost - ok 11:23:52.0340 2400 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys 11:23:52.0357 2400 usbaudio - ok 11:23:52.0362 2400 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys 11:23:52.0376 2400 usbccgp - ok 11:23:52.0381 2400 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys 11:23:52.0398 2400 usbcir - ok 11:23:52.0402 2400 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys 11:23:52.0414 2400 usbehci - ok 11:23:52.0425 2400 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys 11:23:52.0442 2400 usbhub - ok 11:23:52.0446 2400 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys 11:23:52.0458 2400 usbohci - ok 11:23:52.0461 2400 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys 11:23:52.0475 2400 usbprint - ok 11:23:52.0480 2400 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys 11:23:52.0494 2400 usbscan - ok 11:23:52.0499 2400 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS 11:23:52.0510 2400 USBSTOR - ok 11:23:52.0513 2400 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys 11:23:52.0525 2400 usbuhci - ok 11:23:52.0529 2400 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll 11:23:52.0561 2400 UxSms - ok 11:23:52.0565 2400 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 11:23:52.0575 2400 VaultSvc - ok 11:23:52.0579 2400 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys 11:23:52.0592 2400 vdrvroot - ok 11:23:52.0607 2400 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe 11:23:52.0638 2400 vds - ok 11:23:52.0642 2400 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 11:23:52.0656 2400 vga - ok 11:23:52.0660 2400 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 11:23:52.0690 2400 VgaSave - ok 11:23:52.0698 2400 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys 11:23:52.0714 2400 vhdmp - ok 11:23:52.0747 2400 VIAHdAudAddService (574b29f436c4c63d37020c6e570a7528) C:\Windows\system32\drivers\viahduaa.sys 11:23:52.0766 2400 VIAHdAudAddService - ok 11:23:52.0770 2400 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys 11:23:52.0779 2400 viaide - ok 11:23:52.0783 2400 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys 11:23:52.0797 2400 volmgr - ok 11:23:52.0808 2400 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys 11:23:52.0825 2400 volmgrx - ok 11:23:52.0836 2400 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys 11:23:52.0853 2400 volsnap - ok 11:23:52.0860 2400 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys 11:23:52.0871 2400 vsmraid - ok 11:23:52.0910 2400 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe 11:23:52.0950 2400 VSS - ok 11:23:52.0970 2400 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys 11:23:52.0984 2400 vwifibus - ok 11:23:53.0037 2400 VX3000 (c366ae91d2cc2c1c25380061d235c36b) C:\Windows\system32\DRIVERS\VX3000.sys 11:23:53.0072 2400 VX3000 - ok 11:23:53.0098 2400 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll 11:23:53.0135 2400 W32Time - ok 11:23:53.0142 2400 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys 11:23:53.0153 2400 WacomPen - ok 11:23:53.0158 2400 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 11:23:53.0188 2400 WANARP - ok 11:23:53.0190 2400 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 11:23:53.0222 2400 Wanarpv6 - ok 11:23:53.0254 2400 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe 11:23:53.0289 2400 WatAdminSvc - ok 11:23:53.0327 2400 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe 11:23:53.0355 2400 wbengine - ok 11:23:53.0377 2400 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll 11:23:53.0397 2400 WbioSrvc - ok 11:23:53.0408 2400 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll 11:23:53.0429 2400 wcncsvc - ok 11:23:53.0434 2400 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll 11:23:53.0445 2400 WcsPlugInService - ok 11:23:53.0450 2400 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys 11:23:53.0462 2400 Wd - ok 11:23:53.0479 2400 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 11:23:53.0500 2400 Wdf01000 - ok 11:23:53.0506 2400 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll 11:23:53.0525 2400 WdiServiceHost - ok 11:23:53.0528 2400 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll 11:23:53.0548 2400 WdiSystemHost - ok 11:23:53.0557 2400 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll 11:23:53.0579 2400 WebClient - ok 11:23:53.0587 2400 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll 11:23:53.0621 2400 Wecsvc - ok 11:23:53.0626 2400 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll 11:23:53.0658 2400 wercplsupport - ok 11:23:53.0663 2400 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll 11:23:53.0697 2400 WerSvc - ok 11:23:53.0703 2400 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 11:23:53.0732 2400 WfpLwf - ok 11:23:53.0735 2400 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 11:23:53.0747 2400 WIMMount - ok 11:23:53.0750 2400 WinDefend - ok 11:23:53.0754 2400 WinHttpAutoProxySvc - ok 11:23:53.0765 2400 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll 11:23:53.0794 2400 Winmgmt - ok 11:23:53.0844 2400 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll 11:23:53.0894 2400 WinRM - ok 11:23:53.0935 2400 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll 11:23:53.0961 2400 Wlansvc - ok 11:23:53.0966 2400 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys 11:23:53.0978 2400 WmiAcpi - ok 11:23:53.0989 2400 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe 11:23:54.0005 2400 wmiApSrv - ok 11:23:54.0008 2400 WMPNetworkSvc - ok 11:23:54.0012 2400 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll 11:23:54.0026 2400 WPCSvc - ok 11:23:54.0031 2400 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll 11:23:54.0044 2400 WPDBusEnum - ok 11:23:54.0047 2400 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 11:23:54.0076 2400 ws2ifsl - ok 11:23:54.0082 2400 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\system32\wscsvc.dll 11:23:54.0102 2400 wscsvc - ok 11:23:54.0104 2400 WSearch - ok 11:23:54.0167 2400 wuauserv (d9ef901dca379cfe914e9fa13b73b4c4) C:\Windows\system32\wuaueng.dll 11:23:54.0214 2400 wuauserv - ok 11:23:54.0237 2400 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys 11:23:54.0264 2400 WudfPf - ok 11:23:54.0271 2400 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys 11:23:54.0301 2400 WUDFRd - ok 11:23:54.0306 2400 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll 11:23:54.0334 2400 wudfsvc - ok 11:23:54.0343 2400 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll 11:23:54.0359 2400 WwanSvc - ok 11:23:54.0363 2400 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0 11:23:54.0427 2400 \Device\Harddisk0\DR0 - ok 11:23:54.0429 2400 MBR (0x1B8) (680bad8fd6a7693a7be29dcd9d1a9dfb) \Device\Harddisk1\DR1 11:23:54.0575 2400 \Device\Harddisk1\DR1 - ok 11:23:54.0578 2400 MBR (0x1B8) (c99c3199cfaa4cbdcd91493f6d113a50) \Device\Harddisk2\DR2 11:23:54.0596 2400 \Device\Harddisk2\DR2 - ok 11:23:54.0598 2400 Boot (0x1200) (e5da919bd396c3a8de5ff8881064ef66) \Device\Harddisk0\DR0\Partition0 11:23:54.0599 2400 \Device\Harddisk0\DR0\Partition0 - ok 11:23:54.0601 2400 Boot (0x1200) (cf2e8bc0673d0a2218743dee37e10f13) \Device\Harddisk0\DR0\Partition1 11:23:54.0602 2400 \Device\Harddisk0\DR0\Partition1 - ok 11:23:54.0604 2400 Boot (0x1200) (a6b4fdea389c0f3c540fa55ae8e8fa1e) \Device\Harddisk1\DR1\Partition0 11:23:54.0605 2400 \Device\Harddisk1\DR1\Partition0 - ok 11:23:54.0607 2400 Boot (0x1200) (654a0b77e70dda53867b5a30375ebf06) \Device\Harddisk2\DR2\Partition0 11:23:54.0607 2400 \Device\Harddisk2\DR2\Partition0 - ok 11:23:54.0608 2400 ============================================================ 11:23:54.0608 2400 Scan finished 11:23:54.0608 2400 ============================================================ 11:23:54.0614 3268 Detected object count: 1 11:23:54.0614 3268 Actual detected object count: 1 11:24:05.0076 3268 IntcAzAudAddService ( ForgedFile.Multi.Generic ) - skipped by user 11:24:05.0076 3268 IntcAzAudAddService ( ForgedFile.Multi.Generic ) - User select action: Skip ++
  6. Non apparement pas mieux, en ouvrnt mon pc Avira ma indiqué le même problème. Lien CJoint.com BGzka7LJIXl Malwarebytes Anti-Malware 1.62.0.1300 www.malwarebytes.org Version de la base de données: v2012.07.25.01 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 8.0.7601.17514 Christine :: CHRISTINE-PC [administrateur] 25/07/2012 10:05:02 mbam-log-2012-07-25 (10-05-02).txt Type d'examen: Examen complet (C:\|E:\|F:\|) Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM Options d'examen désactivées: P2P Elément(s) analysé(s): 463372 Temps écoulé: 50 minute(s), 34 seconde(s) Processus mémoire détecté(s): 0 (Aucun élément nuisible détecté) Module(s) mémoire détecté(s): 0 (Aucun élément nuisible détecté) Clé(s) du Registre détectée(s): 0 (Aucun élément nuisible détecté) Valeur(s) du Registre détectée(s): 0 (Aucun élément nuisible détecté) Elément(s) de données du Registre détecté(s): 0 (Aucun élément nuisible détecté) Dossier(s) détecté(s): 0 (Aucun élément nuisible détecté) Fichier(s) détecté(s): 0 (Aucun élément nuisible détecté) (fin)
  7. Yop # AdwCleaner v1.703 - Rapport créé le 24/07/2012 à 23:41:51 # Mis à jour le 20/07/2012 par Xplode # Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits) # Nom d'utilisateur : Christine - CHRISTINE-PC # Exécuté depuis : C:\Users\Christine\Desktop\adwcleaner.exe # Option [suppression] ***** [services] ***** ***** [Fichiers / Dossiers] ***** Dossier Supprimé : C:\Users\Christine\AppData\Local\Conduit Dossier Supprimé : C:\Users\Christine\AppData\LocalLow\Conduit Dossier Supprimé : C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\740o7cyx.default\ConduitCommon Dossier Supprimé : C:\Program Files (x86)\Conduit ***** [Registre] ***** [*] Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT2801948 Clé Supprimée : HKCU\Software\AppDataLow\Software\Conduit Clé Supprimée : HKCU\Software\AppDataLow\Toolbar Clé Supprimée : HKCU\Software\Conduit Clé Supprimée : HKLM\SOFTWARE\Conduit ***** [Registre - GUID] ***** Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5} Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E} Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} [x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} ***** [Navigateurs] ***** -\\ Internet Explorer v8.0.7601.17514 [OK] Le registre ne contient aucune entrée illégitime. -\\ Mozilla Firefox v14.0.1 (fr) Nom du profil : default Fichier : C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\740o7cyx.default\prefs.js Supprimée : user_pref("CT2801948..clientLogIsEnabled", false); Supprimée : user_pref("CT2801948..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...] Supprimée : user_pref("CT2801948..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...] Supprimée : user_pref("CT2801948.ALLOW_SHOWING_HIDDEN_TOOLBAR", false); Supprimée : user_pref("CT2801948.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx"); Supprimée : user_pref("CT2801948.BrowserCompStateIsOpen_129797777221477754", true); Supprimée : user_pref("CT2801948.BrowserCompStateIsOpen_129797786124759251", true); Supprimée : user_pref("CT2801948.BrowserCompStateIsOpen_129798077186217960", true); Supprimée : user_pref("CT2801948.BrowserCompStateIsOpen_129799503686523541", true); Supprimée : user_pref("CT2801948.BrowserCompStateIsOpen_129815072111847605", true); Supprimée : user_pref("CT2801948.CTID", "CT2801948"); Supprimée : user_pref("CT2801948.CurrentServerDate", "24-7-2012"); Supprimée : user_pref("CT2801948.DSInstall", false); Supprimée : user_pref("CT2801948.DialogsAlignMode", "LTR"); Supprimée : user_pref("CT2801948.DialogsGetterLastCheckTime", "Sun Jul 22 2012 20:58:33 GMT+0200"); Supprimée : user_pref("CT2801948.DownloadReferralCookieData", ""); Supprimée : user_pref("CT2801948.EMailNotifierPollDate", "Sun Apr 15 2012 14:14:53 GMT+0200"); Supprimée : user_pref("CT2801948.FirstServerDate", "15-4-2012"); Supprimée : user_pref("CT2801948.FirstTime", true); Supprimée : user_pref("CT2801948.FirstTimeFF3", true); Supprimée : user_pref("CT2801948.FixPageNotFoundErrors", true); Supprimée : user_pref("CT2801948.GroupingServerCheckInterval", 1440); Supprimée : user_pref("CT2801948.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/"); Supprimée : user_pref("CT2801948.HPInstall", false); Supprimée : user_pref("CT2801948.HasUserGlobalKeys", true); Supprimée : user_pref("CT2801948.Initialize", true); Supprimée : user_pref("CT2801948.InitializeCommonPrefs", true); Supprimée : user_pref("CT2801948.InstallationAndCookieDataSentCount", 3); Supprimée : user_pref("CT2801948.InstallationId", "ConduitNSISIntegration"); Supprimée : user_pref("CT2801948.InstallationType", "ConduitXPEIntegration"); Supprimée : user_pref("CT2801948.InstalledDate", "Sun Apr 15 2012 14:14:53 GMT+0200"); Supprimée : user_pref("CT2801948.InvalidateCache", false); Supprimée : user_pref("CT2801948.IsGrouping", false); Supprimée : user_pref("CT2801948.IsInitSetupIni", true); Supprimée : user_pref("CT2801948.IsMulticommunity", false); Supprimée : user_pref("CT2801948.IsOpenThankYouPage", false); Supprimée : user_pref("CT2801948.IsOpenUninstallPage", true); Supprimée : user_pref("CT2801948.LanguagePackLastCheckTime", "Tue Jul 24 2012 21:23:36 GMT+0200"); Supprimée : user_pref("CT2801948.LanguagePackReloadIntervalMM", 1440); Supprimée : user_pref("CT2801948.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...] Supprimée : user_pref("CT2801948.LastLogin_3.10.0.1", "Sun Apr 15 2012 14:14:54 GMT+0200"); Supprimée : user_pref("CT2801948.LastLogin_3.12.0.7", "Wed Apr 25 2012 18:00:04 GMT+0200"); Supprimée : user_pref("CT2801948.LastLogin_3.12.2.3", "Wed May 30 2012 17:18:57 GMT+0200"); Supprimée : user_pref("CT2801948.LastLogin_3.13.0.6", "Sun Jul 15 2012 19:42:12 GMT+0200"); Supprimée : user_pref("CT2801948.LastLogin_3.14.1.0", "Tue Jul 24 2012 19:12:46 GMT+0200"); Supprimée : user_pref("CT2801948.LatestVersion", "3.14.1.0"); Supprimée : user_pref("CT2801948.Locale", "en-us"); Supprimée : user_pref("CT2801948.MCDetectTooltipHeight", "83"); Supprimée : user_pref("CT2801948.MCDetectTooltipShow", false); Supprimée : user_pref("CT2801948.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1"); Supprimée : user_pref("CT2801948.MCDetectTooltipWidth", "295"); Supprimée : user_pref("CT2801948.MyStuffEnabledAtInstallation", true); Supprimée : user_pref("CT2801948.OriginalFirstVersion", "3.10.0.1"); Supprimée : user_pref("CT2801948.RadioIsPodcast", false); Supprimée : user_pref("CT2801948.RadioLastCheckTime", "Sun Apr 15 2012 14:14:55 GMT+0200"); Supprimée : user_pref("CT2801948.RadioLastUpdateIPServer", "3"); Supprimée : user_pref("CT2801948.RadioLastUpdateServer", "129307496595170000"); Supprimée : user_pref("CT2801948.RadioMediaID", "21435220"); Supprimée : user_pref("CT2801948.RadioMediaType", "Media Player"); Supprimée : user_pref("CT2801948.RadioMenuSelectedID", "EBRadioMenu_CT280194821435220"); Supprimée : user_pref("CT2801948.RadioShrinkedFromSetup", false); Supprimée : user_pref("CT2801948.RadioStationName", "Virgin%20Radio%20Classic%20Rock"); Supprimée : user_pref("CT2801948.RadioStationURL", "hxxp://www.smgradio.com/core/audio/wmp/live.asx?service=vcbb[...] Supprimée : user_pref("CT2801948.SearchCaption", "NCH EN Customized Web Search"); Supprimée : user_pref("CT2801948.SearchFromAddressBarIsInit", true); Supprimée : user_pref("CT2801948.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT280[...] Supprimée : user_pref("CT2801948.SearchInNewTabEnabled", true); Supprimée : user_pref("CT2801948.SearchInNewTabIntervalMM", 1440); Supprimée : user_pref("CT2801948.SearchInNewTabLastCheckTime", "Tue Jul 24 2012 21:23:36 GMT+0200"); Supprimée : user_pref("CT2801948.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...] Supprimée : user_pref("CT2801948.SendProtectorDataViaLogin", true); Supprimée : user_pref("CT2801948.ServiceMapLastCheckTime", "Tue Jul 24 2012 21:23:36 GMT+0200"); Supprimée : user_pref("CT2801948.SettingsLastCheckTime", "Tue Jul 24 2012 19:12:45 GMT+0200"); Supprimée : user_pref("CT2801948.SettingsLastUpdate", "1342807346"); Supprimée : user_pref("CT2801948.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT2801948&SearchSource=13"); Supprimée : user_pref("CT2801948.ThirdPartyComponentsInterval", 504); Supprimée : user_pref("CT2801948.ThirdPartyComponentsLastCheck", "Sun Apr 15 2012 14:14:53 GMT+0200"); Supprimée : user_pref("CT2801948.ThirdPartyComponentsLastUpdate", "1312887586"); Supprimée : user_pref("CT2801948.ToolbarShrinkedFromSetup", false); Supprimée : user_pref("CT2801948.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2801948"); Supprimée : user_pref("CT2801948.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,clien[...] Supprimée : user_pref("CT2801948.UserID", "UN02801557416482536"); Supprimée : user_pref("CT2801948.alertChannelId", "1194029"); Supprimée : user_pref("CT2801948.approveUntrustedApps", false); Supprimée : user_pref("CT2801948.autoDisableScopes", -1); Supprimée : user_pref("CT2801948.components.129306881624250628", false); Supprimée : user_pref("CT2801948.components.129306881624563129", false); Supprimée : user_pref("CT2801948.components.129306881632844577", false); Supprimée : user_pref("CT2801948.components.129311958650656383", false); Supprimée : user_pref("CT2801948.components.129311959839444431", false); Supprimée : user_pref("CT2801948.components.129343840936544328", false); Supprimée : user_pref("CT2801948.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.c[...] Supprimée : user_pref("CT2801948.globalFirstTimeInfoLastCheckTime", "Sun Apr 15 2012 14:14:53 GMT+0200"); Supprimée : user_pref("CT2801948.homepageProtectorEnableByLogin", true); Supprimée : user_pref("CT2801948.initDone", true); Supprimée : user_pref("CT2801948.isAppTrackingManagerOn", true); Supprimée : user_pref("CT2801948.isFirstRadioInstallation", false); Supprimée : user_pref("CT2801948.myStuffEnabled", true); Supprimée : user_pref("CT2801948.myStuffPublihserMinWidth", 400); Supprimée : user_pref("CT2801948.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...] Supprimée : user_pref("CT2801948.myStuffServiceIntervalMM", 1440); Supprimée : user_pref("CT2801948.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...] Supprimée : user_pref("CT2801948.navigateToUrlOnSearch", false); Supprimée : user_pref("CT2801948.revertSettingsEnabled", true); Supprimée : user_pref("CT2801948.searchProtectorDialogDelayInSec", 10); Supprimée : user_pref("CT2801948.searchProtectorEnableByLogin", true); Supprimée : user_pref("CT2801948.testingCtid", ""); Supprimée : user_pref("CT2801948.toolbarAppMetaDataLastCheckTime", "Tue Jul 24 2012 21:23:36 GMT+0200"); Supprimée : user_pref("CT2801948.toolbarContextMenuLastCheckTime", "Sun Apr 15 2012 14:14:55 GMT+0200"); Supprimée : user_pref("CT2801948.usagesFlag", 2); Supprimée : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2801948/CT2801948[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1194029/1189706/BE", "\"0\"[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2801948", [...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.10[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://newtab.conduit-hosting.com/newtab/?ctid=CT2801948", "\"17911[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2801948",[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Tapuz/idel.gif", "[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Tapuz/minimize.gif[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Tapuz/play.gif", "[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Tapuz/stop.gif", "[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Tapuz/vol.gif", "\[...] Supprimée : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en-us", "\"[...] Supprimée : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Christine\\AppData\\Roaming\\Mozill[...] Supprimée : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.10.0.1"); Supprimée : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", ""); Supprimée : user_pref("CommunityToolbar.ToolbarsList", "CT2801948"); Supprimée : user_pref("CommunityToolbar.ToolbarsList2", "CT2801948"); Supprimée : user_pref("CommunityToolbar.ToolbarsList4", "CT2801948"); Supprimée : user_pref("CommunityToolbar.globalUserId", "2b8fbbdd-175d-43ae-892d-ffd196c2dc9b"); Supprimée : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true); Supprimée : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true); Supprimée : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT2801948"); Supprimée : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Sun Apr 15 2012 14:14:5[...] Supprimée : user_pref("CommunityToolbar.notifications.alertInfoInterval", 60); Supprimée : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Sun Apr 15 2012 14:15:03 GMT+020[...] Supprimée : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com"); Supprimée : user_pref("CommunityToolbar.notifications.locale", "en"); Supprimée : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440); Supprimée : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Sun Apr 15 2012 14:14:54 GMT+0200"); Supprimée : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611"); Supprimée : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20); Supprimée : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com"); Supprimée : user_pref("CommunityToolbar.notifications.showTrayIcon", false); Supprimée : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300); Supprimée : user_pref("CommunityToolbar.notifications.userId", "23fa9ad1-c620-4582-aad1-001eb44f2393"); Supprimée : user_pref("CommunityToolbar.originalHomepage", "hxxp://www.google.be/ig?hl=fr&source=iglk"); Supprimée : user_pref("CommunityToolbar.originalSearchEngine", "chrome://browser-region/locale/region.properties[...] Supprimée : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2801948&q="); ************************* AdwCleaner[s1].txt - [15520 octets] - [24/07/2012 23:41:51] ########## EOF - C:\AdwCleaner[s1].txt - [15649 octets] ##########
  8. Merci pour ta réponse rapide, voici le rapport. ComboFix 12-07-25.04 - Christine 24/07/2012 22:28:29.1.4 - x64 Microsoft Windows 7 Édition Familiale Premium 6.1.7601.1.1252.32.1036.18.4095.3039 [GMT 2:00] Lancé depuis: c:\users\Christine\Desktop\ComboFix.exe AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\Christine\AppData\Local\Microsoft\Windows\Temporary Internet Files\{7702FBDB-A504-44C5-A9F9-26E9FAD28C55}.xps c:\windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\@ c:\windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\n c:\windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\U\00000001.@ c:\windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\U\80000000.@ c:\windows\Installer\{29b08001-c439-6890-203c-2d8349d0a156}\U\800000cb.@ c:\windows\SysWow64\cc32100mt.dll c:\windows\SysWow64\muzapp.exe . Une copie infectée de c:\windows\system32\services.exe a été trouvée et désinfectée Copie restaurée à partir de - c:\32788r22fwjfw\HarddiskVolumeShadowCopy1_!Windows!System32!services.exe . . ((((((((((((((((((((((((((((( Fichiers créés du 2012-06-24 au 2012-07-24 )))))))))))))))))))))))))))))))))))) . . 2012-07-24 20:31 . 2012-07-24 20:31 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2012-07-24 20:31 . 2012-07-24 20:31 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-07-24 07:29 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{6AAEB40A-65DF-4AA5-A887-CFCFBB79A548}\mpengine.dll 2012-07-11 17:18 . 2012-06-12 03:08 3148800 ----a-w- c:\windows\system32\win32k.sys 2012-07-09 19:10 . 2012-07-09 19:10 -------- d-----w- c:\program files (x86)\MyFree Codec 2012-07-09 19:05 . 2012-07-09 19:05 -------- d-----w- C:\Temp 2012-07-09 19:01 . 2012-06-04 07:59 99384 ----a-w- c:\windows\system32\drivers\ssudbus.sys 2012-07-09 19:01 . 2012-06-04 07:59 203320 ----a-w- c:\windows\system32\drivers\ssudmdm.sys 2012-07-09 18:57 . 2012-07-09 18:57 -------- d-----w- c:\users\Christine\AppData\Local\Samsung 2012-07-09 18:57 . 2012-07-09 18:57 -------- d-----w- c:\users\Christine\AppData\Roaming\Samsung 2012-07-09 18:54 . 2012-05-23 16:50 4659712 ----a-w- c:\windows\SysWow64\Redemption.dll 2012-07-09 18:54 . 2012-07-09 18:54 -------- d-----w- c:\program files (x86)\MarkAny 2012-07-09 18:54 . 2012-05-23 16:49 821824 ----a-w- c:\windows\SysWow64\dgderapi.dll 2012-07-09 18:54 . 2012-07-09 18:54 -------- d-----w- c:\program files (x86)\Samsung 2012-07-09 18:54 . 2012-07-09 18:54 -------- d-----w- c:\programdata\Samsung 2012-07-09 18:46 . 2012-07-09 18:46 -------- d-----w- c:\users\Christine\AppData\Local\Downloaded Installations . . . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2012-07-24 19:48 . 2012-04-06 18:25 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2012-07-24 19:48 . 2011-12-29 16:47 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2012-07-11 17:16 . 2011-03-14 18:21 59701280 ----a-w- c:\windows\system32\MRT.exe 2012-06-02 22:19 . 2012-06-19 15:53 38424 ----a-w- c:\windows\system32\wups.dll 2012-06-02 22:19 . 2012-06-19 15:53 2428952 ----a-w- c:\windows\system32\wuaueng.dll 2012-06-02 22:19 . 2012-06-19 15:53 57880 ----a-w- c:\windows\system32\wuauclt.exe 2012-06-02 22:19 . 2012-06-19 15:53 44056 ----a-w- c:\windows\system32\wups2.dll 2012-06-02 22:19 . 2012-06-19 15:53 701976 ----a-w- c:\windows\system32\wuapi.dll 2012-06-02 22:15 . 2012-06-19 15:53 2622464 ----a-w- c:\windows\system32\wucltux.dll 2012-06-02 22:15 . 2012-06-19 15:53 99840 ----a-w- c:\windows\system32\wudriver.dll 2012-06-02 13:19 . 2012-06-19 15:53 186752 ----a-w- c:\windows\system32\wuwebv.dll 2012-06-02 13:15 . 2012-06-19 15:53 36864 ----a-w- c:\windows\system32\wuapp.exe 2012-05-31 10:25 . 2011-03-13 18:08 279656 ------w- c:\windows\system32\MpSigStub.exe 2012-05-28 22:38 . 2012-05-28 22:38 330240 ----a-w- c:\windows\MASetupCaller.dll 2012-05-24 21:18 . 2012-05-24 21:18 4472832 ----a-w- c:\windows\SysWow64\GPhotos.scr 2012-05-23 16:49 . 2012-05-23 16:49 90112 ----a-w- c:\windows\MAMCityDownload.ocx 2012-05-23 16:49 . 2012-05-23 16:49 30568 ----a-w- c:\windows\MusiccityDownload.exe 2012-05-23 16:49 . 2012-05-23 16:49 974848 ----a-w- c:\windows\SysWow64\cis-2.4.dll 2012-05-23 16:49 . 2012-05-23 16:49 81920 ----a-w- c:\windows\SysWow64\issacapi_bs-2.3.dll 2012-05-23 16:49 . 2012-05-23 16:49 65536 ----a-w- c:\windows\SysWow64\issacapi_pe-2.3.dll 2012-05-23 16:49 . 2012-05-23 16:49 57344 ----a-w- c:\windows\SysWow64\MTXSYNCICON.dll 2012-05-23 16:49 . 2012-05-23 16:49 57344 ----a-w- c:\windows\SysWow64\MK_Lyric.dll 2012-05-23 16:49 . 2012-05-23 16:49 57344 ----a-w- c:\windows\SysWow64\issacapi_se-2.3.dll 2012-05-23 16:49 . 2012-05-23 16:49 569344 ----a-w- c:\windows\SysWow64\muzdecode.ax 2012-05-23 16:49 . 2012-05-23 16:49 491520 ----a-w- c:\windows\SysWow64\muzapp.dll 2012-05-23 16:49 . 2012-05-23 16:49 49152 ----a-w- c:\windows\SysWow64\MaJGUILib.dll 2012-05-23 16:49 . 2012-05-23 16:49 45320 ----a-w- c:\windows\SysWow64\MAMACExtract.dll 2012-05-23 16:49 . 2012-05-23 16:49 45056 ----a-w- c:\windows\SysWow64\MaXMLProto.dll 2012-05-23 16:49 . 2012-05-23 16:49 45056 ----a-w- c:\windows\SysWow64\MACXMLProto.dll 2012-05-23 16:49 . 2012-05-23 16:49 40960 ----a-w- c:\windows\SysWow64\MTTELECHIP.dll 2012-05-23 16:49 . 2012-05-23 16:49 352256 ----a-w- c:\windows\SysWow64\MSLUR71.dll 2012-05-23 16:49 . 2012-05-23 16:49 258048 ----a-w- c:\windows\SysWow64\muzoggsp.ax 2012-05-23 16:49 . 2012-05-23 16:49 245760 ----a-w- c:\windows\SysWow64\MSCLib.dll 2012-05-23 16:49 . 2012-05-23 16:49 24576 ----a-w- c:\windows\SysWow64\MASetupCleaner.exe 2012-05-23 16:49 . 2012-05-23 16:49 200704 ----a-w- c:\windows\SysWow64\muzwmts.dll 2012-05-23 16:49 . 2012-05-23 16:49 155648 ----a-w- c:\windows\SysWow64\MSFLib.dll 2012-05-23 16:49 . 2012-05-23 16:49 143360 ----a-w- c:\windows\SysWow64\3DAudio.ax 2012-05-23 16:49 . 2012-05-23 16:49 135168 ----a-w- c:\windows\SysWow64\muzaf1.dll 2012-05-23 16:49 . 2012-05-23 16:49 131072 ----a-w- c:\windows\SysWow64\muzmpgsp.ax 2012-05-23 16:49 . 2012-05-23 16:49 122880 ----a-w- c:\windows\SysWow64\muzeffect.ax 2012-05-23 16:49 . 2012-05-23 16:49 118784 ----a-w- c:\windows\SysWow64\MaDRM.dll 2012-05-23 16:49 . 2012-05-23 16:49 110592 ----a-w- c:\windows\SysWow64\muzmp4sp.ax 2012-05-15 04:01 . 2012-06-13 17:31 1188864 ----a-w- c:\windows\system32\wininet.dll 2012-05-15 03:59 . 2012-06-13 17:31 64512 ----a-w- c:\windows\system32\jsproxy.dll 2012-05-15 03:03 . 2012-06-13 17:31 981504 ----a-w- c:\windows\SysWow64\wininet.dll 2012-05-08 16:25 . 2012-02-09 19:31 98848 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2012-05-08 16:25 . 2012-02-09 19:31 132832 ----a-w- c:\windows\system32\drivers\avipbb.sys 2012-05-04 11:06 . 2012-06-13 17:30 5559664 ----a-w- c:\windows\system32\ntoskrnl.exe 2012-05-04 10:03 . 2012-06-13 17:30 3968368 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2012-05-04 10:03 . 2012-06-13 17:30 3913072 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2012-05-01 05:40 . 2012-06-13 17:30 209920 ----a-w- c:\windows\system32\profsvc.dll 2012-04-28 03:55 . 2012-06-13 17:30 210944 ----a-w- c:\windows\system32\drivers\rdpwd.sys 2012-04-26 05:41 . 2012-06-13 17:30 77312 ----a-w- c:\windows\system32\rdpwsx.dll 2012-04-26 05:41 . 2012-06-13 17:30 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll 2012-04-26 05:34 . 2012-06-13 17:30 9216 ----a-w- c:\windows\system32\rdrmemptylst.exe . . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 . [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks] "{37483b40-c254-4a72-bda4-22ee90182c1e}"= "c:\program files (x86)\NCH_EN\prxtbNCH_.dll" [2011-05-09 176936] . [HKEY_CLASSES_ROOT\clsid\{37483b40-c254-4a72-bda4-22ee90182c1e}] . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{37483b40-c254-4a72-bda4-22ee90182c1e}] 2011-05-09 08:49 176936 ----a-w- c:\program files (x86)\NCH_EN\prxtbNCH_.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{37483b40-c254-4a72-bda4-22ee90182c1e}"= "c:\program files (x86)\NCH_EN\prxtbNCH_.dll" [2011-05-09 176936] . [HKEY_CLASSES_ROOT\clsid\{37483b40-c254-4a72-bda4-22ee90182c1e}] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584] "KiesPDLR"="c:\program files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2012-07-03 21432] "KiesPreload"="c:\program files (x86)\Samsung\Kies\Kies.exe" [2012-07-03 975288] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "BCSSync"="e:\microsoft office\Office14\BCSSync.exe" [2010-03-13 91520] "LifeCam"="c:\program files (x86)\Microsoft LifeCam\LifeExp.exe" [2010-05-20 119152] "HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2009-08-28 2252800] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2012-05-08 348624] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696] "KiesTrayAgent"="c:\program files (x86)\Samsung\Kies\KiesTrayAgent.exe" [2012-07-03 3524536] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-03-01 2348352] R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-24 250056] R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [2012-06-04 99384] R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;e:\microsoft office\Office14\GROOVE.EXE [2010-03-25 30969208] R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-07-19 113120] R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184] R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [2012-06-04 203320] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392] R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2011-03-14 1255736] S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [2011-12-15 27760] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952] S2 AntiVirSchedulerService;Avira Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2012-05-08 86224] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-02-29 382272] S3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys [2011-07-28 52584] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [2012-01-17 188224] S3 Point64;Microsoft IntelliPoint Filter Driver;c:\windows\system32\DRIVERS\point64.sys [2011-04-13 45432] S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2009-08-17 1235968] . . Contenu du dossier 'Tâches planifiées' . 2012-07-24 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-06 19:48] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "VX3000"="c:\windows\vVX3000.exe" [2010-05-20 762736] "IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2011-04-13 2399632] "itype"="c:\program files\Microsoft IntelliType Pro\itype.exe" [2011-08-10 1873256] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 . ------- Examen supplémentaire ------- . uLocal Page = c:\windows\system32\blank.htm uDefault_Search_URL = hxxp://www.google.com/ie mLocal Page = c:\windows\SysWOW64\blank.htm uSearchAssistant = hxxp://www.google.com/ie uSearchURL,(Default) = hxxp://www.google.com/search?q=%s IE: &Envoyer à OneNote - e:\micros~1\Office14\ONBttnIE.dll/105 IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xporter vers Microsoft Excel - e:\micros~1\Office14\EXCEL.EXE/3000 TCP: DhcpNameServer = 195.130.130.129 195.130.131.129 FF - ProfilePath - c:\users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\740o7cyx.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.be/ig?hl=fr&source=iglk FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2801948&q= FF - prefs.js: network.proxy.type - 0 . - - - - ORPHELINS SUPPRIMES - - - - . Wow6432Node-HKCU-Run-KiesAirMessage - c:\program files (x86)\Samsung\Kies\KiesAirMessage.exe WebBrowser-{37483B40-C254-4A72-BDA4-22EE90182C1E} - (no file) AddRemove-{32EF6D8E-0746-417C-8EE4-D8DA50F4030A}_is1 - d:\install-studio-scrap-v4\unins000.exe . . . --------------------- CLES DE REGISTRE BLOQUEES --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_265_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_265_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_265.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_265.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_265.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_265.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Autres processus actifs ------------------------ . c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe . ************************************************************************** . Heure de fin: 2012-07-24 22:34:45 - La machine a redémarré ComboFix-quarantined-files.txt 2012-07-24 20:34 . Avant-CF: 15.521.619.968 octets libres Après-CF: 15.970.820.096 octets libres . - - End Of File - - 7869A99D0F3ABA421F92CF5CB2AC6B68
  9. Bonjour, Ca y est j'ai probablement chopé le "TR/ATRAPS.Gen2" suivant Avira qui me le rappele chaque fois. Je fais donc appel à votre formidable equipe pour eradiqué ce petit salopiau Merci d'avance Udolfo
  10. J'ai résolu mon problème ! J'ai simplement vidé le dossier temporaire et relancé l'installation qui s'est déroulée sans problème A++
  11. Non les pilotes s'installent correctement puisque à un certain moment Xp reconnait qu'il y a un scanner d'installé. Le problème se situe au niveau du programme de numérisation qui plante lors de l'installation
  12. Bonjour, je viens d'acquérir un nouveau scanner epson V100 et lorsque j'installe le programme epson scan (dernière version téléchargée sur leur site ou celui du cd) celui-ci se plante à chaque fois. "L'installation a échoué lors de la copie des fichiers. Vérifier le disque d'installation. C:\DOCUME~\FRANOI~\LOCALS~1\Temp\setup.exe" Je suis sous Windows XPSP2. Merci pour le coup de pouce.
  13. Salut Regis, Voici le scan panda Incident Status Location Spyware:Cookie/fe.lea.lycos Not disinfected C:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\uuoh3u97.default\cookies.txt[fe.lea.lycos.fr/] Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\uuoh3u97.default\cookies.txt[landing.domainsponsor.com/] Spyware:Cookie/3 Not disinfected C:\Documents and Settings\François\Cookies\françois@3[2].txt Spyware:Cookie/64.62.232 Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][5].txt Spyware:Cookie/888 Not disinfected C:\Documents and Settings\François\Cookies\françois@888[1].txt Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/Gorillanation Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][1].txt Spyware:Cookie/adultfriendfinder Not disinfected C:\Documents and Settings\François\Cookies\françois@adultfriendfinder[2].txt Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\François\Cookies\françois@atwola[1].txt Spyware:Cookie/Azjmp Not disinfected C:\Documents and Settings\François\Cookies\françois@azjmp[2].txt Spyware:Cookie/Bns1 Not disinfected C:\Documents and Settings\François\Cookies\françois@bns1[2].txt Spyware:Cookie/Barelylegal Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][1].txt Spyware:Cookie/GoStats Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/Ccbill Not disinfected C:\Documents and Settings\François\Cookies\françois@ccbill[2].txt Spyware:Cookie/Cd Freaks Not disinfected C:\Documents and Settings\François\Cookies\françois@cdfreaks[2].txt Spyware:Cookie/Cd Freaks Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][1].txt Spyware:Cookie/Sexsuche Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/Kazaa Networks Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/fe.lea.lycos Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][1].txt Spyware:Cookie/fe.lea.lycos Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/fe.lea.lycos Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][4].txt Spyware:Cookie/Go Not disinfected C:\Documents and Settings\François\Cookies\françois@go[1].txt Spyware:Cookie/Kount Not disinfected C:\Documents and Settings\François\Cookies\françois@kount[1].txt Spyware:Cookie/Rightmedia Not disinfected C:\Documents and Settings\François\Cookies\françois@rightmedia[2].txt Spyware:Cookie/Tucows Not disinfected C:\Documents and Settings\François\Cookies\françois@tucows[1].txt Spyware:Cookie/WebPower Not disinfected C:\Documents and Settings\François\Cookies\françois@webpower[2].txt Spyware:Cookie/ademails Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/Advnt Not disinfected C:\Documents and Settings\François\Cookies\franç[email protected][1].txt Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\François\Cookies\françois@xiti[1].txt Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\François\Cookies\françois@xiti[3].txt Possible Virus. Not disinfected E:\Documents and Settings\François\Bureau\Rep infection\kazaabegone\KazaaBegone.exe Possible Virus. Not disinfected E:\Documents and Settings\François\Bureau\Rep infection\kazaabegone.zip[KazaaBegone.exe] Potentially unwanted tool:Application/Processor Not disinfected E:\Documents and Settings\François\Bureau\Rep infection\SmitfraudFix\SmitfraudFix\Process.exe Possible Virus. Not disinfected E:\Documents and Settings\François\Bureau\Rep infection\SmitfraudFix\SmitfraudFix\swreg.exe Potentially unwanted tool:Application/Processor Not disinfected E:\Documents and Settings\François\Bureau\Rep infection\SmitfraudFix.zip[smitfraudFix/Process.exe] Possible Virus. Not disinfected E:\Documents and Settings\François\Bureau\Rep infection\SmitfraudFix.zip[smitfraudFix/swreg.exe] Potentially unwanted tool:Application/Processor Not disinfected E:\Documents and Settings\François\Bureau\SmitfraudFix\Process.exe Potentially unwanted tool:Application/Processor Not disinfected E:\Documents and Settings\François\Bureau\SmitfraudFix\SmitfraudFix.zip[smitfraudFix/Process.exe] Spyware:Cookie/Doubleclick Not disinfected E:\Documents and Settings\François\Cookies\françois@doubleclick[1].txt Spyware:Cookie/MetriWeb Not disinfected E:\Documents and Settings\François\Cookies\françois@metriweb[1].txt Spyware:Cookie/3 Not disinfected L:\disque c\Cookies\françois@3[2].txt Spyware:Cookie/888 Not disinfected L:\disque c\Cookies\françois@888[1].txt Spyware:Cookie/Gorillanation Not disinfected L:\disque c\Cookies\franç[email protected][1].txt Spyware:Cookie/adultfriendfinder Not disinfected L:\disque c\Cookies\françois@adultfriendfinder[2].txt Spyware:Cookie/Azjmp Not disinfected L:\disque c\Cookies\françois@azjmp[2].txt Spyware:Cookie/Beweb Not disinfected L:\disque c\Cookies\françois@beweb[2].txt Spyware:Cookie/Barelylegal Not disinfected L:\disque c\Cookies\franç[email protected][1].txt Spyware:Cookie/GoStats Not disinfected L:\disque c\Cookies\franç[email protected][2].txt Spyware:Cookie/Ccbill Not disinfected L:\disque c\Cookies\françois@ccbill[2].txt Spyware:Cookie/Cd Freaks Not disinfected L:\disque c\Cookies\françois@cdfreaks[2].txt Spyware:Cookie/Cd Freaks Not disinfected L:\disque c\Cookies\franç[email protected][1].txt Spyware:Cookie/Kazaa Networks Not disinfected L:\disque c\Cookies\franç[email protected][2].txt Spyware:Cookie/fe.lea.lycos Not disinfected L:\disque c\Cookies\franç[email protected][1].txt Spyware:Cookie/fe.lea.lycos Not disinfected L:\disque c\Cookies\franç[email protected][2].txt Spyware:Cookie/Go Not disinfected L:\disque c\Cookies\françois@go[1].txt Spyware:Cookie/Rightmedia Not disinfected L:\disque c\Cookies\françois@rightmedia[2].txt Spyware:Cookie/WebPower Not disinfected L:\disque c\Cookies\françois@webpower[2].txt Spyware:Cookie/Xiti Not disinfected L:\disque c\Cookies\françois@xiti[1].txt
  14. Salut Régis Voila j"espère avoir tout bien nettoyé ------------------------------------------------------- AVG Anti-Spyware - Rapport d'analyse --------------------------------------------------------- + Créé à: 13:13:45 10/12/2006 + Résultat de l'analyse: E:\System Volume Information\_restore{1F2D333E-EF67-4F44-814E-E46489AF0BDC}\RP25\A0005116.exe -> Adware.Searchcolor : Ignoré. :mozilla.263:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé. :mozilla.45:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé. :mozilla.46:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé. :mozilla.86:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé. :mozilla.87:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé. :mozilla.176:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé. :mozilla.40:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé. :mozilla.127:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé. :mozilla.71:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé. :mozilla.73:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé. :mozilla.74:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé. :mozilla.24:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé. :mozilla.117:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Esomniture : Nettoyé. :mozilla.246:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Esomniture : Nettoyé. :mozilla.47:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Esomniture : Nettoyé. :mozilla.61:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Esomniture : Nettoyé. :mozilla.194:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Estat : Nettoyé. :mozilla.103:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Euroclick : Nettoyé. :mozilla.104:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Euroclick : Nettoyé. :mozilla.105:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Euroclick : Nettoyé. :mozilla.106:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Euroclick : Nettoyé. :mozilla.138:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé. :mozilla.139:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé. :mozilla.140:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé. :mozilla.141:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé. :mozilla.142:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé. :mozilla.159:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.207:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.281:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.124:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé. :mozilla.125:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé. :mozilla.144:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Overture : Nettoyé. :mozilla.146:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé. :mozilla.147:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé. :mozilla.148:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé. :mozilla.149:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé. :mozilla.150:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé. :mozilla.179:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.180:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.181:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.182:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.183:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.57:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé. :mozilla.59:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé. :mozilla.60:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé. :mozilla.157:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé. :mozilla.78:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé. :mozilla.79:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé. :mozilla.143:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Tribalfusion : Nettoyé. :mozilla.233:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé. :mozilla.212:E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt -> TrackingCookie.Yadro : Nettoyé. Fin du rapport Incident Statut Analyse Spyware:Cookie/fe.lea.lycos No Désinfecté C:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\uuoh3u97.default\cookies.txt[fe.lea.lycos.fr/] Spyware:Cookie/DomainSponsor No Désinfecté C:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\uuoh3u97.default\cookies.txt[landing.domainsponsor.com/] Spyware:Cookie/3 No Désinfecté C:\Documents and Settings\François\Cookies\françois@3[2].txt Spyware:Cookie/64.62.232 No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][5].txt Spyware:Cookie/888 No Désinfecté C:\Documents and Settings\François\Cookies\françois@888[1].txt Spyware:Cookie/Com.com No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/Gorillanation No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][1].txt Spyware:Cookie/adultfriendfinder No Désinfecté C:\Documents and Settings\François\Cookies\françois@adultfriendfinder[2].txt Spyware:Cookie/Atwola No Désinfecté C:\Documents and Settings\François\Cookies\françois@atwola[1].txt Spyware:Cookie/Azjmp No Désinfecté C:\Documents and Settings\François\Cookies\françois@azjmp[2].txt Spyware:Cookie/Bns1 No Désinfecté C:\Documents and Settings\François\Cookies\françois@bns1[2].txt Spyware:Cookie/Barelylegal No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][1].txt Spyware:Cookie/GoStats No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/Ccbill No Désinfecté C:\Documents and Settings\François\Cookies\françois@ccbill[2].txt Spyware:Cookie/Cd Freaks No Désinfecté C:\Documents and Settings\François\Cookies\françois@cdfreaks[2].txt Spyware:Cookie/Cd Freaks No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][1].txt Spyware:Cookie/Sexsuche No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/Kazaa Networks No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/fe.lea.lycos No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][1].txt Spyware:Cookie/fe.lea.lycos No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/fe.lea.lycos No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][4].txt Spyware:Cookie/Go No Désinfecté C:\Documents and Settings\François\Cookies\françois@go[1].txt Spyware:Cookie/Kount No Désinfecté C:\Documents and Settings\François\Cookies\françois@kount[1].txt Spyware:Cookie/Rightmedia No Désinfecté C:\Documents and Settings\François\Cookies\françois@rightmedia[2].txt Spyware:Cookie/Tucows No Désinfecté C:\Documents and Settings\François\Cookies\françois@tucows[1].txt Spyware:Cookie/WebPower No Désinfecté C:\Documents and Settings\François\Cookies\françois@webpower[2].txt Spyware:Cookie/ademails No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][2].txt Spyware:Cookie/Advnt No Désinfecté C:\Documents and Settings\François\Cookies\franç[email protected][1].txt Spyware:Cookie/Xiti No Désinfecté C:\Documents and Settings\François\Cookies\françois@xiti[1].txt Spyware:Cookie/Xiti No Désinfecté C:\Documents and Settings\François\Cookies\françois@xiti[3].txt Spyware:Cookie/Xiti No Désinfecté E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt[.xiti.com/] Spyware:Cookie/MetriWeb No Désinfecté E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt[.metriweb.be/] Spyware:Cookie/Apmebf No Désinfecté E:\Documents and Settings\François\Application Data\Mozilla\Firefox\Profiles\i9hnghrv.default\cookies.txt[.apmebf.com/] Virus Eventuel. No Désinfecté E:\Documents and Settings\François\Bureau\Rep infection\kazaabegone\KazaaBegone.exe Virus Eventuel. No Désinfecté E:\Documents and Settings\François\Bureau\Rep infection\kazaabegone.zip[KazaaBegone.exe] Outil indésirable:Application/Processor No Désinfecté E:\Documents and Settings\François\Bureau\Rep infection\SmitfraudFix\SmitfraudFix\Process.exe Virus Eventuel. No Désinfecté E:\Documents and Settings\François\Bureau\Rep infection\SmitfraudFix\SmitfraudFix\swreg.exe Outil indésirable:Application/Processor No Désinfecté E:\Documents and Settings\François\Bureau\Rep infection\SmitfraudFix.zip[smitfraudFix/Process.exe] Virus Eventuel. No Désinfecté E:\Documents and Settings\François\Bureau\Rep infection\SmitfraudFix.zip[smitfraudFix/swreg.exe] Outil indésirable:Application/Processor No Désinfecté E:\Documents and Settings\François\Bureau\SmitfraudFix\Process.exe Outil indésirable:Application/Processor No Désinfecté E:\Documents and Settings\François\Bureau\SmitfraudFix\SmitfraudFix.zip[smitfraudFix/Process.exe] Spyware:Cookie/Atlas DMT No Désinfecté E:\Documents and Settings\François\Cookies\françois@atdmt[1].txt Spyware:Cookie/Bluestreak No Désinfecté E:\Documents and Settings\François\Cookies\françois@bluestreak[1].txt Spyware:Cookie/MetriWeb No Désinfecté E:\Documents and Settings\François\Cookies\françois@metriweb[1].txt Spyware:Cookie/Serving-sys No Désinfecté E:\Documents and Settings\François\Cookies\françois@serving-sys[1].txt Spyware:Cookie/3 No Désinfecté L:\disque c\Cookies\françois@3[2].txt Spyware:Cookie/888 No Désinfecté L:\disque c\Cookies\françois@888[1].txt Spyware:Cookie/Gorillanation No Désinfecté L:\disque c\Cookies\franç[email protected][1].txt Spyware:Cookie/adultfriendfinder No Désinfecté L:\disque c\Cookies\françois@adultfriendfinder[2].txt Spyware:Cookie/Azjmp No Désinfecté L:\disque c\Cookies\françois@azjmp[2].txt Spyware:Cookie/Beweb No Désinfecté L:\disque c\Cookies\françois@beweb[2].txt Spyware:Cookie/Barelylegal No Désinfecté L:\disque c\Cookies\franç[email protected][1].txt Spyware:Cookie/GoStats No Désinfecté L:\disque c\Cookies\franç[email protected][2].txt Spyware:Cookie/Ccbill No Désinfecté L:\disque c\Cookies\françois@ccbill[2].txt Spyware:Cookie/Cd Freaks No Désinfecté L:\disque c\Cookies\françois@cdfreaks[2].txt Spyware:Cookie/Cd Freaks No Désinfecté L:\disque c\Cookies\franç[email protected][1].txt Spyware:Cookie/Kazaa Networks No Désinfecté L:\disque c\Cookies\franç[email protected][2].txt Spyware:Cookie/fe.lea.lycos No Désinfecté L:\disque c\Cookies\franç[email protected][1].txt Spyware:Cookie/fe.lea.lycos No Désinfecté L:\disque c\Cookies\franç[email protected][2].txt Spyware:Cookie/Go No Désinfecté L:\disque c\Cookies\françois@go[1].txt Spyware:Cookie/Rightmedia No Désinfecté L:\disque c\Cookies\françois@rightmedia[2].txt Spyware:Cookie/WebPower No Désinfecté L:\disque c\Cookies\françois@webpower[2].txt Spyware:Cookie/Xiti No Désinfecté L:\disque c\Cookies\françois@xiti[1].txt A++
×
×
  • Créer...