Aller au contenu

lubu

Membres
  • Compteur de contenus

    12
  • Inscription

  • Dernière visite

Tout ce qui a été posté par lubu

  1. oui bien mieux merci de l'aide je fais un Mbam complet et je te l'envoie lb
  2. Malwarebytes' Anti-Malware 1.44 Version de la base de données: 3525 Windows 5.1.2600 Service Pack 3 Internet Explorer 7.0.5730.13 09/01/2010 08:50:15 mbam-log-2010-01-09 (08-50-15).txt Type de recherche: Examen rapide Eléments examinés: 153738 Temps écoulé: 8 minute(s), 42 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 1 Valeur(s) du Registre infectée(s): 1 Elément(s) de données du Registre infecté(s): 2 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 2 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{w0yms373-5163-dx3q-vp05-4g3pic12q4gr} (Generic.Bot.H) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\nvcpl (Trojan.Agent) -> Quarantined and deleted successfully. Elément(s) de données du Registre infecté(s): HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: (regedit.exe %1) Good: (regedit.exe "%1") -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Hijack.Userinit) -> Bad: (C:\WINDOWS\system32\userinit.exe,C:\Program Files\Fichiers communs\svchost.exe,) Good: (Userinit.exe) -> Quarantined and deleted successfully. Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): C:\Documents and Settings\LocalService.AUTORITE NT\Local Settings\Temporary Internet Files\Content.IE5\MIDS749K\ic[1].exe (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Documents and Settings\LocalService.AUTORITE NT\Local Settings\Temporary Internet Files\Content.IE5\MPLUVB80\ic[2].exe (Trojan.Vundo) -> Quarantined and deleted successfully.
  3. Bonjour, après avoir tourné "malwarebytes," voici le rapport de hijackthis Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 09:06:30, on 09/01/2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16945) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\Program Files\Fichiers communs\EPSON\eEBAPI\eEBSVC.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe C:\Program Files\Fichiers communs\EPSON\eEBAPI\SAgent2.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\BUFFALO\NASNAVI\nassvc.exe C:\Program Files\CDBurnerXP\NMSAccessU.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.exe C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe C:\WINDOWS\ALCWZRD.EXE C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Unlocker\UnlockerAssistant.exe C:\Program Files\Cobian Backup 9\Cobian.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\HomePlayer\HomePlayer.exe C:\Program Files\FreeGo\FreeGo\FreeGo.exe C:\Program Files\BUFFALO\NASNAVI\NasNavi.exe C:\Program Files\BUFFALO\NASNAVI\nassche.exe C:\Program Files\Cobian Backup 9\cbInterface.exe C:\Program Files\Spamihilator\spamihilator.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?hl=fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = F2 - REG:system.ini: Shell=Explorer.exe O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [unlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" O4 - HKLM\..\Run: [Cobian Backup 9] "C:\Program Files\Cobian Backup 9\Cobian.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [HomePlayer] C:\Program Files\HomePlayer\HomePlayer.exe -autostart O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [FreeGo] C:/Program Files/FreeGo/FreeGo/FreeGo.exe O4 - Startup: BUFFALO NAS Navigator.lnk = C:\Program Files\BUFFALO\NASNAVI\NasNavi.exe O4 - Startup: NAS Scheduler.lnk = C:\Program Files\BUFFALO\NASNAVI\nassche.exe O4 - Startup: Spamihilator.lnk = C:\Program Files\Spamihilator\spamihilator.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O16 - DPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} (JordanUploader Class) - http://photoservice.fujicolor.eu/ips-opdat...dan-canvasx.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.zebulon.fr/scan8/oscan8.cab O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://lulubcal.spaces.live.com/PhotoUpload/MsnPUpld.cab O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/5m/vir...5/installer.exe O17 - HKLM\System\CCS\Services\Tcpip\..\{195A17E1-699A-471A-AD24-DB108DF5D1D5}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CCS\Services\Tcpip\..\{80CC6918-064F-47CC-B70C-1D7EB9E50FFD}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{195A17E1-699A-471A-AD24-DB108DF5D1D5}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS3\Services\Tcpip\..\{195A17E1-699A-471A-AD24-DB108DF5D1D5}: NameServer = 212.27.40.240,212.27.40.241 O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe O23 - Service: EpsonBidirectionalService - Unknown owner - C:\Program Files\Fichiers communs\EPSON\eEBAPI\eEBSVC.exe O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\eEBAPI\SAgent2.exe O23 - Service: Freenet 0.7 darknet-8888 (freenet-darknet-8888) - Unknown owner - C:\Program Files\Freenet\bin\wrapper-windows-x86-32.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe O23 - Service: NAS PM Service (NasPmService) - BUFFALO INC. - C:\Program Files\BUFFALO\NASNAVI\nassvc.exe O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 9079 bytes merci encore
  4. depuis plusieurs jours mon PC a des problèmes d'horloge, je pensai à la pile mais j'ai constaté qu'au démarrage l'heure est bonne et ne devient erronée (16 avril 2016 à 2h10) qu'au cours du démarrage des processus. en utilisant avira anti virus j'ai trouvé un trojant TR/koblu.bqj mais rien sur internet Cela fait plusieurs fois que j'essaie d'effacer ce trojan et il est toujours là. j'ai utitilisé Zhelp et hijack this mais cela revient pouvez-vous m'aider merci lb
  5. Bonjour, j'utilise la dernière version de ZHProcess. j'ai beau effacer des avec ZHfix des items ils restent toujours (par ex: les lignes de maj java) de plus il y a detection d'un malware sur la ligne de la taille du disque??? Pouvez-voyus m'aider Lburtin Zeb Help Process v2.34.61 by Nicolas Coolman - Rapport Général du 19/11/2009 08:46:30 Rapport de ZHPDiag v1.24.26 par Nicolas Coolman Run by Administrateur at 19/11/2009 08:40:25 Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html Platform : Microsoft Windows XP (5.1.2600) Service Pack 3 MSIE: Internet Explorer v7.0.5730.13 MFIE: Mozilla Firefox (3.5.5) Total RAM: 1279 MB (39% free) System drive C: has 6 GB (19%) free of 29 GB ---\\ Processus lancés C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Unlocker\UnlockerAssistant.exe C:\Program Files\Cobian Backup 9\Cobian.exe C:\Program Files\Spamihilator\spamihilator.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\ati2sgag.exe C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe C:\Program Files\Fichiers communs\EPSON\eEBAPI\eEBSVC.exe C:\Program Files\Fichiers communs\EPSON\eEBAPI\SAgent2.exe C:\WINDOWS\system32\services.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\BUFFALO\NASNAVI\nassvc.exe0 C:\Program Files\CDBurnerXP\NMSAccessU.exe C:\WINDOWS\system32\lsass.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe slserv.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe ---\\ Plugin du navigateur Opera (P1) P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\npdsplay.dll P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\NPSWF32.dll P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\NPSWF32_FlashUtil.exe P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\npwmsdrm.dll ---\\ Pages de démarrage d'Internet Explorer (R0) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?hl=fr R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 ---\\ Pages de recherche d'Internet Explorer (R1) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm ---\\ Internet Explorer URLSearchHook (R3) R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - ---\\ Applications démarrées automatiquement par le registre (O4) O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [ZoneAlarm Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe O4 - HKLM\..\Run: [unlockerAssistant] C:\Program Files\Unlocker\UnlockerAssistant.exe O4 - HKLM\..\Run: [Cobian Backup 9] C:\Program Files\Cobian Backup 9\Cobian.exe O4 - HKLM\..\Run: [spamihilator] C:\Program Files\Spamihilator\spamihilator.exe O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKCU\..\Run: [FreeGo] C:/Program Files/FreeGo/FreeGo/FreeGo.exe O4 - HKCU\..\Run: [TomTomHOME.exe] C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe O4 - HKLM\..\policies\Explorer: [HonorAutoRunSetting] Data=1 O4 - Global Startup: Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8) O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll,201 ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File - C:\WINDOWS\system32\mswsock.dll O10 - WLSP:\000000000002\Winsock LSP File - C:\WINDOWS\system32\winrnr.dll O10 - WLSP:\000000000003\Winsock LSP File - C:\WINDOWS\system32\mswsock.dll O10 - WLSP:\000000000004\Winsock LSP File - C:\WINDOWS\system32\wshbth.dll ---\\ Objets ActiveX (Downloaded Program Files)(O16) O16 - DPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} (JordanUploader Class) - http://photoservice.fujicolor.eu/ips-opdat...dan-canvasx.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.zebulon.fr/scan8/oscan8.cab O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://lulubcal.spaces.live.com/PhotoUpload/MsnPUpld.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/5m/vir...5/installer.exe ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{195A17E1-699A-471A-AD24-DB108DF5D1D5}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CCS\Services\Tcpip\..\{80CC6918-064F-47CC-B70C-1D7EB9E50FFD}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{195A17E1-699A-471A-AD24-DB108DF5D1D5}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{80CC6918-064F-47CC-B70C-1D7EB9E50FFD}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS2\Services\Tcpip\..\{80CC6918-064F-47CC-B70C-1D7EB9E50FFD}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS3\Services\Tcpip\..\{195A17E1-699A-471A-AD24-DB108DF5D1D5}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS3\Services\Tcpip\..\{80CC6918-064F-47CC-B70C-1D7EB9E50FFD}: NameServer = 212.27.40.240,212.27.40.241 ---\\ Protocole additionnel et piratage de protocole (O18) O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\Windows\system32\mshtml.dll O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\Windows\system32\SHELL32.dll ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: AtiExtEvent - C:\WINDOWS\System32\Ati2evxx.dll O20 - Winlogon Notify: dimsntfy - C:\WINDOWS\System32\dimsntfy.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\System32\WgaLogon.dll ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSODL) (O21) O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - %SystemRoot%\system32\SHELL32.dll O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - %SystemRoot%\system32\SHELL32.dll O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22) O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} - %SystemRoot%\system32\browseui.dll ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: (Ati HotKey Poller) - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart (ATI Smart) - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: BlueSoleil Hid Service (BlueSoleil Hid Service) - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe O23 - Service: EpsonBidirectionalService (EpsonBidirectionalService) - C:\Program Files\Fichiers communs\EPSON\eEBAPI\eEBSVC.exe O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - C:\Program Files\Fichiers communs\EPSON\eEBAPI\SAgent2.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - C:\Program Files\Java\jre6\bin\jqs.exe -service -config C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf O23 - Service: NAS PM Service (NasPmService) - C:\Program Files\BUFFALO\NASNAVI\nassvc.exe -Service_Execute -dcyc=60 -dto=3 -dluc=0 -dmin=1 -dmax=60 -dflc=0 -apc=0 -log=0 -pm=1 -pall=1 -phttp=0 -pbc=0 -ppro=0 -pcyc=0 -pmin=1 -pmax=60 -pflc=0 O23 - Service: NMSAccessU (NMSAccessU) - C:\Program Files\CDBurnerXP\NMSAccessU.exe O23 - Service: SeaPort (SeaPort) - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe O23 - Service: SmartLinkService (SLService) - slserv.exe O23 - Service: Spouleur d'impression (Spooler) - C:\WINDOWS\system32\spoolsv.exe O23 - Service: TomTomHOMEService (TomTomHOMEService) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: TrueVector Internet Monitor (vsmon) - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -service ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: IE7 Uninstall Stub - <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigIE O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP O40 - ASIC: Personnalisation du navigateur - >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP O40 - ASIC: Outlook Express - >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigOE O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - (not file) O40 - ASIC: Rendu VML (Vector Graphics Rendering) - {10072CEC-8CC1-11D1-986E-00A0C955B42F} - (not file) O40 - ASIC: Microsoft NetShow Player - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - C:\WINDOWS\system32\wmpdxm.dll O40 - ASIC: Microsoft Windows Media Player 6.4 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\system32\wmpdxm.dll O40 - ASIC: DirectAnimation - {283807B5-2C60-11D0-A31D-00AA00B92C03} - (not file) O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\WINDOWS\system32\regsvr32.exe /s /n /i:/UserInstall C:\WINDOWS\system32\themeui.dll O40 - ASIC: Liaison de données Dynamic HTML pour Java - {36f8ec70-c29a-11d1-b5c7-0000f8051515} - (not file) O40 - ASIC: Offline Browsing Pack - {3af36230-a269-11d1-b5bf-0000f8051515} - (not file) O40 - ASIC: Uniscribe - {3bf42070-b3b1-11d1-b5c5-0000f8051515} - (not file) O40 - ASIC: Création avancée - {4278c270-a269-11d1-b5bf-0000f8051515} - (not file) O40 - ASIC: Microsoft Outlook Express 6 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT O40 - ASIC: DirectShow - {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - (not file) O40 - ASIC: DirectDrawEx - {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - (not file) O40 - ASIC: Internet Explorer Help - {45ea75a0-a269-11d1-b5bf-0000f8051515} - (not file) O40 - ASIC: Classes Java DirectAnimation - {4f216970-c90c-11d1-b5c7-0000f8051515} - (not file) O40 - ASIC: Microsoft Windows Script 5.6 - {4f645220-306d-11d2-995d-00c04f98bbc9} - (not file) O40 - ASIC: Mise à jour de sécurité pour Windows XP (KB923789) - {5056b317-8d4c-43ee-8543-b9d1e234b8f4} - (not file) O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser O40 - ASIC: Internet Explorer Setup Tools - {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - (not file) O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} - (not file) O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub O40 - ASIC: MSN Site Access - {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - (not file) O40 - ASIC: .NET Framework - {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - (not file) O40 - ASIC: Carnet d'adresses 6 - {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install O40 - ASIC: Mise à jour du Bureau Windows - {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install O40 - ASIC: Dynamic HTML Data Binding - {9381D8F2-0288-11D0-9501-00AA00B911A5} - (not file) O40 - ASIC: .NET Framework - {B508B3F1-A24A-32C0-B310-85786919EF28} - (not file) O40 - ASIC: .NET Framework - {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - (not file) O40 - ASIC: Internet Explorer Core Fonts - {C9E9A340-D1F1-11D0-821E-444553540600} - (not file) O40 - ASIC: Planificateur de tâches - {CC2A9BA0-3BDD-11D0-821E-444553540000} - (not file) O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11cf-96B8-444553540000} - C:\WINDOWS\system32\Macromed\Flash\Flash10b.ocx O40 - ASIC: HTML Help - {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - (not file) O40 - ASIC: Active Directory Service Interface - {E92B03AB-B707-11d2-9CBD-0000F87A369E} - (not file) ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: AFD (AFD) - C:\WINDOWS\System32\drivers\afd.sys O41 - Driver: avgio (avgio) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys O41 - Driver: avipbb (avipbb) - C:\WINDOWS\system32\DRIVERS\avipbb.sys O41 - Driver: Pilote de CD-ROM (Cdrom) - C:\WINDOWS\system32\DRIVERS\cdrom.sys O41 - Driver: Pilote pour clavier i8042 et souris sur port PS/2 (i8042prt) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys O41 - Driver: Pilote de filtre de gravure CD (Imapi) - C:\WINDOWS\system32\DRIVERS\imapi.sys O41 - Driver: Pilote de processeur Intel (intelppm) - C:\WINDOWS\system32\DRIVERS\intelppm.sys O41 - Driver: Pilote IPSEC (IPSec) - C:\WINDOWS\system32\DRIVERS\ipsec.sys O41 - Driver: Pilote de la classe Clavier (Kbdclass) - C:\WINDOWS\system32\DRIVERS\kbdclass.sys O41 - Driver: KLIF (KLIF) - C:\WINDOWS\system32\DRIVERS\klif.sys O41 - Driver: Pilote de la classe Souris (Mouclass) - C:\WINDOWS\system32\DRIVERS\mouclass.sys O41 - Driver: MRXSMB (MRxSmb) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys O41 - Driver: Interface NetBIOS (NetBIOS) - C:\WINDOWS\system32\DRIVERS\netbios.sys O41 - Driver: NetBIOS sur TCP/IP (NetBT) - C:\WINDOWS\system32\DRIVERS\netbt.sys O41 - Driver: Pilote de connexion automatique d'accès distant (RasAcd) - C:\WINDOWS\system32\DRIVERS\rasacd.sys O41 - Driver: Rdbss (Rdbss) - C:\WINDOWS\system32\DRIVERS\rdbss.sys O41 - Driver: (no object) (RDPCDD) - C:\WINDOWS\System32\DRIVERS\RDPCDD.sys O41 - Driver: Pilote de filtre de lecture digitale de CD audio (redbook) - C:\WINDOWS\system32\DRIVERS\redbook.sys O41 - Driver: Pilote de port série (Serial) - C:\WINDOWS\system32\DRIVERS\serial.sys O41 - Driver: ssmdrv (ssmdrv) - C:\WINDOWS\system32\DRIVERS\ssmdrv.sys O41 - Driver: Pilote du protocole TCP/IP (Tcpip) - C:\WINDOWS\system32\DRIVERS\tcpip.sys O41 - Driver: Pilote de périphérique terminal (TermDD) - C:\WINDOWS\system32\DRIVERS\termdd.sys O41 - Driver: Carte vidéo VGA. (VgaSave) - C:\WINDOWS\System32\drivers\vga.sys O41 - Driver: vsdatant (vsdatant) - C:\WINDOWS\System32\vsdatant.sys O41 - Driver: Spyware Terminator Driver 2 (sp_rsdrv2) - C:\WINDOWS\system32\drivers\sp_rsdrv2.sys O41 - Driver: (no object) (VgaSave) - C:\WINDOWS\System32\drivers\vga.sys ---\\ Logiciels installés (O42) O42 - Logiciel: 7-Zip 4.65 O42 - Logiciel: ATI Display Driver O42 - Logiciel: Abuledu - Devine 0.2 O42 - Logiciel: Adobe Flash Player 10 ActiveX O42 - Logiciel: Adobe Flash Player 10 Plugin O42 - Logiciel: Apple Mobile Device Support O42 - Logiciel: Assistant de connexion Windows Live O42 - Logiciel: Audacity 1.2.6 O42 - Logiciel: AusLogics Disk Defrag O42 - Logiciel: AviSynth 2.5 O42 - Logiciel: Avira AntiVir Personal - Free Antivirus O42 - Logiciel: BUFFALO NAS Navigator O42 - Logiciel: Big City Adventure New York 1.00 O42 - Logiciel: Bing Maps 3D O42 - Logiciel: BlueSoleil O42 - Logiciel: CCleaner (remove only) O42 - Logiciel: CDBurnerXP O42 - Logiciel: Choice Guard O42 - Logiciel: Cobian Backup 9 O42 - Logiciel: CutePDF Writer 2.7 O42 - Logiciel: DVD Flick 1.3.0.7 O42 - Logiciel: DVD Shrink 3.2 O42 - Logiciel: Dia (supprimer uniquement) O42 - Logiciel: DivX Converter O42 - Logiciel: DivX Player O42 - Logiciel: DivX Web Player O42 - Logiciel: EPSON Copy Utility O42 - Logiciel: EPSON Logiciel imprimante O42 - Logiciel: EPSON Photo Print O42 - Logiciel: EPSON Smart Panel O42 - Logiciel: EPSON TWAIN 5 O42 - Logiciel: EasyCleaner O42 - Logiciel: EasyPHP 2.0b1 O42 - Logiciel: Extension de Windows Live Toolbar (Windows Live Toolbar) O42 - Logiciel: FileZilla Client 3.2.8.1 O42 - Logiciel: Foxit Reader O42 - Logiciel: FreeGo version 4 O42 - Logiciel: Freenet 0.7.5 O42 - Logiciel: GLtron version 0.70 O42 - Logiciel: Galerie de photos Windows Live O42 - Logiciel: HomePlayer 1.5.8a O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) O42 - Logiciel: IKEA Home Planner O42 - Logiciel: InfraRecorder O42 - Logiciel: Inkscape 0.46 O42 - Logiciel: Installation Windows Live O42 - Logiciel: Java 6 Update 15 O42 - Logiciel: Java 6 Update 4 O42 - Logiciel: Java 6 Update 7 O42 - Logiciel: Junk Mail filter update O42 - Logiciel: K-Lite Mega Codec Pack 4.3.4 O42 - Logiciel: KC Softwares SUMo O42 - Logiciel: KompoZer 0.7.10 (supprimer uniquement) O42 - Logiciel: La Marmite du Chef 6.4.1 O42 - Logiciel: Lecteur Windows Media 11 O42 - Logiciel: Logiciel QuickCam de Logitech O42 - Logiciel: Look@LAN 2.50 Build 35 O42 - Logiciel: MSVCRT O42 - Logiciel: MSXML 4.0 SP2 (KB936181) O42 - Logiciel: MSXML 4.0 SP2 (KB954430) O42 - Logiciel: Ma-Config.com O42 - Logiciel: Menus intelligents (Windows Live Toolbar) O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 2 O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 2 O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 O42 - Logiciel: Microsoft Office 2000 SR-1 Professional O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (English) O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] O42 - Logiciel: Microsoft Search Enhancement Pack O42 - Logiciel: Microsoft Silverlight O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 O42 - Logiciel: Mozilla Firefox (3.5.5) O42 - Logiciel: Navman F Series Connection Pack O42 - Logiciel: Navman F20 Service Pack O42 - Logiciel: Ogg Codecs 0.81.15562 O42 - Logiciel: OpenOffice.org 3.1 O42 - Logiciel: Opera 10.00 O42 - Logiciel: Outil de téléchargement Windows Live O42 - Logiciel: PhotoFiltre O42 - Logiciel: Picasa 3 O42 - Logiciel: Programme de gestion Camera de Logitech® O42 - Logiciel: QuickTime O42 - Logiciel: REALTEK GbE & FE Ethernet PCI NIC Driver O42 - Logiciel: Recuva (remove only) O42 - Logiciel: Revo Uninstaller 1.83 O42 - Logiciel: Romance of Rome O42 - Logiciel: ScanToWeb O42 - Logiciel: Scribus 1.3.3.12 O42 - Logiciel: Search Settings 1.2 O42 - Logiciel: Security Update for CAPICOM (KB931906) O42 - Logiciel: Segoe UI O42 - Logiciel: Simple Sudoku 4.2 O42 - Logiciel: Spamihilator O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 9 O42 - Logiciel: Spybot - Search & Destroy O42 - Logiciel: Surligneur (Windows Live Toolbar) O42 - Logiciel: The Return of Monte Cristo O42 - Logiciel: TomTom HOME 2.7.2.1825 O42 - Logiciel: TomTom HOME Visual Studio Merge Modules O42 - Logiciel: Unlocker 1.8.7 O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) O42 - Logiciel: VDownloader 0.77 O42 - Logiciel: VLC media player 1.0.1 O42 - Logiciel: Visionneuse Journal Windows Microsoft O42 - Logiciel: Visual C++ 2008 x86 Runtime - (v9.0.30729) O42 - Logiciel: Visual C++ 2008 x86 Runtime - v9.0.30729.01 O42 - Logiciel: Visual C++ CRT 9.0 O42 - Logiciel: Visual C++ CRT 9.0 SP1 O42 - Logiciel: VobSub 2.23 O42 - Logiciel: Vuze O42 - Logiciel: WinHTTrack Website Copier 3.43 O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130) O42 - Logiciel: Windows Internet Explorer 7 O42 - Logiciel: Windows Live Call O42 - Logiciel: Windows Live Communications Platform O42 - Logiciel: Windows Live Favorites pour Windows Live Toolbar O42 - Logiciel: Windows Live Mail O42 - Logiciel: Windows Live Messenger O42 - Logiciel: Windows Live OneCare safety scanner O42 - Logiciel: Windows Live Sync O42 - Logiciel: Windows Live Toolbar O42 - Logiciel: Windows Live Writer O42 - Logiciel: Windows Media Format 11 runtime O42 - Logiciel: Windows Media Player Firefox Plugin O42 - Logiciel: XnView 1.96.1 O42 - Logiciel: Xvid 1.2.2 O42 - Logiciel: ZebHelpProcess 2.34 O42 - Logiciel: ZoneAlarm O42 - Logiciel: adsl TV O42 - Logiciel: iTunes O42 - Logiciel: nLite 1.4.5 ---\\ Contenu des dossiers Fichiers Communs (O43) O43 - CFD:Common File Directory ----D- C:\Program Files\7-Zip O43 - CFD:Common File Directory ----D- C:\Program Files\Acro Software O43 - CFD:Common File Directory ----D- C:\Program Files\Adobe O43 - CFD:Common File Directory ----D- C:\Program Files\adslTV O43 - CFD:Common File Directory ----D- C:\Program Files\AM-DeadLink O43 - CFD:Common File Directory ----D- C:\Program Files\Audacity O43 - CFD:Common File Directory ----D- C:\Program Files\Auslogics O43 - CFD:Common File Directory ----D- C:\Program Files\Avira O43 - CFD:Common File Directory ----D- C:\Program Files\AviSynth 2.5 O43 - CFD:Common File Directory ----D- C:\Program Files\Azureus O43 - CFD:Common File Directory ----D- C:\Program Files\BUFFALO O43 - CFD:Common File Directory ----D- C:\Program Files\CCleaner O43 - CFD:Common File Directory ----D- C:\Program Files\CDBurnerXP O43 - CFD:Common File Directory ----D- C:\Program Files\Cobian Backup 9 O43 - CFD:Common File Directory ----D- C:\Program Files\Copyit O43 - CFD:Common File Directory ----D- C:\Program Files\DAEMON Tools Lite O43 - CFD:Common File Directory ----D- C:\Program Files\Dealio O43 - CFD:Common File Directory ----D- C:\Program Files\Devine O43 - CFD:Common File Directory ----D- C:\Program Files\Dia O43 - CFD:Common File Directory ----D- C:\Program Files\DivX O43 - CFD:Common File Directory ----D- C:\Program Files\DVD Flick O43 - CFD:Common File Directory ----D- C:\Program Files\DVD Shrink O43 - CFD:Common File Directory ----D- C:\Program Files\EasyPHP 2.0b1 O43 - CFD:Common File Directory ----D- C:\Program Files\El Juky O43 - CFD:Common File Directory ----D- C:\Program Files\EPSON O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers communs O43 - CFD:Common File Directory ----D- C:\Program Files\FileZilla FTP Client O43 - CFD:Common File Directory ----D- C:\Program Files\Foxit Software O43 - CFD:Common File Directory ----D- C:\Program Files\Free FLV Converter O43 - CFD:Common File Directory ----D- C:\Program Files\FreeGo O43 - CFD:Common File Directory ----D- C:\Program Files\Freenet O43 - CFD:Common File Directory ----D- C:\Program Files\Gabest O43 - CFD:Common File Directory ----D- C:\Program Files\Games O43 - CFD:Common File Directory ----D- C:\Program Files\GLtron O43 - CFD:Common File Directory ----D- C:\Program Files\Google O43 - CFD:Common File Directory ----D- C:\Program Files\GPLGS O43 - CFD:Common File Directory ----D- C:\Program Files\HardwareDetection O43 - CFD:Common File Directory ----D- C:\Program Files\HomePlayer O43 - CFD:Common File Directory ----D- C:\Program Files\IKEA HomePlanner O43 - CFD:Common File Directory ----D- C:\Program Files\Illustrate O43 - CFD:Common File Directory ----D- C:\Program Files\InfraRecorder O43 - CFD:Common File Directory ----D- C:\Program Files\Inkscape O43 - CFD:Common File Directory --H-D- C:\Program Files\InstallShield Installation Information O43 - CFD:Common File Directory ----D- C:\Program Files\Intel O43 - CFD:Common File Directory ----D- C:\Program Files\Internet Explorer O43 - CFD:Common File Directory ----D- C:\Program Files\iPod O43 - CFD:Common File Directory ----D- C:\Program Files\IrfanView O43 - CFD:Common File Directory ----D- C:\Program Files\iTunes O43 - CFD:Common File Directory ----D- C:\Program Files\IVCsoft O43 - CFD:Common File Directory ----D- C:\Program Files\IVT Corporation O43 - CFD:Common File Directory ----D- C:\Program Files\Java O43 - CFD:Common File Directory ----D- C:\Program Files\JRE O43 - CFD:Common File Directory ----D- C:\Program Files\K-Lite Codec Pack O43 - CFD:Common File Directory ----D- C:\Program Files\KC Softwares O43 - CFD:Common File Directory ----D- C:\Program Files\KompoZer O43 - CFD:Common File Directory ----D- C:\Program Files\KORES O43 - CFD:Common File Directory ----D- C:\Program Files\Kyodai Mahjongg 2006 O43 - CFD:Common File Directory ----D- C:\Program Files\Lavasoft O43 - CFD:Common File Directory ----D- C:\Program Files\Logitech O43 - CFD:Common File Directory ----D- C:\Program Files\Look@LAN O43 - CFD:Common File Directory ----D- C:\Program Files\Lopxp O43 - CFD:Common File Directory ----D- C:\Program Files\m4ng codec pack O43 - CFD:Common File Directory ----D- C:\Program Files\ma-config.com O43 - CFD:Common File Directory ----D- C:\Program Files\Macromedia O43 - CFD:Common File Directory ----D- C:\Program Files\MailNavigator O43 - CFD:Common File Directory ----D- C:\Program Files\Marmiton O43 - CFD:Common File Directory ----D- C:\Program Files\MediaInfo O43 - CFD:Common File Directory ----D- C:\Program Files\Messenger O43 - CFD:Common File Directory ----D- C:\Program Files\Micro Application O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Baseline Security Analyzer 2 O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2 O43 - CFD:Common File Directory ----D- C:\Program Files\microsoft frontpage O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Office O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Silverlight O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Sites publics français O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Sync Framework O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Works O43 - CFD:Common File Directory ----D- C:\Program Files\Motherboard Monitor 5 O43 - CFD:Common File Directory ----D- C:\Program Files\Movie Maker O43 - CFD:Common File Directory ----D- C:\Program Files\Mozilla Firefox O43 - CFD:Common File Directory ----D- C:\Program Files\MSBuild O43 - CFD:Common File Directory ----D- C:\Program Files\MSECache O43 - CFD:Common File Directory ----D- C:\Program Files\MSN O43 - CFD:Common File Directory ----D- C:\Program Files\MSN Gaming Zone O43 - CFD:Common File Directory ----D- C:\Program Files\MSXML 4.0 O43 - CFD:Common File Directory ----D- C:\Program Files\MSXML 6.0 O43 - CFD:Common File Directory ----D- C:\Program Files\Navman O43 - CFD:Common File Directory ----D- C:\Program Files\NetMeeting O43 - CFD:Common File Directory ----D- C:\Program Files\Network Stumbler O43 - CFD:Common File Directory ----D- C:\Program Files\nLite O43 - CFD:Common File Directory ----D- C:\Program Files\NOS O43 - CFD:Common File Directory ----D- C:\Program Files\Online Services O43 - CFD:Common File Directory ----D- C:\Program Files\OpenOffice.org 3 O43 - CFD:Common File Directory ----D- C:\Program Files\Opera O43 - CFD:Common File Directory ----D- C:\Program Files\Outlook Express O43 - CFD:Common File Directory ----D- C:\Program Files\Outlook Express Quick Backup O43 - CFD:Common File Directory ----D- C:\Program Files\Pahelika - Secret Legends O43 - CFD:Common File Directory ----D- C:\Program Files\Panda Security O43 - CFD:Common File Directory ----D- C:\Program Files\PC Inspector File Recovery O43 - CFD:Common File Directory ----D- C:\Program Files\PDF Editeur 2 O43 - CFD:Common File Directory ----D- C:\Program Files\PDFCreator O43 - CFD:Common File Directory ----D- C:\Program Files\PhotoFiltre O43 - CFD:Common File Directory ----D- C:\Program Files\Picasa2 O43 - CFD:Common File Directory ----D- C:\Program Files\PyGrenouille O43 - CFD:Common File Directory ----D- C:\Program Files\QuickMediaConverter O43 - CFD:Common File Directory ----D- C:\Program Files\QuickTime O43 - CFD:Common File Directory ----D- C:\Program Files\RamBoost XP O43 - CFD:Common File Directory ----D- C:\Program Files\Realtek O43 - CFD:Common File Directory ----D- C:\Program Files\Recuva O43 - CFD:Common File Directory ----D- C:\Program Files\Reference Assemblies O43 - CFD:Common File Directory ----D- C:\Program Files\RegCleaner O43 - CFD:Common File Directory ----D- C:\Program Files\Righteous Kill O43 - CFD:Common File Directory ----D- C:\Program Files\Romance of Rome O43 - CFD:Common File Directory ----D- C:\Program Files\Scribus 1.3.3.12 O43 - CFD:Common File Directory ----D- C:\Program Files\Services en ligne O43 - CFD:Common File Directory ----D- C:\Program Files\Simple Sudoku O43 - CFD:Common File Directory ----D- C:\Program Files\SlySoft O43 - CFD:Common File Directory ----D- C:\Program Files\Smart Projects O43 - CFD:Common File Directory ----D- C:\Program Files\Spamihilator O43 - CFD:Common File Directory ----D- C:\Program Files\SpeedFan O43 - CFD:Common File Directory ----D- C:\Program Files\Spybot - Search & Destroy O43 - CFD:Common File Directory ----D- C:\Program Files\Spyware Doctor O43 - CFD:Common File Directory ----D- C:\Program Files\STOIK Imaging O43 - CFD:Common File Directory ----D- C:\Program Files\Sweet Home 3D O43 - CFD:Common File Directory ----D- C:\Program Files\TeaTimer (Spybot - Search & Destroy) O43 - CFD:Common File Directory ----D- C:\Program Files\The Return of Monte Cristo O43 - CFD:Common File Directory ----D- C:\Program Files\TomTom DesktopSuite O43 - CFD:Common File Directory ----D- C:\Program Files\TomTom HOME 2 O43 - CFD:Common File Directory ----D- C:\Program Files\TomTom International B.V O43 - CFD:Common File Directory ----D- C:\Program Files\ToniArts O43 - CFD:Common File Directory ----D- C:\Program Files\Trend Micro O43 - CFD:Common File Directory --H-D- C:\Program Files\Uninstall Information O43 - CFD:Common File Directory ----D- C:\Program Files\Unlocker O43 - CFD:Common File Directory ----D- C:\Program Files\VDOWNLOADER O43 - CFD:Common File Directory ----D- C:\Program Files\VideoLAN O43 - CFD:Common File Directory ----D- C:\Program Files\Virtools O43 - CFD:Common File Directory ----D- C:\Program Files\Virtools Web Player 3.5 O43 - CFD:Common File Directory ----D- C:\Program Files\Virtual Earth 3D O43 - CFD:Common File Directory ----D- C:\Program Files\VirtualDub-MPEG2 O43 - CFD:Common File Directory ----D- C:\Program Files\VirtualDubMOD O43 - CFD:Common File Directory ----D- C:\Program Files\VS Revo Group O43 - CFD:Common File Directory ----D- C:\Program Files\Winamp O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Defender O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Journal Viewer O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live Favorites O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live Safety Center O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live SkyDrive O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live Toolbar O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Connect 2 O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Player O43 - CFD:Common File Directory ----D- C:\Program Files\Windows NT O43 - CFD:Common File Directory --H-D- C:\Program Files\WindowsUpdate O43 - CFD:Common File Directory ----D- C:\Program Files\WinHTTrack O43 - CFD:Common File Directory ----D- C:\Program Files\WinPcap O43 - CFD:Common File Directory ----D- C:\Program Files\XBMC O43 - CFD:Common File Directory ----D- C:\Program Files\xerox O43 - CFD:Common File Directory ----D- C:\Program Files\Xiph.Org O43 - CFD:Common File Directory ----D- C:\Program Files\XnView O43 - CFD:Common File Directory ----D- C:\Program Files\Xvid O43 - CFD:Common File Directory ----D- C:\Program Files\Yahoo! O43 - CFD:Common File Directory ----D- C:\Program Files\ZebHelpProcess O43 - CFD:Common File Directory ----D- C:\Program Files\ZHPFix O43 - CFD:Common File Directory ----D- C:\Program Files\Zone Labs O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Apple O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\AVSMedia O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Borland Shared O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Designer O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\EPSON O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\GeoVid O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\InstallShield O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Java O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Logitech O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Macromedia O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Macromedia Shared O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Microsoft Shared O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\MSSoap O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\ODBC O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Python O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Services O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\SpeechEngines O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\ST System Shared O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\System O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\SystemRequirementsLab O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Windows Live O43 - CFD:Common File Directory -SH-D- C:\Program Files\Fichiers Communs\WindowsLiveInstaller O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Wise Installation Wizard ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:Last File Created 05/11/2009 - 18:36:21 ---A- C:\WINDOWS\System32\MRT.exe O44 - LFC:Last File Created 12/11/2009 - 23:48:03 ---A- C:\WINDOWS\imsins.BAK O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\msgsocm.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\tabletoc.log O44 - LFC:Last File Created 12/11/2009 - 23:53:04 ---A- C:\WINDOWS\System32\FNTCACHE.DAT O44 - LFC:Last File Created 13/11/2009 - 21:33:36 ---A- C:\WINDOWS\Many Years Ago Setup Log.txt O44 - LFC:Last File Created 13/11/2009 - 21:36:50 ---A- C:\WINDOWS\Many Years Ago Uninstall Log.txt O44 - LFC:Last File Created 13/11/2009 - 21:38:09 ---A- C:\WINDOWS\Gemini Lost Setup Log.txt O44 - LFC:Last File Created 13/11/2009 - 21:41:15 ---A- C:\WINDOWS\Gemini Lost Uninstall Log.txt O44 - LFC:Last File Created 13/11/2009 - 21:45:52 ---A- C:\WINDOWS\Romance of Rome Setup Log.txt O44 - LFC:Last File Created 13/11/2009 - 22:43:11 ---A- C:\WINDOWS\Pahelika - Secret Legends Uninstall Log.txt O44 - LFC:Last File Created 14/11/2009 - 18:53:35 ---A- C:\WINDOWS\The Return of Monte Cristo Setup Log.txt O44 - LFC:Last File Created 18/11/2009 - 08:29:12 ---A- C:\WINDOWS\UN060501.EXE O44 - LFC:Last File Created 18/11/2009 - 08:29:12 ---A- C:\WINDOWS\UN060501.INI O44 - LFC:Last File Created 18/11/2009 - 23:36:18 ---A- C:\WINDOWS\SchedLgU.Txt O44 - LFC:Last File Created 19/11/2009 - 06:58:31 -S-A- C:\WINDOWS\bootstat.dat O44 - LFC:Last File Created 19/11/2009 - 06:59:24 ---A- C:\WINDOWS\wiaservc.log O44 - LFC:Last File Created 19/11/2009 - 06:59:26 ---A- C:\WINDOWS\wiadebug.log O44 - LFC:Last File Created 19/11/2009 - 06:59:49 ---A- C:\WINDOWS\0.log O44 - LFC:Last File Created 19/11/2009 - 06:59:52 ---A- C:\WINDOWS\System32\wpa.dbl O44 - LFC:Last File Created 19/11/2009 - 06:59:57 ---A- C:\WINDOWS\System32\vsconfig.xml O44 - LFC:Last File Created 19/11/2009 - 07:01:48 ---A- C:\WINDOWS\WindowsUpdate.log O44 - LFC:Last File Created 20/10/2009 - 11:22:30 ---A- C:\WINDOWS\Pahelika - Secret Legends Setup Log.txt O44 - LFC:Last File Created 21/10/2009 - 05:07:57 ---A- C:\WINDOWS\System32\mshtml.dll O44 - LFC:Last File Created 22/10/2009 - 13:14:19 ---A- C:\WINDOWS\avisplitter.ini O44 - LFC:Last File Created 25/10/2009 - 07:31:42 ---A- C:\WINDOWS\System32\PerfStringBackup.INI ---\\ Opérations et fonctions au démarrage de Windows Explorer (O46) O46 - SEH:ShellExecuteHooks - URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll ---\\ Export de clé d'application autorisée (ECAA)(O47) O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" O47 - AAKE:Key Export SP - "C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice" O47 - AAKE:Key Export SP - "C:\Program Files\Azureus\Azureus.exe"="C:\Program Files\Azureus\Azureus.exe:*:Enabled:Azureus" O47 - AAKE:Key Export SP - "C:\Program Files\VideoLAN\VLC\vlc.exe"="C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player" O47 - AAKE:Key Export SP - "C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil" O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" O47 - AAKE:Key Export SP - "C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes" O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger" O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync" O47 - AAKE:Key Export SP - "C:\Program Files\Spamihilator\cdcc.exe"="C:\Program Files\Spamihilator\cdcc.exe:*:Enabled:Spamihilator DCC Filter Configuration" O47 - AAKE:Key Export SP - "C:\Program Files\Spamihilator\dccproc.exe"="C:\Program Files\Spamihilator\dccproc.exe:*:Enabled:Spamihilator DCC Filter" O47 - AAKE:Key Export SP - "C:\Program Files\Spamihilator\spamihilator.exe"="C:\Program Files\Spamihilator\spamihilator.exe:*:Enabled:Spamihilator" O47 - AAKE:Key Export SP - "C:\Program Files\HomePlayer\HomePlayer.exe"="C:\Program Files\HomePlayer\HomePlayer.exe:*:Enabled:HomePlayer" O47 - AAKE:Key Export SP - "C:\Program Files\HomePlayer\VLC\vlc.exe"="C:\Program Files\HomePlayer\VLC\vlc.exe:*:Enabled:VLC HomePlayer" O47 - AAKE:Key Export SP - "C:\Program Files\BUFFALO\NASNAVI\NasNavi.exe"="C:\Program Files\BUFFALO\NASNAVI\NasNavi.exe:*:Enabled:BUFFALO NASNavigator2" O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger" O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync" ---\\ Déni du service (Local Security Authority) (LSA) (O48) O48 - LSA:Local Security Authority Authentication Packages - C:\WINDOWS\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages - C:\WINDOWS\System32\scecli.dll ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\vgasave.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\ip6fw.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpcdd.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpdd.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpwd.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\tdpipe.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\tdtcp.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\vgasave.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\vgasave.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\ip6fw.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpcdd.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpdd.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpwd.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\tdpipe.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\tdtcp.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\vgasave.sys ---\\ Image File Execution Options (IFEO) (O50) O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d ---\\ MountPoints2 Shell Key (MPSK) (O51) O51 - MPSK:{7203009b-a344-11de-a953-000feaa14ec2}\Shell\AutoRun\command - F:\InstallTomTomHOME.exe ---\\ Trojan Driver Search Data (TDSD) (O52) O52 - TDSD:HKLM\...\Drivers\"timer"="timer.drv" O52 - TDSD:HKLM\...\Drivers32\"midimapper"="midimap.dll" O52 - TDSD:HKLM\...\Drivers32\"msacm.imaadpcm"="imaadp32.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.msadpcm"="msadp32.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.msg711"="msg711.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.msgsm610"="msgsm32.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.trspch"="tssoft32.acm" O52 - TDSD:HKLM\...\Drivers32\"vidc.cvid"="iccvid.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.I420"="lvcodec2.dll" O52 - TDSD:HKLM\...\Drivers32\"vidc.iv31"="ir32_32.dll" O52 - TDSD:HKLM\...\Drivers32\"vidc.iv32"="ir32_32.dll" O52 - TDSD:HKLM\...\Drivers32\"vidc.iv41"="ir41_32.ax" O52 - TDSD:HKLM\...\Drivers32\"VIDC.IYUV"="iyuv_32.dll" O52 - TDSD:HKLM\...\Drivers32\"vidc.mrle"="msrle32.dll" O52 - TDSD:HKLM\...\Drivers32\"vidc.msvc"="msvidc32.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.UYVY"="msyuv.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.YUY2"="msyuv.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.YVU9"="tsbyuv.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.YVYU"="msyuv.dll" O52 - TDSD:HKLM\...\Drivers32\"wavemapper"="msacm32.drv" O52 - TDSD:HKLM\...\Drivers32\"wave"="serwvdrv.dll" O52 - TDSD:HKLM\...\Drivers32\"msacm.msg723"="msg723.acm" O52 - TDSD:HKLM\...\Drivers32\"vidc.M263"="msh263.drv" O52 - TDSD:HKLM\...\Drivers32\"vidc.M261"="msh261.drv" O52 - TDSD:HKLM\...\Drivers32\"msacm.msaudio1"="msaud32.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.sl_anet"="sl_anet.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.iac2"="C:\WINDOWS\system32\iac25_32.ax" O52 - TDSD:HKLM\...\Drivers32\"vidc.iv50"="ir50_32.dll" O52 - TDSD:HKLM\...\Drivers32\"msacm.l3acm"="C:\WINDOWS\system32\l3codeca.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.siren"="sirenacm.dll" O52 - TDSD:HKLM\...\Drivers32\"MSVideo"="vfwwdm32.dll" O52 - TDSD:HKLM\...\Drivers32\"MSVideo8"="VfWWDM32.dll" O52 - TDSD:HKLM\...\Drivers32\"wave1"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"midi"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"aux"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"wave2"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"midi1"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer1"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"aux1"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"wave3"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer2"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"wave4"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer3"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"VIDC.DIVX"="divx.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.XVID"="xvidvfw.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.YV12"="yv12vfw.dll" O52 - TDSD:HKLM\...\Drivers32\"msacm.ac3acm"="ac3acm.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.lameacm"="lameACM.acm" O52 - TDSD:HKLM\...\Drivers32\"VIDC.FFDS"="ff_vfw.dll" O52 - TDSD:HKLM\...\Drivers32\"wave5"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"midi2"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer4"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"aux2"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"wave6"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"midi3"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer5"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"aux3"="wdmaud.drv" O52 - TDSD:HKLM\...\drivers.desc\"serwvdrv.dll"="Pilote de porteuse modem" O52 - TDSD:HKLM\...\drivers.desc\"msaud32.acm"="Windows Media Audio Codec" O52 - TDSD:HKLM\...\drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" O52 - TDSD:HKLM\...\drivers.desc\"C:\WINDOWS\system32\iac25_32.ax"="Indeo® audio software" O52 - TDSD:HKLM\...\drivers.desc\"ir50_32.dll"="Indeo® video 5.10" O52 - TDSD:HKLM\...\drivers.desc\"C:\WINDOWS\system32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" O52 - TDSD:HKLM\...\drivers.desc\"sirenacm.dll"="Messenger Audio Codec" O52 - TDSD:HKLM\...\drivers.desc\"vfwwdm32.dll"="Vidéo WDM pour le pilote de capture Windows (Win32)" O52 - TDSD:HKLM\...\drivers.desc\"wdmaud.drv"="Périphérique audio USB" O52 - TDSD:HKLM\...\drivers.desc\"mciavi32.dll"="mciavi32.dll" O52 - TDSD:HKLM\...\drivers.desc\"mcicda.dll"="mcicda.dll" O52 - TDSD:HKLM\...\drivers.desc\"mciseq.dll"="mciseq.dll" O52 - TDSD:HKLM\...\drivers.desc\"mciwave.dll"="mciwave.dll" O52 - TDSD:HKLM\...\drivers.desc\"mciqtz32.dll"="mciqtz32.dll" O52 - TDSD:HKLM\...\drivers.desc\"midimap.dll"="midimap.dll" O52 - TDSD:HKLM\...\drivers.desc\"imaadp32.acm"="imaadp32.acm" O52 - TDSD:HKLM\...\drivers.desc\"msadp32.acm"="msadp32.acm" O52 - TDSD:HKLM\...\drivers.desc\"msg711.acm"="msg711.acm" O52 - TDSD:HKLM\...\drivers.desc\"msgsm32.acm"="msgsm32.acm" O52 - TDSD:HKLM\...\drivers.desc\"tssoft32.acm"="tssoft32.acm" O52 - TDSD:HKLM\...\drivers.desc\"iccvid.dll"="iccvid.dll" O52 - TDSD:HKLM\...\drivers.desc\"lvcodec2.dll"="lvcodec2.dll" O52 - TDSD:HKLM\...\drivers.desc\"ir32_32.dll"="ir32_32.dll" O52 - TDSD:HKLM\...\drivers.desc\"ir41_32.ax"="ir41_32.ax" O52 - TDSD:HKLM\...\drivers.desc\"iyuv_32.dll"="iyuv_32.dll" O52 - TDSD:HKLM\...\drivers.desc\"msrle32.dll"="msrle32.dll" O52 - TDSD:HKLM\...\drivers.desc\"msvidc32.dll"="msvidc32.dll" O52 - TDSD:HKLM\...\drivers.desc\"msyuv.dll"="msyuv.dll" O52 - TDSD:HKLM\...\drivers.desc\"tsbyuv.dll"="tsbyuv.dll" O52 - TDSD:HKLM\...\drivers.desc\"msacm32.drv"="msacm32.drv" O52 - TDSD:HKLM\...\drivers.desc\"msg723.acm"="msg723.acm" O52 - TDSD:HKLM\...\drivers.desc\"msh263.drv"="msh263.drv" O52 - TDSD:HKLM\...\drivers.desc\"msh261.drv"="msh261.drv" O52 - TDSD:HKLM\...\drivers.desc\"divx.dll"="DivX 6.8.5" O52 - TDSD:HKLM\...\drivers.desc\"xvidvfw.dll"="Xvid MPEG-4 Video Codec v1.2-dev" O52 - TDSD:HKLM\...\drivers.desc\"lameACM.acm"="Lame ACM MP3 CODEC v3.98" O52 - TDSD:HKLM\...\drivers.desc\"ac3acm.acm"="AC-3 ACM Codec" O52 - TDSD:HKLM\...\drivers.desc\"ff_vfw.dll"="ffdshow video encoder" ---\\ Microsoft Control Security Providers (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - "SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - "SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll ---\\ Microsoft Windows Policies System (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"= O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"= O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 ---\\ Microsoft Windows Policies Explorer (MWPE) (O56) O56 - MWPE:[HKCU\...\Policies\Explorer] - "NoDriveTypeAutoRun"=145 O56 - MWPE:[HKLM\...\Policies\Explorer] - "HonorAutoRunSetting"=1 ---\\ Liste des Drivers Système (SDL) (O58) O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\1394bus.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\acpi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\acpiec.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\aec.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\afc.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\afd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\amdk6.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\amdk7.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\arp1394.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\asyncmac.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\atapi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ati2mtag.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\atmarpc.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\atmepvc.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\atmlane.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\atmuni.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\audstub.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\avgntdd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\avgntflt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\avgntmgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\avipbb.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bcbthub.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\BCMWL5.SYS O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\beep.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\blueletaudio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\BlueletSCOAudio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bridge.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\btcusb.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bthenum.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\BTHidMgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bthpan.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bthport.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bthusb.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\BtNetDrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\BTNetFilter.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cbidf2k.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ccdecode.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cdaudio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cdfs.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cdrbsvsd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cdrom.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cinemst2.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\classpnp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cpqdap01.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\crusoe.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\disk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\diskdump.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dmboot.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dmio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dmload.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dmusic.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\drmk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\drmkaud.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dxapi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dxg.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dxgthk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\enum1394.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fastfat.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fdc.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fips.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\flpydisk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fltmgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fsvga.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fs_rec.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ftdisk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fw203x.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\GEARAspiWDM.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\hidclass.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\hidparse.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\http.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\i8042prt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\imapi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\intelide.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\intelppm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ip6fw.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ipfltdrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ipinip.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ipnat.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ipsec.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\irenum.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\isapnp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\kbdclass.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\klif.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\kmixer.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ks.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ksecdd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\lvcm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\lvsvf2.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\LVUSBSta.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mcd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mf.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mnmdd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\modem.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\MODEMCSA.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mouclass.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mountmgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mqac.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mrxdav.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mrxsmb.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\msfs.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\msgpc.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mskssrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mspclock.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mspqm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mssmbios.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mstee.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mtlmnt5.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mtlstrm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mup.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nabtsfec.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\Navcar.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndis.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndisip.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndistapi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndisuio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndiswan.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndproxy.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\netbios.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\netbt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nic1394.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nikedrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nmnt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\npfs.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ntfs.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ntmtlfax.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\null.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwlnkflt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwlnkfwd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwlnkipx.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwlnknb.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwlnkspx.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwrdr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ohci1394.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\oprghdlr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\OXSER.SYS O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\p3.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\parport.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\partmgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\parvdm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\pci.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\pciide.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\pciidex.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\pcmcia.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\portcls.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\processr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\psched.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ptilink.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\pxhelp20.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rasacd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rasl2tp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\raspppoe.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\raspptp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\raspti.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rawwan.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rdbss.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rdpcdd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rdpdr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rdpwd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\RecAgent.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\redbook.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rfcomm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rio8drv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\riodrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rmcast.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rndismp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rootmdm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\RtkHDAud.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\RTL8139.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\Rtnicxp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\scsiport.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sdbus.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\secdrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\serenum.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\serial.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sffdisk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sffp_sd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sfloppy.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\Sio9502k.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\SktBt2k.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\slip.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\slntamr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\slnthal.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\slwdmsup.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\smclib.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sonydcam.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\splitter.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sptd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\srv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ssmdrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\stream.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\streamip.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\swenum.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\swmidi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sysaudio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tape.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tcpip.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tcpip6.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tdi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tdpipe.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tdtcp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\termdd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tosdvd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tsbvcap.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tunmp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\udfs.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\update.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usb8023.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbaudio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbcamd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbcamd2.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbccgp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbehci.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbhub.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbintel.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbport.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbprint.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbscan.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbstor.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbuhci.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\vbtenum.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\VComm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\VcommMgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\vdmindvd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\vga.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\VHIDMini.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\videoprt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\volsnap.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\wanarp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\wdmaud.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\wmilib.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ws2ifsl.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\wssbtr1f.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\wstcodec.sys ---\\ Liste des outils de nettoyage (LATC) (O63) O63 - Logiciel: HijackThis 2.0.2 O63 - Logiciel: ZHPFix 1.12 O63 - Logiciel: Dial-a-fix ---\\ Liste des services Legacy (LALS) (O64) O64 - Services: CurCS - AFD (AFD) - LEGACY_AFD O64 - Services: CurCS - Avertissement (Alerter) - LEGACY_ALERTER O64 - Services: CurCS - Service de la passerelle de la couche Application (ALG) - LEGACY_ALG O64 - Services: CurCS - Avira AntiVir Planificateur (AntiVirSchedulerService) - LEGACY_ANTIVIRSCHEDULERSERVICE O64 - Services: CurCS - Avira AntiVir Guard (AntiVirService) - LEGACY_ANTIVIRSERVICE O64 - Services: CurCS - Apple Mobile Device (Apple Mobile Device) - LEGACY_APPLE_MOBILE_DEVICE O64 - Services: CurCS - Gestion d'applications (AppMgmt) - LEGACY_APPMGMT O64 - Services: CurCS - Protocole client ARP 1394 (Arp1394) - LEGACY_ARP1394 O64 - Services: CurCS - Ati HotKey Poller (Ati HotKey Poller) - LEGACY_ATI_HOTKEY_POLLER O64 - Services: CurCS - ATI Smart (ATI Smart) - LEGACY_ATI_SMART O64 - Services: CurCS - Audio Windows (AudioSrv) - LEGACY_AUDIOSRV O64 - Services: CurCS - avfwot (avfwot) - LEGACY_AVFWOT O64 - Services: CurCS - avgio (avgio) - LEGACY_AVGIO O64 - Services: CurCS - avgntflt (avgntflt) - LEGACY_AVGNTFLT O64 - Services: CurCS - avipbb (avipbb) - LEGACY_AVIPBB O64 - Services: CurCS - Beep (Beep) - LEGACY_BEEP O64 - Services: CurCS - Service de transfert intelligent en arrière-plan (BITS) - LEGACY_BITS O64 - Services: CurCS - BlueSoleil Hid Service (BlueSoleil Hid Service) - LEGACY_BLUESOLEIL_HID_SERVICE O64 - Services: CurCS - Explorateur d'ordinateur (Browser) - LEGACY_BROWSER O64 - Services: CurCS - Bluetooth Support Service (BthServ) - LEGACY_BTHSERV O64 - Services: CurCS - Bluetooth Network Filter (BTNetFilter) - LEGACY_BTNETFILTER O64 - Services: CurCS - cdfs (cdfs) - LEGACY_CDFS O64 - Services: CurCS - .NET Runtime Optimization Service v2.0.50727_X86 (clr_optimization_v2.0.50727_32) - LEGACY_CLR_OPTIMIZATION_V2.0.50727_32 O64 - Services: CurCS - Application système COM+ (COMSysApp) - LEGACY_COMSYSAPP O64 - Services: CurCS - Services de cryptographie (CryptSvc) - LEGACY_CRYPTSVC O64 - Services: CurCS - Lanceur de processus serveur DCOM (DcomLaunch) - LEGACY_DCOMLAUNCH O64 - Services: CurCS - Client DHCP (Dhcp) - LEGACY_DHCP O64 - Services: CurCS - Service d'administration du Gestionnaire de disque logique (dmadmin) - LEGACY_DMADMIN O64 - Services: CurCS - dmboot (dmboot) - LEGACY_DMBOOT O64 - Services: CurCS - dmload (dmload) - LEGACY_DMLOAD O64 - Services: CurCS - Gestionnaire de disque logique (dmserver) - LEGACY_DMSERVER O64 - Services: CurCS - Client DNS (Dnscache) - LEGACY_DNSCACHE O64 - Services: CurCS - driverhardwarev2 (driverhardwarev2) - LEGACY_DRIVERHARDWAREV2 O64 - Services: CurCS - No object (No service) - LEGACY_ELBYCDIO O64 - Services: CurCS - EpsonBidirectionalService (EpsonBidirectionalService) - LEGACY_EPSONBIDIRECTIONALSERVICE O64 - Services: CurCS - EPSON Printer Status Agent2 (EPSONStatusAgent2) - LEGACY_EPSONSTATUSAGENT2 O64 - Services: CurCS - Service de rapport d'erreurs (ERSvc) - LEGACY_ERSVC O64 - Services: CurCS - Système d'événements de COM+ (EventSystem) - LEGACY_EVENTSYSTEM O64 - Services: CurCS - fastfat (fastfat) - LEGACY_FASTFAT O64 - Services: CurCS - Fips (Fips) - LEGACY_FIPS O64 - Services: CurCS - FltMgr (FltMgr) - LEGACY_FLTMGR O64 - Services: CurCS - Windows Presentation Foundation Font Cache 3.0.0.0 (FontCache3.0.0.0) - LEGACY_FONTCACHE3.0.0.0 O64 - Services: CurCS - Freenet 0.7 darknet-8888 (freenet-darknet-8888) - LEGACY_FREENET-DARKNET-8888 O64 - Services: CurCS - FreshIO (FreshIO) - LEGACY_FRESHIO O64 - Services: CurCS - Fs_Rec (Fs_Rec) - LEGACY_FS_REC O64 - Services: CurCS - Classificateur de paquets générique (Gpc) - LEGACY_GPC O64 - Services: CurCS - Google Software Updater (gusvc) - LEGACY_GUSVC O64 - Services: CurCS - Aide et support (helpsvc) - LEGACY_HELPSVC O64 - Services: CurCS - HTTP (HTTP) - LEGACY_HTTP O64 - Services: CurCS - Service COM de gravage de CD IMAPI (ImapiService) - LEGACY_IMAPISERVICE O64 - Services: CurCS - Traducteur d'adresses réseau IP (IpNat) - LEGACY_IPNAT O64 - Services: CurCS - Service de l’iPod (iPod Service) - LEGACY_IPOD_SERVICE O64 - Services: CurCS - Pilote IPSEC (IPSec) - LEGACY_IPSEC O64 - Services: CurCS - Java Quick Starter (JavaQuickStarterService) - LEGACY_JAVAQUICKSTARTERSERVICE O64 - Services: CurCS - KLIF (KLIF) - LEGACY_KLIF O64 - Services: CurCS - ksecdd (ksecdd) - LEGACY_KSECDD O64 - Services: CurCS - Serveur (lanmanserver) - LEGACY_LANMANSERVER O64 - Services: CurCS - Station de travail (LanmanWorkstation) - LEGACY_LANMANWORKSTATION O64 - Services: CurCS - Lbd (Lbd) - LEGACY_LBD O64 - Services: CurCS - Assistance TCP/IP NetBIOS (LmHosts) - LEGACY_LMHOSTS O64 - Services: CurCS - Ma-Config Service (maconfservice) - LEGACY_MACONFSERVICE O64 - Services: CurCS - Macromedia Licensing Service (Macromedia Licensing Service) - LEGACY_MACROMEDIA_LICENSING_SERVICE O64 - Services: CurCS - mnmdd (mnmdd) - LEGACY_MNMDD O64 - Services: CurCS - mountmgr (mountmgr) - LEGACY_MOUNTMGR O64 - Services: CurCS - Redirecteur client WebDav (MRxDAV) - LEGACY_MRXDAV O64 - Services: CurCS - MRXSMB (MRxSmb) - LEGACY_MRXSMB O64 - Services: CurCS - Distributed Transaction Coordinator (MSDTC) - LEGACY_MSDTC O64 - Services: CurCS - Msfs (Msfs) - LEGACY_MSFS O64 - Services: CurCS - Windows Installer (MSIServer) - LEGACY_MSISERVER O64 - Services: CurCS - Mtlstrm (Mtlstrm) - LEGACY_MTLSTRM O64 - Services: CurCS - Mup (Mup) - LEGACY_MUP O64 - Services: CurCS - NAS PM Service (NasPmService) - LEGACY_NASPMSERVICE O64 - Services: CurCS - Pilote système NDIS (NDIS) - LEGACY_NDIS O64 - Services: CurCS - Pilote TAPI NDIS d'accès distant (NdisTapi) - LEGACY_NDISTAPI O64 - Services: CurCS - NDIS mode utilisateur E/S Protocole (Ndisuio) - LEGACY_NDISUIO O64 - Services: CurCS - NDProxy (NDProxy) - LEGACY_NDPROXY O64 - Services: CurCS - Interface NetBIOS (NetBIOS) - LEGACY_NETBIOS O64 - Services: CurCS - NetBIOS sur TCP/IP (NetBT) - LEGACY_NETBT O64 - Services: CurCS - Connexions réseau (Netman) - LEGACY_NETMAN O64 - Services: CurCS - NLA (Network Location Awareness) (Nla) - LEGACY_NLA O64 - Services: CurCS - NMSAccessU (NMSAccessU) - LEGACY_NMSACCESSU O64 - Services: CurCS - Npfs (Npfs) - LEGACY_NPFS O64 - Services: CurCS - ntfs (ntfs) - LEGACY_NTFS O64 - Services: CurCS - Stockage amovible (NtmsSvc) - LEGACY_NTMSSVC O64 - Services: CurCS - Null (Null) - LEGACY_NULL O64 - Services: CurCS - PartMgr (PartMgr) - LEGACY_PARTMGR O64 - Services: CurCS - ParVdm (ParVdm) - LEGACY_PARVDM O64 - Services: CurCS - pavboot (pavboot) - LEGACY_PAVBOOT O64 - Services: CurCS - PCIIde (PCIIde) - LEGACY_PCIIDE O64 - Services: CurCS - Services IPSEC (PolicyAgent) - LEGACY_POLICYAGENT O64 - Services: CurCS - Emplacement protégé (ProtectedStorage) - LEGACY_PROTECTEDSTORAGE O64 - Services: CurCS - Pilote de connexion automatique d'accès distant (RasAcd) - LEGACY_RASACD O64 - Services: CurCS - Gestionnaire de connexions d'accès distant (RasMan) - LEGACY_RASMAN O64 - Services: CurCS - Rdbss (Rdbss) - LEGACY_RDBSS O64 - Services: CurCS - RDPCDD (RDPCDD) - LEGACY_RDPCDD O64 - Services: CurCS - RDPNP (RDPNP) - LEGACY_RDPNP O64 - Services: CurCS - Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - LEGACY_RDSESSMGR O64 - Services: CurCS - RecAgent (RecAgent) - LEGACY_RECAGENT O64 - Services: CurCS - Accès à distance au Registre (RemoteRegistry) - LEGACY_REMOTEREGISTRY O64 - Services: CurCS - Appel de procédure distante (RPC) (RpcSs) - LEGACY_RPCSS O64 - Services: CurCS - Gestionnaire de comptes de sécurité (SamSs) - LEGACY_SAMSS O64 - Services: CurCS - Planificateur de tâches (Schedule) - LEGACY_SCHEDULE O64 - Services: CurCS - SeaPort (SeaPort) - LEGACY_SEAPORT O64 - Services: CurCS - Connexion secondaire (seclogon) - LEGACY_SECLOGON O64 - Services: CurCS - Notification d'événement système (SENS) - LEGACY_SENS O64 - Services: CurCS - Pare-feu Windows / Partage de connexion Internet (SharedAccess) - LEGACY_SHAREDACCESS O64 - Services: CurCS - Détection matériel noyau (ShellHWDetection) - LEGACY_SHELLHWDETECTION O64 - Services: CurCS - SlNtHal (SlNtHal) - LEGACY_SLNTHAL O64 - Services: CurCS - SmartLinkService (SLService) - LEGACY_SLSERVICE O64 - Services: CurCS - SlWdmSup (SlWdmSup) - LEGACY_SLWDMSUP O64 - Services: CurCS - No object (No service) - LEGACY_SPEEDFAN O64 - Services: CurCS - Spouleur d'impression (Spooler) - LEGACY_SPOOLER O64 - Services: CurCS - sptd (sptd) - LEGACY_SPTD O64 - Services: CurCS - Spyware Terminator Driver 2 (sp_rsdrv2) - LEGACY_SP_RSDRV2 O64 - Services: CurCS - Spyware Terminator Realtime Shield Service (sp_rssrv) - LEGACY_SP_RSSRV O64 - Services: CurCS - Pilote de filtre de restauration système (sr) - LEGACY_SR O64 - Services: CurCS - srescan (srescan) - LEGACY_SRESCAN O64 - Services: CurCS - Service de restauration système (srservice) - LEGACY_SRSERVICE O64 - Services: CurCS - Srv (Srv) - LEGACY_SRV O64 - Services: CurCS - Service de découvertes SSDP (SSDPSRV) - LEGACY_SSDPSRV O64 - Services: CurCS - ssmdrv (ssmdrv) - LEGACY_SSMDRV O64 - Services: CurCS - Acquisition d'image Windows (WIA) (stisvc) - LEGACY_STISVC O64 - Services: CurCS - Journaux et alertes de performance (SysmonLog) - LEGACY_SYSMONLOG O64 - Services: CurCS - Téléphonie (TapiSrv) - LEGACY_TAPISRV O64 - Services: CurCS - Pilote du protocole TCP/IP (Tcpip) - LEGACY_TCPIP O64 - Services: CurCS - Services Terminal Server (TermService) - LEGACY_TERMSERVICE O64 - Services: CurCS - Thèmes (Themes) - LEGACY_THEMES O64 - Services: CurCS - TomTomHOMEService (TomTomHOMEService) - LEGACY_TOMTOMHOMESERVICE O64 - Services: CurCS - Client de suivi de lien distribué (TrkWks) - LEGACY_TRKWKS O64 - Services: CurCS - Udfs (Udfs) - LEGACY_UDFS O64 - Services: CurCS - UnlockerDriver5 (UnlockerDriver5) - LEGACY_UNLOCKERDRIVER5 O64 - Services: CurCS - Hôte de périphérique universel Plug-and-Play (upnphost) - LEGACY_UPNPHOST O64 - Services: CurCS - vga (vga) - LEGACY_VGA O64 - Services: CurCS - VgaSave (VgaSave) - LEGACY_VGASAVE O64 - Services: CurCS - VolSnap (VolSnap) - LEGACY_VOLSNAP O64 - Services: CurCS - vsdatant (vsdatant) - LEGACY_VSDATANT O64 - Services: CurCS - TrueVector Internet Monitor (vsmon) - LEGACY_VSMON O64 - Services: CurCS - Horloge Windows (W32Time) - LEGACY_W32TIME O64 - Services: CurCS - Pilote ARP IP d'accès distant (Wanarp) - LEGACY_WANARP O64 - Services: CurCS - WebClient (WebClient) - LEGACY_WEBCLIENT O64 - Services: CurCS - Infrastructure de gestion Windows (winmgmt) - LEGACY_WINMGMT O64 - Services: CurCS - Carte de performance WMI (WmiApSrv) - LEGACY_WMIAPSRV O64 - Services: CurCS - Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (WS2IFSL) - LEGACY_WS2IFSL O64 - Services: CurCS - Centre de sécurité (wscsvc) - LEGACY_WSCSVC O64 - Services: CurCS - Mises à jour automatiques (wuauserv) - LEGACY_WUAUSERV O64 - Services: CurCS - Configuration automatique sans fil (WZCSVC) - LEGACY_WZCSVC O64 - Services: CS003 - AFD (AFD) - LEGACY_AFD O64 - Services: CS003 - Avertissement (Alerter) - LEGACY_ALERTER O64 - Services: CS003 - Service de la passerelle de la couche Application (ALG) - LEGACY_ALG O64 - Services: CS003 - Avira AntiVir Planificateur (AntiVirSchedulerService) - LEGACY_ANTIVIRSCHEDULERSERVICE O64 - Services: CS003 - Avira AntiVir Guard (AntiVirService) - LEGACY_ANTIVIRSERVICE O64 - Services: CS003 - Apple Mobile Device (Apple Mobile Device) - LEGACY_APPLE_MOBILE_DEVICE O64 - Services: CS003 - Gestion d'applications (AppMgmt) - LEGACY_APPMGMT O64 - Services: CS003 - Protocole client ARP 1394 (Arp1394) - LEGACY_ARP1394 O64 - Services: CS003 - Ati HotKey Poller (Ati HotKey Poller) - LEGACY_ATI_HOTKEY_POLLER O64 - Services: CS003 - ATI Smart (ATI Smart) - LEGACY_ATI_SMART O64 - Services: CS003 - Audio Windows (AudioSrv) - LEGACY_AUDIOSRV O64 - Services: CS003 - avfwot (avfwot) - LEGACY_AVFWOT O64 - Services: CS003 - avgio (avgio) - LEGACY_AVGIO O64 - Services: CS003 - avgntflt (avgntflt) - LEGACY_AVGNTFLT O64 - Services: CS003 - avipbb (avipbb) - LEGACY_AVIPBB O64 - Services: CS003 - Beep (Beep) - LEGACY_BEEP O64 - Services: CS003 - Service de transfert intelligent en arrière-plan (BITS) - LEGACY_BITS O64 - Services: CS003 - BlueSoleil Hid Service (BlueSoleil Hid Service) - LEGACY_BLUESOLEIL_HID_SERVICE O64 - Services: CS003 - Explorateur d'ordinateur (Browser) - LEGACY_BROWSER O64 - Services: CS003 - Bluetooth Support Service (BthServ) - LEGACY_BTHSERV O64 - Services: CS003 - Bluetooth Network Filter (BTNetFilter) - LEGACY_BTNETFILTER O64 - Services: CS003 - cdfs (cdfs) - LEGACY_CDFS O64 - Services: CS003 - .NET Runtime Optimization Service v2.0.50727_X86 (clr_optimization_v2.0.50727_32) - LEGACY_CLR_OPTIMIZATION_V2.0.50727_32 O64 - Services: CS003 - Application système COM+ (COMSysApp) - LEGACY_COMSYSAPP O64 - Services: CS003 - Services de cryptographie (CryptSvc) - LEGACY_CRYPTSVC O64 - Services: CS003 - Lanceur de processus serveur DCOM (DcomLaunch) - LEGACY_DCOMLAUNCH O64 - Services: CS003 - Client DHCP (Dhcp) - LEGACY_DHCP O64 - Services: CS003 - Service d'administration du Gestionnaire de disque logique (dmadmin) - LEGACY_DMADMIN O64 - Services: CS003 - dmboot (dmboot) - LEGACY_DMBOOT O64 - Services: CS003 - dmload (dmload) - LEGACY_DMLOAD O64 - Services: CS003 - Gestionnaire de disque logique (dmserver) - LEGACY_DMSERVER O64 - Services: CS003 - Client DNS (Dnscache) - LEGACY_DNSCACHE O64 - Services: CS003 - driverhardwarev2 (driverhardwarev2) - LEGACY_DRIVERHARDWAREV2 O64 - Services: CS003 - No object (No service) - LEGACY_ELBYCDIO O64 - Services: CS003 - EpsonBidirectionalService (EpsonBidirectionalService) - LEGACY_EPSONBIDIRECTIONALSERVICE O64 - Services: CS003 - EPSON Printer Status Agent2 (EPSONStatusAgent2) - LEGACY_EPSONSTATUSAGENT2 O64 - Services: CS003 - Service de rapport d'erreurs (ERSvc) - LEGACY_ERSVC O64 - Services: CS003 - Système d'événements de COM+ (EventSystem) - LEGACY_EVENTSYSTEM O64 - Services: CS003 - fastfat (fastfat) - LEGACY_FASTFAT O64 - Services: CS003 - Fips (Fips) - LEGACY_FIPS O64 - Services: CS003 - FltMgr (FltMgr) - LEGACY_FLTMGR O64 - Services: CS003 - Windows Presentation Foundation Font Cache 3.0.0.0 (FontCache3.0.0.0) - LEGACY_FONTCACHE3.0.0.0 O64 - Services: CS003 - Freenet 0.7 darknet-8888 (freenet-darknet-8888) - LEGACY_FREENET-DARKNET-8888 O64 - Services: CS003 - FreshIO (FreshIO) - LEGACY_FRESHIO O64 - Services: CS003 - Fs_Rec (Fs_Rec) - LEGACY_FS_REC O64 - Services: CS003 - Classificateur de paquets générique (Gpc) - LEGACY_GPC O64 - Services: CS003 - Google Software Updater (gusvc) - LEGACY_GUSVC O64 - Services: CS003 - Aide et support (helpsvc) - LEGACY_HELPSVC O64 - Services: CS003 - HTTP (HTTP) - LEGACY_HTTP O64 - Services: CS003 - Service COM de gravage de CD IMAPI (ImapiService) - LEGACY_IMAPISERVICE O64 - Services: CS003 - Traducteur d'adresses réseau IP (IpNat) - LEGACY_IPNAT O64 - Services: CS003 - Service de l’iPod (iPod Service) - LEGACY_IPOD_SERVICE O64 - Services: CS003 - Pilote IPSEC (IPSec) - LEGACY_IPSEC O64 - Services: CS003 - Java Quick Starter (JavaQuickStarterService) - LEGACY_JAVAQUICKSTARTERSERVICE O64 - Services: CS003 - KLIF (KLIF) - LEGACY_KLIF O64 - Services: CS003 - ksecdd (ksecdd) - LEGACY_KSECDD O64 - Services: CS003 - Serveur (lanmanserver) - LEGACY_LANMANSERVER O64 - Services: CS003 - Station de travail (LanmanWorkstation) - LEGACY_LANMANWORKSTATION O64 - Services: CS003 - Lbd (Lbd) - LEGACY_LBD O64 - Services: CS003 - Assistance TCP/IP NetBIOS (LmHosts) - LEGACY_LMHOSTS O64 - Services: CS003 - Ma-Config Service (maconfservice) - LEGACY_MACONFSERVICE O64 - Services: CS003 - Macromedia Licensing Service (Macromedia Licensing Service) - LEGACY_MACROMEDIA_LICENSING_SERVICE O64 - Services: CS003 - mnmdd (mnmdd) - LEGACY_MNMDD O64 - Services: CS003 - mountmgr (mountmgr) - LEGACY_MOUNTMGR O64 - Services: CS003 - Redirecteur client WebDav (MRxDAV) - LEGACY_MRXDAV O64 - Services: CS003 - MRXSMB (MRxSmb) - LEGACY_MRXSMB O64 - Services: CS003 - Distributed Transaction Coordinator (MSDTC) - LEGACY_MSDTC O64 - Services: CS003 - Msfs (Msfs) - LEGACY_MSFS O64 - Services: CS003 - Windows Installer (MSIServer) - LEGACY_MSISERVER O64 - Services: CS003 - Mtlstrm (Mtlstrm) - LEGACY_MTLSTRM O64 - Services: CS003 - Mup (Mup) - LEGACY_MUP O64 - Services: CS003 - NAS PM Service (NasPmService) - LEGACY_NASPMSERVICE O64 - Services: CS003 - Pilote système NDIS (NDIS) - LEGACY_NDIS O64 - Services: CS003 - Pilote TAPI NDIS d'accès distant (NdisTapi) - LEGACY_NDISTAPI O64 - Services: CS003 - NDIS mode utilisateur E/S Protocole (Ndisuio) - LEGACY_NDISUIO O64 - Services: CS003 - NDProxy (NDProxy) - LEGACY_NDPROXY O64 - Services: CS003 - Interface NetBIOS (NetBIOS) - LEGACY_NETBIOS O64 - Services: CS003 - NetBIOS sur TCP/IP (NetBT) - LEGACY_NETBT O64 - Services: CS003 - Connexions réseau (Netman) - LEGACY_NETMAN O64 - Services: CS003 - NLA (Network Location Awareness) (Nla) - LEGACY_NLA O64 - Services: CS003 - NMSAccessU (NMSAccessU) - LEGACY_NMSACCESSU O64 - Services: CS003 - Npfs (Npfs) - LEGACY_NPFS O64 - Services: CS003 - ntfs (ntfs) - LEGACY_NTFS O64 - Services: CS003 - Stockage amovible (NtmsSvc) - LEGACY_NTMSSVC O64 - Services: CS003 - Null (Null) - LEGACY_NULL O64 - Services: CS003 - PartMgr (PartMgr) - LEGACY_PARTMGR O64 - Services: CS003 - ParVdm (ParVdm) - LEGACY_PARVDM O64 - Services: CS003 - pavboot (pavboot) - LEGACY_PAVBOOT O64 - Services: CS003 - PCIIde (PCIIde) - LEGACY_PCIIDE O64 - Services: CS003 - Services IPSEC (PolicyAgent) - LEGACY_POLICYAGENT O64 - Services: CS003 - Emplacement protégé (ProtectedStorage) - LEGACY_PROTECTEDSTORAGE O64 - Services: CS003 - Pilote de connexion automatique d'accès distant (RasAcd) - LEGACY_RASACD O64 - Services: CS003 - Gestionnaire de connexions d'accès distant (RasMan) - LEGACY_RASMAN O64 - Services: CS003 - Rdbss (Rdbss) - LEGACY_RDBSS O64 - Services: CS003 - RDPCDD (RDPCDD) - LEGACY_RDPCDD O64 - Services: CS003 - RDPNP (RDPNP) - LEGACY_RDPNP O64 - Services: CS003 - Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - LEGACY_RDSESSMGR O64 - Services: CS003 - RecAgent (RecAgent) - LEGACY_RECAGENT O64 - Services: CS003 - Accès à distance au Registre (RemoteRegistry) - LEGACY_REMOTEREGISTRY O64 - Services: CS003 - Appel de procédure distante (RPC) (RpcSs) - LEGACY_RPCSS O64 - Services: CS003 - Gestionnaire de comptes de sécurité (SamSs) - LEGACY_SAMSS O64 - Services: CS003 - Planificateur de tâches (Schedule) - LEGACY_SCHEDULE O64 - Services: CS003 - SeaPort (SeaPort) - LEGACY_SEAPORT O64 - Services: CS003 - Connexion secondaire (seclogon) - LEGACY_SECLOGON O64 - Services: CS003 - Notification d'événement système (SENS) - LEGACY_SENS O64 - Services: CS003 - Pare-feu Windows / Partage de connexion Internet (SharedAccess) - LEGACY_SHAREDACCESS O64 - Services: CS003 - Détection matériel noyau (ShellHWDetection) - LEGACY_SHELLHWDETECTION O64 - Services: CS003 - SlNtHal (SlNtHal) - LEGACY_SLNTHAL O64 - Services: CS003 - SmartLinkService (SLService) - LEGACY_SLSERVICE O64 - Services: CS003 - SlWdmSup (SlWdmSup) - LEGACY_SLWDMSUP O64 - Services: CS003 - No object (No service) - LEGACY_SPEEDFAN O64 - Services: CS003 - Spouleur d'impression (Spooler) - LEGACY_SPOOLER O64 - Services: CS003 - sptd (sptd) - LEGACY_SPTD O64 - Services: CS003 - Spyware Terminator Driver 2 (sp_rsdrv2) - LEGACY_SP_RSDRV2 O64 - Services: CS003 - Spyware Terminator Realtime Shield Service (sp_rssrv) - LEGACY_SP_RSSRV O64 - Services: CS003 - Pilote de filtre de restauration système (sr) - LEGACY_SR O64 - Services: CS003 - srescan (srescan) - LEGACY_SRESCAN O64 - Services: CS003 - Service de restauration système (srservice) - LEGACY_SRSERVICE O64 - Services: CS003 - Srv (Srv) - LEGACY_SRV O64 - Services: CS003 - Service de découvertes SSDP (SSDPSRV) - LEGACY_SSDPSRV O64 - Services: CS003 - ssmdrv (ssmdrv) - LEGACY_SSMDRV O64 - Services: CS003 - Acquisition d'image Windows (WIA) (stisvc) - LEGACY_STISVC O64 - Services: CS003 - Journaux et alertes de performance (SysmonLog) - LEGACY_SYSMONLOG O64 - Services: CS003 - Téléphonie (TapiSrv) - LEGACY_TAPISRV O64 - Services: CS003 - Pilote du protocole TCP/IP (Tcpip) - LEGACY_TCPIP O64 - Services: CS003 - Services Terminal Server (TermService) - LEGACY_TERMSERVICE O64 - Services: CS003 - Thèmes (Themes) - LEGACY_THEMES O64 - Services: CS003 - TomTomHOMEService (TomTomHOMEService) - LEGACY_TOMTOMHOMESERVICE O64 - Services: CS003 - Client de suivi de lien distribué (TrkWks) - LEGACY_TRKWKS O64 - Services: CS003 - Udfs (Udfs) - LEGACY_UDFS O64 - Services: CS003 - UnlockerDriver5 (UnlockerDriver5) - LEGACY_UNLOCKERDRIVER5 O64 - Services: CS003 - Hôte de périphérique universel Plug-and-Play (upnphost) - LEGACY_UPNPHOST O64 - Services: CS003 - vga (vga) - LEGACY_VGA O64 - Services: CS003 - VgaSave (VgaSave) - LEGACY_VGASAVE O64 - Services: CS003 - VolSnap (VolSnap) - LEGACY_VOLSNAP O64 - Services: CS003 - vsdatant (vsdatant) - LEGACY_VSDATANT O64 - Services: CS003 - TrueVector Internet Monitor (vsmon) - LEGACY_VSMON O64 - Services: CS003 - Horloge Windows (W32Time) - LEGACY_W32TIME O64 - Services: CS003 - Pilote ARP IP d'accès distant (Wanarp) - LEGACY_WANARP O64 - Services: CS003 - WebClient (WebClient) - LEGACY_WEBCLIENT O64 - Services: CS003 - Infrastructure de gestion Windows (winmgmt) - LEGACY_WINMGMT O64 - Services: CS003 - Carte de performance WMI (WmiApSrv) - LEGACY_WMIAPSRV O64 - Services: CS003 - Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (WS2IFSL) - LEGACY_WS2IFSL O64 - Services: CS003 - Centre de sécurité (wscsvc) - LEGACY_WSCSVC O64 - Services: CS003 - Mises à jour automatiques (wuauserv) - LEGACY_WUAUSERV O64 - Services: CS003 - Configuration automatique sans fil (WZCSVC) - LEGACY_WZCSVC End of the scan: 1337 lines Run by Administrateur at 19/11/2009 08:27:59 Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html Platform : Microsoft Windows XP (5.1.2600) Service Pack 3 MSIE: Internet Explorer v7.0.5730.13 MFIE: Mozilla Firefox (3.5.5) Total RAM: 1279 MB (39% free) System drive C: has 6 GB (19%) free of 29 GB ---\\ Processus lancés C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Unlocker\UnlockerAssistant.exe C:\Program Files\Cobian Backup 9\Cobian.exe C:\Program Files\Spamihilator\spamihilator.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\ati2sgag.exe C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe C:\Program Files\Fichiers communs\EPSON\eEBAPI\eEBSVC.exe C:\Program Files\Fichiers communs\EPSON\eEBAPI\SAgent2.exe C:\WINDOWS\system32\services.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\BUFFALO\NASNAVI\nassvc.exe0 C:\Program Files\CDBurnerXP\NMSAccessU.exe C:\WINDOWS\system32\lsass.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe slserv.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe ---\\ Plugin du navigateur Opera (P1) P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\npdsplay.dll P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\NPSWF32.dll P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\NPSWF32_FlashUtil.exe P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\npwmsdrm.dll ---\\ Pages de démarrage d'Internet Explorer (R0) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?hl=fr R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 ---\\ Pages de recherche d'Internet Explorer (R1) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm ---\\ Internet Explorer URLSearchHook (R3) R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - ---\\ Applications démarrées automatiquement par le registre (O4) O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [ZoneAlarm Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe O4 - HKLM\..\Run: [unlockerAssistant] C:\Program Files\Unlocker\UnlockerAssistant.exe O4 - HKLM\..\Run: [Cobian Backup 9] C:\Program Files\Cobian Backup 9\Cobian.exe O4 - HKLM\..\Run: [spamihilator] C:\Program Files\Spamihilator\spamihilator.exe O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKCU\..\Run: [FreeGo] C:/Program Files/FreeGo/FreeGo/FreeGo.exe O4 - HKCU\..\Run: [TomTomHOME.exe] C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKLM\..\policies\Explorer: [HonorAutoRunSetting] Data=1 O4 - Global Startup: Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8) O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll,201 ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File - C:\WINDOWS\system32\mswsock.dll O10 - WLSP:\000000000002\Winsock LSP File - C:\WINDOWS\system32\winrnr.dll O10 - WLSP:\000000000003\Winsock LSP File - C:\WINDOWS\system32\mswsock.dll O10 - WLSP:\000000000004\Winsock LSP File - C:\WINDOWS\system32\wshbth.dll ---\\ Objets ActiveX (Downloaded Program Files)(O16) O16 - DPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} (JordanUploader Class) - http://photoservice.fujicolor.eu/ips-opdat...dan-canvasx.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.zebulon.fr/scan8/oscan8.cab O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://lulubcal.spaces.live.com/PhotoUpload/MsnPUpld.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/5m/vir...5/installer.exe ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{195A17E1-699A-471A-AD24-DB108DF5D1D5}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CCS\Services\Tcpip\..\{80CC6918-064F-47CC-B70C-1D7EB9E50FFD}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{195A17E1-699A-471A-AD24-DB108DF5D1D5}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{80CC6918-064F-47CC-B70C-1D7EB9E50FFD}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS2\Services\Tcpip\..\{80CC6918-064F-47CC-B70C-1D7EB9E50FFD}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS3\Services\Tcpip\..\{195A17E1-699A-471A-AD24-DB108DF5D1D5}: NameServer = 212.27.40.240,212.27.40.241 O17 - HKLM\System\CS3\Services\Tcpip\..\{80CC6918-064F-47CC-B70C-1D7EB9E50FFD}: NameServer = 212.27.40.240,212.27.40.241 ---\\ Protocole additionnel et piratage de protocole (O18) O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\Windows\system32\mshtml.dll O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\Windows\system32\SHELL32.dll ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: AtiExtEvent - C:\WINDOWS\System32\Ati2evxx.dll O20 - Winlogon Notify: dimsntfy - C:\WINDOWS\System32\dimsntfy.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\System32\WgaLogon.dll ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSODL) (O21) O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - %SystemRoot%\system32\SHELL32.dll O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - %SystemRoot%\system32\SHELL32.dll O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22) O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} - %SystemRoot%\system32\browseui.dll ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: (Ati HotKey Poller) - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart (ATI Smart) - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: BlueSoleil Hid Service (BlueSoleil Hid Service) - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe O23 - Service: EpsonBidirectionalService (EpsonBidirectionalService) - C:\Program Files\Fichiers communs\EPSON\eEBAPI\eEBSVC.exe O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - C:\Program Files\Fichiers communs\EPSON\eEBAPI\SAgent2.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - C:\Program Files\Java\jre6\bin\jqs.exe -service -config C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf O23 - Service: NAS PM Service (NasPmService) - C:\Program Files\BUFFALO\NASNAVI\nassvc.exe -Service_Execute -dcyc=60 -dto=3 -dluc=0 -dmin=1 -dmax=60 -dflc=0 -apc=0 -log=0 -pm=1 -pall=1 -phttp=0 -pbc=0 -ppro=0 -pcyc=0 -pmin=1 -pmax=60 -pflc=0 O23 - Service: NMSAccessU (NMSAccessU) - C:\Program Files\CDBurnerXP\NMSAccessU.exe O23 - Service: SeaPort (SeaPort) - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe O23 - Service: SmartLinkService (SLService) - slserv.exe O23 - Service: Spouleur d'impression (Spooler) - C:\WINDOWS\system32\spoolsv.exe O23 - Service: TomTomHOMEService (TomTomHOMEService) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: TrueVector Internet Monitor (vsmon) - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -service ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: IE7 Uninstall Stub - <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigIE O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP O40 - ASIC: Personnalisation du navigateur - >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP O40 - ASIC: Outlook Express - >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigOE O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - (not file) O40 - ASIC: Rendu VML (Vector Graphics Rendering) - {10072CEC-8CC1-11D1-986E-00A0C955B42F} - (not file) O40 - ASIC: Microsoft NetShow Player - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - C:\WINDOWS\system32\wmpdxm.dll O40 - ASIC: Microsoft Windows Media Player 6.4 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\system32\wmpdxm.dll O40 - ASIC: DirectAnimation - {283807B5-2C60-11D0-A31D-00AA00B92C03} - (not file) O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\WINDOWS\system32\regsvr32.exe /s /n /i:/UserInstall C:\WINDOWS\system32\themeui.dll O40 - ASIC: Liaison de données Dynamic HTML pour Java - {36f8ec70-c29a-11d1-b5c7-0000f8051515} - (not file) O40 - ASIC: Offline Browsing Pack - {3af36230-a269-11d1-b5bf-0000f8051515} - (not file) O40 - ASIC: Uniscribe - {3bf42070-b3b1-11d1-b5c5-0000f8051515} - (not file) O40 - ASIC: Création avancée - {4278c270-a269-11d1-b5bf-0000f8051515} - (not file) O40 - ASIC: Microsoft Outlook Express 6 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT O40 - ASIC: DirectShow - {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - (not file) O40 - ASIC: DirectDrawEx - {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - (not file) O40 - ASIC: Internet Explorer Help - {45ea75a0-a269-11d1-b5bf-0000f8051515} - (not file) O40 - ASIC: Classes Java DirectAnimation - {4f216970-c90c-11d1-b5c7-0000f8051515} - (not file) O40 - ASIC: Microsoft Windows Script 5.6 - {4f645220-306d-11d2-995d-00c04f98bbc9} - (not file) O40 - ASIC: Mise à jour de sécurité pour Windows XP (KB923789) - {5056b317-8d4c-43ee-8543-b9d1e234b8f4} - (not file) O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser O40 - ASIC: Internet Explorer Setup Tools - {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - (not file) O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} - (not file) O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub O40 - ASIC: MSN Site Access - {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - (not file) O40 - ASIC: .NET Framework - {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - (not file) O40 - ASIC: Carnet d'adresses 6 - {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install O40 - ASIC: Mise à jour du Bureau Windows - {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install O40 - ASIC: Dynamic HTML Data Binding - {9381D8F2-0288-11D0-9501-00AA00B911A5} - (not file) O40 - ASIC: .NET Framework - {B508B3F1-A24A-32C0-B310-85786919EF28} - (not file) O40 - ASIC: .NET Framework - {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - (not file) O40 - ASIC: Internet Explorer Core Fonts - {C9E9A340-D1F1-11D0-821E-444553540600} - (not file) O40 - ASIC: Planificateur de tâches - {CC2A9BA0-3BDD-11D0-821E-444553540000} - (not file) O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11cf-96B8-444553540000} - C:\WINDOWS\system32\Macromed\Flash\Flash10b.ocx O40 - ASIC: HTML Help - {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - (not file) O40 - ASIC: Active Directory Service Interface - {E92B03AB-B707-11d2-9CBD-0000F87A369E} - (not file) ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: AFD (AFD) - C:\WINDOWS\System32\drivers\afd.sys O41 - Driver: avgio (avgio) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys O41 - Driver: avipbb (avipbb) - C:\WINDOWS\system32\DRIVERS\avipbb.sys O41 - Driver: Pilote de CD-ROM (Cdrom) - C:\WINDOWS\system32\DRIVERS\cdrom.sys O41 - Driver: Pilote pour clavier i8042 et souris sur port PS/2 (i8042prt) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys O41 - Driver: Pilote de filtre de gravure CD (Imapi) - C:\WINDOWS\system32\DRIVERS\imapi.sys O41 - Driver: Pilote de processeur Intel (intelppm) - C:\WINDOWS\system32\DRIVERS\intelppm.sys O41 - Driver: Pilote IPSEC (IPSec) - C:\WINDOWS\system32\DRIVERS\ipsec.sys O41 - Driver: Pilote de la classe Clavier (Kbdclass) - C:\WINDOWS\system32\DRIVERS\kbdclass.sys O41 - Driver: KLIF (KLIF) - C:\WINDOWS\system32\DRIVERS\klif.sys O41 - Driver: Pilote de la classe Souris (Mouclass) - C:\WINDOWS\system32\DRIVERS\mouclass.sys O41 - Driver: MRXSMB (MRxSmb) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys O41 - Driver: Interface NetBIOS (NetBIOS) - C:\WINDOWS\system32\DRIVERS\netbios.sys O41 - Driver: NetBIOS sur TCP/IP (NetBT) - C:\WINDOWS\system32\DRIVERS\netbt.sys O41 - Driver: Pilote de connexion automatique d'accès distant (RasAcd) - C:\WINDOWS\system32\DRIVERS\rasacd.sys O41 - Driver: Rdbss (Rdbss) - C:\WINDOWS\system32\DRIVERS\rdbss.sys O41 - Driver: (no object) (RDPCDD) - C:\WINDOWS\System32\DRIVERS\RDPCDD.sys O41 - Driver: Pilote de filtre de lecture digitale de CD audio (redbook) - C:\WINDOWS\system32\DRIVERS\redbook.sys O41 - Driver: Pilote de port série (Serial) - C:\WINDOWS\system32\DRIVERS\serial.sys O41 - Driver: ssmdrv (ssmdrv) - C:\WINDOWS\system32\DRIVERS\ssmdrv.sys O41 - Driver: Pilote du protocole TCP/IP (Tcpip) - C:\WINDOWS\system32\DRIVERS\tcpip.sys O41 - Driver: Pilote de périphérique terminal (TermDD) - C:\WINDOWS\system32\DRIVERS\termdd.sys O41 - Driver: Carte vidéo VGA. (VgaSave) - C:\WINDOWS\System32\drivers\vga.sys O41 - Driver: vsdatant (vsdatant) - C:\WINDOWS\System32\vsdatant.sys O41 - Driver: Spyware Terminator Driver 2 (sp_rsdrv2) - C:\WINDOWS\system32\drivers\sp_rsdrv2.sys O41 - Driver: (no object) (VgaSave) - C:\WINDOWS\System32\drivers\vga.sys ---\\ Logiciels installés (O42) O42 - Logiciel: 7-Zip 4.65 O42 - Logiciel: ATI Display Driver O42 - Logiciel: Abuledu - Devine 0.2 O42 - Logiciel: Adobe Flash Player 10 ActiveX O42 - Logiciel: Adobe Flash Player 10 Plugin O42 - Logiciel: Apple Mobile Device Support O42 - Logiciel: Assistant de connexion Windows Live O42 - Logiciel: Audacity 1.2.6 O42 - Logiciel: AusLogics Disk Defrag O42 - Logiciel: AviSynth 2.5 O42 - Logiciel: Avira AntiVir Personal - Free Antivirus O42 - Logiciel: BUFFALO NAS Navigator O42 - Logiciel: Big City Adventure New York 1.00 O42 - Logiciel: Bing Maps 3D O42 - Logiciel: BlueSoleil O42 - Logiciel: CCleaner (remove only) O42 - Logiciel: CDBurnerXP O42 - Logiciel: Choice Guard O42 - Logiciel: Cobian Backup 9 O42 - Logiciel: CutePDF Writer 2.7 O42 - Logiciel: DVD Flick 1.3.0.7 O42 - Logiciel: DVD Shrink 3.2 O42 - Logiciel: Dia (supprimer uniquement) O42 - Logiciel: DivX Converter O42 - Logiciel: DivX Player O42 - Logiciel: DivX Web Player O42 - Logiciel: EPSON Copy Utility O42 - Logiciel: EPSON Logiciel imprimante O42 - Logiciel: EPSON Photo Print O42 - Logiciel: EPSON Smart Panel O42 - Logiciel: EPSON TWAIN 5 O42 - Logiciel: EasyCleaner O42 - Logiciel: EasyPHP 2.0b1 O42 - Logiciel: Extension de Windows Live Toolbar (Windows Live Toolbar) O42 - Logiciel: FileZilla Client 3.2.8.1 O42 - Logiciel: Foxit Reader O42 - Logiciel: FreeGo version 4 O42 - Logiciel: Freenet 0.7.5 O42 - Logiciel: GLtron version 0.70 O42 - Logiciel: Galerie de photos Windows Live O42 - Logiciel: HomePlayer 1.5.8a O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) O42 - Logiciel: IKEA Home Planner O42 - Logiciel: InfraRecorder O42 - Logiciel: Inkscape 0.46 O42 - Logiciel: Installation Windows Live O42 - Logiciel: Java 6 Update 15 O42 - Logiciel: Java 6 Update 4 O42 - Logiciel: Java 6 Update 7 O42 - Logiciel: Junk Mail filter update O42 - Logiciel: K-Lite Mega Codec Pack 4.3.4 O42 - Logiciel: KC Softwares SUMo O42 - Logiciel: KompoZer 0.7.10 (supprimer uniquement) O42 - Logiciel: La Marmite du Chef 6.4.1 O42 - Logiciel: Lecteur Windows Media 11 O42 - Logiciel: Logiciel QuickCam de Logitech O42 - Logiciel: Look@LAN 2.50 Build 35 O42 - Logiciel: MSVCRT O42 - Logiciel: MSXML 4.0 SP2 (KB936181) O42 - Logiciel: MSXML 4.0 SP2 (KB954430) O42 - Logiciel: Ma-Config.com O42 - Logiciel: Menus intelligents (Windows Live Toolbar) O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 2 O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 2 O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 O42 - Logiciel: Microsoft Office 2000 SR-1 Professional O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (English) O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] O42 - Logiciel: Microsoft Search Enhancement Pack O42 - Logiciel: Microsoft Silverlight O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 O42 - Logiciel: Mozilla Firefox (3.5.5) O42 - Logiciel: Navman F Series Connection Pack O42 - Logiciel: Navman F20 Service Pack O42 - Logiciel: Ogg Codecs 0.81.15562 O42 - Logiciel: OpenOffice.org 3.1 O42 - Logiciel: Opera 10.00 O42 - Logiciel: Outil de téléchargement Windows Live O42 - Logiciel: PhotoFiltre O42 - Logiciel: Picasa 3 O42 - Logiciel: Programme de gestion Camera de Logitech® O42 - Logiciel: QuickTime O42 - Logiciel: REALTEK GbE & FE Ethernet PCI NIC Driver O42 - Logiciel: Recuva (remove only) O42 - Logiciel: Revo Uninstaller 1.83 O42 - Logiciel: Romance of Rome O42 - Logiciel: ScanToWeb O42 - Logiciel: Scribus 1.3.3.12 O42 - Logiciel: Search Settings 1.2 O42 - Logiciel: Security Update for CAPICOM (KB931906) O42 - Logiciel: Segoe UI O42 - Logiciel: Simple Sudoku 4.2 O42 - Logiciel: Spamihilator O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 9 O42 - Logiciel: Spybot - Search & Destroy O42 - Logiciel: Surligneur (Windows Live Toolbar) O42 - Logiciel: The Return of Monte Cristo O42 - Logiciel: TomTom HOME 2.7.2.1825 O42 - Logiciel: TomTom HOME Visual Studio Merge Modules O42 - Logiciel: Unlocker 1.8.7 O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) O42 - Logiciel: VDownloader 0.77 O42 - Logiciel: VLC media player 1.0.1 O42 - Logiciel: Visionneuse Journal Windows Microsoft O42 - Logiciel: Visual C++ 2008 x86 Runtime - (v9.0.30729) O42 - Logiciel: Visual C++ 2008 x86 Runtime - v9.0.30729.01 O42 - Logiciel: Visual C++ CRT 9.0 O42 - Logiciel: Visual C++ CRT 9.0 SP1 O42 - Logiciel: VobSub 2.23 O42 - Logiciel: Vuze O42 - Logiciel: WinHTTrack Website Copier 3.43 O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130) O42 - Logiciel: Windows Internet Explorer 7 O42 - Logiciel: Windows Live Call O42 - Logiciel: Windows Live Communications Platform O42 - Logiciel: Windows Live Favorites pour Windows Live Toolbar O42 - Logiciel: Windows Live Mail O42 - Logiciel: Windows Live Messenger O42 - Logiciel: Windows Live OneCare safety scanner O42 - Logiciel: Windows Live Sync O42 - Logiciel: Windows Live Toolbar O42 - Logiciel: Windows Live Writer O42 - Logiciel: Windows Media Format 11 runtime O42 - Logiciel: Windows Media Player Firefox Plugin O42 - Logiciel: XnView 1.96.1 O42 - Logiciel: Xvid 1.2.2 O42 - Logiciel: ZebHelpProcess 2.34 O42 - Logiciel: ZoneAlarm O42 - Logiciel: adsl TV O42 - Logiciel: iTunes O42 - Logiciel: nLite 1.4.5 ---\\ Contenu des dossiers Fichiers Communs (O43) O43 - CFD:Common File Directory ----D- C:\Program Files\7-Zip O43 - CFD:Common File Directory ----D- C:\Program Files\Acro Software O43 - CFD:Common File Directory ----D- C:\Program Files\Adobe O43 - CFD:Common File Directory ----D- C:\Program Files\adslTV O43 - CFD:Common File Directory ----D- C:\Program Files\AM-DeadLink O43 - CFD:Common File Directory ----D- C:\Program Files\Audacity O43 - CFD:Common File Directory ----D- C:\Program Files\Auslogics O43 - CFD:Common File Directory ----D- C:\Program Files\Avira O43 - CFD:Common File Directory ----D- C:\Program Files\AviSynth 2.5 O43 - CFD:Common File Directory ----D- C:\Program Files\Azureus O43 - CFD:Common File Directory ----D- C:\Program Files\BUFFALO O43 - CFD:Common File Directory ----D- C:\Program Files\CCleaner O43 - CFD:Common File Directory ----D- C:\Program Files\CDBurnerXP O43 - CFD:Common File Directory ----D- C:\Program Files\Cobian Backup 9 O43 - CFD:Common File Directory ----D- C:\Program Files\Copyit O43 - CFD:Common File Directory ----D- C:\Program Files\DAEMON Tools Lite O43 - CFD:Common File Directory ----D- C:\Program Files\Dealio O43 - CFD:Common File Directory ----D- C:\Program Files\Devine O43 - CFD:Common File Directory ----D- C:\Program Files\Dia O43 - CFD:Common File Directory ----D- C:\Program Files\DivX O43 - CFD:Common File Directory ----D- C:\Program Files\DVD Flick O43 - CFD:Common File Directory ----D- C:\Program Files\DVD Shrink O43 - CFD:Common File Directory ----D- C:\Program Files\EasyPHP 2.0b1 O43 - CFD:Common File Directory ----D- C:\Program Files\El Juky O43 - CFD:Common File Directory ----D- C:\Program Files\EPSON O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers communs O43 - CFD:Common File Directory ----D- C:\Program Files\FileZilla FTP Client O43 - CFD:Common File Directory ----D- C:\Program Files\Foxit Software O43 - CFD:Common File Directory ----D- C:\Program Files\Free FLV Converter O43 - CFD:Common File Directory ----D- C:\Program Files\FreeGo O43 - CFD:Common File Directory ----D- C:\Program Files\Freenet O43 - CFD:Common File Directory ----D- C:\Program Files\Gabest O43 - CFD:Common File Directory ----D- C:\Program Files\Games O43 - CFD:Common File Directory ----D- C:\Program Files\GLtron O43 - CFD:Common File Directory ----D- C:\Program Files\Google O43 - CFD:Common File Directory ----D- C:\Program Files\GPLGS O43 - CFD:Common File Directory ----D- C:\Program Files\HardwareDetection O43 - CFD:Common File Directory ----D- C:\Program Files\HomePlayer O43 - CFD:Common File Directory ----D- C:\Program Files\IKEA HomePlanner O43 - CFD:Common File Directory ----D- C:\Program Files\Illustrate O43 - CFD:Common File Directory ----D- C:\Program Files\InfraRecorder O43 - CFD:Common File Directory ----D- C:\Program Files\Inkscape O43 - CFD:Common File Directory --H-D- C:\Program Files\InstallShield Installation Information O43 - CFD:Common File Directory ----D- C:\Program Files\Intel O43 - CFD:Common File Directory ----D- C:\Program Files\Internet Explorer O43 - CFD:Common File Directory ----D- C:\Program Files\iPod O43 - CFD:Common File Directory ----D- C:\Program Files\IrfanView O43 - CFD:Common File Directory ----D- C:\Program Files\iTunes O43 - CFD:Common File Directory ----D- C:\Program Files\IVCsoft O43 - CFD:Common File Directory ----D- C:\Program Files\IVT Corporation O43 - CFD:Common File Directory ----D- C:\Program Files\Java O43 - CFD:Common File Directory ----D- C:\Program Files\JRE O43 - CFD:Common File Directory ----D- C:\Program Files\K-Lite Codec Pack O43 - CFD:Common File Directory ----D- C:\Program Files\KC Softwares O43 - CFD:Common File Directory ----D- C:\Program Files\KompoZer O43 - CFD:Common File Directory ----D- C:\Program Files\KORES O43 - CFD:Common File Directory ----D- C:\Program Files\Kyodai Mahjongg 2006 O43 - CFD:Common File Directory ----D- C:\Program Files\Lavasoft O43 - CFD:Common File Directory ----D- C:\Program Files\Logitech O43 - CFD:Common File Directory ----D- C:\Program Files\Look@LAN O43 - CFD:Common File Directory ----D- C:\Program Files\Lopxp O43 - CFD:Common File Directory ----D- C:\Program Files\m4ng codec pack O43 - CFD:Common File Directory ----D- C:\Program Files\ma-config.com O43 - CFD:Common File Directory ----D- C:\Program Files\Macromedia O43 - CFD:Common File Directory ----D- C:\Program Files\MailNavigator O43 - CFD:Common File Directory ----D- C:\Program Files\Marmiton O43 - CFD:Common File Directory ----D- C:\Program Files\MediaInfo O43 - CFD:Common File Directory ----D- C:\Program Files\Messenger O43 - CFD:Common File Directory ----D- C:\Program Files\Micro Application O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Baseline Security Analyzer 2 O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2 O43 - CFD:Common File Directory ----D- C:\Program Files\microsoft frontpage O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Office O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Silverlight O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Sites publics français O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Sync Framework O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Works O43 - CFD:Common File Directory ----D- C:\Program Files\Motherboard Monitor 5 O43 - CFD:Common File Directory ----D- C:\Program Files\Movie Maker O43 - CFD:Common File Directory ----D- C:\Program Files\Mozilla Firefox O43 - CFD:Common File Directory ----D- C:\Program Files\MSBuild O43 - CFD:Common File Directory ----D- C:\Program Files\MSECache O43 - CFD:Common File Directory ----D- C:\Program Files\MSN O43 - CFD:Common File Directory ----D- C:\Program Files\MSN Gaming Zone O43 - CFD:Common File Directory ----D- C:\Program Files\MSXML 4.0 O43 - CFD:Common File Directory ----D- C:\Program Files\MSXML 6.0 O43 - CFD:Common File Directory ----D- C:\Program Files\Navman O43 - CFD:Common File Directory ----D- C:\Program Files\NetMeeting O43 - CFD:Common File Directory ----D- C:\Program Files\Network Stumbler O43 - CFD:Common File Directory ----D- C:\Program Files\nLite O43 - CFD:Common File Directory ----D- C:\Program Files\NOS O43 - CFD:Common File Directory ----D- C:\Program Files\Online Services O43 - CFD:Common File Directory ----D- C:\Program Files\OpenOffice.org 3 O43 - CFD:Common File Directory ----D- C:\Program Files\Opera O43 - CFD:Common File Directory ----D- C:\Program Files\Outlook Express O43 - CFD:Common File Directory ----D- C:\Program Files\Outlook Express Quick Backup O43 - CFD:Common File Directory ----D- C:\Program Files\Pahelika - Secret Legends O43 - CFD:Common File Directory ----D- C:\Program Files\Panda Security O43 - CFD:Common File Directory ----D- C:\Program Files\PC Inspector File Recovery O43 - CFD:Common File Directory ----D- C:\Program Files\PDF Editeur 2 O43 - CFD:Common File Directory ----D- C:\Program Files\PDFCreator O43 - CFD:Common File Directory ----D- C:\Program Files\PhotoFiltre O43 - CFD:Common File Directory ----D- C:\Program Files\Picasa2 O43 - CFD:Common File Directory ----D- C:\Program Files\PyGrenouille O43 - CFD:Common File Directory ----D- C:\Program Files\QuickMediaConverter O43 - CFD:Common File Directory ----D- C:\Program Files\QuickTime O43 - CFD:Common File Directory ----D- C:\Program Files\RamBoost XP O43 - CFD:Common File Directory ----D- C:\Program Files\Realtek O43 - CFD:Common File Directory ----D- C:\Program Files\Recuva O43 - CFD:Common File Directory ----D- C:\Program Files\Reference Assemblies O43 - CFD:Common File Directory ----D- C:\Program Files\RegCleaner O43 - CFD:Common File Directory ----D- C:\Program Files\Righteous Kill O43 - CFD:Common File Directory ----D- C:\Program Files\Romance of Rome O43 - CFD:Common File Directory ----D- C:\Program Files\Scribus 1.3.3.12 O43 - CFD:Common File Directory ----D- C:\Program Files\Services en ligne O43 - CFD:Common File Directory ----D- C:\Program Files\Simple Sudoku O43 - CFD:Common File Directory ----D- C:\Program Files\SlySoft O43 - CFD:Common File Directory ----D- C:\Program Files\Smart Projects O43 - CFD:Common File Directory ----D- C:\Program Files\Spamihilator O43 - CFD:Common File Directory ----D- C:\Program Files\SpeedFan O43 - CFD:Common File Directory ----D- C:\Program Files\Spybot - Search & Destroy O43 - CFD:Common File Directory ----D- C:\Program Files\Spyware Doctor O43 - CFD:Common File Directory ----D- C:\Program Files\STOIK Imaging O43 - CFD:Common File Directory ----D- C:\Program Files\Sweet Home 3D O43 - CFD:Common File Directory ----D- C:\Program Files\TeaTimer (Spybot - Search & Destroy) O43 - CFD:Common File Directory ----D- C:\Program Files\The Return of Monte Cristo O43 - CFD:Common File Directory ----D- C:\Program Files\TomTom DesktopSuite O43 - CFD:Common File Directory ----D- C:\Program Files\TomTom HOME 2 O43 - CFD:Common File Directory ----D- C:\Program Files\TomTom International B.V O43 - CFD:Common File Directory ----D- C:\Program Files\ToniArts O43 - CFD:Common File Directory ----D- C:\Program Files\Trend Micro O43 - CFD:Common File Directory --H-D- C:\Program Files\Uninstall Information O43 - CFD:Common File Directory ----D- C:\Program Files\Unlocker O43 - CFD:Common File Directory ----D- C:\Program Files\VDOWNLOADER O43 - CFD:Common File Directory ----D- C:\Program Files\VideoLAN O43 - CFD:Common File Directory ----D- C:\Program Files\Virtools O43 - CFD:Common File Directory ----D- C:\Program Files\Virtools Web Player 3.5 O43 - CFD:Common File Directory ----D- C:\Program Files\Virtual Earth 3D O43 - CFD:Common File Directory ----D- C:\Program Files\VirtualDub-MPEG2 O43 - CFD:Common File Directory ----D- C:\Program Files\VirtualDubMOD O43 - CFD:Common File Directory ----D- C:\Program Files\VS Revo Group O43 - CFD:Common File Directory ----D- C:\Program Files\Winamp O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Defender O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Journal Viewer O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live Favorites O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live Safety Center O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live SkyDrive O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live Toolbar O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Connect 2 O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Player O43 - CFD:Common File Directory ----D- C:\Program Files\Windows NT O43 - CFD:Common File Directory --H-D- C:\Program Files\WindowsUpdate O43 - CFD:Common File Directory ----D- C:\Program Files\WinHTTrack O43 - CFD:Common File Directory ----D- C:\Program Files\WinPcap O43 - CFD:Common File Directory ----D- C:\Program Files\XBMC O43 - CFD:Common File Directory ----D- C:\Program Files\xerox O43 - CFD:Common File Directory ----D- C:\Program Files\Xiph.Org O43 - CFD:Common File Directory ----D- C:\Program Files\XnView O43 - CFD:Common File Directory ----D- C:\Program Files\Xvid O43 - CFD:Common File Directory ----D- C:\Program Files\Yahoo! O43 - CFD:Common File Directory ----D- C:\Program Files\ZebHelpProcess O43 - CFD:Common File Directory ----D- C:\Program Files\ZHPFix O43 - CFD:Common File Directory ----D- C:\Program Files\Zone Labs O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Apple O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\AVSMedia O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Borland Shared O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Designer O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\EPSON O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\GeoVid O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\InstallShield O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Java O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Logitech O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Macromedia O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Macromedia Shared O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Microsoft Shared O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\MSSoap O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\ODBC O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Python O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Services O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\SpeechEngines O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\ST System Shared O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\System O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\SystemRequirementsLab O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Windows Live O43 - CFD:Common File Directory -SH-D- C:\Program Files\Fichiers Communs\WindowsLiveInstaller O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Wise Installation Wizard ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:Last File Created 05/11/2009 - 18:36:21 ---A- C:\WINDOWS\System32\MRT.exe O44 - LFC:Last File Created 12/11/2009 - 23:48:03 ---A- C:\WINDOWS\KB969947.log O44 - LFC:Last File Created 12/11/2009 - 23:48:03 ---A- C:\WINDOWS\imsins.BAK O44 - LFC:Last File Created 12/11/2009 - 23:50:17 ---A- C:\WINDOWS\updspapi.log O44 - LFC:Last File Created 12/11/2009 - 23:50:18 ---A- C:\WINDOWS\msmqinst.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\FaxSetup.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\KB976749-IE7.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\MedCtrOC.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\comsetup.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\iis6.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\imsins.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\msgsocm.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\netfxocm.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\ntdtcsetup.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\ocgen.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\ocmsn.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\tabletoc.log O44 - LFC:Last File Created 12/11/2009 - 23:50:19 ---A- C:\WINDOWS\tsoc.log O44 - LFC:Last File Created 12/11/2009 - 23:53:04 ---A- C:\WINDOWS\System32\FNTCACHE.DAT O44 - LFC:Last File Created 13/11/2009 - 21:33:36 ---A- C:\WINDOWS\Many Years Ago Setup Log.txt O44 - LFC:Last File Created 13/11/2009 - 21:36:50 ---A- C:\WINDOWS\Many Years Ago Uninstall Log.txt O44 - LFC:Last File Created 13/11/2009 - 21:38:09 ---A- C:\WINDOWS\Gemini Lost Setup Log.txt O44 - LFC:Last File Created 13/11/2009 - 21:41:15 ---A- C:\WINDOWS\Gemini Lost Uninstall Log.txt O44 - LFC:Last File Created 13/11/2009 - 21:45:52 ---A- C:\WINDOWS\Romance of Rome Setup Log.txt O44 - LFC:Last File Created 13/11/2009 - 22:43:11 ---A- C:\WINDOWS\Pahelika - Secret Legends Uninstall Log.txt O44 - LFC:Last File Created 14/11/2009 - 18:53:35 ---A- C:\WINDOWS\The Return of Monte Cristo Setup Log.txt O44 - LFC:Last File Created 18/11/2009 - 08:29:12 ---A- C:\WINDOWS\UN060501.EXE O44 - LFC:Last File Created 18/11/2009 - 08:29:12 ---A- C:\WINDOWS\UN060501.INI O44 - LFC:Last File Created 18/11/2009 - 23:36:18 ---A- C:\WINDOWS\SchedLgU.Txt O44 - LFC:Last File Created 19/11/2009 - 06:58:31 -S-A- C:\WINDOWS\bootstat.dat O44 - LFC:Last File Created 19/11/2009 - 06:59:24 ---A- C:\WINDOWS\wiaservc.log O44 - LFC:Last File Created 19/11/2009 - 06:59:26 ---A- C:\WINDOWS\wiadebug.log O44 - LFC:Last File Created 19/11/2009 - 06:59:49 ---A- C:\WINDOWS\0.log O44 - LFC:Last File Created 19/11/2009 - 06:59:52 ---A- C:\WINDOWS\System32\wpa.dbl O44 - LFC:Last File Created 19/11/2009 - 06:59:57 ---A- C:\WINDOWS\System32\vsconfig.xml O44 - LFC:Last File Created 19/11/2009 - 07:01:48 ---A- C:\WINDOWS\WindowsUpdate.log O44 - LFC:Last File Created 20/10/2009 - 11:22:30 ---A- C:\WINDOWS\Pahelika - Secret Legends Setup Log.txt O44 - LFC:Last File Created 21/10/2009 - 05:07:57 ---A- C:\WINDOWS\System32\mshtml.dll O44 - LFC:Last File Created 22/10/2009 - 13:14:19 ---A- C:\WINDOWS\avisplitter.ini O44 - LFC:Last File Created 25/10/2009 - 07:31:42 ---A- C:\WINDOWS\System32\PerfStringBackup.INI O44 - LFC:Last File Created 27/10/2009 - 08:36:10 ---A- C:\WINDOWS\System32\lvcoinst.log O44 - LFC:Last File Created 27/10/2009 - 08:36:10 ---A- C:\WINDOWS\setupapi.log ---\\ Opérations et fonctions au démarrage de Windows Explorer (O46) O46 - SEH:ShellExecuteHooks - URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll ---\\ Export de clé d'application autorisée (ECAA)(O47) O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" O47 - AAKE:Key Export SP - "C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice" O47 - AAKE:Key Export SP - "C:\Program Files\Azureus\Azureus.exe"="C:\Program Files\Azureus\Azureus.exe:*:Enabled:Azureus" O47 - AAKE:Key Export SP - "C:\Program Files\VideoLAN\VLC\vlc.exe"="C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player" O47 - AAKE:Key Export SP - "C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil" O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" O47 - AAKE:Key Export SP - "C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes" O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger" O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync" O47 - AAKE:Key Export SP - "C:\Program Files\Spamihilator\cdcc.exe"="C:\Program Files\Spamihilator\cdcc.exe:*:Enabled:Spamihilator DCC Filter Configuration" O47 - AAKE:Key Export SP - "C:\Program Files\Spamihilator\dccproc.exe"="C:\Program Files\Spamihilator\dccproc.exe:*:Enabled:Spamihilator DCC Filter" O47 - AAKE:Key Export SP - "C:\Program Files\Spamihilator\spamihilator.exe"="C:\Program Files\Spamihilator\spamihilator.exe:*:Enabled:Spamihilator" O47 - AAKE:Key Export SP - "C:\Program Files\HomePlayer\HomePlayer.exe"="C:\Program Files\HomePlayer\HomePlayer.exe:*:Enabled:HomePlayer" O47 - AAKE:Key Export SP - "C:\Program Files\HomePlayer\VLC\vlc.exe"="C:\Program Files\HomePlayer\VLC\vlc.exe:*:Enabled:VLC HomePlayer" O47 - AAKE:Key Export SP - "C:\Program Files\BUFFALO\NASNAVI\NasNavi.exe"="C:\Program Files\BUFFALO\NASNAVI\NasNavi.exe:*:Enabled:BUFFALO NASNavigator2" O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger" O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync" ---\\ Déni du service (Local Security Authority) (LSA) (O48) O48 - LSA:Local Security Authority Authentication Packages - C:\WINDOWS\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages - C:\WINDOWS\System32\scecli.dll ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\vgasave.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\ip6fw.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpcdd.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpdd.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpwd.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\tdpipe.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\tdtcp.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\vgasave.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\vgasave.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\ip6fw.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpcdd.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpdd.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpwd.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\tdpipe.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\tdtcp.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\vgasave.sys ---\\ Image File Execution Options (IFEO) (O50) O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d ---\\ MountPoints2 Shell Key (MPSK) (O51) O51 - MPSK:{7203009b-a344-11de-a953-000feaa14ec2}\Shell\AutoRun\command - F:\InstallTomTomHOME.exe ---\\ Trojan Driver Search Data (TDSD) (O52) O52 - TDSD:HKLM\...\Drivers\"timer"="timer.drv" O52 - TDSD:HKLM\...\Drivers32\"midimapper"="midimap.dll" O52 - TDSD:HKLM\...\Drivers32\"msacm.imaadpcm"="imaadp32.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.msadpcm"="msadp32.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.msg711"="msg711.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.msgsm610"="msgsm32.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.trspch"="tssoft32.acm" O52 - TDSD:HKLM\...\Drivers32\"vidc.cvid"="iccvid.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.I420"="lvcodec2.dll" O52 - TDSD:HKLM\...\Drivers32\"vidc.iv31"="ir32_32.dll" O52 - TDSD:HKLM\...\Drivers32\"vidc.iv32"="ir32_32.dll" O52 - TDSD:HKLM\...\Drivers32\"vidc.iv41"="ir41_32.ax" O52 - TDSD:HKLM\...\Drivers32\"VIDC.IYUV"="iyuv_32.dll" O52 - TDSD:HKLM\...\Drivers32\"vidc.mrle"="msrle32.dll" O52 - TDSD:HKLM\...\Drivers32\"vidc.msvc"="msvidc32.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.UYVY"="msyuv.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.YUY2"="msyuv.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.YVU9"="tsbyuv.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.YVYU"="msyuv.dll" O52 - TDSD:HKLM\...\Drivers32\"wavemapper"="msacm32.drv" O52 - TDSD:HKLM\...\Drivers32\"wave"="serwvdrv.dll" O52 - TDSD:HKLM\...\Drivers32\"msacm.msg723"="msg723.acm" O52 - TDSD:HKLM\...\Drivers32\"vidc.M263"="msh263.drv" O52 - TDSD:HKLM\...\Drivers32\"vidc.M261"="msh261.drv" O52 - TDSD:HKLM\...\Drivers32\"msacm.msaudio1"="msaud32.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.sl_anet"="sl_anet.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.iac2"="C:\WINDOWS\system32\iac25_32.ax" O52 - TDSD:HKLM\...\Drivers32\"vidc.iv50"="ir50_32.dll" O52 - TDSD:HKLM\...\Drivers32\"msacm.l3acm"="C:\WINDOWS\system32\l3codeca.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.siren"="sirenacm.dll" O52 - TDSD:HKLM\...\Drivers32\"MSVideo"="vfwwdm32.dll" O52 - TDSD:HKLM\...\Drivers32\"MSVideo8"="VfWWDM32.dll" O52 - TDSD:HKLM\...\Drivers32\"wave1"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"midi"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"aux"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"wave2"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"midi1"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer1"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"aux1"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"wave3"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer2"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"wave4"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer3"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"VIDC.DIVX"="divx.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.XVID"="xvidvfw.dll" O52 - TDSD:HKLM\...\Drivers32\"VIDC.YV12"="yv12vfw.dll" O52 - TDSD:HKLM\...\Drivers32\"msacm.ac3acm"="ac3acm.acm" O52 - TDSD:HKLM\...\Drivers32\"msacm.lameacm"="lameACM.acm" O52 - TDSD:HKLM\...\Drivers32\"VIDC.FFDS"="ff_vfw.dll" O52 - TDSD:HKLM\...\Drivers32\"wave5"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"midi2"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer4"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"aux2"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"wave6"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"midi3"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"mixer5"="wdmaud.drv" O52 - TDSD:HKLM\...\Drivers32\"aux3"="wdmaud.drv" O52 - TDSD:HKLM\...\drivers.desc\"serwvdrv.dll"="Pilote de porteuse modem" O52 - TDSD:HKLM\...\drivers.desc\"msaud32.acm"="Windows Media Audio Codec" O52 - TDSD:HKLM\...\drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" O52 - TDSD:HKLM\...\drivers.desc\"C:\WINDOWS\system32\iac25_32.ax"="Indeo® audio software" O52 - TDSD:HKLM\...\drivers.desc\"ir50_32.dll"="Indeo® video 5.10" O52 - TDSD:HKLM\...\drivers.desc\"C:\WINDOWS\system32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" O52 - TDSD:HKLM\...\drivers.desc\"sirenacm.dll"="Messenger Audio Codec" O52 - TDSD:HKLM\...\drivers.desc\"vfwwdm32.dll"="Vidéo WDM pour le pilote de capture Windows (Win32)" O52 - TDSD:HKLM\...\drivers.desc\"wdmaud.drv"="Périphérique audio USB" O52 - TDSD:HKLM\...\drivers.desc\"mciavi32.dll"="mciavi32.dll" O52 - TDSD:HKLM\...\drivers.desc\"mcicda.dll"="mcicda.dll" O52 - TDSD:HKLM\...\drivers.desc\"mciseq.dll"="mciseq.dll" O52 - TDSD:HKLM\...\drivers.desc\"mciwave.dll"="mciwave.dll" O52 - TDSD:HKLM\...\drivers.desc\"mciqtz32.dll"="mciqtz32.dll" O52 - TDSD:HKLM\...\drivers.desc\"midimap.dll"="midimap.dll" O52 - TDSD:HKLM\...\drivers.desc\"imaadp32.acm"="imaadp32.acm" O52 - TDSD:HKLM\...\drivers.desc\"msadp32.acm"="msadp32.acm" O52 - TDSD:HKLM\...\drivers.desc\"msg711.acm"="msg711.acm" O52 - TDSD:HKLM\...\drivers.desc\"msgsm32.acm"="msgsm32.acm" O52 - TDSD:HKLM\...\drivers.desc\"tssoft32.acm"="tssoft32.acm" O52 - TDSD:HKLM\...\drivers.desc\"iccvid.dll"="iccvid.dll" O52 - TDSD:HKLM\...\drivers.desc\"lvcodec2.dll"="lvcodec2.dll" O52 - TDSD:HKLM\...\drivers.desc\"ir32_32.dll"="ir32_32.dll" O52 - TDSD:HKLM\...\drivers.desc\"ir41_32.ax"="ir41_32.ax" O52 - TDSD:HKLM\...\drivers.desc\"iyuv_32.dll"="iyuv_32.dll" O52 - TDSD:HKLM\...\drivers.desc\"msrle32.dll"="msrle32.dll" O52 - TDSD:HKLM\...\drivers.desc\"msvidc32.dll"="msvidc32.dll" O52 - TDSD:HKLM\...\drivers.desc\"msyuv.dll"="msyuv.dll" O52 - TDSD:HKLM\...\drivers.desc\"tsbyuv.dll"="tsbyuv.dll" O52 - TDSD:HKLM\...\drivers.desc\"msacm32.drv"="msacm32.drv" O52 - TDSD:HKLM\...\drivers.desc\"msg723.acm"="msg723.acm" O52 - TDSD:HKLM\...\drivers.desc\"msh263.drv"="msh263.drv" O52 - TDSD:HKLM\...\drivers.desc\"msh261.drv"="msh261.drv" O52 - TDSD:HKLM\...\drivers.desc\"divx.dll"="DivX 6.8.5" O52 - TDSD:HKLM\...\drivers.desc\"xvidvfw.dll"="Xvid MPEG-4 Video Codec v1.2-dev" O52 - TDSD:HKLM\...\drivers.desc\"lameACM.acm"="Lame ACM MP3 CODEC v3.98" O52 - TDSD:HKLM\...\drivers.desc\"ac3acm.acm"="AC-3 ACM Codec" O52 - TDSD:HKLM\...\drivers.desc\"ff_vfw.dll"="ffdshow video encoder" ---\\ Microsoft Control Security Providers (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - "SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - "SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll ---\\ Microsoft Windows Policies System (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"= O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"= O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 ---\\ Microsoft Windows Policies Explorer (MWPE) (O56) O56 - MWPE:[HKCU\...\Policies\Explorer] - "NoDriveTypeAutoRun"=145 O56 - MWPE:[HKLM\...\Policies\Explorer] - "HonorAutoRunSetting"=1 ---\\ Liste des Drivers Système (SDL) (O58) O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\1394bus.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\acpi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\acpiec.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\aec.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\afc.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\afd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\amdk6.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\amdk7.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\arp1394.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\asyncmac.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\atapi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ati2mtag.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\atmarpc.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\atmepvc.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\atmlane.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\atmuni.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\audstub.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\avgntdd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\avgntflt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\avgntmgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\avipbb.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bcbthub.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\BCMWL5.SYS O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\beep.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\blueletaudio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\BlueletSCOAudio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bridge.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\btcusb.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bthenum.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\BTHidMgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bthpan.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bthport.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\bthusb.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\BtNetDrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\BTNetFilter.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cbidf2k.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ccdecode.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cdaudio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cdfs.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cdrbsvsd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cdrom.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cinemst2.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\classpnp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\cpqdap01.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\crusoe.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\disk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\diskdump.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dmboot.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dmio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dmload.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dmusic.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\drmk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\drmkaud.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dxapi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dxg.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\dxgthk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\enum1394.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fastfat.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fdc.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fips.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\flpydisk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fltmgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fsvga.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fs_rec.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ftdisk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\fw203x.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\GEARAspiWDM.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\hidclass.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\hidparse.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\http.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\i8042prt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\imapi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\intelide.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\intelppm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ip6fw.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ipfltdrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ipinip.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ipnat.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ipsec.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\irenum.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\isapnp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\kbdclass.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\klif.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\kmixer.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ks.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ksecdd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\lvcm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\lvsvf2.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\LVUSBSta.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mcd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mf.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mnmdd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\modem.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\MODEMCSA.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mouclass.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mountmgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mqac.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mrxdav.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mrxsmb.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\msfs.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\msgpc.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mskssrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mspclock.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mspqm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mssmbios.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mstee.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mtlmnt5.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mtlstrm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\mup.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nabtsfec.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\Navcar.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndis.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndisip.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndistapi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndisuio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndiswan.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ndproxy.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\netbios.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\netbt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nic1394.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nikedrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nmnt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\npfs.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ntfs.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ntmtlfax.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\null.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwlnkflt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwlnkfwd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwlnkipx.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwlnknb.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwlnkspx.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\nwrdr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ohci1394.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\oprghdlr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\OXSER.SYS O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\p3.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\parport.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\partmgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\parvdm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\pci.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\pciide.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\pciidex.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\pcmcia.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\portcls.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\processr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\psched.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ptilink.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\pxhelp20.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rasacd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rasl2tp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\raspppoe.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\raspptp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\raspti.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rawwan.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rdbss.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rdpcdd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rdpdr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rdpwd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\RecAgent.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\redbook.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rfcomm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rio8drv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\riodrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rmcast.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rndismp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\rootmdm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\RtkHDAud.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\RTL8139.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\Rtnicxp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\scsiport.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sdbus.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\secdrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\serenum.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\serial.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sffdisk.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sffp_sd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sfloppy.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\Sio9502k.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\SktBt2k.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\slip.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\slntamr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\slnthal.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\slwdmsup.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\smclib.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sonydcam.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\splitter.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sptd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\srv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ssmdrv.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\stream.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\streamip.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\swenum.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\swmidi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\sysaudio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tape.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tcpip.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tcpip6.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tdi.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tdpipe.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tdtcp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\termdd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tosdvd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tsbvcap.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\tunmp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\udfs.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\update.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usb8023.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbaudio.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbcamd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbcamd2.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbccgp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbehci.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbhub.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbintel.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbport.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbprint.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbscan.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbstor.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\usbuhci.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\vbtenum.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\VComm.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\VcommMgr.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\vdmindvd.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\vga.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\VHIDMini.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\videoprt.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\volsnap.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\wanarp.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\wdmaud.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\wmilib.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\ws2ifsl.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\wssbtr1f.sys O58 - SDL:System Drivers List - C:\WINDOWS\system32\drivers\wstcodec.sys ---\\ Liste des outils de nettoyage (LATC) (O63) O63 - Logiciel: HijackThis 2.0.2 O63 - Logiciel: ZHPFix 1.12 O63 - Logiciel: Dial-a-fix ---\\ Liste des services Legacy (LALS) (O64) O64 - Services: CurCS - AFD (AFD) - LEGACY_AFD O64 - Services: CurCS - Avertissement (Alerter) - LEGACY_ALERTER O64 - Services: CurCS - Service de la passerelle de la couche Application (ALG) - LEGACY_ALG O64 - Services: CurCS - Avira AntiVir Planificateur (AntiVirSchedulerService) - LEGACY_ANTIVIRSCHEDULERSERVICE O64 - Services: CurCS - Avira AntiVir Guard (AntiVirService) - LEGACY_ANTIVIRSERVICE O64 - Services: CurCS - Apple Mobile Device (Apple Mobile Device) - LEGACY_APPLE_MOBILE_DEVICE O64 - Services: CurCS - Gestion d'applications (AppMgmt) - LEGACY_APPMGMT O64 - Services: CurCS - Protocole client ARP 1394 (Arp1394) - LEGACY_ARP1394 O64 - Services: CurCS - Ati HotKey Poller (Ati HotKey Poller) - LEGACY_ATI_HOTKEY_POLLER O64 - Services: CurCS - ATI Smart (ATI Smart) - LEGACY_ATI_SMART O64 - Services: CurCS - Audio Windows (AudioSrv) - LEGACY_AUDIOSRV O64 - Services: CurCS - avfwot (avfwot) - LEGACY_AVFWOT O64 - Services: CurCS - avgio (avgio) - LEGACY_AVGIO O64 - Services: CurCS - avgntflt (avgntflt) - LEGACY_AVGNTFLT O64 - Services: CurCS - avipbb (avipbb) - LEGACY_AVIPBB O64 - Services: CurCS - Beep (Beep) - LEGACY_BEEP O64 - Services: CurCS - Service de transfert intelligent en arrière-plan (BITS) - LEGACY_BITS O64 - Services: CurCS - BlueSoleil Hid Service (BlueSoleil Hid Service) - LEGACY_BLUESOLEIL_HID_SERVICE O64 - Services: CurCS - Explorateur d'ordinateur (Browser) - LEGACY_BROWSER O64 - Services: CurCS - Bluetooth Support Service (BthServ) - LEGACY_BTHSERV O64 - Services: CurCS - Bluetooth Network Filter (BTNetFilter) - LEGACY_BTNETFILTER O64 - Services: CurCS - cdfs (cdfs) - LEGACY_CDFS O64 - Services: CurCS - .NET Runtime Optimization Service v2.0.50727_X86 (clr_optimization_v2.0.50727_32) - LEGACY_CLR_OPTIMIZATION_V2.0.50727_32 O64 - Services: CurCS - Application système COM+ (COMSysApp) - LEGACY_COMSYSAPP O64 - Services: CurCS - Services de cryptographie (CryptSvc) - LEGACY_CRYPTSVC O64 - Services: CurCS - Lanceur de processus serveur DCOM (DcomLaunch) - LEGACY_DCOMLAUNCH O64 - Services: CurCS - Client DHCP (Dhcp) - LEGACY_DHCP O64 - Services: CurCS - Service d'administration du Gestionnaire de disque logique (dmadmin) - LEGACY_DMADMIN O64 - Services: CurCS - dmboot (dmboot) - LEGACY_DMBOOT O64 - Services: CurCS - dmload (dmload) - LEGACY_DMLOAD O64 - Services: CurCS - Gestionnaire de disque logique (dmserver) - LEGACY_DMSERVER O64 - Services: CurCS - Client DNS (Dnscache) - LEGACY_DNSCACHE O64 - Services: CurCS - driverhardwarev2 (driverhardwarev2) - LEGACY_DRIVERHARDWAREV2 O64 - Services: CurCS - No object (No service) - LEGACY_ELBYCDIO O64 - Services: CurCS - EpsonBidirectionalService (EpsonBidirectionalService) - LEGACY_EPSONBIDIRECTIONALSERVICE O64 - Services: CurCS - EPSON Printer Status Agent2 (EPSONStatusAgent2) - LEGACY_EPSONSTATUSAGENT2 O64 - Services: CurCS - Service de rapport d'erreurs (ERSvc) - LEGACY_ERSVC O64 - Services: CurCS - Système d'événements de COM+ (EventSystem) - LEGACY_EVENTSYSTEM O64 - Services: CurCS - fastfat (fastfat) - LEGACY_FASTFAT O64 - Services: CurCS - Fips (Fips) - LEGACY_FIPS O64 - Services: CurCS - FltMgr (FltMgr) - LEGACY_FLTMGR O64 - Services: CurCS - Windows Presentation Foundation Font Cache 3.0.0.0 (FontCache3.0.0.0) - LEGACY_FONTCACHE3.0.0.0 O64 - Services: CurCS - Freenet 0.7 darknet-8888 (freenet-darknet-8888) - LEGACY_FREENET-DARKNET-8888 O64 - Services: CurCS - FreshIO (FreshIO) - LEGACY_FRESHIO O64 - Services: CurCS - Fs_Rec (Fs_Rec) - LEGACY_FS_REC O64 - Services: CurCS - Classificateur de paquets générique (Gpc) - LEGACY_GPC O64 - Services: CurCS - Google Software Updater (gusvc) - LEGACY_GUSVC O64 - Services: CurCS - Aide et support (helpsvc) - LEGACY_HELPSVC O64 - Services: CurCS - HTTP (HTTP) - LEGACY_HTTP O64 - Services: CurCS - Service COM de gravage de CD IMAPI (ImapiService) - LEGACY_IMAPISERVICE O64 - Services: CurCS - Traducteur d'adresses réseau IP (IpNat) - LEGACY_IPNAT O64 - Services: CurCS - Service de l’iPod (iPod Service) - LEGACY_IPOD_SERVICE O64 - Services: CurCS - Pilote IPSEC (IPSec) - LEGACY_IPSEC O64 - Services: CurCS - Java Quick Starter (JavaQuickStarterService) - LEGACY_JAVAQUICKSTARTERSERVICE O64 - Services: CurCS - KLIF (KLIF) - LEGACY_KLIF O64 - Services: CurCS - ksecdd (ksecdd) - LEGACY_KSECDD O64 - Services: CurCS - Serveur (lanmanserver) - LEGACY_LANMANSERVER O64 - Services: CurCS - Station de travail (LanmanWorkstation) - LEGACY_LANMANWORKSTATION O64 - Services: CurCS - Lbd (Lbd) - LEGACY_LBD O64 - Services: CurCS - Assistance TCP/IP NetBIOS (LmHosts) - LEGACY_LMHOSTS O64 - Services: CurCS - Ma-Config Service (maconfservice) - LEGACY_MACONFSERVICE O64 - Services: CurCS - Macromedia Licensing Service (Macromedia Licensing Service) - LEGACY_MACROMEDIA_LICENSING_SERVICE O64 - Services: CurCS - mnmdd (mnmdd) - LEGACY_MNMDD O64 - Services: CurCS - mountmgr (mountmgr) - LEGACY_MOUNTMGR O64 - Services: CurCS - Redirecteur client WebDav (MRxDAV) - LEGACY_MRXDAV O64 - Services: CurCS - MRXSMB (MRxSmb) - LEGACY_MRXSMB O64 - Services: CurCS - Distributed Transaction Coordinator (MSDTC) - LEGACY_MSDTC O64 - Services: CurCS - Msfs (Msfs) - LEGACY_MSFS O64 - Services: CurCS - Windows Installer (MSIServer) - LEGACY_MSISERVER O64 - Services: CurCS - Mtlstrm (Mtlstrm) - LEGACY_MTLSTRM O64 - Services: CurCS - Mup (Mup) - LEGACY_MUP O64 - Services: CurCS - NAS PM Service (NasPmService) - LEGACY_NASPMSERVICE O64 - Services: CurCS - Pilote système NDIS (NDIS) - LEGACY_NDIS O64 - Services: CurCS - Pilote TAPI NDIS d'accès distant (NdisTapi) - LEGACY_NDISTAPI O64 - Services: CurCS - NDIS mode utilisateur E/S Protocole (Ndisuio) - LEGACY_NDISUIO O64 - Services: CurCS - NDProxy (NDProxy) - LEGACY_NDPROXY O64 - Services: CurCS - Interface NetBIOS (NetBIOS) - LEGACY_NETBIOS O64 - Services: CurCS - NetBIOS sur TCP/IP (NetBT) - LEGACY_NETBT O64 - Services: CurCS - Connexions réseau (Netman) - LEGACY_NETMAN O64 - Services: CurCS - NLA (Network Location Awareness) (Nla) - LEGACY_NLA O64 - Services: CurCS - NMSAccessU (NMSAccessU) - LEGACY_NMSACCESSU O64 - Services: CurCS - Npfs (Npfs) - LEGACY_NPFS O64 - Services: CurCS - ntfs (ntfs) - LEGACY_NTFS O64 - Services: CurCS - Stockage amovible (NtmsSvc) - LEGACY_NTMSSVC O64 - Services: CurCS - Null (Null) - LEGACY_NULL O64 - Services: CurCS - PartMgr (PartMgr) - LEGACY_PARTMGR O64 - Services: CurCS - ParVdm (ParVdm) - LEGACY_PARVDM O64 - Services: CurCS - pavboot (pavboot) - LEGACY_PAVBOOT O64 - Services: CurCS - PCIIde (PCIIde) - LEGACY_PCIIDE O64 - Services: CurCS - Services IPSEC (PolicyAgent) - LEGACY_POLICYAGENT O64 - Services: CurCS - Emplacement protégé (ProtectedStorage) - LEGACY_PROTECTEDSTORAGE O64 - Services: CurCS - Pilote de connexion automatique d'accès distant (RasAcd) - LEGACY_RASACD O64 - Services: CurCS - Gestionnaire de connexions d'accès distant (RasMan) - LEGACY_RASMAN O64 - Services: CurCS - Rdbss (Rdbss) - LEGACY_RDBSS O64 - Services: CurCS - RDPCDD (RDPCDD) - LEGACY_RDPCDD O64 - Services: CurCS - RDPNP (RDPNP) - LEGACY_RDPNP O64 - Services: CurCS - Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - LEGACY_RDSESSMGR O64 - Services: CurCS - RecAgent (RecAgent) - LEGACY_RECAGENT O64 - Services: CurCS - Accès à distance au Registre (RemoteRegistry) - LEGACY_REMOTEREGISTRY O64 - Services: CurCS - Appel de procédure distante (RPC) (RpcSs) - LEGACY_RPCSS O64 - Services: CurCS - Gestionnaire de comptes de sécurité (SamSs) - LEGACY_SAMSS O64 - Services: CurCS - Planificateur de tâches (Schedule) - LEGACY_SCHEDULE O64 - Services: CurCS - SeaPort (SeaPort) - LEGACY_SEAPORT O64 - Services: CurCS - Connexion secondaire (seclogon) - LEGACY_SECLOGON O64 - Services: CurCS - Notification d'événement système (SENS) - LEGACY_SENS O64 - Services: CurCS - Pare-feu Windows / Partage de connexion Internet (SharedAccess) - LEGACY_SHAREDACCESS O64 - Services: CurCS - Détection matériel noyau (ShellHWDetection) - LEGACY_SHELLHWDETECTION O64 - Services: CurCS - SlNtHal (SlNtHal) - LEGACY_SLNTHAL O64 - Services: CurCS - SmartLinkService (SLService) - LEGACY_SLSERVICE O64 - Services: CurCS - SlWdmSup (SlWdmSup) - LEGACY_SLWDMSUP O64 - Services: CurCS - No object (No service) - LEGACY_SPEEDFAN O64 - Services: CurCS - Spouleur d'impression (Spooler) - LEGACY_SPOOLER O64 - Services: CurCS - sptd (sptd) - LEGACY_SPTD O64 - Services: CurCS - Spyware Terminator Driver 2 (sp_rsdrv2) - LEGACY_SP_RSDRV2 O64 - Services: CurCS - Spyware Terminator Realtime Shield Service (sp_rssrv) - LEGACY_SP_RSSRV O64 - Services: CurCS - Pilote de filtre de restauration système (sr) - LEGACY_SR O64 - Services: CurCS - srescan (srescan) - LEGACY_SRESCAN O64 - Services: CurCS - Service de restauration système (srservice) - LEGACY_SRSERVICE O64 - Services: CurCS - Srv (Srv) - LEGACY_SRV O64 - Services: CurCS - Service de découvertes SSDP (SSDPSRV) - LEGACY_SSDPSRV O64 - Services: CurCS - ssmdrv (ssmdrv) - LEGACY_SSMDRV O64 - Services: CurCS - Acquisition d'image Windows (WIA) (stisvc) - LEGACY_STISVC O64 - Services: CurCS - Journaux et alertes de performance (SysmonLog) - LEGACY_SYSMONLOG O64 - Services: CurCS - Téléphonie (TapiSrv) - LEGACY_TAPISRV O64 - Services: CurCS - Pilote du protocole TCP/IP (Tcpip) - LEGACY_TCPIP O64 - Services: CurCS - Services Terminal Server (TermService) - LEGACY_TERMSERVICE O64 - Services: CurCS - Thèmes (Themes) - LEGACY_THEMES O64 - Services: CurCS - TomTomHOMEService (TomTomHOMEService) - LEGACY_TOMTOMHOMESERVICE O64 - Services: CurCS - Client de suivi de lien distribué (TrkWks) - LEGACY_TRKWKS O64 - Services: CurCS - Udfs (Udfs) - LEGACY_UDFS O64 - Services: CurCS - UnlockerDriver5 (UnlockerDriver5) - LEGACY_UNLOCKERDRIVER5 O64 - Services: CurCS - Hôte de périphérique universel Plug-and-Play (upnphost) - LEGACY_UPNPHOST O64 - Services: CurCS - vga (vga) - LEGACY_VGA O64 - Services: CurCS - VgaSave (VgaSave) - LEGACY_VGASAVE O64 - Services: CurCS - VolSnap (VolSnap) - LEGACY_VOLSNAP O64 - Services: CurCS - vsdatant (vsdatant) - LEGACY_VSDATANT O64 - Services: CurCS - TrueVector Internet Monitor (vsmon) - LEGACY_VSMON O64 - Services: CurCS - Horloge Windows (W32Time) - LEGACY_W32TIME O64 - Services: CurCS - Pilote ARP IP d'accès distant (Wanarp) - LEGACY_WANARP O64 - Services: CurCS - WebClient (WebClient) - LEGACY_WEBCLIENT O64 - Services: CurCS - Infrastructure de gestion Windows (winmgmt) - LEGACY_WINMGMT O64 - Services: CurCS - Carte de performance WMI (WmiApSrv) - LEGACY_WMIAPSRV O64 - Services: CurCS - Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (WS2IFSL) - LEGACY_WS2IFSL O64 - Services: CurCS - Centre de sécurité (wscsvc) - LEGACY_WSCSVC O64 - Services: CurCS - Mises à jour automatiques (wuauserv) - LEGACY_WUAUSERV O64 - Services: CurCS - Configuration automatique sans fil (WZCSVC) - LEGACY_WZCSVC O64 - Services: CS003 - AFD (AFD) - LEGACY_AFD O64 - Services: CS003 - Avertissement (Alerter) - LEGACY_ALERTER O64 - Services: CS003 - Service de la passerelle de la couche Application (ALG) - LEGACY_ALG O64 - Services: CS003 - Avira AntiVir Planificateur (AntiVirSchedulerService) - LEGACY_ANTIVIRSCHEDULERSERVICE O64 - Services: CS003 - Avira AntiVir Guard (AntiVirService) - LEGACY_ANTIVIRSERVICE O64 - Services: CS003 - Apple Mobile Device (Apple Mobile Device) - LEGACY_APPLE_MOBILE_DEVICE O64 - Services: CS003 - Gestion d'applications (AppMgmt) - LEGACY_APPMGMT O64 - Services: CS003 - Protocole client ARP 1394 (Arp1394) - LEGACY_ARP1394 O64 - Services: CS003 - Ati HotKey Poller (Ati HotKey Poller) - LEGACY_ATI_HOTKEY_POLLER O64 - Services: CS003 - ATI Smart (ATI Smart) - LEGACY_ATI_SMART O64 - Services: CS003 - Audio Windows (AudioSrv) - LEGACY_AUDIOSRV O64 - Services: CS003 - avfwot (avfwot) - LEGACY_AVFWOT O64 - Services: CS003 - avgio (avgio) - LEGACY_AVGIO O64 - Services: CS003 - avgntflt (avgntflt) - LEGACY_AVGNTFLT O64 - Services: CS003 - avipbb (avipbb) - LEGACY_AVIPBB O64 - Services: CS003 - Beep (Beep) - LEGACY_BEEP O64 - Services: CS003 - Service de transfert intelligent en arrière-plan (BITS) - LEGACY_BITS O64 - Services: CS003 - BlueSoleil Hid Service (BlueSoleil Hid Service) - LEGACY_BLUESOLEIL_HID_SERVICE O64 - Services: CS003 - Explorateur d'ordinateur (Browser) - LEGACY_BROWSER O64 - Services: CS003 - Bluetooth Support Service (BthServ) - LEGACY_BTHSERV O64 - Services: CS003 - Bluetooth Network Filter (BTNetFilter) - LEGACY_BTNETFILTER O64 - Services: CS003 - cdfs (cdfs) - LEGACY_CDFS O64 - Services: CS003 - .NET Runtime Optimization Service v2.0.50727_X86 (clr_optimization_v2.0.50727_32) - LEGACY_CLR_OPTIMIZATION_V2.0.50727_32 O64 - Services: CS003 - Application système COM+ (COMSysApp) - LEGACY_COMSYSAPP O64 - Services: CS003 - Services de cryptographie (CryptSvc) - LEGACY_CRYPTSVC O64 - Services: CS003 - Lanceur de processus serveur DCOM (DcomLaunch) - LEGACY_DCOMLAUNCH O64 - Services: CS003 - Client DHCP (Dhcp) - LEGACY_DHCP O64 - Services: CS003 - Service d'administration du Gestionnaire de disque logique (dmadmin) - LEGACY_DMADMIN O64 - Services: CS003 - dmboot (dmboot) - LEGACY_DMBOOT O64 - Services: CS003 - dmload (dmload) - LEGACY_DMLOAD O64 - Services: CS003 - Gestionnaire de disque logique (dmserver) - LEGACY_DMSERVER O64 - Services: CS003 - Client DNS (Dnscache) - LEGACY_DNSCACHE O64 - Services: CS003 - driverhardwarev2 (driverhardwarev2) - LEGACY_DRIVERHARDWAREV2 O64 - Services: CS003 - No object (No service) - LEGACY_ELBYCDIO O64 - Services: CS003 - EpsonBidirectionalService (EpsonBidirectionalService) - LEGACY_EPSONBIDIRECTIONALSERVICE O64 - Services: CS003 - EPSON Printer Status Agent2 (EPSONStatusAgent2) - LEGACY_EPSONSTATUSAGENT2 O64 - Services: CS003 - Service de rapport d'erreurs (ERSvc) - LEGACY_ERSVC O64 - Services: CS003 - Système d'événements de COM+ (EventSystem) - LEGACY_EVENTSYSTEM O64 - Services: CS003 - fastfat (fastfat) - LEGACY_FASTFAT O64 - Services: CS003 - Fips (Fips) - LEGACY_FIPS O64 - Services: CS003 - FltMgr (FltMgr) - LEGACY_FLTMGR O64 - Services: CS003 - Windows Presentation Foundation Font Cache 3.0.0.0 (FontCache3.0.0.0) - LEGACY_FONTCACHE3.0.0.0 O64 - Services: CS003 - Freenet 0.7 darknet-8888 (freenet-darknet-8888) - LEGACY_FREENET-DARKNET-8888 O64 - Services: CS003 - FreshIO (FreshIO) - LEGACY_FRESHIO O64 - Services: CS003 - Fs_Rec (Fs_Rec) - LEGACY_FS_REC O64 - Services: CS003 - Classificateur de paquets générique (Gpc) - LEGACY_GPC O64 - Services: CS003 - Google Software Updater (gusvc) - LEGACY_GUSVC O64 - Services: CS003 - Aide et support (helpsvc) - LEGACY_HELPSVC O64 - Services: CS003 - HTTP (HTTP) - LEGACY_HTTP O64 - Services: CS003 - Service COM de gravage de CD IMAPI (ImapiService) - LEGACY_IMAPISERVICE O64 - Services: CS003 - Traducteur d'adresses réseau IP (IpNat) - LEGACY_IPNAT O64 - Services: CS003 - Service de l’iPod (iPod Service) - LEGACY_IPOD_SERVICE O64 - Services: CS003 - Pilote IPSEC (IPSec) - LEGACY_IPSEC O64 - Services: CS003 - Java Quick Starter (JavaQuickStarterService) - LEGACY_JAVAQUICKSTARTERSERVICE O64 - Services: CS003 - KLIF (KLIF) - LEGACY_KLIF O64 - Services: CS003 - ksecdd (ksecdd) - LEGACY_KSECDD O64 - Services: CS003 - Serveur (lanmanserver) - LEGACY_LANMANSERVER O64 - Services: CS003 - Station de travail (LanmanWorkstation) - LEGACY_LANMANWORKSTATION O64 - Services: CS003 - Lbd (Lbd) - LEGACY_LBD O64 - Services: CS003 - Assistance TCP/IP NetBIOS (LmHosts) - LEGACY_LMHOSTS O64 - Services: CS003 - Ma-Config Service (maconfservice) - LEGACY_MACONFSERVICE O64 - Services: CS003 - Macromedia Licensing Service (Macromedia Licensing Service) - LEGACY_MACROMEDIA_LICENSING_SERVICE O64 - Services: CS003 - mnmdd (mnmdd) - LEGACY_MNMDD O64 - Services: CS003 - mountmgr (mountmgr) - LEGACY_MOUNTMGR O64 - Services: CS003 - Redirecteur client WebDav (MRxDAV) - LEGACY_MRXDAV O64 - Services: CS003 - MRXSMB (MRxSmb) - LEGACY_MRXSMB O64 - Services: CS003 - Distributed Transaction Coordinator (MSDTC) - LEGACY_MSDTC O64 - Services: CS003 - Msfs (Msfs) - LEGACY_MSFS O64 - Services: CS003 - Windows Installer (MSIServer) - LEGACY_MSISERVER O64 - Services: CS003 - Mtlstrm (Mtlstrm) - LEGACY_MTLSTRM O64 - Services: CS003 - Mup (Mup) - LEGACY_MUP O64 - Services: CS003 - NAS PM Service (NasPmService) - LEGACY_NASPMSERVICE O64 - Services: CS003 - Pilote système NDIS (NDIS) - LEGACY_NDIS O64 - Services: CS003 - Pilote TAPI NDIS d'accès distant (NdisTapi) - LEGACY_NDISTAPI O64 - Services: CS003 - NDIS mode utilisateur E/S Protocole (Ndisuio) - LEGACY_NDISUIO O64 - Services: CS003 - NDProxy (NDProxy) - LEGACY_NDPROXY O64 - Services: CS003 - Interface NetBIOS (NetBIOS) - LEGACY_NETBIOS O64 - Services: CS003 - NetBIOS sur TCP/IP (NetBT) - LEGACY_NETBT O64 - Services: CS003 - Connexions réseau (Netman) - LEGACY_NETMAN O64 - Services: CS003 - NLA (Network Location Awareness) (Nla) - LEGACY_NLA O64 - Services: CS003 - NMSAccessU (NMSAccessU) - LEGACY_NMSACCESSU O64 - Services: CS003 - Npfs (Npfs) - LEGACY_NPFS O64 - Services: CS003 - ntfs (ntfs) - LEGACY_NTFS O64 - Services: CS003 - Stockage amovible (NtmsSvc) - LEGACY_NTMSSVC O64 - Services: CS003 - Null (Null) - LEGACY_NULL O64 - Services: CS003 - PartMgr (PartMgr) - LEGACY_PARTMGR O64 - Services: CS003 - ParVdm (ParVdm) - LEGACY_PARVDM O64 - Services: CS003 - pavboot (pavboot) - LEGACY_PAVBOOT O64 - Services: CS003 - PCIIde (PCIIde) - LEGACY_PCIIDE O64 - Services: CS003 - Services IPSEC (PolicyAgent) - LEGACY_POLICYAGENT O64 - Services: CS003 - Emplacement protégé (ProtectedStorage) - LEGACY_PROTECTEDSTORAGE O64 - Services: CS003 - Pilote de connexion automatique d'accès distant (RasAcd) - LEGACY_RASACD O64 - Services: CS003 - Gestionnaire de connexions d'accès distant (RasMan) - LEGACY_RASMAN O64 - Services: CS003 - Rdbss (Rdbss) - LEGACY_RDBSS O64 - Services: CS003 - RDPCDD (RDPCDD) - LEGACY_RDPCDD O64 - Services: CS003 - RDPNP (RDPNP) - LEGACY_RDPNP O64 - Services: CS003 - Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - LEGACY_RDSESSMGR O64 - Services: CS003 - RecAgent (RecAgent) - LEGACY_RECAGENT O64 - Services: CS003 - Accès à distance au Registre (RemoteRegistry) - LEGACY_REMOTEREGISTRY O64 - Services: CS003 - Appel de procédure distante (RPC) (RpcSs) - LEGACY_RPCSS O64 - Services: CS003 - Gestionnaire de comptes de sécurité (SamSs) - LEGACY_SAMSS O64 - Services: CS003 - Planificateur de tâches (Schedule) - LEGACY_SCHEDULE O64 - Services: CS003 - SeaPort (SeaPort) - LEGACY_SEAPORT O64 - Services: CS003 - Connexion secondaire (seclogon) - LEGACY_SECLOGON O64 - Services: CS003 - Notification d'événement système (SENS) - LEGACY_SENS O64 - Services: CS003 - Pare-feu Windows / Partage de connexion Internet (SharedAccess) - LEGACY_SHAREDACCESS O64 - Services: CS003 - Détection matériel noyau (ShellHWDetection) - LEGACY_SHELLHWDETECTION O64 - Services: CS003 - SlNtHal (SlNtHal) - LEGACY_SLNTHAL O64 - Services: CS003 - SmartLinkService (SLService) - LEGACY_SLSERVICE O64 - Services: CS003 - SlWdmSup (SlWdmSup) - LEGACY_SLWDMSUP O64 - Services: CS003 - No object (No service) - LEGACY_SPEEDFAN O64 - Services: CS003 - Spouleur d'impression (Spooler) - LEGACY_SPOOLER O64 - Services: CS003 - sptd (sptd) - LEGACY_SPTD O64 - Services: CS003 - Spyware Terminator Driver 2 (sp_rsdrv2) - LEGACY_SP_RSDRV2 O64 - Services: CS003 - Spyware Terminator Realtime Shield Service (sp_rssrv) - LEGACY_SP_RSSRV O64 - Services: CS003 - Pilote de filtre de restauration système (sr) - LEGACY_SR O64 - Services: CS003 - srescan (srescan) - LEGACY_SRESCAN O64 - Services: CS003 - Service de restauration système (srservice) - LEGACY_SRSERVICE O64 - Services: CS003 - Srv (Srv) - LEGACY_SRV O64 - Services: CS003 - Service de découvertes SSDP (SSDPSRV) - LEGACY_SSDPSRV O64 - Services: CS003 - ssmdrv (ssmdrv) - LEGACY_SSMDRV O64 - Services: CS003 - Acquisition d'image Windows (WIA) (stisvc) - LEGACY_STISVC O64 - Services: CS003 - Journaux et alertes de performance (SysmonLog) - LEGACY_SYSMONLOG O64 - Services: CS003 - Téléphonie (TapiSrv) - LEGACY_TAPISRV O64 - Services: CS003 - Pilote du protocole TCP/IP (Tcpip) - LEGACY_TCPIP O64 - Services: CS003 - Services Terminal Server (TermService) - LEGACY_TERMSERVICE O64 - Services: CS003 - Thèmes (Themes) - LEGACY_THEMES O64 - Services: CS003 - TomTomHOMEService (TomTomHOMEService) - LEGACY_TOMTOMHOMESERVICE O64 - Services: CS003 - Client de suivi de lien distribué (TrkWks) - LEGACY_TRKWKS O64 - Services: CS003 - Udfs (Udfs) - LEGACY_UDFS O64 - Services: CS003 - UnlockerDriver5 (UnlockerDriver5) - LEGACY_UNLOCKERDRIVER5 O64 - Services: CS003 - Hôte de périphérique universel Plug-and-Play (upnphost) - LEGACY_UPNPHOST O64 - Services: CS003 - vga (vga) - LEGACY_VGA O64 - Services: CS003 - VgaSave (VgaSave) - LEGACY_VGASAVE O64 - Services: CS003 - VolSnap (VolSnap) - LEGACY_VOLSNAP O64 - Services: CS003 - vsdatant (vsdatant) - LEGACY_VSDATANT O64 - Services: CS003 - TrueVector Internet Monitor (vsmon) - LEGACY_VSMON O64 - Services: CS003 - Horloge Windows (W32Time) - LEGACY_W32TIME O64 - Services: CS003 - Pilote ARP IP d'accès distant (Wanarp) - LEGACY_WANARP O64 - Services: CS003 - WebClient (WebClient) - LEGACY_WEBCLIENT O64 - Services: CS003 - Infrastructure de gestion Windows (winmgmt) - LEGACY_WINMGMT O64 - Services: CS003 - Carte de performance WMI (WmiApSrv) - LEGACY_WMIAPSRV O64 - Services: CS003 - Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (WS2IFSL) - LEGACY_WS2IFSL O64 - Services: CS003 - Centre de sécurité (wscsvc) - LEGACY_WSCSVC O64 - Services: CS003 - Mises à jour automatiques (wuauserv) - LEGACY_WUAUSERV O64 - Services: CS003 - Configuration automatique sans fil (WZCSVC) - LEGACY_WZCSVC End of the scan: 1355 lines Ligne traitée : 2519/2607
  6. JEVIENS DE TOURNER ZEB HELP ET HIJACK THIS NE VOIS PAS TOUT 071 PAR EXEMPLE° COMMENT PUIS FAIRE LE MENAGE voici le rapport et merci Zeb Help Process 2 by Nicolas Coolman - Rapport de synthèse du 26/10/2009 08:31:05 INFORMATION PROCESSUS MALWARE (Rootkit, trojan, ver, spyware, adware,...) O71 - BDRI:[hklm\software\microsoft\internet explorer\extension compatibility\{43d9e6f0-1776-4897-ae14-ecedecbafec0}] O71 - BDRI:[hklm\software\microsoft\internet explorer\extension compatibility\{5a074b29-f830-49de-a31b-5bb9d7f6b407}] O71 - BDRI:[hklm\software\microsoft\internet explorer\extension compatibility\{5a074b21-f830-49de-a31b-5bb9d7f6b407}] O71 - BDRI:[hklm\software\microsoft\shared tools\msconfig\startupreg\searchsettings] O71 - BDRI:[hklm\software\dealio] O71 - BDRI:[hklm\software\search settings] O71 - BDRI:[hkcr\clsid\{9afb8248-617f-460d-9366-d71cdeda3179}] O71 - BDRI:[hkcu\software\microsoft\internet explorer\searchscopes\{cf739809-1c6c-47c0-85b9-569dbb141420}] O71 - BDRI:[hkcu\software\search settings] PROCESSUS SUPERFLU DU SYSTEME O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc009.dat -->25/10/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc00C.dat -->25/10/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh009.dat -->25/10/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh00C.dat -->25/10/2009 PROCESSUS INUTILE (Au démarrage du système) O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE MISE A JOUR DE PRODUIT Sun Microsystems PROCESSUS P2P (Vecteurs d'infections) Azureus PeerToPeer Azureus®PeerToPeer PROTECTION DU SYSTEME (Antivirus, FireWall, Anti-Malwares) ZoneLabs®ZoneAlarm Avira®AntiVir PersonalEdition ZoneLabs ZoneAlarm Avira AntiVir PersonalEdition Zone Labs Zone Alarm Spybot Search & Destroy RAPPORT SIMPLIFIE OPIE: Opera 10.00 rundll32.exe C:/Program Files/FreeGo/FreeGo/FreeGo.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [FreeGo] C:/Program Files/FreeGo/FreeGo/FreeGo.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE O15 - Trusted Zone: * O16 - DPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} (JordanUploader Class) - http://photoservice.fujicolor.eu/ips-opdat...dan-canvasx.cab O23 - Service: TomTomHOMEService (TomTomHOMEService) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O41 - Driver: avgio (avgio) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys O41 - Driver: avgntflt (avgntflt) - C:\WINDOWS\system32\DRIVERS\avgntflt.sys O41 - Driver: FreshIO (FreshIO) - C:\Program Files\FreshDevices\FreshDiagnose\FreshIO.sys O41 - Driver: Lbd (Lbd) - C:\WINDOWS\system32\DRIVERS\Lbd.sys O42 - Logiciel: Vuze O42 - Logiciel: Abuledu - Devine 0.2 O42 - Logiciel: AVI ReComp 1.5.0 O42 - Logiciel: Cobian Backup 9 O42 - Logiciel: CutePDF Writer 2.7 O42 - Logiciel: Dia (supprimer uniquement) O42 - Logiciel: DVD Flick 1.3.0.7 O42 - Logiciel: Enlightenus 1.00 O42 - Logiciel: FreeGo version 4 O42 - Logiciel: Freenet 0.7.5 O42 - Logiciel: Gemini Lost O42 - Logiciel: GLtron version 0.70 O42 - Logiciel: KompoZer 0.7.10 (supprimer uniquement) O42 - Logiciel: La Marmite du Chef 6.4.1 O42 - Logiciel: Look@LAN 2.50 Build 35 O42 - Logiciel: Nancy Drew Dossier-Resorting To Danger . O42 - Logiciel: nLite 1.4.5 O42 - Logiciel: Ogg Codecs 0.81.15562 O42 - Logiciel: Pahelika - Secret Legends O42 - Logiciel: Princess Isabella A Witch's Curse 1.00 O42 - Logiciel: Scribus 1.3.3.12 O42 - Logiciel: TomTom HOME 2.7.2.1825 O42 - Logiciel: VobSub 2.23 O42 - Logiciel: Xvid 1.2.2 O42 - Logiciel: Opera 10.00 O42 - Logiciel: Java 6 Update 15 O42 - Logiciel: Bing Maps 3D O42 - Logiciel: Java 6 Update 4 O42 - Logiciel: Java 6 Update 7 O42 - Logiciel: Navman F Series Connection Pack O42 - Logiciel: TomTom HOME Visual Studio Merge Modules O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\ST System Shared O44 - LFC:Last File Created - C:\WINDOWS\System32\jupdate-1.6.0_15-b03.log -->05/08/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\mswebdvd.dll -->05/08/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc009.dat -->25/10/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc00C.dat -->25/10/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh009.dat -->25/10/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh00C.dat -->25/10/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\TZLog.log -->26/08/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\wininet.dll -->29/08/2009 O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\avgntflt.sys -->18/08/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ALBUMDB2.EXE-0EEB0F05.pf -->24/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ALG.EXE-0F138680.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\AVCENTER.EXE-1A970FA0.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\AVNOTIFY.EXE-05ED5FD8.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\AVWSC.EXE-0283F9DD.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CBINTERFACE.EXE-13CDDFE5.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CTFMON.EXE-0E17969B.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DCCPROC.EXE-3284D294.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ENLIGHTENUS STRATEGY GUIDE.EX-188DEF95.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ENLIGHTENUS.EXE-128A0C01.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FIREFOX.EXE-28641590.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FLASHGOT.EXE-0E2E2577.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FOXIT READER.EXE-35492E0C.pf -->24/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FOXITR~1.EXE-2C735C97.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FREEGO.EXE-34C42783.pf -->22/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FXSVR2.EXE-14513BBA.pf -->24/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HOMEPLAYER.EXE-20861817.pf -->24/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IMAPI.EXE-0BF740A4.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\INKSCAPE.EXE-3588A272.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\JQSNOTIFY.EXE-24AE4A36.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\KMJ.EXE-267DC491.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOTEPAD.EXE-336351A9.pf -->24/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PICASAPHOTOVIEWER.EXE-1247CDA5.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PICASAUPDATER.EXE-032BAF6F.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\POWERPNT.EXE-17CE3F4E.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PRINCESS.EXE-0FA96B92.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UPDATE.EXE-2577D203.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UPDCLIENT.EXE-215FC96B.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VERCLSID.EXE-3667BD89.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WINWORD.EXE-10D55173.pf -->23/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WLCOMM.EXE-04AE9009.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WLMAIL.EXE-16F261CF.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WLTUSER.EXE-05A5B196.pf -->05/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WMIAPSRV.EXE-1E2270A5.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WSCNTFY.EXE-1B24F5EB.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf -->23/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ZHP2.EXE-067B1FE0.pf -->26/10/2009 O47 - AAKE:Key Export - "C:\Program Files\Azureus\Azureus.exe"="C:\Program Files\Azureus\Azureus.exe:*:Enabled:Azureus" O47 - AAKE:Key Export - "C:\Program Files\Spamihilator\cdcc.exe"="C:\Program Files\Spamihilator\cdcc.exe:*:Enabled:Spamihilator DCC Filter Configuration" O47 - AAKE:Key Export - "C:\Program Files\Spamihilator\dccproc.exe"="C:\Program Files\Spamihilator\dccproc.exe:*:Enabled:Spamihilator DCC Filter" O47 - AAKE:Key Export - "C:\Program Files\HomePlayer\VLC\vlc.exe"="C:\Program Files\HomePlayer\VLC\vlc.exe:*:Enabled:VLC HomePlayer" O50 - IEFO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d O71 - BDRI:[hklm\software\microsoft\internet explorer\extension compatibility\{43d9e6f0-1776-4897-ae14-ecedecbafec0}] O71 - BDRI:[hklm\software\microsoft\internet explorer\extension compatibility\{5a074b29-f830-49de-a31b-5bb9d7f6b407}] O71 - BDRI:[hklm\software\microsoft\internet explorer\extension compatibility\{5a074b21-f830-49de-a31b-5bb9d7f6b407}] O71 - BDRI:[hklm\software\microsoft\shared tools\msconfig\startupreg\searchsettings] O71 - BDRI:[hklm\software\dealio] O71 - BDRI:[hklm\software\search settings] O71 - BDRI:[hkcr\clsid\{9afb8248-617f-460d-9366-d71cdeda3179}] O71 - BDRI:[hkcu\software\microsoft\internet explorer\searchscopes\{cf739809-1c6c-47c0-85b9-569dbb141420}] O71 - BDRI:[hkcu\software\search settings] O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ALBUMDB2.EXE-0EEB0F05.pf -->24/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ALG.EXE-0F138680.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\AVCENTER.EXE-1A970FA0.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\AVNOTIFY.EXE-05ED5FD8.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\AVWSC.EXE-0283F9DD.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CBINTERFACE.EXE-13CDDFE5.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CTFMON.EXE-0E17969B.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DCCPROC.EXE-3284D294.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ENLIGHTENUS STRATEGY GUIDE.EX-188DEF95.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ENLIGHTENUS.EXE-128A0C01.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FIREFOX.EXE-28641590.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FLASHGOT.EXE-0E2E2577.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FOXIT READER.EXE-35492E0C.pf -->24/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FOXITR~1.EXE-2C735C97.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FREEGO.EXE-34C42783.pf -->22/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FXSVR2.EXE-14513BBA.pf -->24/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HOMEPLAYER.EXE-20861817.pf -->24/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IMAPI.EXE-0BF740A4.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\INKSCAPE.EXE-3588A272.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\JQSNOTIFY.EXE-24AE4A36.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\KMJ.EXE-267DC491.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOTEPAD.EXE-336351A9.pf -->24/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PICASAPHOTOVIEWER.EXE-1247CDA5.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PICASAUPDATER.EXE-032BAF6F.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\POWERPNT.EXE-17CE3F4E.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PRINCESS.EXE-0FA96B92.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UPDATE.EXE-2577D203.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UPDCLIENT.EXE-215FC96B.pf -->25/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VERCLSID.EXE-3667BD89.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WINWORD.EXE-10D55173.pf -->23/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WLCOMM.EXE-04AE9009.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WLMAIL.EXE-16F261CF.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WLTUSER.EXE-05A5B196.pf -->05/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WMIAPSRV.EXE-1E2270A5.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WSCNTFY.EXE-1B24F5EB.pf -->26/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf -->23/10/2009 O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ZHP2.EXE-067B1FE0.pf -->26/10/2009
  7. avant de cnager de configuration je dois sauvegarder mes fichier. J'ai un disque maxtor basic 500 externe ; mon pc est en w98SE. Savez-vous où trouver les drivers W98SE (rien sur le site seagate maxtor) merci
  8. A la fin du Combofix j'ai récupérér le combofix.txt dans c:\combofix\ aucun e alarme je lance aftcleaner ComboFix 08-05-21.2 - Lucien 2008-05-22 22:05:00.2 - NTFSx86 Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.744 [GMT 2:00] Endroit: C:\Documents and Settings\Lucien\Bureau\ComboFix.exe Command switches used :: C:\Documents and Settings\Lucien\Bureau\CFScript.txt * Création d'un nouveau point de restauration AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !! FILE :: C:\WINDOWS\system32\xxyyaWnL.dll . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . C:\VundoFix Backups C:\WINDOWS\system32\xxyyaWnL.dll . ((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-04-22 to 2008-05-22 )))))))))))))))))))))))))))))))))))) . 2008-05-22 13:46 . 2008-05-22 13:46 <REP> d-------- C:\Program Files\Avira 2008-05-22 13:46 . 2008-05-22 13:46 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Avira 2008-05-22 13:18 . 2008-05-22 13:18 <REP> d-------- C:\Program Files\ZebHelpProcess 2 2008-05-22 13:15 . 1999-11-12 05:11 989,176 --a------ C:\Documents and Settings\Lucien\BDEADMIN.EXE 2008-05-22 13:15 . 1999-11-12 05:11 647,168 --a------ C:\Documents and Settings\Lucien\IDDAO32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 601,600 --a------ C:\Documents and Settings\Lucien\IDDA3532.DLL 2008-05-22 13:15 . 1999-11-12 05:11 589,312 --a------ C:\Documents and Settings\Lucien\IDAPI32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 464,896 --a------ C:\Documents and Settings\Lucien\IDSQL32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 454,144 --a------ C:\Documents and Settings\Lucien\IDDBAS32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 436,224 --a------ C:\Documents and Settings\Lucien\IDODBC32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 422,400 --a------ C:\Documents and Settings\Lucien\IDQBE32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 255,488 --a------ C:\Documents and Settings\Lucien\IDPDX32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 167,936 --a------ C:\Documents and Settings\Lucien\IDDR32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 139,264 --a------ C:\Documents and Settings\Lucien\IDBAT32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 116,736 --a------ C:\Documents and Settings\Lucien\IDR20009.DLL 2008-05-22 13:15 . 1999-11-12 05:11 116,224 --a------ C:\Documents and Settings\Lucien\IDASCI32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 101,376 --a------ C:\Documents and Settings\Lucien\bantam.dll 2008-05-22 13:15 . 1999-11-12 05:11 45,568 --a------ C:\Documents and Settings\Lucien\BLW32.DLL 2008-05-22 10:21 . 2008-05-22 10:22 <REP> d-------- C:\WINDOWS\BDOSCAN8 2008-05-21 20:38 . 2008-05-21 20:38 <REP> d-------- C:\WINDOWS\Hide & Secret 2 - Cliffhanger Castle 2008-05-21 20:38 . 2008-05-21 20:38 <REP> d-------- C:\Program Files\Hide & Secret 2 - Cliffhanger Castle 2008-05-13 18:09 . 2008-05-22 22:12 4,098,080 --ahs---- C:\WINDOWS\system32\drivers\fidbox.dat 2008-05-13 18:09 . 2008-05-22 22:08 51,140 --ahs---- C:\WINDOWS\system32\drivers\fidbox.idx 2008-05-13 18:06 . 2008-05-13 18:06 <REP> d-------- C:\Documents and Settings\All Users\Application Data\MailFrontier 2008-05-13 18:06 . 2008-04-02 21:07 75,248 --a------ C:\WINDOWS\zllsputility.exe 2008-05-13 18:06 . 2008-04-02 21:08 54,672 --a------ C:\WINDOWS\system32\vsutil_loc040c.dll 2008-05-13 18:06 . 2008-04-02 21:08 42,384 --a------ C:\WINDOWS\zllsputility_loc040c.dll 2008-05-13 18:06 . 2008-04-02 21:08 21,904 --a------ C:\WINDOWS\system32\imsinstall_loc040c.dll 2008-05-13 18:06 . 2008-04-02 21:08 17,808 --a------ C:\WINDOWS\system32\imslsp_install_loc040c.dll 2008-05-13 18:06 . 2004-04-27 05:40 11,264 --a------ C:\WINDOWS\system32\SpOrder.dll 2008-05-13 18:05 . 2008-05-13 18:05 <REP> d-------- C:\Program Files\Zone Labs 2008-05-08 14:52 . 2008-05-08 14:52 <REP> d-------- C:\Program Files\Microsoft Baseline Security Analyzer 2 2008-05-08 14:52 . 2008-05-15 15:07 <REP> d-------- C:\Documents and Settings\Lucien\SecurityScans 2008-05-07 12:22 . 2008-05-15 19:04 <REP> d-------- C:\WINDOWS\system32\CatRoot_bak 2008-05-07 10:25 . 2008-05-07 10:25 <REP> d-------- C:\Documents and Settings\Lucien\Application Data\Xi 2008-05-07 10:24 . 2008-05-07 10:24 <REP> d-------- C:\Program Files\Xi 2008-05-05 09:39 . 2008-05-05 13:58 766 --a------ C:\test.cur 2008-05-05 09:37 . 2008-05-05 13:59 <REP> d-------- C:\Program Files\Cuisine Astuce 2008-05-04 14:29 . 2008-05-04 14:29 <REP> d-------- C:\Program Files\FileZilla FTP Client 2008-05-02 14:15 . 2008-05-02 14:15 <REP> d-------- C:\Program Files\OpenOffice.org 2.4 2008-05-01 15:32 . 2008-05-01 15:32 <REP> d-------- C:\Documents and Settings\Lucien\Application Data\SprillBermudeEng 2008-05-01 15:29 . 2008-05-01 15:29 <REP> d-------- C:\WINDOWS\Sprill - The Mystery of The Bermuda Triangle 2008-05-01 15:29 . 2008-05-22 13:54 <REP> d-------- C:\Program Files\Sprill - The Mystery of The Bermuda Triangle 2008-04-27 09:33 . 2008-04-27 09:33 <REP> d-------- C:\Program Files\VS Revo Group . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-05-22 20:10 --------- d-----w C:\Program Files\RamBoost XP 2008-05-22 20:09 1,623,013 ----a-w C:\WINDOWS\Internet Logs\tvDebug.zip 2008-05-22 20:01 --------- d-----w C:\Documents and Settings\Lucien\Application Data\Spamihilator 2008-05-22 15:50 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard 2008-05-22 11:30 --------- d-----w C:\Documents and Settings\Lucien\Application Data\Azureus 2008-05-22 10:25 --------- d-----w C:\Program Files\Panda Security 2008-05-21 15:38 --------- d-----w C:\Program Files\Azureus 2008-05-21 07:44 --------- d-----w C:\Program Files\PyGrenouille 2008-05-20 19:36 --------- d-----w C:\Documents and Settings\Lucien\Application Data\XnView 2008-05-20 18:06 --------- d-----w C:\Program Files\adslTV 2008-05-20 15:41 --------- d-----w C:\Program Files\Livre Album Fuji Photo 2008-05-17 16:02 --------- d-----w C:\Documents and Settings\Lucien\Application Data\vlc 2008-05-11 20:42 --------- d-----w C:\Documents and Settings\Lucien\Application Data\OpenOffice.org2 2008-05-07 15:48 --------- d--h--w C:\Program Files\InstallShield Installation Information 2008-05-07 15:48 --------- d-----w C:\Program Files\Navman 2008-05-04 09:47 1,359 ----a-w C:\WINDOWS\system32\drivers\fwdrv.err 2008-05-03 06:42 --------- d-----w C:\Program Files\Java 2008-04-28 13:31 --------- d-----w C:\Program Files\TubeMaster 2008-04-26 20:17 --------- d-----w C:\Program Files\Great Secrets Da Vinci 2008-04-24 15:52 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP 2008-04-24 15:43 --------- d-----w C:\Program Files\Spyware Doctor 2008-04-19 08:39 --------- d-----w C:\Program Files\Micro Application 2008-04-18 14:20 --------- d-----w C:\Program Files\IKEA HomePlanner 2008-04-10 21:16 --------- d-----w C:\Documents and Settings\All Users\Application Data\MonteCristo 2008-04-10 20:51 --------- d-----w C:\Documents and Settings\Lucien\Application Data\Eltima Software 2008-04-09 08:51 --------- d-----w C:\Documents and Settings\Lucien\Application Data\TuneUp Software 2008-04-08 20:41 --------- d-----w C:\Program Files\Dream Chronicles 2 2008-04-06 13:02 --------- d-----w C:\Program Files\Hidden Wonders of the Depths 2008-03-30 19:37 --------- d-----w C:\Program Files\Apple Software Update 2008-03-30 19:35 --------- d-----w C:\Documents and Settings\Lucien\Application Data\Apple Computer 2008-03-29 15:58 --------- d-----w C:\Program Files\K-Lite Codec Pack 2008-03-29 15:58 --------- d-----w C:\Program Files\DivX 2008-03-29 14:42 --------- d-----w C:\Documents and Settings\Lucien\Application Data\DivX 2006-12-24 17:23 34 ----a-w C:\Documents and Settings\Lucien\o9u.dat . ((((((((((((((((((((((((((((( snapshot@2008-05-22_16.59.59.71 ))))))))))))))))))))))))))))))))))))))))) . - 2008-05-22 14:27:35 2,048 --s-a-w C:\WINDOWS\bootstat.dat + 2008-05-22 20:09:47 2,048 --s-a-w C:\WINDOWS\bootstat.dat . ((((((((((((((((((((((((((((((((( Point de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))) . . REGEDIT4 *Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RamBoostXp"="C:\Program Files\RamBoost XP\rambxpfr.exe" [2004-03-09 22:48 1542144] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "EPSON Stylus CX3200"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.exe" [2002-07-01 05:05 74752] "Raccourci vers la page des propriétés de High Definition Audio"="HDAShCut.exe" [2005-01-07 17:07 61952 C:\WINDOWS\system32\HdAShCut.exe] "Spamihilator"="C:\Program Files\Spamihilator\spamihilator.exe" [2007-06-18 11:52 716800] "LVCOMSX"="C:\WINDOWS\system32\LVCOMSX.EXE" [2005-07-19 17:32 221184] "BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-19 17:10 110592 C:\WINDOWS\system32\bthprops.cpl] "Cobian Backup 8"="C:\Program Files\Cobian Backup 8\Cobian.exe" [2007-09-27 13:37 501248] "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-09-01 15:57 282624] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 04:25 144784] "ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [2008-04-02 21:07 919016] "avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-05-22 13:50 262401] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "DWQueuedReporting"="C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" [2007-03-13 15:38 39264] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "VIDC.SP54"= SP5X_32.DLL "VIDC.SP55"= SP5X_32.DLL "VIDC.SP56"= SP5X_32.DLL "VIDC.SP57"= SP5X_32.DLL "VIDC.SP58"= SP5X_32.DLL "VIDC.YV12"= yv12vfw.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "LogitechVideoTray"=C:\Program Files\Logitech\Video\LogiTray.exe "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" -atboottime [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ZoneLabsFirewall] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "C:\\Program Files\\Azureus\\Azureus.exe"= "C:\\Program Files\\adslTV\\adslTV.exe"= "C:\\Program Files\\adslTV\\vlc.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\Messenger\\msmsgs.exe"= "C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"= "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"= "C:\\Program Files\\Spamihilator\\dccproc.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "6881:TCP"= 6881:TCP:azureus S2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [] S3 DarkSpy;DarkSpy;C:\WINDOWS\system32\DarkSpyKernel.sys [] S3 Navcar;Navman In-car Navigator USB Driver Service;C:\WINDOWS\system32\DRIVERS\Navcar.sys [2006-09-18 14:48] S3 NPF;NetGroup Packet Filter Driver;C:\WINDOWS\system32\drivers\npf.sys [2006-05-09 17:50] S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver;C:\WINDOWS\system32\NSNDIS5.SYS [2004-03-24 04:12] . Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es' "2008-05-16 15:15:00 C:\WINDOWS\Tasks\1-Click Maintenance.job" - C:\Program Files\TuneUp Utilities 2008\OneClick.exe "2008-05-21 20:27:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job" - C:\Program Files\Apple Software Update\SoftwareUpdate.exe "2008-05-22 20:13:02 C:\WINDOWS\Tasks\MP Scheduled Scan.job" - C:\Program Files\Windows Defender\MpCmdRun.exe "2008-05-22 16:32:20 C:\WINDOWS\Tasks\User_Feed_Synchronization-{36C107C3-6E8F-4B3B-840D-3169BE7AE602}.job" - C:\WINDOWS\system32\msfeedssync.exe "2008-05-22 19:43:02 C:\WINDOWS\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job"
  9. rapport Combofix il est a noté que j'ai arrete Avast et lancé Av antivirus qui detecte le trojn Tr/Dldr.agent.pni mais n'arrive ap sa le deleter merci encore ComboFix 08-05-21.2 - Lucien 2008-05-22 16:55:07.1 - NTFSx86 Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.745 [GMT 2:00] Endroit: D:\mes documents\telechargement\ComboFix.exe * Création d'un nouveau point de restauration AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !! . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . C:\WINDOWS\pack.epk C:\WINDOWS\system32\kmd.exe . ((((((((((((((((((((((((((((( Fichiers créés 2008-04-22 to 2008-05-22 )))))))))))))))))))))))))))))))))))) . 2008-05-22 16:30 . 2008-05-22 16:30 <REP> d-------- C:\VundoFix Backups 2008-05-22 13:46 . 2008-05-22 13:46 <REP> d-------- C:\Program Files\Avira 2008-05-22 13:46 . 2008-05-22 13:46 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Avira 2008-05-22 13:18 . 2008-05-22 13:18 <REP> d-------- C:\Program Files\ZebHelpProcess 2 2008-05-22 13:15 . 1999-11-12 05:11 989,176 --a------ C:\Documents and Settings\Lucien\BDEADMIN.EXE 2008-05-22 13:15 . 1999-11-12 05:11 647,168 --a------ C:\Documents and Settings\Lucien\IDDAO32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 601,600 --a------ C:\Documents and Settings\Lucien\IDDA3532.DLL 2008-05-22 13:15 . 1999-11-12 05:11 589,312 --a------ C:\Documents and Settings\Lucien\IDAPI32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 464,896 --a------ C:\Documents and Settings\Lucien\IDSQL32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 454,144 --a------ C:\Documents and Settings\Lucien\IDDBAS32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 436,224 --a------ C:\Documents and Settings\Lucien\IDODBC32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 422,400 --a------ C:\Documents and Settings\Lucien\IDQBE32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 255,488 --a------ C:\Documents and Settings\Lucien\IDPDX32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 167,936 --a------ C:\Documents and Settings\Lucien\IDDR32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 139,264 --a------ C:\Documents and Settings\Lucien\IDBAT32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 116,736 --a------ C:\Documents and Settings\Lucien\IDR20009.DLL 2008-05-22 13:15 . 1999-11-12 05:11 116,224 --a------ C:\Documents and Settings\Lucien\IDASCI32.DLL 2008-05-22 13:15 . 1999-11-12 05:11 101,376 --a------ C:\Documents and Settings\Lucien\bantam.dll 2008-05-22 13:15 . 1999-11-12 05:11 45,568 --a------ C:\Documents and Settings\Lucien\BLW32.DLL 2008-05-22 10:21 . 2008-05-22 10:22 <REP> d-------- C:\WINDOWS\BDOSCAN8 2008-05-21 20:38 . 2008-05-21 20:38 <REP> d-------- C:\WINDOWS\Hide & Secret 2 - Cliffhanger Castle 2008-05-21 20:38 . 2008-05-21 20:38 <REP> d-------- C:\Program Files\Hide & Secret 2 - Cliffhanger Castle 2008-05-21 17:33 . 2008-05-21 17:33 59,392 --a------ C:\WINDOWS\system32\xxyyaWnL.dll 2008-05-13 18:09 . 2008-05-22 16:59 3,907,616 --ahs---- C:\WINDOWS\system32\drivers\fidbox.dat 2008-05-13 18:09 . 2008-05-22 16:26 48,140 --ahs---- C:\WINDOWS\system32\drivers\fidbox.idx 2008-05-13 18:06 . 2008-05-13 18:06 <REP> d-------- C:\Documents and Settings\All Users\Application Data\MailFrontier 2008-05-13 18:06 . 2008-04-02 21:07 75,248 --a------ C:\WINDOWS\zllsputility.exe 2008-05-13 18:06 . 2008-04-02 21:08 54,672 --a------ C:\WINDOWS\system32\vsutil_loc040c.dll 2008-05-13 18:06 . 2008-04-02 21:08 42,384 --a------ C:\WINDOWS\zllsputility_loc040c.dll 2008-05-13 18:06 . 2008-04-02 21:08 21,904 --a------ C:\WINDOWS\system32\imsinstall_loc040c.dll 2008-05-13 18:06 . 2008-04-02 21:08 17,808 --a------ C:\WINDOWS\system32\imslsp_install_loc040c.dll 2008-05-13 18:06 . 2004-04-27 05:40 11,264 --a------ C:\WINDOWS\system32\SpOrder.dll 2008-05-13 18:05 . 2008-05-13 18:05 <REP> d-------- C:\Program Files\Zone Labs 2008-05-08 14:52 . 2008-05-08 14:52 <REP> d-------- C:\Program Files\Microsoft Baseline Security Analyzer 2 2008-05-08 14:52 . 2008-05-15 15:07 <REP> d-------- C:\Documents and Settings\Lucien\SecurityScans 2008-05-07 12:22 . 2008-05-15 19:04 <REP> d-------- C:\WINDOWS\system32\CatRoot_bak 2008-05-07 10:25 . 2008-05-07 10:25 <REP> d-------- C:\Documents and Settings\Lucien\Application Data\Xi 2008-05-07 10:24 . 2008-05-07 10:24 <REP> d-------- C:\Program Files\Xi 2008-05-05 09:39 . 2008-05-05 13:58 766 --a------ C:\test.cur 2008-05-05 09:37 . 2008-05-05 13:59 <REP> d-------- C:\Program Files\Cuisine Astuce 2008-05-04 14:29 . 2008-05-04 14:29 <REP> d-------- C:\Program Files\FileZilla FTP Client 2008-05-02 14:15 . 2008-05-02 14:15 <REP> d-------- C:\Program Files\OpenOffice.org 2.4 2008-05-01 15:32 . 2008-05-01 15:32 <REP> d-------- C:\Documents and Settings\Lucien\Application Data\SprillBermudeEng 2008-05-01 15:29 . 2008-05-01 15:29 <REP> d-------- C:\WINDOWS\Sprill - The Mystery of The Bermuda Triangle 2008-05-01 15:29 . 2008-05-22 13:54 <REP> d-------- C:\Program Files\Sprill - The Mystery of The Bermuda Triangle 2008-04-27 09:33 . 2008-04-27 09:33 <REP> d-------- C:\Program Files\VS Revo Group . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-05-22 14:32 --------- d-----w C:\Documents and Settings\Lucien\Application Data\Spamihilator 2008-05-22 14:29 --------- d-----w C:\Program Files\RamBoost XP 2008-05-22 11:30 --------- d-----w C:\Documents and Settings\Lucien\Application Data\Azureus 2008-05-22 10:25 --------- d-----w C:\Program Files\Panda Security 2008-05-22 05:20 982,749 ----a-w C:\WINDOWS\Internet Logs\tvDebug.zip 2008-05-21 15:38 --------- d-----w C:\Program Files\Azureus 2008-05-21 07:44 --------- d-----w C:\Program Files\PyGrenouille 2008-05-20 19:36 --------- d-----w C:\Documents and Settings\Lucien\Application Data\XnView 2008-05-20 18:06 --------- d-----w C:\Program Files\adslTV 2008-05-20 15:41 --------- d-----w C:\Program Files\Livre Album Fuji Photo 2008-05-17 16:02 --------- d-----w C:\Documents and Settings\Lucien\Application Data\vlc 2008-05-11 20:42 --------- d-----w C:\Documents and Settings\Lucien\Application Data\OpenOffice.org2 2008-05-07 15:48 --------- d--h--w C:\Program Files\InstallShield Installation Information 2008-05-07 15:48 --------- d-----w C:\Program Files\Navman 2008-05-04 09:47 1,359 ----a-w C:\WINDOWS\system32\drivers\fwdrv.err 2008-05-03 06:42 --------- d-----w C:\Program Files\Java 2008-05-03 06:38 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard 2008-04-28 13:31 --------- d-----w C:\Program Files\TubeMaster 2008-04-26 20:17 --------- d-----w C:\Program Files\Great Secrets Da Vinci 2008-04-24 15:52 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP 2008-04-24 15:43 --------- d-----w C:\Program Files\Spyware Doctor 2008-04-19 08:39 --------- d-----w C:\Program Files\Micro Application 2008-04-18 14:20 --------- d-----w C:\Program Files\IKEA HomePlanner 2008-04-14 02:34 7,680 ----a-w C:\WINDOWS\system32\spdwnwxp.exe 2008-04-10 21:16 --------- d-----w C:\Documents and Settings\All Users\Application Data\MonteCristo 2008-04-10 20:51 --------- d-----w C:\Documents and Settings\Lucien\Application Data\Eltima Software 2008-04-09 08:51 --------- d-----w C:\Documents and Settings\Lucien\Application Data\TuneUp Software 2008-04-08 20:41 --------- d-----w C:\Program Files\Dream Chronicles 2 2008-04-06 13:02 --------- d-----w C:\Program Files\Hidden Wonders of the Depths 2008-04-02 19:07 1,086,952 ----a-w C:\WINDOWS\system32\zpeng24.dll 2008-03-30 19:37 --------- d-----w C:\Program Files\Apple Software Update 2008-03-30 19:35 --------- d-----w C:\Documents and Settings\Lucien\Application Data\Apple Computer 2008-03-29 15:58 --------- d-----w C:\Program Files\K-Lite Codec Pack 2008-03-29 15:58 --------- d-----w C:\Program Files\DivX 2008-03-29 14:42 --------- d-----w C:\Documents and Settings\Lucien\Application Data\DivX 2008-03-25 04:51 621,344 ----a-w C:\WINDOWS\system32\mswstr10.dll 2008-03-25 04:51 194,144 ----a-w C:\WINDOWS\system32\msjint40.dll 2008-03-20 08:09 1,845,376 ----a-w C:\WINDOWS\system32\win32k.sys 2008-03-04 11:33 7,680 ----a-w C:\WINDOWS\system32\ff_vfw.dll 2008-03-01 12:58 826,368 ----a-w C:\WINDOWS\system32\wininet.dll 2006-12-24 17:23 34 ----a-w C:\Documents and Settings\Lucien\o9u.dat . ((((((((((((((((((((((((((((((((( Point de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))) . . REGEDIT4 *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{663656DF-6BAE-460C-A612-8133DF519346}] 2008-05-21 17:33 59392 --a------ C:\WINDOWS\system32\xxyyaWnL.dll [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RamBoostXp"="C:\Program Files\RamBoost XP\rambxpfr.exe" [2004-03-09 22:48 1542144] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-05-16 01:19 79224] "EPSON Stylus CX3200"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.exe" [2002-07-01 05:05 74752] "Raccourci vers la page des propriétés de High Definition Audio"="HDAShCut.exe" [2005-01-07 17:07 61952 C:\WINDOWS\system32\HdAShCut.exe] "Spamihilator"="C:\Program Files\Spamihilator\spamihilator.exe" [2007-06-18 11:52 716800] "LVCOMSX"="C:\WINDOWS\system32\LVCOMSX.EXE" [2005-07-19 17:32 221184] "BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-19 17:10 110592 C:\WINDOWS\system32\bthprops.cpl] "Cobian Backup 8"="C:\Program Files\Cobian Backup 8\Cobian.exe" [2007-09-27 13:37 501248] "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-09-01 15:57 282624] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 04:25 144784] "ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [2008-04-02 21:07 919016] "avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-05-22 13:50 262401] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "DWQueuedReporting"="C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" [2007-03-13 15:38 39264] C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\ Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE [2000-01-21 10:15:56 65588] PyGrenouille.lnk - C:\Program Files\PyGrenouille\pygrenouille.exe [2007-04-23 18:18:00 83968] [hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks] "{663656DF-6BAE-460C-A612-8133DF519346}"= C:\WINDOWS\system32\xxyyaWnL.dll [2008-05-21 17:33 59392] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\xxyyaWnL] xxyyaWnL.dll 2008-05-21 17:33 59392 C:\WINDOWS\system32\xxyyaWnL.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "VIDC.SP54"= SP5X_32.DLL "VIDC.SP55"= SP5X_32.DLL "VIDC.SP56"= SP5X_32.DLL "VIDC.SP57"= SP5X_32.DLL "VIDC.SP58"= SP5X_32.DLL "VIDC.YV12"= yv12vfw.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "LogitechVideoTray"=C:\Program Files\Logitech\Video\LogiTray.exe "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" -atboottime [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ZoneLabsFirewall] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "C:\\Program Files\\Azureus\\Azureus.exe"= "C:\\Program Files\\adslTV\\adslTV.exe"= "C:\\Program Files\\adslTV\\vlc.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\Messenger\\msmsgs.exe"= "C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"= "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"= "C:\\Program Files\\Spamihilator\\dccproc.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "6881:TCP"= 6881:TCP:azureus R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 01:20] R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 01:16] S3 DarkSpy;DarkSpy;C:\WINDOWS\system32\DarkSpyKernel.sys [] S3 Navcar;Navman In-car Navigator USB Driver Service;C:\WINDOWS\system32\DRIVERS\Navcar.sys [2006-09-18 14:48] S3 NPF;NetGroup Packet Filter Driver;C:\WINDOWS\system32\drivers\npf.sys [2006-05-09 17:50] S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver;C:\WINDOWS\system32\NSNDIS5.SYS [2004-03-24 04:12] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9207b75a-1bf6-11dc-8ec5-000feaa14ec2}] \Shell\AutoRun\command - explorer.exe http://"www.reprendre-en-rhonealpes.fr" *Newly Created Service* - CATCHME *Newly Created Service* - SSMDRV . Contenu du dossier 'Scheduled Tasks/Tâches planifiées' "2008-05-16 15:15:00 C:\WINDOWS\Tasks\1-Click Maintenance.job" - C:\Program Files\TuneUp Utilities 2008\OneClick.exe "2008-05-21 20:27:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job" - C:\Program Files\Apple Software Update\SoftwareUpdate.exe "2008-05-22 14:30:52 C:\WINDOWS\Tasks\MP Scheduled Scan.job" - C:\Program Files\Windows Defender\MpCmdRun.exe "2008-05-21 15:41:24 C:\WINDOWS\Tasks\User_Feed_Synchronization-{36C107C3-6E8F-4B3B-840D-3169BE7AE602}.job" - C:\WINDOWS\system32\msfeedssync.exe "2008-05-22 14:43:02 C:\WINDOWS\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job" - C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE . ************************************************************************** catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-05-22 16:59:04 Windows 5.1.2600 Service Pack 2 NTFS Balayage processus cachés ... Balayage caché autostart entries ... Balayage des fichiers cachés ... Scan terminé avec succès Les fichiers cachés: 0 ************************************************************************** . --------------------- DLLs a chargé sous des processus courants --------------------- PROCESS: C:\WINDOWS\system32\winlogon.exe -> C:\WINDOWS\system32\xxyyaWnL.dll . Temps d'accomplissement: 2008-05-22 17:01:02 ComboFix-quarantined-files.txt 2008-05-22 15:00:36 Pre-Run: 19,227,979,776 octets libres Post-Run: 19,365,875,712 octets libres 205 --- E O F --- 2008-05-16 10:01:35
  10. voici mon rapport hijack Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 13:38, on 22/05/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe C:\WINDOWS\system32\dllhost.exe C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\system32\UStorSrv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Spamihilator\spamihilator.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\WINDOWS\system32\rundll32.exe C:\Program Files\Cobian Backup 8\Cobian.exe C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\RamBoost XP\rambxpfr.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\PyGrenouille\pygrenouille.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\Program Files\Cobian Backup 8\cbInterface.exe C:\Program Files\Mozilla Firefox\firefox.exe D:\mes documents\applications locales\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?hl=fr O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {663656DF-6BAE-460C-A612-8133DF519346} - C:\WINDOWS\system32\xxyyaWnL.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: NetXfer - {83B80A9C-D91A-4F22-8DCF-EA7204039F79} - C:\Program Files\Xi\NetXfer\NXIEHelper.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - (no file) O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: NetXfer - {C16CBAAC-A75C-4DB5-A0DD-CDF5CAFCDD3A} - C:\Program Files\Xi\NetXfer\NXToolBar.dll O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [EPSON Stylus CX3200] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P19 "EPSON Stylus CX3200" /O6 "USB001" /M "Stylus CX3200" O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe O4 - HKLM\..\Run: [spamihilator] "C:\Program Files\Spamihilator\spamihilator.exe" O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [Cobian Backup 8] "C:\Program Files\Cobian Backup 8\Cobian.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKCU\..\Run: [RamBoostXp] C:\Program Files\RamBoost XP\rambxpfr.exe O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user') O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O4 - Global Startup: PyGrenouille.lnk = C:\Program Files\PyGrenouille\pygrenouille.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: Tout télécharger avec NetXfer - C:\Program Files\Xi\NetXfer\NXAddList.html O8 - Extra context menu item: Télécharger avec NetXfer - C:\Program Files\Xi\NetXfer\NXAddLink.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://lulubcal.spaces.live.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.zebulon.fr/scan8/oscan8.cab O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1160326823546 O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://lulubcal.spaces.live.com/PhotoUpload/MsnPUpld.cab O16 - DPF: {AD7A67A5-5461-4B6B-A9C5-09DD071527F5} (MCLPhoto_Upload.PhotoUpload) - http://auchan.fujifilmnet.com/MCLPhoto.CAB O16 - DPF: {AE2B937E-EA7D-4A8D-888C-B68D7F72A3C4} (IPSUploader4 Control) - http://photoservice.fujicolor.de/ips-opdat...PSUploader4.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - http://3dlifeplayer.dl.3dvia.com/player/in...l/installer.exe O20 - Winlogon Notify: xxyyaWnL - C:\WINDOWS\SYSTEM32\xxyyaWnL.dll O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: UStorage Server Service - OTi - C:\WINDOWS\system32\UStorSrv.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 9191 bytes
  11. pc gericom portable webgine xp il rame pas possible http://forum.zebulon.fr/style_emoticons/de.../icon_Doute.gif voici le< listing hijack de ce jour Logfile of HijackThis v1.99.1 Scan saved at 16:58:44, on 02/11/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16544) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Kerio\Personal Firewall\persfw.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\system32\S3hotkey.exe C:\WINDOWS\system32\S3tray2.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\RAM Idle LE\RAM_XP.exe C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\NETGEAR\MA111 Configuration Utility\wlancfg4.exe C:\Documents and Settings\LUCIEN\Mes documents\applications\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O4 - HKLM\..\Run: [s3hotkey] S3hotkey.exe O4 - HKLM\..\Run: [s3TRAY2] S3tray2.exe O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [RAM Idle Professional] C:\Program Files\RAM Idle LE\RAM_XP.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: MA111 Configuration Utility.lnk = ? O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll O9 - Extra button: Bloc Notes - {AF4F850B-68FF-404C-8417-549F86B1E236} - notepad.exe (file missing) O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O11 - Options group: [iNTERNATIONAL] International* O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1130429376087 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1136382361592 O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Plug-in 1.5.0_10) - O17 - HKLM\System\CCS\Services\Tcpip\..\{D63CB065-0148-4BD3-9F7E-18AB5232E70D}: NameServer = 212.27.54.252,213.228.0.212 O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Kerio Personal Firewall (PersFw) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall\persfw.exe O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe merci de votre aide
  12. voici mon analyse hijack (apres passage de spyboot et de ad aware Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:49:53, on 06/10/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\UStorSrv.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\ALCWZRD.EXE C:\Program Files\Unlocker\UnlockerAssistant.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\Spamihilator\spamihilator.exe C:\Program Files\Logitech\Video\LogiTray.exe C:\Program Files\Winamp\winampa.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\Program Files\Logitech\Video\FxSvr2.exe C:\Program Files\Azureus\Azureus.exe C:\Program Files\adslTV\adsltv.exe C:\Program Files\adslTV\vlc.exe D:\mes documents\applications locales\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?hl=fr O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Pando Toolbar BHO - {E3EA4FD1-CADE-4ae5-84F7-086EEE888BE4} - C:\Program Files\PandoBar\bar\1.bin\PANDOBAR.DLL O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [EPSON Stylus CX3200] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P19 "EPSON Stylus CX3200" /O6 "USB001" /M "Stylus CX3200" O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [unlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" -H O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -masquer O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" O4 - HKLM\..\Run: [spamihilator] "C:\Program Files\Spamihilator\spamihilator.exe" O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://lulubcal.spaces.live.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1160326823546 O16 - DPF: {AD7A67A5-5461-4B6B-A9C5-09DD071527F5} (MCLPhoto_Upload.PhotoUpload) - http://auchan.fujifilmnet.com/MCLPhoto.CAB O16 - DPF: {AE2B937E-EA7D-4A8D-888C-B68D7F72A3C4} (IPSUploader4 Control) - http://photoservice.fujicolor.de/ips-opdat...PSUploader4.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: UStorage Server Service - OTi - C:\WINDOWS\system32\UStorSrv.exe -- End of file - 7355 bytes merci
×
×
  • Créer...