Aller au contenu

Arnomoa

Membres
  • Compteur de contenus

    31
  • Inscription

  • Dernière visite

Tout ce qui a été posté par Arnomoa

  1. Hello, J'ai eu les doigts plus rapides que le cerveau ce matin, et j'ai exécuté deux fois l'outil Supression... Le rapport est donc vierge: # DelFix v7.9B - Rapport créé le 28/05/2011 à 09:34 # Mis à jour le 22/05/11 à 14h par Xplode # Système d'exploitation : Windows 7 Home Premium (32 bits) [version 6.1.7601] Service Pack 1 # Nom d'utilisateur : No - NO-PC (Administrateur) # Exécuté depuis : C:\Users\No\Desktop\delfix.exe # Option [suppression] ~~~~~~ Dossier(s) ~~~~~~ ~~~~~~ Fichier(s) ~~~~~~ ~~~~~~ Registre ~~~~~~ ~~~~~~ Autre ~~~~~~ -> Prefetch vidé ########## EOF - "C:\DelFixSuppr.txt" - [563 octets] ########## Je te remercie pour l'aide apportée et te souhaite une bonne journée et un agréable WE
  2. Hello, Merci pour ta réponse ^^ ZHPFix n'a pas permis le renommage ni la suppression du fichier, voilà le log: Rapport de ZHPFix 1.12.3286 par Nicolas Coolman, Update du 23/05/2011 Fichier d'export Registre : C:\ZHPExportRegistry-27-05-2011-13-22-06.txt Run by No at 27/05/2011 13:22:06 Windows 7 Home Premium Edition, 32-bit Service Pack 1 (Build 7601) Web site : [url=http://www.premiumorange.com/zeb-help-process/zhpfix.html]ZHPFix Fix de rapport[/url] ========== Clé(s) du Registre ========== O69 - SBI: SearchScopes [HKCU] {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} - (Ask Search) - [url=http://websearch.ask.com][url=http://websearch.ask.com]http://websearch.ask.com[/url][/url] O87 - FAEL: "TCP Query User{247A91B9-CDF1-4552-8C58-58A37F41411A}F:\uwamp\bin\apache\bin\httpd.exe" |In - Private - P6 - TRUE | .(...) -- F:\uw => Clé supprimée avec succès HKLM\Software\Classes\AppID\SoftwareUpdate.exe => Clé supprimée avec succès ========== Valeur(s) du Registre ========== O24 - Default MHTML Editor: Last - .(...) - (.not file.) => Valeur absente O52 - TDSD: \drivers.desc\"lameACM.acm"="Lame MP3 CODEC v3.98.4" . (.Pas de propriétaire - Pas de description.) -- (.not file.) => Valeur supprimée avec succès UDP Query User{F2B7213B-B57A-494D-824C-6089F541BC69}F:\uwamp\bin\apache\bin\httpd.exe => Valeur supprimée avec succès TCP Query User{FC8A80C4-0009-4675-A2AD-7816F8978E92}F:\uwamp\bin\database\mysql-5.5.9\bin\mysqld.exe => Valeur supprimée avec succès UDP Query User{950502AD-2A35-4D8F-AB4C-73569176CA86}F:\uwamp\bin\database\mysql-5.5.9\bin\mysqld.exe => Valeur supprimée avec succès FirewallRaz : Aucune valeur présente dans la clé de registre "Standard Profile" FirewallRaz : Aucune valeur présente dans la clé de registre "Domain Profile" FirewallRaz (Private) : TCP Query User{247A91B9-CDF1-4552-8C58-58A37F41411A}F:\uwamp\bin\apache\bin\httpd.exe => Valeur supprimée avec succès ========== Dossier(s) ========== Dossiers Flash Cookies supprimés : 13 Dossiers temporaires Windows supprimés: 13 ========== Fichier(s) ========== Fichiers Flash Cookies supprimés : 6 Fichiers temporaires Windows supprimés : 24 ========== Récapitulatif ========== 2 : Clé(s) du Registre 8 : Valeur(s) du Registre 2 : Dossier(s) 2 : Fichier(s) End of the scan En revanche, IObit Unlocker à réussi à le délocker et j'ai donc enfin pu supprimer ce maudit fichier Pour ce qui est de l'infection présumée par bleuet dans ce post, qu'en est-il?
  3. Bonjour à tous les intervenants, Après avoir posté mon problème dans sécurisation et prévention, bleuet s'est chargé de mon souci et vient de me réorienter dans cette section. Voilà en quoi consiste la blessure actuelle: J'ai sur mon bureau un fichier nommé overall_header.html. (avec le point derrière html) qu'il m'est impossible de supprimer ni de renommer (fichier ADS ?), j'ai essayé en mode sans echec...sans succès. Ce fichier est apparu il y a deux jours alors que je faisais du support pour un forum mais je n'ai pas souvenir des circonstances exactes. Je suis sous seven 32. - Scans Avira et Malwarebytes' Anti-Malware effectués sans retour positif - Pas de suppression possible avec FileASSASSIN - Rien à faire en passant par cmd.exe - Le déblocage du fichier n'est pas proposé dans l'onglet général des propriétés - [Edit] Déblocage impossible avec Unlocker - Impossible de scanner le fichier sur virustotal.com, voilà le screen: http://images.empreintesduweb.com/originale/1306413093.jpg - Voilà le rapport ZHPdiag Merci à bleuet pour son aide Je m'en remet à vous et vous remercie d'avance pour l'aide apportée. [Edit 2] Ajout du log hijackthis: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 15:06:42, on 26/05/2011 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16421) Boot mode: Normal Running processes: C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\Unlocker\UnlockerAssistant.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\plugin-container.exe C:\Program Files\HiJackThis\Trend Micro\HiJackThis\HiJackThis.exe C:\Windows\system32\DllHost.exe C:\Program Files\Adobe\Acrobat 9.0\Acrobat\AcrobatInfo.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [url=http://go.microsoft.com/fwlink/?LinkId=54896]Bing[/url] R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [url=http://go.microsoft.com/fwlink/?LinkId=69157]MSN : Hotmail, Messenger, Bing, Actualité et Sport[/url] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [url=http://go.microsoft.com/fwlink/?LinkId=69157]MSN : Hotmail, Messenger, Bing, Actualité et Sport[/url] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [url=http://go.microsoft.com/fwlink/?LinkId=54896]Bing[/url] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [url=http://go.microsoft.com/fwlink/?LinkId=54896]Bing[/url] R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [url=http://go.microsoft.com/fwlink/?LinkId=69157]MSN : Hotmail, Messenger, Bing, Actualité et Sport[/url] R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: DebugBar BHO - {69FC0024-10EB-480A-BBF2-3BF4E78E17B1} - C:\Program Files\Core Services\DebugBar\DebugInfoBar.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O3 - Toolbar: DebugBar - {3E1201F4-1707-409F-BB45-A5F192381DA0} - C:\Program Files\Core Services\DebugBar\DebugToolBar.dll O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [unlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" O8 - Extra context menu item: Ajouter la cible du lien à un fichier PDF existant - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Ajouter à un fichier PDF existant - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir au format Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la cible du lien au format Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O9 - Extra button: Afficher ou masquer l'HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: hpqcxs08 - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Service HP CUE DeviceDiscovery (hpqddsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Net Driver HPZ12 - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Pml Driver HPZ12 - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (StiSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\wmpnetwk.exe O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe -- End of file - 19585 bytes [Edit 3] Modification du titre
  4. Ok, Je ne peux pas non plus analyser le fichier sur virustotal, voilà un screen: http://images.empreintesduweb.com/originale/1306413093.jpg Merci à toi pour le support, je bascule dans la section des brulés graves ^^
  5. Voilà le rapport: Cijoint.fr - Service gratuit de dépôt de fichiers [Edit] Suppression du lien
  6. Humpf, toujours rien J'ai tenté en mode sans échec et en mode normal, impossible de l'effacer ni de le renommer. [Edit] ok je fais ce que tu as marqué dans ton edit [Edit 2] - Rien à faire en passant par cmd - J'avais déjà regardé les propriétés et la machine ne me propose pas le débloquage - Le nom du fichier est overall_header.html. (avec le point derrière html, c'est cela qui me fait penser à un fichier ads) - Je lance ZHPdiag
  7. Re, L'exe ne veut pas se lancer correctement, j'ai aussi tenté de le récupérer sur bleepingcomputer.com mais j'ai le même msg d'erreur:
  8. Merci de ta réponse, Toujours impossible de supprimer ce fichier, voilà le message d'erreur:
  9. Bonjour à toutes et tous, J'ai sur mon bureau un fichier nommé overall_header.html. qu'il m'est impossible de supprimer ni de renommer (fichier ADS ?), j'ai essayé en mode sans echec...sans succès. Ce fichier est apparu il y a deux jours alors que je faisais du support pour un forum mais je n'ai pas souvenir des circonstances exactes. Je suis sous seven 32. Je m'en remets à vous et vous remercie d'avance pour l'aide apportée. [Edit] Scans Avira et Malwarebytes' Anti-Malware effectués sans retour positif [Edit 2] Modification du titre
  10. J'ai fais la partie OTC d'Old Timer, je fais le break pour ce soir en espérant ne pas t'offusquer. Je préfèrerai reprendre le set demain sachant que tu as une activité hors norme en ce moment, et que j'ai l'impression d'être un souci à part entière... Je te souhaite de prendre un peu un max de repos et espère être en contact avec toi demain pour...la suite. ps: pour le lien de l'association, je t'assure que je ferai le geste. Bonne soirée/nuit à toi, et bon courage. Sincèrement, Arnaud
  11. Je ne sais pas si tu vas lire ce post à cause de la surcharge de boulot sur le forum, mais je voudrai te dire un énorme merci pour le temps passé et le résultat obtenu. En tout état de cause, je désire savoir comment il me serait possible de concrétiser ce merci par un don ou autre, afin de souligner le travail effectué par des heures d'attention et de réflexion, concrétisées par une énorme pertinence dans l'aide et les réponses données. Boulot exeptionnel! Edit: pour en remettre une couche, je vois que tu ne lâche pas le morceau, je te tiens au courant. Je redémarre la machine avec les MaJ et te donne les rens.
  12. Et bien je t'avouerai que la machine est beaucoup plus réactive, que je ne remarque plus de liaisons permanentes sur la livebox quand l'ordi est en ligne et que je n'ai pas d'action particulière sur le net, et qu'au démarrage tout est fluide par rapport à 24h auparavant.
  13. Bon, 3h50 de scan et un plantage de firefox lors de l'enregistrement du rapport...je suis dépité. Ceci dit, j'ai tout de même bien vu qu'il n'y avais aucun fichier infecté avant de vouloir sauvegarder le rapport. Veux-tu que je relance un scan de la machine?
  14. J'ai fais la première partie jusqu'à OldTimer, je me lance dans le scan en ligne.
  15. Infection: not found Le rapport: 2010/08/12 15:30:33.0852 TDSS rootkit removing tool 2.4.1.1 Aug 10 2010 14:48:09 2010/08/12 15:30:33.0852 ================================================================================ 2010/08/12 15:30:33.0852 SystemInfo: 2010/08/12 15:30:33.0852 2010/08/12 15:30:33.0852 OS Version: 6.0.6001 ServicePack: 1.0 2010/08/12 15:30:33.0853 Product type: Workstation 2010/08/12 15:30:33.0853 ComputerName: ZACHARIAS 2010/08/12 15:30:33.0853 UserName: std 2010/08/12 15:30:33.0853 Windows directory: C:\Windows 2010/08/12 15:30:33.0853 System windows directory: C:\Windows 2010/08/12 15:30:33.0853 Processor architecture: Intel x86 2010/08/12 15:30:33.0853 Number of processors: 2 2010/08/12 15:30:33.0853 Page size: 0x1000 2010/08/12 15:30:33.0853 Boot type: Normal boot 2010/08/12 15:30:33.0853 ================================================================================ 2010/08/12 15:31:02.0262 Initialize success 2010/08/12 15:31:30.0217 ================================================================================ 2010/08/12 15:31:30.0217 Scan started 2010/08/12 15:31:30.0217 Mode: Manual; 2010/08/12 15:31:30.0217 ================================================================================ 2010/08/12 15:31:30.0554 ACPI (fcb8c7210f0135e24c6580f7f649c73c) C:\Windows\system32\drivers\acpi.sys 2010/08/12 15:31:30.0628 adfs (73685e15ef8b0bd9c30f1af413f13d49) C:\Windows\system32\drivers\adfs.sys 2010/08/12 15:31:30.0811 adp94xx (2edc5bbac6c651ece337bde8ed97c9fb) C:\Windows\system32\drivers\adp94xx.sys 2010/08/12 15:31:30.0873 adpahci (b84088ca3cdca97da44a984c6ce1ccad) C:\Windows\system32\drivers\adpahci.sys 2010/08/12 15:31:30.0929 adpu160m (7880c67bccc27c86fd05aa2afb5ea469) C:\Windows\system32\drivers\adpu160m.sys 2010/08/12 15:31:30.0989 adpu320 (9ae713f8e30efc2abccd84904333df4d) C:\Windows\system32\drivers\adpu320.sys 2010/08/12 15:31:31.0162 AFD (763e172a55177e478cb419f88fd0ba03) C:\Windows\system32\drivers\afd.sys 2010/08/12 15:31:31.0242 agp440 (ef23439cdd587f64c2c1b8825cead7d8) C:\Windows\system32\drivers\agp440.sys 2010/08/12 15:31:31.0387 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys 2010/08/12 15:31:31.0452 aliide (90395b64600ebb4552e26e178c94b2e4) C:\Windows\system32\drivers\aliide.sys 2010/08/12 15:31:31.0513 amdagp (2b13e304c9dfdfa5eb582f6a149fa2c7) C:\Windows\system32\drivers\amdagp.sys 2010/08/12 15:31:31.0633 amdide (0577df1d323fe75a739c787893d300ea) C:\Windows\system32\drivers\amdide.sys 2010/08/12 15:31:31.0697 AmdK7 (dc487885bcef9f28eece6fac0e5ddfc5) C:\Windows\system32\drivers\amdk7.sys 2010/08/12 15:31:31.0733 AmdK8 (0ca0071da4315b00fc1328ca86b425da) C:\Windows\system32\drivers\amdk8.sys 2010/08/12 15:31:31.0954 arc (5f673180268bb1fdb69c99b6619fe379) C:\Windows\system32\drivers\arc.sys 2010/08/12 15:31:31.0998 arcsas (957f7540b5e7f602e44648c7de5a1c05) C:\Windows\system32\drivers\arcsas.sys 2010/08/12 15:31:32.0063 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys 2010/08/12 15:31:32.0202 atapi (2d9c903dc76a66813d350a562de40ed9) C:\Windows\system32\drivers\atapi.sys 2010/08/12 15:31:32.0304 avgio (f1d43170fdd7399ee17ea32d4f868b0c) C:\Program Files\Avira\AntiVir Desktop\avgio.sys 2010/08/12 15:31:32.0449 avgntflt (14fe36d8f2c6a2435275338d061a0b66) C:\Windows\system32\DRIVERS\avgntflt.sys 2010/08/12 15:31:32.0492 avipbb (ad9bd66a862116e79cb45bb6be46055f) C:\Windows\system32\DRIVERS\avipbb.sys 2010/08/12 15:31:32.0576 BCM43XV (cf6a67c90951e3e763d2135dede44b85) C:\Windows\system32\DRIVERS\bcmwl6.sys 2010/08/12 15:31:32.0739 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys 2010/08/12 15:31:32.0872 bowser (74b442b2be1260b7588c136177ceac66) C:\Windows\system32\DRIVERS\bowser.sys 2010/08/12 15:31:33.0012 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys 2010/08/12 15:31:33.0051 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys 2010/08/12 15:31:33.0112 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys 2010/08/12 15:31:33.0145 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys 2010/08/12 15:31:33.0282 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys 2010/08/12 15:31:33.0312 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys 2010/08/12 15:31:33.0354 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys 2010/08/12 15:31:33.0559 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys 2010/08/12 15:31:33.0627 cdrom (1ec25cea0de6ac4718bf89f9e1778b57) C:\Windows\system32\DRIVERS\cdrom.sys 2010/08/12 15:31:33.0682 circlass (da8e0afc7baa226c538ef53ac2f90897) C:\Windows\system32\drivers\circlass.sys 2010/08/12 15:31:33.0830 CLFS (465745561c832b29f7c48b488aab3842) C:\Windows\system32\CLFS.sys 2010/08/12 15:31:33.0907 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys 2010/08/12 15:31:33.0968 cmdide (45201046c776ffdaf3fc8a0029c581c8) C:\Windows\system32\drivers\cmdide.sys 2010/08/12 15:31:34.0147 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys 2010/08/12 15:31:34.0194 crcdisk (2a213ae086bbec5e937553c7d9a2b22c) C:\Windows\system32\drivers\crcdisk.sys 2010/08/12 15:31:34.0241 Crusoe (22a7f883508176489f559ee745b5bf5d) C:\Windows\system32\drivers\crusoe.sys 2010/08/12 15:31:34.0438 DfsC (9e635ae5e8ad93e2b5989e2e23679f97) C:\Windows\system32\Drivers\dfsc.sys 2010/08/12 15:31:34.0518 disk (64109e623abd6955c8fb110b592e68b7) C:\Windows\system32\drivers\disk.sys 2010/08/12 15:31:34.0671 dot4 (4f59c172c094e1a1d46463a8dc061cbd) C:\Windows\system32\DRIVERS\Dot4.sys 2010/08/12 15:31:34.0736 Dot4Print (80bf3ba09f6f2523c8f6b7cc6dbf7bd5) C:\Windows\system32\DRIVERS\Dot4Prt.sys 2010/08/12 15:31:34.0778 Dot4Scan (a84d8a9006b1ae515cc7b6b3586c295a) C:\Windows\system32\DRIVERS\Dot4Scan.sys 2010/08/12 15:31:34.0827 dot4usb (c55004ca6b419b6695970dfe849b122f) C:\Windows\system32\DRIVERS\dot4usb.sys 2010/08/12 15:31:34.0964 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys 2010/08/12 15:31:35.0034 DXGKrnl (85f33880b8cfb554bd3d9ccdb486845a) C:\Windows\System32\drivers\dxgkrnl.sys 2010/08/12 15:31:35.0183 E100B (c0b00e55cf82d122d25983c7a6a53dea) C:\Windows\system32\DRIVERS\e100b325.sys 2010/08/12 15:31:35.0241 E1G60 (f88fb26547fd2ce6d0a5af2985892c48) C:\Windows\system32\DRIVERS\E1G60I32.sys 2010/08/12 15:31:35.0307 eabfiltr (e88b0cfcecf745211bba87f44f85d0dd) C:\Windows\system32\DRIVERS\eabfiltr.sys 2010/08/12 15:31:35.0477 Ecache (dd2cd259d83d8b72c02c5f2331ff9d68) C:\Windows\system32\drivers\ecache.sys 2010/08/12 15:31:35.0584 elxstor (e8f3f21a71720c84bcf423b80028359f) C:\Windows\system32\drivers\elxstor.sys 2010/08/12 15:31:35.0769 exfat (0d858eb20589a34efb25695acaa6aa2d) C:\Windows\system32\drivers\exfat.sys 2010/08/12 15:31:35.0803 fastfat (3c489390c2e2064563727752af8eab9e) C:\Windows\system32\drivers\fastfat.sys 2010/08/12 15:31:35.0866 fbxusb (99b2f2d42631afaf14269a92ab68390f) C:\Windows\system32\DRIVERS\fbxusb.sys 2010/08/12 15:31:36.0005 fdc (63bdada84951b9c03e641800e176898a) C:\Windows\system32\DRIVERS\fdc.sys 2010/08/12 15:31:36.0074 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys 2010/08/12 15:31:36.0111 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys 2010/08/12 15:31:36.0244 flpydisk (6603957eff5ec62d25075ea8ac27de68) C:\Windows\system32\DRIVERS\flpydisk.sys 2010/08/12 15:31:36.0291 FltMgr (05ea53afe985443011e36dab07343b46) C:\Windows\system32\drivers\fltmgr.sys 2010/08/12 15:31:36.0369 fssfltr (b74b0578fd1d3f897e95f2a2b69ea051) C:\Windows\system32\DRIVERS\fssfltr.sys 2010/08/12 15:31:36.0517 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys 2010/08/12 15:31:36.0564 gagp30kx (4e1cd0a45c50a8882616cae5bf82f3c5) C:\Windows\system32\drivers\gagp30kx.sys 2010/08/12 15:31:36.0623 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\Drivers\GEARAspiWDM.sys 2010/08/12 15:31:36.0790 hamachi (7929a161f9951d173ca9900fe7067391) C:\Windows\system32\DRIVERS\hamachi.sys 2010/08/12 15:31:36.0841 HBtnKey (de15777902a5d9121857d155873a1d1b) C:\Windows\system32\DRIVERS\cpqbttn.sys 2010/08/12 15:31:36.0905 HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys 2010/08/12 15:31:37.0046 HDAudBus (c87b1ee051c0464491c1a7b03fa0bc99) C:\Windows\system32\DRIVERS\HDAudBus.sys 2010/08/12 15:31:37.0087 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys 2010/08/12 15:31:37.0120 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys 2010/08/12 15:31:37.0178 HidUsb (854ca287ab7faf949617a788306d967e) C:\Windows\system32\DRIVERS\hidusb.sys 2010/08/12 15:31:37.0332 HpCISSs (df353b401001246853763c4b7aaa6f50) C:\Windows\system32\drivers\hpcisss.sys 2010/08/12 15:31:37.0410 HSFHWAZL (46d67209550973257601a533e2ac5785) C:\Windows\system32\DRIVERS\VSTAZL3.SYS 2010/08/12 15:31:37.0573 HSF_DPV (ec36f1d542ed4252390d446bf6d4dfd0) C:\Windows\system32\DRIVERS\VSTDPV3.SYS 2010/08/12 15:31:37.0734 HTTP (406c027c18e98a396faa1963dad5ff70) C:\Windows\system32\drivers\HTTP.sys 2010/08/12 15:31:37.0775 i2omp (324c2152ff2c61abae92d09f3cca4d63) C:\Windows\system32\drivers\i2omp.sys 2010/08/12 15:31:37.0832 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys 2010/08/12 15:31:38.0019 ialm (496db78e6a0c4c44023d9a92b4a7ac31) C:\Windows\system32\DRIVERS\igdkmd32.sys 2010/08/12 15:31:38.0180 iaStor (fd7f9d74c2b35dbda400804a3f5ed5d8) C:\Windows\system32\DRIVERS\iaStor.sys 2010/08/12 15:31:38.0233 iaStorV (c957bf4b5d80b46c5017bf0101e6c906) C:\Windows\system32\drivers\iastorv.sys 2010/08/12 15:31:38.0291 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys 2010/08/12 15:31:38.0485 IntcAzAudAddService (8d7eb1fd498fd0a34c95a298685ec1c7) C:\Windows\system32\drivers\RTKVHDA.sys 2010/08/12 15:31:38.0651 intelide (97469037714070e45194ed318d636401) C:\Windows\system32\drivers\intelide.sys 2010/08/12 15:31:38.0690 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys 2010/08/12 15:31:38.0782 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys 2010/08/12 15:31:38.0967 IPMIDRV (40f34f8aba2a015d780e4b09138b6c17) C:\Windows\system32\drivers\ipmidrv.sys 2010/08/12 15:31:39.0019 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys 2010/08/12 15:31:39.0072 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys 2010/08/12 15:31:39.0196 isapnp (350fca7e73cf65bcef43fae1e4e91293) C:\Windows\system32\drivers\isapnp.sys 2010/08/12 15:31:39.0252 iScsiPrt (f247eec28317f6c739c16de420097301) C:\Windows\system32\DRIVERS\msiscsi.sys 2010/08/12 15:31:39.0292 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys 2010/08/12 15:31:39.0321 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys 2010/08/12 15:31:39.0374 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys 2010/08/12 15:31:39.0517 kbdhid (18247836959ba67e3511b62846b9c2e0) C:\Windows\system32\DRIVERS\kbdhid.sys 2010/08/12 15:31:39.0583 KSecDD (7a0cf7908b6824d6a2a1d313e5ae3dca) C:\Windows\system32\Drivers\ksecdd.sys 2010/08/12 15:31:39.0776 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys 2010/08/12 15:31:39.0850 LSI_FC (a2262fb9f28935e862b4db46438c80d2) C:\Windows\system32\drivers\lsi_fc.sys 2010/08/12 15:31:39.0890 LSI_SAS (30d73327d390f72a62f32c103daf1d6d) C:\Windows\system32\drivers\lsi_sas.sys 2010/08/12 15:31:40.0034 LSI_SCSI (e1e36fefd45849a95f1ab81de0159fe3) C:\Windows\system32\drivers\lsi_scsi.sys 2010/08/12 15:31:40.0078 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys 2010/08/12 15:31:40.0131 megasas (d153b14fc6598eae8422a2037553adce) C:\Windows\system32\drivers\megasas.sys 2010/08/12 15:31:40.0269 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys 2010/08/12 15:31:40.0335 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys 2010/08/12 15:31:40.0382 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys 2010/08/12 15:31:40.0527 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys 2010/08/12 15:31:40.0572 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys 2010/08/12 15:31:40.0648 mpio (583a41f26278d9e0ea548163d6139397) C:\Windows\system32\drivers\mpio.sys 2010/08/12 15:31:40.0780 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys 2010/08/12 15:31:40.0840 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys 2010/08/12 15:31:40.0894 MRxDAV (ae3de84536b6799d2267443cec8edbb9) C:\Windows\system32\drivers\mrxdav.sys 2010/08/12 15:31:40.0930 mrxsmb (c4ad205530888404e2b5fc8d9319b119) C:\Windows\system32\DRIVERS\mrxsmb.sys 2010/08/12 15:31:41.0065 mrxsmb10 (0a986b34f1678a2697574d7b1664e2dd) C:\Windows\system32\DRIVERS\mrxsmb10.sys 2010/08/12 15:31:41.0105 mrxsmb20 (3268b8c3fa92bfc086355c39b45e9cc9) C:\Windows\system32\DRIVERS\mrxsmb20.sys 2010/08/12 15:31:41.0157 msahci (742aed7939e734c36b7e8d6228ce26b7) C:\Windows\system32\drivers\msahci.sys 2010/08/12 15:31:41.0198 msdsm (3fc82a2ae4cc149165a94699183d3028) C:\Windows\system32\drivers\msdsm.sys 2010/08/12 15:31:41.0336 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys 2010/08/12 15:31:41.0393 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys 2010/08/12 15:31:41.0447 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys 2010/08/12 15:31:41.0582 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys 2010/08/12 15:31:41.0613 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys 2010/08/12 15:31:41.0645 MsRPC (b5614aecb05a9340aa0fb55bf561cc63) C:\Windows\system32\drivers\MsRPC.sys 2010/08/12 15:31:41.0690 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys 2010/08/12 15:31:41.0721 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys 2010/08/12 15:31:41.0862 Mup (6dfd1d322de55b0b7db7d21b90bec49c) C:\Windows\system32\Drivers\mup.sys 2010/08/12 15:31:41.0931 NativeWifiP (3c21ce48ff529bb73dadb98770b54025) C:\Windows\system32\DRIVERS\nwifi.sys 2010/08/12 15:31:42.0092 NDIS (9bdc71790fa08f0a0b5f10462b1bd0b1) C:\Windows\system32\drivers\ndis.sys 2010/08/12 15:31:42.0248 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys 2010/08/12 15:31:42.0293 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys 2010/08/12 15:31:42.0330 NdisWan (3d14c3b3496f88890d431e8aa022a411) C:\Windows\system32\DRIVERS\ndiswan.sys 2010/08/12 15:31:42.0364 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys 2010/08/12 15:31:42.0520 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys 2010/08/12 15:31:42.0554 netbt (7c5fee5b1c5728507cd96fb4a13e7a02) C:\Windows\system32\DRIVERS\netbt.sys 2010/08/12 15:31:42.0711 NETw4v32 (38d720e0c8b0ecb9a019980265679798) C:\Windows\system32\DRIVERS\NETw4v32.sys 2010/08/12 15:31:42.0878 NetworkX (cc719565b1444048ad4ede8d96e1dc52) C:\Windows\system32\ckldrv.sys 2010/08/12 15:31:42.0959 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys 2010/08/12 15:31:43.0035 Npfs (ecb5003f484f9ed6c608d6d6c7886cbb) C:\Windows\system32\drivers\Npfs.sys 2010/08/12 15:31:43.0080 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys 2010/08/12 15:31:43.0255 Ntfs (b4effe29eb4f15538fd8a9681108492d) C:\Windows\system32\drivers\Ntfs.sys 2010/08/12 15:31:43.0425 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys 2010/08/12 15:31:43.0471 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys 2010/08/12 15:31:43.0840 nvlddmkm (24000b817cc84ac1555f41929879af5a) C:\Windows\system32\DRIVERS\nvlddmkm.sys 2010/08/12 15:31:44.0289 nvraid (e69e946f80c1c31c53003bfbf50cbb7c) C:\Windows\system32\drivers\nvraid.sys 2010/08/12 15:31:44.0318 nvstor (9e0ba19a28c498a6d323d065db76dffc) C:\Windows\system32\drivers\nvstor.sys 2010/08/12 15:31:44.0498 nv_agp (07c186427eb8fcc3d8d7927187f260f7) C:\Windows\system32\drivers\nv_agp.sys 2010/08/12 15:31:44.0625 ohci1394 (790e27c3db53410b40ff9ef2fd10a1d9) C:\Windows\system32\DRIVERS\ohci1394.sys 2010/08/12 15:31:44.0668 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys 2010/08/12 15:31:44.0725 partmgr (3b38467e7c3daed009dfe359e17f139f) C:\Windows\system32\drivers\partmgr.sys 2010/08/12 15:31:44.0859 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys 2010/08/12 15:31:44.0919 pci (01b94418deb235dff777cc80076354b4) C:\Windows\system32\drivers\pci.sys 2010/08/12 15:31:44.0958 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\DRIVERS\pciide.sys 2010/08/12 15:31:45.0009 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys 2010/08/12 15:31:45.0173 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys 2010/08/12 15:31:45.0385 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys 2010/08/12 15:31:45.0435 Processor (0e3cef5d28b40cf273281d620c50700a) C:\Windows\system32\drivers\processr.sys 2010/08/12 15:31:45.0505 PSched (bfef604508a0ed1eae2a73e872555ffb) C:\Windows\system32\DRIVERS\pacer.sys 2010/08/12 15:31:45.0645 PxHelp20 (d970470f8f39470bdae94d313a1ccdce) C:\Windows\system32\Drivers\PxHelp20.sys 2010/08/12 15:31:45.0736 ql2300 (ccdac889326317792480c0a67156a1ec) C:\Windows\system32\drivers\ql2300.sys 2010/08/12 15:31:45.0869 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys 2010/08/12 15:31:45.0934 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys 2010/08/12 15:31:45.0966 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys 2010/08/12 15:31:46.0003 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys 2010/08/12 15:31:46.0035 RasPppoe (3e9d9b048107b40d87b97df2e48e0744) C:\Windows\system32\DRIVERS\raspppoe.sys 2010/08/12 15:31:46.0090 RasSstp (a7d141684e9500ac928a772ed8e6b671) C:\Windows\system32\DRIVERS\rassstp.sys 2010/08/12 15:31:46.0242 rdbss (6e1c5d0457622f9ee35f683110e93d14) C:\Windows\system32\DRIVERS\rdbss.sys 2010/08/12 15:31:46.0284 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys 2010/08/12 15:31:46.0338 rdpdr (e8bd98d46f2ed77132ba927fccb47d8b) C:\Windows\system32\drivers\rdpdr.sys 2010/08/12 15:31:46.0371 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys 2010/08/12 15:31:46.0420 RDPWD (e1c18f4097a5abcec941dc4b2f99db7e) C:\Windows\system32\drivers\RDPWD.sys 2010/08/12 15:31:46.0579 rimmptsk (355aac141b214bef1dbc1483afd9bd50) C:\Windows\system32\DRIVERS\rimmptsk.sys 2010/08/12 15:31:46.0603 rimsptsk (a4216c71dd4f60b26418ccfd99cd0815) C:\Windows\system32\DRIVERS\rimsptsk.sys 2010/08/12 15:31:46.0629 rismxdp (c663af77e2f4eabf8eb08b388d2f1f36) C:\Windows\system32\DRIVERS\rixdptsk.sys 2010/08/12 15:31:46.0684 RMCAST (fdeb76bed9c0a75329ca426623297158) C:\Windows\system32\DRIVERS\RMCAST.sys 2010/08/12 15:31:46.0746 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys 2010/08/12 15:31:46.0887 RTL8169 (71b7026d61293c1e91145bdad11c53bf) C:\Windows\system32\DRIVERS\Rtlh86.sys 2010/08/12 15:31:46.0932 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys 2010/08/12 15:31:47.0015 sdbus (126ea89bcc413ee45e3004fb0764888f) C:\Windows\system32\DRIVERS\sdbus.sys 2010/08/12 15:31:47.0182 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys 2010/08/12 15:31:47.0233 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys 2010/08/12 15:31:47.0273 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys 2010/08/12 15:31:47.0334 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys 2010/08/12 15:31:47.0484 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\DRIVERS\sffdisk.sys 2010/08/12 15:31:47.0524 sffp_mmc (8fd08a310645fe872eeec6e08c6bf3ee) C:\Windows\system32\drivers\sffp_mmc.sys 2010/08/12 15:31:47.0568 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\DRIVERS\sffp_sd.sys 2010/08/12 15:31:47.0633 sfloppy (c33bfbd6e9e41fcd9ffef9729e9faed6) C:\Windows\system32\DRIVERS\sfloppy.sys 2010/08/12 15:31:47.0776 sisagp (d2a595d6eebeeaf4334f8e50efbc9931) C:\Windows\system32\drivers\sisagp.sys 2010/08/12 15:31:47.0808 SiSRaid2 (cedd6f4e7d84e9f98b34b3fe988373aa) C:\Windows\system32\drivers\sisraid2.sys 2010/08/12 15:31:47.0849 SiSRaid4 (df843c528c4f69d12ce41ce462e973a7) C:\Windows\system32\drivers\sisraid4.sys 2010/08/12 15:31:47.0914 Smb (031e6bcd53c9b2b9ace111eafec347b6) C:\Windows\system32\DRIVERS\smb.sys 2010/08/12 15:31:48.0004 smserial (3850aba97b31094f93bcbe94d6abbe22) C:\Windows\system32\DRIVERS\smserial.sys 2010/08/12 15:31:48.0149 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys 2010/08/12 15:31:48.0243 sptd (71e276f6d189413266ea22171806597b) C:\Windows\system32\Drivers\sptd.sys 2010/08/12 15:31:48.0402 srv (73dddbeec61e78568082916a27aadaee) C:\Windows\system32\DRIVERS\srv.sys 2010/08/12 15:31:48.0474 srv2 (4ceeb95e0b79e48b81f2da0a6c24c64b) C:\Windows\system32\DRIVERS\srv2.sys 2010/08/12 15:31:48.0542 srvnet (f63a0a58aafe34d7a1a0a74abccdd9c0) C:\Windows\system32\DRIVERS\srvnet.sys 2010/08/12 15:31:48.0705 sscdbus (d5dffeaa1e15d4effabb9d9a3068ac5b) C:\Windows\system32\DRIVERS\sscdbus.sys 2010/08/12 15:31:48.0774 sscdmdfl (8a1be0c347814f482f493aea619d57f6) C:\Windows\system32\DRIVERS\sscdmdfl.sys 2010/08/12 15:31:48.0811 sscdmdm (5ab0b1987f682a59b15b78f84c6ad7d0) C:\Windows\system32\DRIVERS\sscdmdm.sys 2010/08/12 15:31:48.0955 ssmdrv (3ad0362cf68de3ac500e981700242cca) C:\Windows\system32\DRIVERS\ssmdrv.sys 2010/08/12 15:31:49.0081 StMp3Rec (833ac40f6e7be17951d6d9a956829547) C:\Windows\system32\Drivers\StMp3Rec.sys 2010/08/12 15:31:49.0212 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys 2010/08/12 15:31:49.0273 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys 2010/08/12 15:31:49.0310 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys 2010/08/12 15:31:49.0351 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys 2010/08/12 15:31:49.0495 SynTP (f5d926807bd9bc0af68f9376144de425) C:\Windows\system32\DRIVERS\SynTP.sys 2010/08/12 15:31:49.0607 Tcpip (8a7ad2a214233f684242f289ed83ebc3) C:\Windows\system32\drivers\tcpip.sys 2010/08/12 15:31:49.0796 Tcpip6 (8a7ad2a214233f684242f289ed83ebc3) C:\Windows\system32\DRIVERS\tcpip.sys 2010/08/12 15:31:49.0935 tcpipreg (d4a2e4a4b011f3a883af77315a5ae76b) C:\Windows\system32\drivers\tcpipreg.sys 2010/08/12 15:31:49.0980 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys 2010/08/12 15:31:50.0011 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys 2010/08/12 15:31:50.0047 tdx (d09276b1fab033ce1d40dcbdf303d10f) C:\Windows\system32\DRIVERS\tdx.sys 2010/08/12 15:31:50.0105 TermDD (a048056f5e1a96a9bf3071b91741a5aa) C:\Windows\system32\DRIVERS\termdd.sys 2010/08/12 15:31:50.0267 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys 2010/08/12 15:31:50.0333 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys 2010/08/12 15:31:50.0357 tunnel (119b8184e106baedc83fce5ddf3950da) C:\Windows\system32\DRIVERS\tunnel.sys 2010/08/12 15:31:50.0401 uagp35 (c3ade15414120033a36c0f293d4a4121) C:\Windows\system32\drivers\uagp35.sys 2010/08/12 15:31:50.0534 udfs (8b5088058fa1d1cd897a2113ccff6c58) C:\Windows\system32\DRIVERS\udfs.sys 2010/08/12 15:31:50.0601 uliagpkx (75e6890ebfce0841d3291b02e7a8bdb0) C:\Windows\system32\drivers\uliagpkx.sys 2010/08/12 15:31:50.0657 uliahci (3cd4ea35a6221b85dcc25daa46313f8d) C:\Windows\system32\drivers\uliahci.sys 2010/08/12 15:31:50.0687 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys 2010/08/12 15:31:50.0728 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys 2010/08/12 15:31:50.0840 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys 2010/08/12 15:31:50.0928 USBAAPL (e8c1b9ebac65288e1b51e8a987d98af6) C:\Windows\system32\Drivers\usbaapl.sys 2010/08/12 15:31:51.0131 usbaudio (292a25bb75a568ae2c67169ba2c6365a) C:\Windows\system32\drivers\usbaudio.sys 2010/08/12 15:31:51.0196 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys 2010/08/12 15:31:51.0306 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys 2010/08/12 15:31:51.0373 usbehci (cebe90821810e76320155beba722fcf9) C:\Windows\system32\DRIVERS\usbehci.sys 2010/08/12 15:31:51.0419 usbhub (cc6b28e4ce39951357963119ce47b143) C:\Windows\system32\DRIVERS\usbhub.sys 2010/08/12 15:31:51.0541 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys 2010/08/12 15:31:51.0597 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys 2010/08/12 15:31:51.0662 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys 2010/08/12 15:31:51.0794 USBSTOR (87ba6b83c5d19b69160968d07d6e2982) C:\Windows\system32\DRIVERS\USBSTOR.SYS 2010/08/12 15:31:51.0857 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys 2010/08/12 15:31:51.0985 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys 2010/08/12 15:31:52.0057 vga (7d92be0028ecdedec74617009084b5ef) C:\Windows\system32\DRIVERS\vgapnp.sys 2010/08/12 15:31:52.0098 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys 2010/08/12 15:31:52.0136 viaagp (045d9961e591cf0674a920b6ba3ba5cb) C:\Windows\system32\drivers\viaagp.sys 2010/08/12 15:31:52.0250 ViaC7 (56a4de5f02f2e88182b0981119b4dd98) C:\Windows\system32\drivers\viac7.sys 2010/08/12 15:31:52.0301 viaide (fd2e3175fcada350c7ab4521dca187ec) C:\Windows\system32\drivers\viaide.sys 2010/08/12 15:31:52.0356 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys 2010/08/12 15:31:52.0483 volmgrx (98f5ffe6316bd74e9e2c97206c190196) C:\Windows\system32\drivers\volmgrx.sys 2010/08/12 15:31:52.0553 volsnap (d8b4a53dd2769f226b3eb374374987c9) C:\Windows\system32\drivers\volsnap.sys 2010/08/12 15:31:52.0615 vsmraid (d984439746d42b30fc65a4c3546c6829) C:\Windows\system32\drivers\vsmraid.sys 2010/08/12 15:31:52.0773 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys 2010/08/12 15:31:52.0844 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys 2010/08/12 15:31:52.0884 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys 2010/08/12 15:31:53.0019 Wd (afc5ad65b991c1e205cf25cfdbf7a6f4) C:\Windows\system32\drivers\wd.sys 2010/08/12 15:31:53.0101 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys 2010/08/12 15:31:53.0307 winachsf (5c7bdcf5864db00323fe2d90fa26a8a2) C:\Windows\system32\DRIVERS\VSTCNXT3.SYS 2010/08/12 15:31:53.0510 winusb (f03110711b17ad31271cb2baf0dbb2b1) C:\Windows\system32\DRIVERS\WinUSB.SYS 2010/08/12 15:31:53.0586 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys 2010/08/12 15:31:53.0798 WpdUsb (0cec23084b51b8288099eb710224e955) C:\Windows\system32\DRIVERS\wpdusb.sys 2010/08/12 15:31:53.0859 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys 2010/08/12 15:31:53.0977 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys 2010/08/12 15:31:54.0060 ================================================================================ 2010/08/12 15:31:54.0060 Scan finished 2010/08/12 15:31:54.0061 ================================================================================
  16. Re, Voici le rapport (sachant qu'il y a un autre fichier appelé: MBRCheck_MBR_Backup_08-12-10_14-50-48.bak): MBRCheck, version 1.2.3 © 2010, AD Command-line: Windows Version: Windows Vista Home Premium Edition Windows Information: Service Pack 1 (build 6001), 32-bit Base Board Manufacturer: Quanta BIOS Manufacturer: Hewlett-Packard System Manufacturer: Hewlett-Packard System Product Name: HP Pavilion dv9500 Notebook PC Logical Drives Mask: 0x0000001c Kernel Drivers (total 160): 0x82C0E000 \SystemRoot\system32\ntkrnlpa.exe 0x82FC7000 \SystemRoot\system32\hal.dll 0x80609000 \SystemRoot\system32\kdcom.dll 0x80611000 \SystemRoot\system32\mcupdate_GenuineIntel.dll 0x80671000 \SystemRoot\system32\PSHED.dll 0x80682000 \SystemRoot\system32\BOOTVID.dll 0x8068A000 \SystemRoot\system32\CLFS.SYS 0x806CB000 \SystemRoot\system32\CI.dll 0x8320C000 \SystemRoot\system32\drivers\Wdf01000.sys 0x83288000 \SystemRoot\system32\drivers\WDFLDR.SYS 0x83295000 \SystemRoot\system32\drivers\acpi.sys 0x832DB000 \SystemRoot\system32\drivers\WMILIB.SYS 0x832E4000 \SystemRoot\system32\drivers\msisadrv.sys 0x832EC000 \SystemRoot\system32\drivers\pci.sys 0x83313000 \SystemRoot\System32\drivers\partmgr.sys 0x83322000 \SystemRoot\system32\DRIVERS\compbatt.sys 0x83325000 \SystemRoot\system32\DRIVERS\BATTC.SYS 0x8332F000 \SystemRoot\system32\drivers\volmgr.sys 0x8333E000 \SystemRoot\System32\drivers\volmgrx.sys 0x83388000 \SystemRoot\system32\DRIVERS\pciide.sys 0x8338F000 \SystemRoot\system32\DRIVERS\PCIIDEX.SYS 0x8339D000 \SystemRoot\System32\drivers\mountmgr.sys 0x88800000 \SystemRoot\system32\DRIVERS\iaStor.sys 0x888BE000 \SystemRoot\system32\drivers\atapi.sys 0x888C6000 \SystemRoot\system32\drivers\ataport.SYS 0x888E4000 \SystemRoot\system32\drivers\fltmgr.sys 0x88916000 \SystemRoot\system32\drivers\fileinfo.sys 0x88926000 \SystemRoot\System32\Drivers\PxHelp20.sys 0x88930000 \SystemRoot\System32\Drivers\ksecdd.sys 0x88A07000 \SystemRoot\system32\drivers\ndis.sys 0x88B12000 \SystemRoot\system32\drivers\msrpc.sys 0x88B3D000 \SystemRoot\system32\drivers\NETIO.SYS 0x88C05000 \SystemRoot\System32\drivers\tcpip.sys 0x88CEE000 \SystemRoot\System32\drivers\fwpkclnt.sys 0x88E06000 \SystemRoot\System32\Drivers\Ntfs.sys 0x88F15000 \SystemRoot\system32\drivers\volsnap.sys 0x88F4E000 \SystemRoot\System32\Drivers\spldr.sys 0x88F56000 \SystemRoot\System32\Drivers\mup.sys 0x88F65000 \SystemRoot\System32\drivers\ecache.sys 0x88F8C000 \SystemRoot\system32\drivers\disk.sys 0x88F9D000 \SystemRoot\system32\drivers\CLASSPNP.SYS 0x88FBE000 \SystemRoot\system32\drivers\crcdisk.sys 0x88FD4000 \SystemRoot\system32\DRIVERS\tunnel.sys 0x88FDF000 \SystemRoot\system32\DRIVERS\tunmp.sys 0x88FE8000 \SystemRoot\system32\DRIVERS\CmBatt.sys 0x88FEC000 \SystemRoot\system32\DRIVERS\wmiacpi.sys 0x88DC7000 \SystemRoot\system32\DRIVERS\intelppm.sys 0x8C80A000 \SystemRoot\system32\DRIVERS\nvlddmkm.sys 0x8D17B000 \SystemRoot\system32\DRIVERS\nvBridge.kmd 0x8D20D000 \SystemRoot\System32\drivers\dxgkrnl.sys 0x8D2AC000 \SystemRoot\System32\drivers\watchdog.sys 0x8D2B9000 \SystemRoot\system32\DRIVERS\usbuhci.sys 0x8D2C4000 \SystemRoot\system32\DRIVERS\USBPORT.SYS 0x8D302000 \SystemRoot\system32\DRIVERS\usbehci.sys 0x8D311000 \SystemRoot\system32\DRIVERS\HDAudBus.sys 0x8D409000 \SystemRoot\system32\DRIVERS\NETw4v32.sys 0x8D638000 \SystemRoot\system32\DRIVERS\Rtlh86.sys 0x8D64F000 \SystemRoot\system32\DRIVERS\ohci1394.sys 0x8D65F000 \SystemRoot\system32\DRIVERS\1394BUS.SYS 0x8D66D000 \SystemRoot\system32\DRIVERS\sdbus.sys 0x8D687000 \SystemRoot\system32\DRIVERS\rimmptsk.sys 0x8D696000 \SystemRoot\system32\DRIVERS\rimsptsk.sys 0x8D6AA000 \SystemRoot\system32\DRIVERS\rixdptsk.sys 0x8D6FB000 \SystemRoot\system32\DRIVERS\cpqbttn.sys 0x8D6FE000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS 0x8D70E000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS 0x8D715000 \SystemRoot\system32\DRIVERS\i8042prt.sys 0x8D728000 \SystemRoot\system32\DRIVERS\kbdclass.sys 0x8D733000 \SystemRoot\system32\DRIVERS\SynTP.sys 0x8D763000 \SystemRoot\system32\DRIVERS\USBD.SYS 0x8D765000 \SystemRoot\system32\DRIVERS\mouclass.sys 0x8D770000 \SystemRoot\system32\DRIVERS\cdrom.sys 0x8D788000 \SystemRoot\System32\Drivers\GEARAspiWDM.sys 0x8D78E000 \SystemRoot\system32\DRIVERS\msiscsi.sys 0x8D7BC000 \SystemRoot\system32\DRIVERS\storport.sys 0x8D323000 \SystemRoot\system32\DRIVERS\TDI.SYS 0x8D32E000 \SystemRoot\system32\DRIVERS\rasl2tp.sys 0x8D345000 \SystemRoot\system32\DRIVERS\ndistapi.sys 0x8D350000 \SystemRoot\system32\DRIVERS\ndiswan.sys 0x8D373000 \SystemRoot\system32\DRIVERS\raspppoe.sys 0x8D382000 \SystemRoot\system32\DRIVERS\raspptp.sys 0x8D396000 \SystemRoot\system32\DRIVERS\rassstp.sys 0x8D3AB000 \SystemRoot\system32\DRIVERS\termdd.sys 0x8D7FD000 \SystemRoot\system32\DRIVERS\swenum.sys 0x8D3BB000 \SystemRoot\system32\DRIVERS\ks.sys 0x8D3E5000 \SystemRoot\system32\DRIVERS\mssmbios.sys 0x8D3EF000 \SystemRoot\system32\DRIVERS\umbus.sys 0x8D17D000 \SystemRoot\system32\DRIVERS\usbhub.sys 0x8D200000 \SystemRoot\system32\DRIVERS\kbdhid.sys 0x8D1B1000 \SystemRoot\System32\Drivers\NDProxy.SYS 0x8E809000 \SystemRoot\system32\drivers\RTKVHDA.sys 0x8E9B3000 \SystemRoot\system32\drivers\portcls.sys 0x8D1C2000 \SystemRoot\system32\drivers\drmk.sys 0x8E609000 \SystemRoot\system32\DRIVERS\smserial.sys 0x8E6F9000 \SystemRoot\system32\drivers\modem.sys 0x8E706000 \SystemRoot\System32\Drivers\Fs_Rec.SYS 0x8E70F000 \SystemRoot\System32\Drivers\Null.SYS 0x8E716000 \SystemRoot\System32\Drivers\Beep.SYS 0x8E71D000 \SystemRoot\System32\drivers\vga.sys 0x8E729000 \SystemRoot\System32\drivers\VIDEOPRT.SYS 0x8E74A000 \SystemRoot\System32\DRIVERS\RDPCDD.sys 0x8E752000 \SystemRoot\system32\drivers\rdpencdd.sys 0x8E75A000 \SystemRoot\System32\Drivers\Msfs.SYS 0x8E765000 \SystemRoot\System32\Drivers\Npfs.SYS 0x8E773000 \SystemRoot\System32\DRIVERS\rasacd.sys 0x8E77C000 \SystemRoot\system32\DRIVERS\tdx.sys 0x8E792000 \SystemRoot\system32\DRIVERS\smb.sys 0x8E7A6000 \SystemRoot\system32\drivers\afd.sys 0x88B77000 \SystemRoot\System32\DRIVERS\netbt.sys 0x8E9E0000 \SystemRoot\system32\DRIVERS\pacer.sys 0x8E7EE000 \SystemRoot\system32\DRIVERS\netbios.sys 0x8E7FC000 \SystemRoot\system32\DRIVERS\eabfiltr.sys 0x8D1E7000 \SystemRoot\system32\DRIVERS\wanarp.sys 0x8E600000 \SystemRoot\system32\DRIVERS\ssmdrv.sys 0x88BA9000 \SystemRoot\system32\DRIVERS\rdbss.sys 0x8E9F6000 \SystemRoot\system32\drivers\nsiproxy.sys 0x8E606000 \SystemRoot\system32\ckldrv.sys 0x88DD6000 \SystemRoot\System32\Drivers\dfsc.sys 0x889A1000 \SystemRoot\system32\DRIVERS\avipbb.sys 0x8E7FE000 \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys 0x88FC7000 \SystemRoot\System32\Drivers\crashdmp.sys 0x88D09000 \SystemRoot\System32\Drivers\dump_iaStor.sys 0x99230000 \SystemRoot\System32\win32k.sys 0x8C800000 \SystemRoot\System32\drivers\Dxapi.sys 0x8E800000 \SystemRoot\system32\DRIVERS\hidusb.sys 0x88BE5000 \SystemRoot\system32\DRIVERS\usbccgp.sys 0x8D400000 \SystemRoot\system32\DRIVERS\mouhid.sys 0x889BD000 \SystemRoot\System32\Drivers\usbvideo.sys 0x889DE000 \SystemRoot\system32\DRIVERS\monitor.sys 0x99450000 \SystemRoot\System32\TSDDD.dll 0x99470000 \SystemRoot\System32\cdd.dll 0x99480000 \SystemRoot\System32\ATMFD.DLL 0x833AD000 \SystemRoot\system32\drivers\luafv.sys 0x833C8000 \SystemRoot\system32\DRIVERS\avgntflt.sys 0x807AB000 \SystemRoot\system32\DRIVERS\RMCAST.sys 0x889ED000 \SystemRoot\system32\DRIVERS\lltdio.sys 0x9F809000 \SystemRoot\system32\DRIVERS\nwifi.sys 0x9F833000 \SystemRoot\system32\DRIVERS\ndisuio.sys 0x9F83D000 \SystemRoot\system32\DRIVERS\rspndr.sys 0x9F850000 \SystemRoot\system32\drivers\spsys.sys 0x9F8FF000 \SystemRoot\system32\drivers\HTTP.sys 0x9F96A000 \SystemRoot\system32\DRIVERS\asyncmac.sys 0x9F973000 \SystemRoot\System32\DRIVERS\srvnet.sys 0x9F990000 \SystemRoot\system32\DRIVERS\bowser.sys 0x9F9A9000 \SystemRoot\System32\drivers\mpsdrv.sys 0x9F9BE000 \SystemRoot\system32\drivers\mrxdav.sys 0x9F9DE000 \SystemRoot\system32\DRIVERS\mrxsmb.sys 0xA3E00000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys 0xA3E39000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys 0xA3E51000 \SystemRoot\System32\DRIVERS\srv2.sys 0xA3E78000 \SystemRoot\System32\DRIVERS\srv.sys 0xA3EDC000 \SystemRoot\System32\Drivers\adfs.SYS 0xA3EED000 \SystemRoot\system32\drivers\peauth.sys 0xA3FCB000 \SystemRoot\System32\Drivers\secdrv.SYS 0xA3FD5000 \SystemRoot\System32\drivers\tcpipreg.sys 0x833DC000 \SystemRoot\system32\DRIVERS\cdfs.sys 0x88FF5000 \SystemRoot\system32\drivers\tdtcp.sys 0x833F2000 \SystemRoot\System32\DRIVERS\tssecsrv.sys 0xAE805000 \SystemRoot\System32\Drivers\RDPWD.SYS 0x76DD0000 \WINDOWS\System32\ntdll.dll Processes (total 59): 0 System Idle Process 4 System 480 C:\WINDOWS\System32\smss.exe 612 csrss.exe 668 C:\WINDOWS\System32\wininit.exe 680 csrss.exe 716 C:\WINDOWS\System32\services.exe 728 C:\WINDOWS\System32\lsass.exe 736 C:\WINDOWS\System32\lsm.exe 820 C:\WINDOWS\System32\winlogon.exe 924 C:\WINDOWS\System32\svchost.exe 992 C:\WINDOWS\System32\nvvsvc.exe 1020 C:\WINDOWS\System32\svchost.exe 1056 C:\WINDOWS\System32\svchost.exe 1160 C:\WINDOWS\System32\svchost.exe 1244 C:\WINDOWS\System32\svchost.exe 1260 C:\WINDOWS\System32\svchost.exe 1340 C:\WINDOWS\System32\audiodg.exe 1376 C:\WINDOWS\System32\SLsvc.exe 1392 C:\WINDOWS\System32\svchost.exe 1472 C:\WINDOWS\System32\nvvsvc.exe 1576 C:\WINDOWS\System32\svchost.exe 1896 C:\WINDOWS\System32\spoolsv.exe 1960 C:\Program Files\Avira\AntiVir Desktop\sched.exe 2032 C:\WINDOWS\System32\dwm.exe 2040 C:\WINDOWS\explorer.exe 500 C:\WINDOWS\System32\taskeng.exe 1452 C:\WINDOWS\System32\svchost.exe 1720 C:\WINDOWS\System32\taskeng.exe 864 C:\Program Files\Avira\AntiVir Desktop\avguard.exe 1736 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 2052 C:\Program Files\Bonjour\mDNSResponder.exe 2092 C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe 2240 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 2272 C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe 2312 C:\WINDOWS\System32\Crypserv.exe 2356 C:\WINDOWS\RtHDVCpl.exe 2364 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe 2432 C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe 2560 C:\Program Files\Common Files\LightScribe\LSSrvc.exe 2700 C:\Program Files\Common Files\microsoft shared\VS7Debug\MDM.EXE 2716 C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe 2788 C:\WINDOWS\System32\svchost.exe 2828 C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 2928 C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe 2964 C:\WINDOWS\System32\svchost.exe 2996 C:\WINDOWS\System32\svchost.exe 3096 C:\WINDOWS\System32\SearchIndexer.exe 3220 C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe 3960 C:\WINDOWS\System32\wbem\unsecapp.exe 3980 WmiPrvSE.exe 4036 C:\Program Files\Windows Media Player\wmpnscfg.exe 1184 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe 3192 C:\Program Files\Windows Media Player\wmpnetwk.exe 3244 C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe 2656 C:\WINDOWS\System32\conime.exe 2180 C:\Program Files\Mozilla Firefox\firefox.exe 708 C:\Program Files\Mozilla Firefox\plugin-container.exe 516 C:\Users\std\Desktop\MBRCheck.exe \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`00007e00 (NTFS) \\.\D: --> \\.\PhysicalDrive0 at offset 0x00000023`668bea00 (NTFS) PhysicalDrive0 Model Number: HitachiHTS541616J9SA00, Rev: SB4OC7BP Size Device Name MBR Status -------------------------------------------- 149 GB \\.\PhysicalDrive0 Unknown MBR code SHA1: D94F393960D1CD66C2071F2D7260A5196DF105AC Found non-standard or infected MBR. Enter 'Y' and hit ENTER for more options, or 'N' to exit: Options: [1] Dump the MBR of a physical disk to file. [2] Restore the MBR of a physical disk with a standard boot code. [3] Exit. Enter your choice: Enter the physical disk number to fix (0-99, -1 to cancel): 0Available MBR codes: [ 0] Default (Windows Vista) [ 1] Windows XP [ 2] Windows Server 2003 [ 3] Windows Vista [ 4] Windows 2008 [ 5] Windows 7 [-1] Cancel Please select the MBR code to write to this drive: 3 Do you want to fix the MBR code? Type 'YES' and hit ENTER to continue: yes Successfully wrote new MBR code! Please reboot your computer to complete the fix. Done!
  17. Ok, je fais ça de suite!
  18. Bonjour Apollo! Encore désolé pour hier soir, mais j'étais ko et je ne savais plus trop où j'en étais avec tous ces "trucs" La dernière MaJ(échouée): KB9778601 Et le rapport de MBR Check: MBRCheck, version 1.2.3 © 2010, AD Command-line: Windows Version: Windows Vista Home Premium Edition Windows Information: Service Pack 1 (build 6001), 32-bit Base Board Manufacturer: Quanta BIOS Manufacturer: Hewlett-Packard System Manufacturer: Hewlett-Packard System Product Name: HP Pavilion dv9500 Notebook PC Logical Drives Mask: 0x0000001c Kernel Drivers (total 160): 0x82C0E000 \SystemRoot\system32\ntkrnlpa.exe 0x82FC7000 \SystemRoot\system32\hal.dll 0x80609000 \SystemRoot\system32\kdcom.dll 0x80611000 \SystemRoot\system32\mcupdate_GenuineIntel.dll 0x80671000 \SystemRoot\system32\PSHED.dll 0x80682000 \SystemRoot\system32\BOOTVID.dll 0x8068A000 \SystemRoot\system32\CLFS.SYS 0x806CB000 \SystemRoot\system32\CI.dll 0x8320C000 \SystemRoot\system32\drivers\Wdf01000.sys 0x83288000 \SystemRoot\system32\drivers\WDFLDR.SYS 0x83295000 \SystemRoot\system32\drivers\acpi.sys 0x832DB000 \SystemRoot\system32\drivers\WMILIB.SYS 0x832E4000 \SystemRoot\system32\drivers\msisadrv.sys 0x832EC000 \SystemRoot\system32\drivers\pci.sys 0x83313000 \SystemRoot\System32\drivers\partmgr.sys 0x83322000 \SystemRoot\system32\DRIVERS\compbatt.sys 0x83325000 \SystemRoot\system32\DRIVERS\BATTC.SYS 0x8332F000 \SystemRoot\system32\drivers\volmgr.sys 0x8333E000 \SystemRoot\System32\drivers\volmgrx.sys 0x83388000 \SystemRoot\system32\DRIVERS\pciide.sys 0x8338F000 \SystemRoot\system32\DRIVERS\PCIIDEX.SYS 0x8339D000 \SystemRoot\System32\drivers\mountmgr.sys 0x88800000 \SystemRoot\system32\DRIVERS\iaStor.sys 0x888BE000 \SystemRoot\system32\drivers\atapi.sys 0x888C6000 \SystemRoot\system32\drivers\ataport.SYS 0x888E4000 \SystemRoot\system32\drivers\fltmgr.sys 0x88916000 \SystemRoot\system32\drivers\fileinfo.sys 0x88926000 \SystemRoot\System32\Drivers\PxHelp20.sys 0x88930000 \SystemRoot\System32\Drivers\ksecdd.sys 0x88A07000 \SystemRoot\system32\drivers\ndis.sys 0x88B12000 \SystemRoot\system32\drivers\msrpc.sys 0x88B3D000 \SystemRoot\system32\drivers\NETIO.SYS 0x88C05000 \SystemRoot\System32\drivers\tcpip.sys 0x88CEE000 \SystemRoot\System32\drivers\fwpkclnt.sys 0x88E06000 \SystemRoot\System32\Drivers\Ntfs.sys 0x88F15000 \SystemRoot\system32\drivers\volsnap.sys 0x88F4E000 \SystemRoot\System32\Drivers\spldr.sys 0x88F56000 \SystemRoot\System32\Drivers\mup.sys 0x88F65000 \SystemRoot\System32\drivers\ecache.sys 0x88F8C000 \SystemRoot\system32\drivers\disk.sys 0x88F9D000 \SystemRoot\system32\drivers\CLASSPNP.SYS 0x88FBE000 \SystemRoot\system32\drivers\crcdisk.sys 0x88FD4000 \SystemRoot\system32\DRIVERS\tunnel.sys 0x88FDF000 \SystemRoot\system32\DRIVERS\tunmp.sys 0x88FE8000 \SystemRoot\system32\DRIVERS\CmBatt.sys 0x88FEC000 \SystemRoot\system32\DRIVERS\wmiacpi.sys 0x88DC7000 \SystemRoot\system32\DRIVERS\intelppm.sys 0x8C80A000 \SystemRoot\system32\DRIVERS\nvlddmkm.sys 0x8D17B000 \SystemRoot\system32\DRIVERS\nvBridge.kmd 0x8D20D000 \SystemRoot\System32\drivers\dxgkrnl.sys 0x8D2AC000 \SystemRoot\System32\drivers\watchdog.sys 0x8D2B9000 \SystemRoot\system32\DRIVERS\usbuhci.sys 0x8D2C4000 \SystemRoot\system32\DRIVERS\USBPORT.SYS 0x8D302000 \SystemRoot\system32\DRIVERS\usbehci.sys 0x8D311000 \SystemRoot\system32\DRIVERS\HDAudBus.sys 0x8D409000 \SystemRoot\system32\DRIVERS\NETw4v32.sys 0x8D638000 \SystemRoot\system32\DRIVERS\Rtlh86.sys 0x8D64F000 \SystemRoot\system32\DRIVERS\ohci1394.sys 0x8D65F000 \SystemRoot\system32\DRIVERS\1394BUS.SYS 0x8D66D000 \SystemRoot\system32\DRIVERS\sdbus.sys 0x8D687000 \SystemRoot\system32\DRIVERS\rimmptsk.sys 0x8D696000 \SystemRoot\system32\DRIVERS\rimsptsk.sys 0x8D6AA000 \SystemRoot\system32\DRIVERS\rixdptsk.sys 0x8D6FB000 \SystemRoot\system32\DRIVERS\cpqbttn.sys 0x8D6FE000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS 0x8D70E000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS 0x8D715000 \SystemRoot\system32\DRIVERS\i8042prt.sys 0x8D728000 \SystemRoot\system32\DRIVERS\kbdclass.sys 0x8D733000 \SystemRoot\system32\DRIVERS\SynTP.sys 0x8D763000 \SystemRoot\system32\DRIVERS\USBD.SYS 0x8D765000 \SystemRoot\system32\DRIVERS\mouclass.sys 0x8D770000 \SystemRoot\system32\DRIVERS\cdrom.sys 0x8D788000 \SystemRoot\System32\Drivers\GEARAspiWDM.sys 0x8D78E000 \SystemRoot\system32\DRIVERS\msiscsi.sys 0x8D7BC000 \SystemRoot\system32\DRIVERS\storport.sys 0x8D323000 \SystemRoot\system32\DRIVERS\TDI.SYS 0x8D32E000 \SystemRoot\system32\DRIVERS\rasl2tp.sys 0x8D345000 \SystemRoot\system32\DRIVERS\ndistapi.sys 0x8D350000 \SystemRoot\system32\DRIVERS\ndiswan.sys 0x8D373000 \SystemRoot\system32\DRIVERS\raspppoe.sys 0x8D382000 \SystemRoot\system32\DRIVERS\raspptp.sys 0x8D396000 \SystemRoot\system32\DRIVERS\rassstp.sys 0x8D3AB000 \SystemRoot\system32\DRIVERS\termdd.sys 0x8D7FD000 \SystemRoot\system32\DRIVERS\swenum.sys 0x8D3BB000 \SystemRoot\system32\DRIVERS\ks.sys 0x8D3E5000 \SystemRoot\system32\DRIVERS\mssmbios.sys 0x8D3EF000 \SystemRoot\system32\DRIVERS\umbus.sys 0x8D17D000 \SystemRoot\system32\DRIVERS\usbhub.sys 0x8D200000 \SystemRoot\system32\DRIVERS\kbdhid.sys 0x8D1B1000 \SystemRoot\System32\Drivers\NDProxy.SYS 0x8E809000 \SystemRoot\system32\drivers\RTKVHDA.sys 0x8E9B3000 \SystemRoot\system32\drivers\portcls.sys 0x8D1C2000 \SystemRoot\system32\drivers\drmk.sys 0x8E609000 \SystemRoot\system32\DRIVERS\smserial.sys 0x8E6F9000 \SystemRoot\system32\drivers\modem.sys 0x8E706000 \SystemRoot\System32\Drivers\Fs_Rec.SYS 0x8E70F000 \SystemRoot\System32\Drivers\Null.SYS 0x8E716000 \SystemRoot\System32\Drivers\Beep.SYS 0x8E71D000 \SystemRoot\System32\drivers\vga.sys 0x8E729000 \SystemRoot\System32\drivers\VIDEOPRT.SYS 0x8E74A000 \SystemRoot\System32\DRIVERS\RDPCDD.sys 0x8E752000 \SystemRoot\system32\drivers\rdpencdd.sys 0x8E75A000 \SystemRoot\System32\Drivers\Msfs.SYS 0x8E765000 \SystemRoot\System32\Drivers\Npfs.SYS 0x8E773000 \SystemRoot\System32\DRIVERS\rasacd.sys 0x8E77C000 \SystemRoot\system32\DRIVERS\tdx.sys 0x8E792000 \SystemRoot\system32\DRIVERS\smb.sys 0x8E7A6000 \SystemRoot\system32\drivers\afd.sys 0x88B77000 \SystemRoot\System32\DRIVERS\netbt.sys 0x8E9E0000 \SystemRoot\system32\DRIVERS\pacer.sys 0x8E7EE000 \SystemRoot\system32\DRIVERS\netbios.sys 0x8E7FC000 \SystemRoot\system32\DRIVERS\eabfiltr.sys 0x8D1E7000 \SystemRoot\system32\DRIVERS\wanarp.sys 0x8E600000 \SystemRoot\system32\DRIVERS\ssmdrv.sys 0x88BA9000 \SystemRoot\system32\DRIVERS\rdbss.sys 0x8E9F6000 \SystemRoot\system32\drivers\nsiproxy.sys 0x8E606000 \SystemRoot\system32\ckldrv.sys 0x88DD6000 \SystemRoot\System32\Drivers\dfsc.sys 0x889A1000 \SystemRoot\system32\DRIVERS\avipbb.sys 0x8E7FE000 \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys 0x88FC7000 \SystemRoot\System32\Drivers\crashdmp.sys 0x88D09000 \SystemRoot\System32\Drivers\dump_iaStor.sys 0x99230000 \SystemRoot\System32\win32k.sys 0x8C800000 \SystemRoot\System32\drivers\Dxapi.sys 0x8E800000 \SystemRoot\system32\DRIVERS\hidusb.sys 0x88BE5000 \SystemRoot\system32\DRIVERS\usbccgp.sys 0x8D400000 \SystemRoot\system32\DRIVERS\mouhid.sys 0x889BD000 \SystemRoot\System32\Drivers\usbvideo.sys 0x889DE000 \SystemRoot\system32\DRIVERS\monitor.sys 0x99450000 \SystemRoot\System32\TSDDD.dll 0x99470000 \SystemRoot\System32\cdd.dll 0x99480000 \SystemRoot\System32\ATMFD.DLL 0x833AD000 \SystemRoot\system32\drivers\luafv.sys 0x833C8000 \SystemRoot\system32\DRIVERS\avgntflt.sys 0x807AB000 \SystemRoot\system32\DRIVERS\RMCAST.sys 0x889ED000 \SystemRoot\system32\DRIVERS\lltdio.sys 0x9F809000 \SystemRoot\system32\DRIVERS\nwifi.sys 0x9F833000 \SystemRoot\system32\DRIVERS\ndisuio.sys 0x9F83D000 \SystemRoot\system32\DRIVERS\rspndr.sys 0x9F850000 \SystemRoot\system32\drivers\spsys.sys 0x9F8FF000 \SystemRoot\system32\drivers\HTTP.sys 0x9F96A000 \SystemRoot\system32\DRIVERS\asyncmac.sys 0x9F973000 \SystemRoot\System32\DRIVERS\srvnet.sys 0x9F990000 \SystemRoot\system32\DRIVERS\bowser.sys 0x9F9A9000 \SystemRoot\System32\drivers\mpsdrv.sys 0x9F9BE000 \SystemRoot\system32\drivers\mrxdav.sys 0x9F9DE000 \SystemRoot\system32\DRIVERS\mrxsmb.sys 0xA3E00000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys 0xA3E39000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys 0xA3E51000 \SystemRoot\System32\DRIVERS\srv2.sys 0xA3E78000 \SystemRoot\System32\DRIVERS\srv.sys 0xA3EDC000 \SystemRoot\System32\Drivers\adfs.SYS 0xA3EED000 \SystemRoot\system32\drivers\peauth.sys 0xA3FCB000 \SystemRoot\System32\Drivers\secdrv.SYS 0xA3FD5000 \SystemRoot\System32\drivers\tcpipreg.sys 0x833DC000 \SystemRoot\system32\DRIVERS\cdfs.sys 0x88FF5000 \SystemRoot\system32\drivers\tdtcp.sys 0x833F2000 \SystemRoot\System32\DRIVERS\tssecsrv.sys 0xAE805000 \SystemRoot\System32\Drivers\RDPWD.SYS 0x76DD0000 \WINDOWS\System32\ntdll.dll Processes (total 63): 0 System Idle Process 4 System 480 C:\WINDOWS\System32\smss.exe 612 csrss.exe 668 C:\WINDOWS\System32\wininit.exe 680 csrss.exe 716 C:\WINDOWS\System32\services.exe 728 C:\WINDOWS\System32\lsass.exe 736 C:\WINDOWS\System32\lsm.exe 820 C:\WINDOWS\System32\winlogon.exe 924 C:\WINDOWS\System32\svchost.exe 992 C:\WINDOWS\System32\nvvsvc.exe 1020 C:\WINDOWS\System32\svchost.exe 1056 C:\WINDOWS\System32\svchost.exe 1160 C:\WINDOWS\System32\svchost.exe 1244 C:\WINDOWS\System32\svchost.exe 1260 C:\WINDOWS\System32\svchost.exe 1340 C:\WINDOWS\System32\audiodg.exe 1376 C:\WINDOWS\System32\SLsvc.exe 1392 C:\WINDOWS\System32\svchost.exe 1472 C:\WINDOWS\System32\nvvsvc.exe 1576 C:\WINDOWS\System32\svchost.exe 1896 C:\WINDOWS\System32\spoolsv.exe 1960 C:\Program Files\Avira\AntiVir Desktop\sched.exe 2032 C:\WINDOWS\System32\dwm.exe 2040 C:\WINDOWS\explorer.exe 500 C:\WINDOWS\System32\taskeng.exe 1452 C:\WINDOWS\System32\svchost.exe 1720 C:\WINDOWS\System32\taskeng.exe 864 C:\Program Files\Avira\AntiVir Desktop\avguard.exe 1736 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 2052 C:\Program Files\Bonjour\mDNSResponder.exe 2092 C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe 2240 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 2272 C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe 2312 C:\WINDOWS\System32\Crypserv.exe 2356 C:\WINDOWS\RtHDVCpl.exe 2364 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe 2432 C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe 2560 C:\Program Files\Common Files\LightScribe\LSSrvc.exe 2700 C:\Program Files\Common Files\microsoft shared\VS7Debug\MDM.EXE 2716 C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe 2788 C:\WINDOWS\System32\svchost.exe 2828 C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 2928 C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe 2964 C:\WINDOWS\System32\svchost.exe 2996 C:\WINDOWS\System32\svchost.exe 3096 C:\WINDOWS\System32\SearchIndexer.exe 3220 C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe 3960 C:\WINDOWS\System32\wbem\unsecapp.exe 3980 WmiPrvSE.exe 4036 C:\Program Files\Windows Media Player\wmpnscfg.exe 1184 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe 3192 C:\Program Files\Windows Media Player\wmpnetwk.exe 3244 C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe 1364 C:\WINDOWS\System32\VSSVC.exe 1800 C:\WINDOWS\System32\svchost.exe 3040 C:\Program Files\Mozilla Firefox\firefox.exe 4088 C:\Program Files\Mozilla Firefox\plugin-container.exe 2656 C:\WINDOWS\System32\conime.exe 3208 C:\WINDOWS\System32\SearchProtocolHost.exe 2136 C:\WINDOWS\System32\SearchFilterHost.exe 2388 C:\Users\std\Desktop\MBRCheck.exe \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`00007e00 (NTFS) \\.\D: --> \\.\PhysicalDrive0 at offset 0x00000023`668bea00 (NTFS) PhysicalDrive0 Model Number: HitachiHTS541616J9SA00, Rev: SB4OC7BP Size Device Name MBR Status -------------------------------------------- 149 GB \\.\PhysicalDrive0 Unknown MBR code SHA1: D94F393960D1CD66C2071F2D7260A5196DF105AC Found non-standard or infected MBR. Enter 'Y' and hit ENTER for more options, or 'N' to exit: Done!
  19. Que des problèmes avec une mise à jour automatique, je suis un peu dépassé... Puis-je reprendre le fil du pb demain? Je suis totalement perdu et sincèrement désolé...
  20. Je te tiens au courant ^^
  21. Problème: impossible de désinstaller spyware doctor car il n'apparait nul part...
  22. En route!
  23. Et le deuxième rapport: Logfile of random's system information tool 1.08 (written by random/random) Run by std at 2010-08-11 20:47:53 Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1 System drive C: has 85 GB (59%) free of 145 GB Total RAM: 2046 MB (51% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 20:48:43, on 11/08/2010 Platform: Windows Vista SP1 (WinNT 6.00.1905) MSIE: Internet Explorer v7.00 (7.00.6001.18319) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\plugin-container.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\std\Desktop\RSIT.exe C:\Program Files\trend micro\std.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN : Hotmail, Messenger, Bing, Actualité et Sport R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN : Hotmail, Messenger, Bing, Actualité et Sport R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [iAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O8 - Extra context menu item: Ajouter la cible du lien à un fichier PDF existant - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Ajouter à un fichier PDF existant - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir au format Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la cible du lien au format Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - Page introuvable | Facebook O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/resources/VistaMSNPUplden-us.cab O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader2.cab O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUplden-us.cab O16 - DPF: {FAB2BB9D-91E9-457E-9D42-75A7FCCBBC00} (CDFusionActiveXCtl Object) - http://www.fingersnow.fr/plugin/DFusionHomeWebPlugIn.Installer.exe O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe O23 - Service: Crypkey License - Unknown owner - C:\Windows\SYSTEM32\crypserv.exe O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe O23 - Service: @%SystemRoot%\system32\dhcpcsvc.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\emdmgmt.dll,-1000 (EMDMgmt) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (Eventlog) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: getPlus® Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Service Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-200 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\netprof.dll,-246 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\ipnathlp.dll,-106 (SharedAccess) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe O23 - Service: @%SystemRoot%\system32\SLUINotify.dll,-103 (SLUINotify) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: stllssvr - Unknown owner - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe (file missing) O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\wmpnetwk.exe O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe -- End of file - 21822 bytes ======Scheduled tasks folder====== C:\Windows\tasks\GlaryInitialize.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\User_Feed_Synchronization-{42B63C18-85C4-4CBF-AE81-5920F70FAC80}.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{074C1DC5-9320-4A9A-947D-C042949C6216}] ContributeBHO Class - C:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll [2008-09-10 136560] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}] Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}] Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - Contribute Toolbar - C:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll [2008-09-10 136560] {21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-28 1045800] "IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2007-02-12 174872] "RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-03-09 4390912] "avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce] ""= [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe_ID0ENQBO] C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE [2008-08-15 378224] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount] C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [2008-03-20 217544] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe [2007-09-20 202024] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-04-01 486856] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-03-01 472776] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe [2010-04-28 142120] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan] C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2007-09-20 1836328] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [2007-03-01 153136] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QPService] C:\Program Files\HP\QuickPlay\QPService.exe [2007-04-23 176128] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] C:\Program Files\QuickTime\QTTask.exe [2010-03-17 421888] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] C:\Program Files\Skype\Phone\Skype.exe [2010-05-13 26192168] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WAWifiMessage] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe [2007-01-10 317128] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe [2008-01-18 1008184] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Privoxy.lnk] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^std^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^GigaTribe.lnk] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^std^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 2.2.lnk] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^std^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RocketDock.lnk] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^std^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Y'z Shadow.lnk] [] GlaryInitialize.job GoogleUpdateTaskMachineCore.job GoogleUpdateTaskMachineUA.job SA.DAT SCHEDLGU.TXT User_Feed_Synchronization-{42B63C18-85C4-4CBF-AE81-5920F70FAC80}.job GlaryInitialize.job GoogleUpdateTaskMachineCore.job GoogleUpdateTaskMachineUA.job SA.DAT SCHEDLGU.TXT User_Feed_Synchronization-{42B63C18-85C4-4CBF-AE81-5920F70FAC80}.job [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= [] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sdauxservice] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sdcoreservice] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "EnableLUA"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveAutoRun"=0 "NoDriveTypeAutoRun"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveAutoRun"=0 "NoDriveTypeAutoRun"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] ======File associations====== .js - edit - ======List of files/folders created in the last 1 months====== 2010-08-11 20:47:53 ----DC---- C:\rsit 2010-08-11 20:47:53 ----D---- C:\Program Files\trend micro 2010-08-11 20:45:12 ----RASHDC---- C:\Autorun.inf 2010-08-11 20:04:54 ----DC---- C:\UsbFix 2010-08-11 18:19:14 ----SHDC---- C:\$RECYCLE.BIN 2010-08-11 18:19:11 ----D---- C:\Windows\temp 2010-08-11 18:19:10 ----AC---- C:\ComboFix.txt 2010-08-11 17:57:59 ----A---- C:\Windows\zip.exe 2010-08-11 17:57:59 ----A---- C:\Windows\SWSC.exe 2010-08-11 17:57:59 ----A---- C:\Windows\SWREG.exe 2010-08-11 17:57:59 ----A---- C:\Windows\sed.exe 2010-08-11 17:57:59 ----A---- C:\Windows\PEV.exe 2010-08-11 17:57:59 ----A---- C:\Windows\NIRCMD.exe 2010-08-11 17:57:59 ----A---- C:\Windows\MBR.exe 2010-08-11 17:57:59 ----A---- C:\Windows\grep.exe 2010-08-11 17:57:25 ----D---- C:\Windows\ERDNT 2010-08-11 17:56:52 ----ASH---- C:\hiberfil.sys 2010-08-11 17:55:46 ----DC---- C:\plop 2010-08-11 17:55:25 ----DC---- C:\Qoobox 2010-08-11 17:55:12 ----A---- C:\Windows\SWXCACLS.exe 2010-08-11 17:48:04 ----A---- C:\Windows\ntbtlog.txt 2010-08-11 15:16:37 ----D---- C:\Windows\system32\EventProviders 2010-08-11 13:07:17 ----D---- C:\Program Files\Mozilla Firefox 2010-08-10 17:17:21 ----D---- C:\Program Files\Panda Security 2010-08-10 17:08:15 ----D---- C:\Users\std\AppData\Roaming\QuickScan 2010-08-10 13:50:03 ----D---- C:\Users\std\AppData\Roaming\GlarySoft 2010-08-10 13:44:04 ----D---- C:\Program Files\Glary Utilities 2010-08-10 12:37:10 ----A---- C:\Windows\system32\drivers\avipbb.sys 2010-08-10 12:37:10 ----A---- C:\Windows\system32\drivers\avgntflt.sys 2010-08-10 12:37:08 ----D---- C:\ProgramData\Avira 2010-08-10 12:37:08 ----D---- C:\Program Files\Avira 2010-08-10 12:07:55 ----D---- C:\Program Files\ZHPDiag 2010-08-10 11:58:12 ----D---- C:\Program Files\CCleaner 2010-08-09 22:07:08 ----D---- C:\Users\std\AppData\Roaming\Malwarebytes 2010-08-09 22:06:49 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys 2010-08-09 22:06:45 ----D---- C:\ProgramData\Malwarebytes 2010-08-09 22:06:45 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2010-08-09 22:06:45 ----A---- C:\Windows\system32\drivers\mbam.sys 2010-08-09 21:50:13 ----D---- C:\Temporaire 2010-08-08 19:53:52 ----D---- C:\Users\std\AppData\Roaming\DBE86451AEE268E520C2E7A1D1FA06FA 2010-08-02 22:56:18 ----D---- C:\Users\std\AppData\Roaming\Windows Live Writer ======List of files/folders modified in the last 1 months====== 2010-08-11 20:48:05 ----D---- C:\Windows\Prefetch 2010-08-11 20:47:53 ----RD---- C:\Program Files 2010-08-11 20:07:01 ----D---- C:\Windows\System32 2010-08-11 20:07:01 ----D---- C:\Windows\inf 2010-08-11 20:07:01 ----A---- C:\Windows\system32\PerfStringBackup.INI 2010-08-11 19:26:02 ----SHD---- C:\System Volume Information 2010-08-11 18:19:11 ----D---- C:\WINDOWS 2010-08-11 18:18:11 ----D---- C:\Windows\Tasks 2010-08-11 18:14:37 ----AC---- C:\Windows\system.ini 2010-08-11 18:09:38 ----D---- C:\Windows\system32\drivers 2010-08-11 18:09:38 ----D---- C:\Windows\AppPatch 2010-08-11 18:09:37 ----D---- C:\Program Files\Common Files 2010-08-11 16:31:44 ----D---- C:\Windows\system32\catroot2 2010-08-11 16:02:41 ----D---- C:\Windows\Microsoft.NET 2010-08-11 16:02:39 ----RSD---- C:\Windows\assembly 2010-08-11 15:32:04 ----D---- C:\Windows\winsxs 2010-08-11 14:39:28 ----D---- C:\Windows\system32\catroot 2010-08-11 14:30:25 ----D---- C:\Windows\Debug 2010-08-11 13:07:43 ----D---- C:\Users\std\AppData\Roaming\Mozilla 2010-08-11 11:46:19 ----D---- C:\Windows\SMINST 2010-08-11 11:16:59 ----SHD---- C:\Windows\Installer 2010-08-11 10:59:47 ----D---- C:\Program Files\SpeedFan 2010-08-10 20:25:48 ----A---- C:\Windows\NeroDigital.ini 2010-08-10 16:45:48 ----D---- C:\Windows\tracing 2010-08-10 14:24:56 ----D---- C:\Users\std\AppData\Roaming\TeraCopy 2010-08-10 13:56:15 ----D---- C:\ProgramData\Symantec 2010-08-10 13:56:14 ----D---- C:\Program Files\Common Files\Symantec Shared 2010-08-10 13:44:11 ----D---- C:\Windows\system32\Tasks 2010-08-10 12:37:08 ----D---- C:\ProgramData 2010-08-10 12:36:05 ----D---- C:\Program Files\Common Files\microsoft shared 2010-08-10 12:16:23 ----D---- C:\ProgramData\Google 2010-08-10 12:16:23 ----D---- C:\Program Files\Google 2010-08-10 12:02:16 ----D---- C:\Users\std\AppData\Roaming\Media Player Classic 2010-08-09 22:34:01 ----D---- C:\Windows\system32\config 2010-08-09 22:33:49 ----D---- C:\Windows\system32\spool 2010-08-09 22:33:49 ----D---- C:\Windows\system32\Msdtc 2010-08-09 22:33:49 ----D---- C:\Windows\system32\drivers\UMDF 2010-08-09 22:33:49 ----D---- C:\Windows\system32\CodeIntegrity 2010-08-09 22:33:49 ----D---- C:\Program Files\Internet Explorer 2010-08-09 22:33:46 ----D---- C:\Windows\system32\wbem 2010-08-09 22:33:46 ----D---- C:\Windows\registration 2010-08-09 17:48:46 ----D---- C:\Windows\Minidump 2010-08-09 17:45:56 ----D---- C:\Windows\system32\WDI 2010-08-08 20:09:35 ----D---- C:\Users\std\AppData\Roaming\Skype 2010-08-08 19:11:48 ----D---- C:\Users\std\AppData\Roaming\skypePM 2010-08-03 20:09:31 ----A---- C:\Windows\system32\mrt.exe 2010-07-16 20:16:12 ----D---- C:\ProgramData\NVIDIA 2010-07-15 20:12:09 ----D---- C:\Program Files\Windows Mail ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2007-02-12 277784] R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2008-02-06 44608] R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys [2009-02-13 11608] R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2009-03-30 96104] R1 eabfiltr;eabfiltr; C:\Windows\system32\DRIVERS\eabfiltr.sys [2006-11-30 8192] R1 NetworkX;NetworkX; C:\Windows\system32\ckldrv.sys [1997-04-09 20768] R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520] R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2009-04-16 73312] R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2009-11-25 56816] R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936] R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496] R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-01-23 37376] R2 RMCAST;Pilote du protocole RMCAT PGMP; C:\Windows\system32\DRIVERS\RMCAST.sys [2008-05-10 113664] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2009-05-18 26600] R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-03-12 1747936] R3 NETw4v32;Pilote de carte Intel® Wireless WiFi Link pour Windows Vista 32 bits; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-10-31 2252800] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-10-03 9905096] R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2007-03-05 76288] R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-18 88576] R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-10-09 981504] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-03-28 199472] R3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-18 134016] R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328] S1 Wsdrv;SyGate for NT, Wsdrv; C:\Windows\SYSTEM32\Drivers\Wsdrv.sys [] S3 BCM43XV;Pilote de la carte réseau extensible Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384] S3 catchme;catchme; \??\C:\Users\std\AppData\Local\Temp\catchme.sys [] S3 dot4;Pilote MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-18 131584] S3 Dot4Print;Pilote de classe Imprimante pour IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-18 16384] S3 Dot4Scan;Pilote de classe Scanneur pour IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Scan.sys [2008-01-18 10752] S3 dot4usb;Filtre Dot4USB Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-18 36864] S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632] S3 E100B;Pilote de carte Intel ® PRO; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328] S3 fbxusb;FreeBox USB Network Adapter; C:\Windows\system32\DRIVERS\fbxusb.sys [2003-12-31 18848] S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 54632] S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2008-06-30 25280] S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520] S3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2006-11-02 987648] S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704] S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864] S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192] S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888] S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504] S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016] S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2005-08-17 58352] S3 sscdmdfl;SAMSUNG CDMA Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2005-08-17 8272] S3 sscdmdm;SAMSUNG CDMA Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2005-08-17 93872] S3 StMp3Rec;Pilote de périphérique de la restauration de lecteur; C:\Windows\System32\Drivers\StMp3Rec.sys [2007-02-15 19840] S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2010-04-16 41472] S3 usbaudio;Pilote USB audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-18 73088] S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-18 35328] S3 winachsf;winachsf; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2006-11-02 654336] S3 winusb;Service WinUSB; C:\Windows\system32\DRIVERS\WinUSB.SYS [2008-01-18 31616] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-18 39936] S4 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2008-04-04 717296] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-05-13 108289] R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-07-21 185089] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2010-04-16 144672] R2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2007-03-14 62984] S2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2010-04-08 345376] S2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [2007-04-23 262243] S2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe [2007-04-23 106593] S2 Crypkey License;Crypkey License; C:\Windows\system32\crypserv.exe [1997-04-09 50176] S2 gupdate;Service Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-22 135664] S2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168] S2 IAANTMON;Intel® Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2007-02-12 355096] S2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-12-14 61440] S2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120] S2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-09-20 853288] S2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-10-03 219752] S2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512] S2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968] S3 Com4Qlb;Com4Qlb; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe [2007-01-09 110592] S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2009-04-26 655624] S3 fsssvc;Service Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864] S3 getPlus® Helper;getPlus® Helper; C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [2009-06-04 66048] S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728] S3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2010-04-28 545576] S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2007-09-20 382248] S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2008-09-19 92656] S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [] S4 Adobe Version Cue CS4;Adobe Version Cue CS4; C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [2009-03-12 288112] -----------------EOF-----------------
  24. Rapport UsbFix: ############################## | UsbFix 7.019 | [suppression] Utilisateur: std (Administrateur) # ZACHARIAS [Hewlett-Packard HP Pavilion dv9500 Notebook PC] Mis à jour le 03/08/10 par El Desaparecido / C_XX Lancé à 20:41:32 | 11/08/2010 Site Web: Bienvenue dans nos Pages Persos Contact: FindyKill.Contact@gmail.com CPU: Intel® Core2 Duo CPU T5450 @ 1.66GHz CPU 2: Intel® Core2 Duo CPU T5450 @ 1.66GHz Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6001 32-Bit) # Service Pack 1 Internet Explorer 7.0.6001.18000 Pare-feu Windows: Désactivé /!\ Antivirus: Avira AntiVir PersonalEdition 8.0.1.15 [Enabled | (!) Outdated] RAM -> 2046 Mo C:\ (%systemdrive%) -> Disque fixe # 142 Go (83 Go libre(s) - 59%) [] # NTFS D:\ -> Disque fixe # 7 Go (2 Go libre(s) - 31%) [HP_RECOVERY] # NTFS E:\ -> CD-ROM I:\ -> Disque amovible # 8 Go (7 Go libre(s) - 99%) [] # NTFS J:\ -> Disque fixe # 56 Go (56 Go libre(s) - 100%) [Minidisk] # NTFS ################## | Éléments infectieux | ################## | Registre | Supprimé! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableRegistryTools Supprimé! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives Supprimé! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives ################## | Mountpoints2 | ################## | Listing | [11/08/2010 - 20:44:10 | SHDC ] C:\$RECYCLE.BIN [22/04/2009 - 11:45:11 | AC | 18675] C:\aaw7boot.log [23/04/2009 - 14:06:53 | DC ] C:\AdobeTemp [18/09/2006 - 23:43:36 | AC | 24] C:\autoexec.bat [09/06/2008 - 16:02:00 | DC ] C:\boot [18/01/2008 - 23:45:46 | RASH | 333203] C:\bootmgr [28/01/2009 - 21:30:06 | AC | 307] C:\colorbox.log [11/08/2010 - 18:19:10 | AC | 19743] C:\ComboFix.txt [18/09/2006 - 23:43:37 | AC | 10] C:\config.sys [08/09/2007 - 16:00:06 | SHD ] C:\Documents and Settings [23/04/2009 - 00:54:03 | D ] C:\Dossier important [11/08/2010 - 20:00:44 | AC | 309198] C:\error.log [11/08/2010 - 20:00:18 | ASH | 2145837056] C:\hiberfil.sys [25/06/2007 - 23:27:14 | D ] C:\HP [25/06/2007 - 22:16:38 | D ] C:\Intel [26/03/2008 - 22:44:55 | RASHC | 0] C:\IO.SYS [30/03/2007 - 13:06:52 | D ] C:\MCPP [08/06/2009 - 18:18:54 | DC ] C:\MGADiagToolOutput [26/03/2008 - 22:44:55 | RASHC | 0] C:\MSDOS.SYS [05/01/2002 - 03:38:38 | AC | 54784] C:\msvci70.dll [16/02/2006 - 20:52:00 | A | 398320] C:\nsd91F1.tmp [30/11/2005 - 17:26:00 | A | 369480] C:\nsi9656.tmp [18/01/2006 - 12:33:00 | A | 381644] C:\nss9A8C.tmp [26/09/2008 - 21:10:22 | DC ] C:\NVIDIA [23/04/2009 - 11:40:13 | DC ] C:\Ont c pas trop a koi sa sert mais c la ! [15/06/2009 - 13:46:24 | AC | 2382] C:\page9.html [11/08/2010 - 20:00:16 | ASH | 2459627520] C:\pagefile.sys [29/07/2008 - 15:08:43 | AC | 132] C:\Par défaut.ppr [09/06/2008 - 15:48:34 | D ] C:\PerfLogs [11/08/2010 - 18:19:13 | DC ] C:\plop [11/08/2010 - 19:55:16 | RD ] C:\Program Files [10/08/2010 - 12:37:08 | D ] C:\ProgramData [11/08/2010 - 18:19:12 | DC ] C:\Qoobox [12/09/2007 - 21:59:17 | AHC | 232] C:\sqmdata00.sqm [12/09/2007 - 21:59:42 | AHC | 232] C:\sqmdata01.sqm [12/09/2007 - 22:00:11 | AHC | 232] C:\sqmdata02.sqm [12/09/2007 - 21:59:17 | AHC | 244] C:\sqmnoopt00.sqm [12/09/2007 - 21:59:42 | AHC | 244] C:\sqmnoopt01.sqm [12/09/2007 - 22:00:11 | AHC | 244] C:\sqmnoopt02.sqm [23/04/2009 - 11:56:17 | DC ] C:\swsetup [23/04/2009 - 00:51:54 | D ] C:\SwSetup(154) [11/08/2010 - 19:26:02 | SHD ] C:\System Volume Information [01/03/2009 - 12:07:09 | D ] C:\System.sav [10/08/2010 - 11:23:58 | D ] C:\Temporaire [11/09/2008 - 12:56:18 | D ] C:\Themes [28/02/2009 - 00:19:22 | AC | 594] C:\updatedatfix.log [11/08/2010 - 20:44:10 | DC ] C:\UsbFix [11/08/2010 - 20:41:33 | AC | 3799] C:\UsbFix.txt [27/07/2008 - 12:49:56 | RD ] C:\Users [06/07/2010 - 20:12:21 | DC ] C:\USR [22/04/2009 - 17:26:14 | DC ] C:\wamp [11/08/2010 - 18:19:11 | D ] C:\WINDOWS [08/08/2010 - 20:10:05 | AC | 5] C:\zrpt.xml [11/08/2010 - 20:44:10 | D ] D:\$RECYCLE.BIN [11/09/2005 - 17:18:54 | SH | 340] D:\AUTOMODE [08/09/2007 - 16:13:18 | SH | 13] D:\BLOCK.RIN [08/09/2007 - 16:54:58 | D ] D:\boot [04/10/2006 - 01:02:44 | SH | 438328] D:\bootmgr [03/11/2006 - 21:43:28 | SH | 117] D:\Desktop.ini [08/09/2007 - 16:37:31 | SH | 0] D:\DRECOVERY [10/09/2002 - 18:14:28 | SH | 8134] D:\Folder.htt [08/09/2007 - 16:54:58 | D ] D:\HP [10/11/2008 - 21:42:56 | A | 129] D:\Lecteur CD - Raccourci (2).lnk [10/11/2008 - 21:42:56 | A | 129] D:\Lecteur CD - Raccourci (3).lnk [10/11/2008 - 21:42:56 | A | 129] D:\Lecteur CD - Raccourci (4).lnk [10/11/2008 - 21:42:56 | A | 145] D:\Lecteur CD - Raccourci.lnk [14/07/2007 - 06:34:01 | SH | 698] D:\MASTER.LOG [08/09/2007 - 16:54:58 | D ] D:\preload [03/11/2005 - 17:19:52 | SH | 181736] D:\protect.ed [08/09/2007 - 16:54:58 | RD ] D:\RECOVERY [08/09/2007 - 16:54:58 | D ] D:\SOURCES [08/09/2007 - 16:54:58 | SHD ] D:\System Volume Information [08/09/2007 - 16:54:58 | D ] D:\Tools [14/07/2007 - 06:34:17 | SH | 0] D:\USER [08/09/2007 - 16:54:58 | D ] D:\WINDOWS [11/08/2010 - 18:49:07 | A | 1415820] I:\AD-R.exe [11/08/2010 - 19:10:53 | A | 2700] I:\Ad-Report-CLEAN[1].txt [11/08/2010 - 19:02:34 | A | 2359] I:\Ad-Report-SCAN[1].txt [11/08/2010 - 20:44:10 | SHD ] J:\$RECYCLE.BIN [11/08/2010 - 17:57:16 | SHD ] J:\System Volume Information ################## | Vaccin | C:\Autorun.inf -> Dossier créé par UsbFix (El Desaparecido & C_XX) D:\Autorun.inf -> Dossier créé par UsbFix (El Desaparecido & C_XX) I:\Autorun.inf -> Dossier créé par UsbFix (El Desaparecido & C_XX) J:\Autorun.inf -> Dossier créé par UsbFix (El Desaparecido & C_XX) ################## | E.O.F |
  25. Voili: ############################## | UsbFix 7.019 | [Recherche] Utilisateur: std (Administrateur) # ZACHARIAS [Hewlett-Packard HP Pavilion dv9500 Notebook PC] Mis à jour le 03/08/10 par El Desaparecido / C_XX Lancé à 20:05:09 | 11/08/2010 Site Web: Bienvenue dans nos Pages Persos Contact: FindyKill.Contact@gmail.com CPU: Intel® Core2 Duo CPU T5450 @ 1.66GHz CPU 2: Intel® Core2 Duo CPU T5450 @ 1.66GHz Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6001 32-Bit) # Service Pack 1 Internet Explorer 7.0.6001.18000 Pare-feu Windows: Désactivé /!\ Antivirus: Avira AntiVir PersonalEdition 8.0.1.15 [Enabled | (!) Outdated] RAM -> 2046 Mo C:\ (%systemdrive%) -> Disque fixe # 142 Go (81 Go libre(s) - 58%) [] # NTFS D:\ -> Disque fixe # 7 Go (2 Go libre(s) - 31%) [HP_RECOVERY] # NTFS E:\ -> CD-ROM I:\ -> Disque amovible # 8 Go (7 Go libre(s) - 99%) [] # NTFS J:\ -> Disque fixe # 56 Go (56 Go libre(s) - 100%) [Minidisk] # NTFS ################## | Éléments infectieux | ################## | Registre | Présent! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableRegistryTools Présent! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives Présent! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives ################## | Mountpoints2 | ################## | Vaccin | (!) Cet ordinateur n'est pas vacciné! ################## | E.O.F |
×
×
  • Créer...