Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Bonjour ne vous excusez pas ,il n'y a rien de grave , c'est déja formidable de vous mettre au service des autres.

j'ai suivi la procédure , mais à la fin du nettoyage il ne m'a pas demandé de redemarrer pour finir le nettoyage .

j'ai eu le rapport tout de suite que j'ai collé si dessous , je vais relancer moi meme apres vous avoir envoyé ce message . Bonne analyse , j'attends vos instructions, et merci encore pour votre aide.

 

 

Rapport de ZHPFix 1.12.3345 par Nicolas Coolman, Update du 29/07/2011

Fichier d'export Registre : C:\ZHP\ZHPExportRegistry-09-08-2011-14-30-55.txt

Run by Admin at 09/08/2011 14:30:55

Windows XP Home Edition Service Pack 3 (Build 2600)

Web site : ZHPFix Fix de rapport

 

========== Logiciel(s) ==========

ABSENT Uninstall Process: c:\program files\spybot - search & destroy\unins000.exe

SUPPRIME O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1

 

========== Clé(s) du Registre ==========

SUPPRIME [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1]

SUPPRIME Key: HKLM\Software\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}

SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6A87B991-A31F-4130-AE72-6D0C294BF082}

SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6A87B991-A31F-4130-AE72-6D0C294BF082}

SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F}

SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F}

SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{e908b145-c847-4e85-b315-07e2e70decf8}

SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{e908b145-c847-4e85-b315-07e2e70decf8}

SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}

SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}

SUPPRIME CLSID MPSK: {a8f77597-bde1-11dd-8990-0014d1560eb5}

SUPPRIME Key: HKLM\Software\Classes\AppID\NCTAudioCDGrabber2.DLL

SUPPRIME Key: HKLM\Software\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}

ABSENT Key: HKLM\Software\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}

ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6A87B991-A31F-4130-AE72-6D0C294BF082}

ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6A87B991-A31F-4130-AE72-6D0C294BF082}

ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F}

ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F}

ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{e908b145-c847-4e85-b315-07e2e70decf8}

ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{e908b145-c847-4e85-b315-07e2e70decf8}

ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}

ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}

ABSENT CLSID MPSK: {a8f77597-bde1-11dd-8990-0014d1560eb5}

ABSENT Key: HKLM\Software\Classes\AppID\NCTAudioCDGrabber2.DLL

ABSENT Key: HKLM\Software\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}

 

========== Elément(s) de donnée du Registre ==========

SUPPRIME PhishingFilter Value: Enabled = 0

 

========== Dossier(s) ==========

SUPPRIME Folder*: C:\Documents and Settings\Admin\Application Data\CD28B63EC713517F4BA7CE5DABE2FE41

SUPPRIME Folder*: c:\documents and settings\admin\application data\adobe\plugs

SUPPRIME Folder*: c:\documents and settings\admin\application data\adobe\shed

SUPPRIME Reboot Folder**: C:\Program Files\Spybot - Search & Destroy

ABSENT C:\Documents and Settings\Admin\Application Data\CD28B63EC713517F4BA7CE5DABE2FE41

 

========== Fichier(s) ==========

ABSENT Folder/File: c:\documents and settings\admin\application data\cd28b63ec713517f4ba7ce5dabe2fe41

SUPPRIME c:\ad-report-clean[1].txt

SUPPRIME c:\ad-report-scan[1].txt

SUPPRIME c:\ntuser.dat

ABSENT Folder/File: c:\documents and settings\admin\application data\adobe\plugs

ABSENT Folder/File: c:\documents and settings\admin\application data\adobe\shed

ABSENT File: c:\ad-report-clean[1].txt

ABSENT File: c:\ad-report-scan[1].txt

ABSENT File: c:\ntuser.dat

 

 

========== Récapitulatif ==========

25 : Clé(s) du Registre

1 : Elément(s) de donnée du Registre

5 : Dossier(s)

9 : Fichier(s)

2 : Logiciel(s)

 

 

========== Chemin du fichier rapport ==========

C:\ZHP\ZHPFixReport.txt

 

 

 

End of the scan in 03mn 13s

Posté(e)

Je suis désolé , mais j'ai fait des essais par exemple en recherchant sur google le cite de RTL et en cliquant dessus j'ai des message de pub ( bing ,nebnug,orange pour pub iphone..) c'est vraiement casse pied ces messages non désirés.

je suis à votre écoute pour d'autres vérification si necessaire.

merci pour votre patience .

Posté(e)

Bonjour,

 

Peut-être un rootkit ?

 

Télécharger GMER

clic sur "Download EXE" et télécharger le fichier sur le bureau.

 

Désactiver les protection (antivirus, antispyware etc) et fermer tous les programmes ouverts.

Double-clic sur le fichier GMER téléchargé.

- Dans la section de droite de la fenêtre de l'outil, Vérifiez que soient décochées :

Show All

Une fois lancé, clic droit sur le fond blanc et clic sur "Only Non MS files"

Clic en bas à droite sur le bouton "Scan" pour lancer le scan.

 

GMER_ScanType.png

 

Lorsque le scan est terminé, clic sur "Copy"

 

Il peut arriver que GMER plante sans raison apparente.

Vous pouvez essayer ceci : décocher "Devices" dans un premier temps et repasser l'outil ;

si ça coince toujours, décocher en plus "Files" et ré-essayez un scan.

Lorsque les informations sur le scan s'affichent , es éléments détectés comme rootkit apparaissent en rougel dans chaque section.

Pour supprimer:

Clic droit et faire l'action voulue selon le type de la colonne de gauche.

Delete the service si c'est un service

Delete File pour le reste

Ouvrez le bloc-note et clic sur le Menu Edition / Coller

Le rapport doit alors apparaître.

Enregistrer le fichier sur le bureau et copier/coller le contenu.

 

[/color]

Posté(e)

bonjour voici le rapport , je n'avais pas de ligne en rouge apres le sacn

 

 

GMER 1.0.15.15641 - GMER - Rootkit Detector and Remover

Rootkit scan 2011-08-10 14:00:53

Windows 5.1.2600 Service Pack 3

Running: 2cd3ovsi.exe; Driver: C:\DOCUME~1\Admin\LOCALS~1\Temp\uxtdypob.sys

 

 

---- Modules - GMER 1.0.15 ----

 

Module RGRCZ@J@ B9F30000-B9F48000 (98304 bytes)

Module PxHelp20.sys (Px Engine Device Driver for Windows 2000/XP/Sonic Solutions) BA0F8000-BA104000 (49152 bytes)

Module \SystemRoot\system32\DRIVERS\ialmnt5.sys (Intel Graphics Miniport Driver/Intel Corporation) B9361000-B94AC000 (1355776 bytes)

Module \SystemRoot\system32\DRIVERS\HDAudBus.sys (High Definition Audio Bus Driver v1.0a/Windows ® Server 2003 DDK provider) B9325000-B934D000 (163840 bytes)

Module \SystemRoot\system32\DRIVERS\Rtenicxp.sys (Realtek 10/100/1000 NDIS 5.1 Driver /Realtek Semiconductor Corporation ) B930B000-B9325000 (106496 bytes)

Module \SystemRoot\system32\DRIVERS\rtl8185.sys (Realtek RTL8185 NDIS5.1 miniport driver/Realtek Semiconductor Corporation ) B929B000-B92E7000 (311296 bytes)

Module \SystemRoot\system32\DRIVERS\L8042Kbd.sys (Logitech PS2 Keyboard Filter Driver./Logitech, Inc.) BA590000-BA594000 (16384 bytes)

Module \SystemRoot\system32\DRIVERS\ptilink.sys (Parallel Technologies DirectParallel IO Library/Parallel Technologies, Inc.) BA408000-BA40D000 (20480 bytes)

Module \SystemRoot\system32\drivers\RtkHDAud.sys (Realtek® High Definition Audio Function Driver/Realtek Semiconductor Corp.) A8BCE000-A906D000 (4845568 bytes)

Module \SystemRoot\system32\DRIVERS\ssmdrv.sys (AVIRA SnapShot Driver/Avira GmbH) BA458000-BA45E000 (24576 bytes)

Module \SystemRoot\system32\DRIVERS\avipbb.sys (Avira Driver for Security Enhancement/Avira GmbH) A899D000-A89C3000 (155648 bytes)

Module \??\C:\Program_Files\Avira\AntiVir_Desktop\avgio.sys (Avira AntiVir Support for Minifilter/Avira GmbH) BA5F2000-BA5F4000 (8192 bytes)

Module \SystemRoot\system32\DRIVERS\lvuvcflt.sys (Logitech USB Video Class Filter Driver/Logitech Inc.) BA57C000-BA580000 (16384 bytes)

Module \SystemRoot\System32\Drivers\LEqdUsb.Sys (Logitech Equad USB Driver./Logitech, Inc.) BA228000-BA231000 (36864 bytes)

Module \SystemRoot\system32\DRIVERS\LVMVDrv.sys (Logitech Machine Vision Engine Loader/Logitech Inc.) A86F0000-A88FA000 (2138112 bytes)

Module \SystemRoot\system32\drivers\LVUSBSta.sys (USB Statistic Driver/Logitech Inc.) BA248000-BA251000 (36864 bytes)

Module \SystemRoot\system32\DRIVERS\lvuvc.sys (Logitech USB Video Class Driver/Logitech Inc.) A8387000-A86F0000 (3575808 bytes)

Module \SystemRoot\system32\DRIVERS\lvpopflt.sys (Logitech AudioProcessing Filter Driver/Logitech Inc.) A81B3000-A8387000 (1916928 bytes)

Module \SystemRoot\system32\DRIVERS\LVcKap.sys A7F12000-A8113000 (2101248 bytes)

Module \SystemRoot\system32\DRIVERS\HPZius12.sys (1284.4<->Usb Datalink Driver (Windows 2000)/HP) BA470000-BA476000 (24576 bytes)

Module \SystemRoot\System32\Drivers\LHidEqd.Sys (Logitech HID Filter Driver./Logitech, Inc.) BA7E7000-BA7E8000 (4096 bytes)

Module \SystemRoot\system32\DRIVERS\HPZid412.sys (IEEE-1284.4-1999 Driver (Windows 2000)/HP) BA2C8000-BA2D5000 (53248 bytes)

Module \SystemRoot\system32\DRIVERS\HPZipr12.sys (IEEE-1284.4-1999 Print Class Driver/HP) A8B8E000-A8B92000 (16384 bytes)

Module \SystemRoot\system32\DRIVERS\LHidFilt.Sys (Logitech HID Filter Driver./Logitech, Inc.) BA480000-BA488000 (32768 bytes)

Module \SystemRoot\system32\DRIVERS\LMouFilt.Sys (Logitech Mouse Filter Driver./Logitech, Inc.) BA488000-BA490000 (32768 bytes)

Module \SystemRoot\System32\ialmdnt5.dll (Controller Hub for Intel Graphics Driver/Intel Corporation) BF020000-BF042000 (139264 bytes)

Module \SystemRoot\System32\ialmrnt5.dll (Controller Hub for Intel Graphics Driver/Intel Corporation) BF012000-BF020000 (57344 bytes)

Module \SystemRoot\System32\ialmdev5.DLL (Component GHAL Driver/Intel Corporation) BF042000-BF077000 (217088 bytes)

Module \SystemRoot\System32\ialmdd5.DLL (DirectDraw® Driver for Intel® Graphics Technology/Intel Corporation) BF077000-BF159000 (925696 bytes)

Module \SystemRoot\System32\ATMFD.DLL (Windows NT OpenType/Type 1 Font Driver/Adobe Systems Incorporated) BF159000-BF1A0000 (290816 bytes)

Module \SystemRoot\system32\DRIVERS\avgntflt.sys (Avira Minifilter Driver/Avira GmbH) A7D2F000-A7D44000 (86016 bytes)

Module \SystemRoot\system32\drivers\xpsec.sys A75D0000-A75E3000 (77824 bytes)

Module \SystemRoot\system32\drivers\xcpip.sys A74D7000-A7530000 (364544 bytes)

Module \??\C:\WINDOWS\system32\drivers\hardlock.sys (Hardlock Device Driver for Windows NT/Aladdin Knowledge Systems Ltd.) A72F3000-A7397000 (671744 bytes)

Module \SystemRoot\System32\Drivers\LBeepKE.sys (Logitech Consumer Control Filter Driver./Logitech, Inc.) BA786000-BA787000 (4096 bytes)

Module \SystemRoot\system32\DRIVERS\LVPr2Mon.sys BA398000-BA39D000 (20480 bytes)

Module \??\C:\WINDOWS\system32\PCANDIS5.SYS (PCAUSA NDIS 5.0 Protocol Driver/Printing Communications Assoc., Inc. (PCAUSA)) A6B49000-A6B51000 (32768 bytes)

Module \??\C:\DOCUME~1\Admin\LOCALS~1\Temp\uxtdypob.sys (GMER) A6102000-A611B000 (102400 bytes)

 

---- Processes - GMER 1.0.15 ----

 

Process C:\Program Files\OrangeHSS\Launcher\Launcher.exe (France Telecom SA) 124

Library C:\Program Files\OrangeHSS\Launcher\Launcher.exe (France Telecom SA) 0x00400000

Library C:\Program Files\OrangeHSS\Launcher\ModifFT.dll (France Telecom SA) 0x10000000

Library C:\Program Files\OrangeHSS\Launcher\IfHelper.dll (France Telecom SA) 0x00340000

Library C:\Program Files\OrangeHSS\Launcher\WatchClient.dll 0x00350000

Library C:\Program Files\OrangeHSS\Launcher\xerces-c_2_6.dll (Shared Library for Xerces-C Version 2.6.0/Apache Software Foundation) 0x12000000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertClient.dll (France Telecom SA) 0x003F0000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginUpdateDaemon.dll (France Telecom SA) 0x011A0000

Library C:\Program Files\OrangeHSS\Launcher\ShellDll.dll (France Telecom SA) 0x011F0000

Library C:\Program Files\OrangeHSS\Launcher\AutoDetect.dll (France Telecom SA) 0x012F0000

Library C:\Program Files\OrangeHSS\Launcher\StyleIHM.dll (France Telecom SA) 0x01310000

Library C:\Program Files\OrangeHSS\Launcher\SynchroDll.dll (France Telecom SA) 0x013E0000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\IHMPluginUpdateDaemon.dll (France Telecom SA) 0x016C0000

Library c:\progra~1\orange~1\launcher\skin\default\main\ResourceStyle.dll (ORAHSS : 1.0.11.739/France Telecom SA) 0x016D0000

Library C:\Program Files\OrangeHSS\Launcher\AppFactoryPlugins\AppFactoryDefault.dll (France Telecom SA) 0x01CC0000

Library C:\Program Files\OrangeHSS\Launcher\AppFactoryPlugins\AppFactoryFake.dll (France Telecom SA) 0x01F30000

Library C:\Program Files\OrangeHSS\Launcher\AppFactoryPlugins\AppFactoryMozilla.dll (France Telecom SA) 0x01F90000

Library C:\Program Files\OrangeHSS\Launcher\AppFactoryPlugins\AppFactoryMS.dll (France Telecom SA) 0x02000000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhConnectivitySettings.dll (France Telecom SA) 0x020C0000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\IHMPluginLnhConnectivitySettings.dll (France Telecom SA) 0x021B0000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhHelpFactory.dll (France Telecom SA) 0x026C0000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhIdentityInventory.dll (France Telecom SA) 0x02700000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\IHMPluginLnhIdentityInventory.dll (France Telecom SA) 0x027A0000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhIdentitySelectUI.dll (France Telecom SA) 0x027B0000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\IHMPluginLnhIdentitySelectUI.dll (France Telecom SA) 0x02830000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhIdentitySynchro.dll (France Telecom SA) 0x02840000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhInactivity.dll (France Telecom SA) 0x028C0000

Library C:\Program Files\OrangeHSS\Launcher\Inactivity.Dll (France Telecom SA) 0x028E0000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhPolling.dll (France Telecom SA) 0x028F0000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhPromptManager2.dll 0x02910000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhRecovery.dll 0x029C0000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhSettings.dll (France Telecom SA) 0x02A00000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\IHMPluginLnhSettings.dll (France Telecom SA) 0x01710000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\pluginLnhShell.dll (France Telecom SA) 0x02A70000

Library C:\Program Files\OrangeHSS\Launcher\Plugins\PluginLnhToaster.dll (France Telecom SA) 0x02A90000

Library C:\Program Files\OrangeHSS\Launcher\Prompt2\Generic\Generic.dll (France Telecom SA) 0x01000000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x036D0000

 

Process C:\WINDOWS\system32\ctfmon.exe (CTF Loader/Microsoft Corporation) 140

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe (France Telecom SA) 192

Library C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe (France Telecom SA) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\Documents and Settings\Admin\Bureau\2cd3ovsi.exe 200

Library C:\Documents and Settings\Admin\Bureau\2cd3ovsi.exe 0x00400000

Library C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.) 0x00800000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\OrangeHSS\Launcher\Inactivity.Dll (France Telecom SA) 0x10000000

 

Process C:\Program Files\OrangeHSS\systray\systrayapp.exe (France Telecom SA) 280

Library C:\Program Files\OrangeHSS\systray\systrayapp.exe (France Telecom SA) 0x00400000

Library C:\Program Files\OrangeHSS\systray\StyleIHM.dll (France Telecom SA) 0x10000000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertClient.dll (France Telecom SA) 0x009B0000

Library c:\progra~1\orange~1\systray\skin\default\main\ResourceStyle.dll (ORAHSS : 1.0.11.739/France Telecom SA) 0x01000000

 

Process C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe (Nero Home/Nero AG) 352

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe (Nero Home/Nero AG) 0x00400000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMSQLDB.dll (Nero Home/Nero AG) 0x10000000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.) 0x00CA0000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMLogCxx.dll (Nero Home/Nero AG) 0x00B10000

Library C:\Program Files\Fichiers communs\Ahead\Lib\log4cxx.dll (Log4cxx is C++ port of Log4j/Nero AG) 0x00B20000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingServicePS.dll (Nero Home/Nero AG) 0x01620000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMCoFoundation.dll (Nero Home/Nero AG) 0x01940000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMFullTextExtraction.dll (Nero Home/Nero AG) 0x01DA0000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMSearchPluginSimilarImages.dll (Nero Home/Nero AG) 0x01E20000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NeroIPP.dll (Nero IPP Proxy/Nero AG) 0x01E50000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMDataServices.dll (Nero Home/Nero AG) 0x02190000

Library C:\WINDOWS\system32\msidntld.dll (Gestionnaire d'identité Microsoft/Microsoft Corporation) 0x60C40000

 

Process C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (MobileDeviceService/Apple Inc.) 396

Library C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (MobileDeviceService/Apple Inc.) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\Apple\Apple Application Support\ASL.dll (Apple System Log/Apple, Inc.) 0x10000000

Library C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll (Apple Mobile Device Service/Apple Inc.) 0x00620000

Library C:\Program Files\Fichiers communs\Apple\Apple Application Support\CoreFoundation.dll (CoreFoundation/Apple Inc.) 0x00660000

Library C:\Program Files\Fichiers communs\Apple\Apple Application Support\pthreadVC2.dll (POSIX Threads for Windows32 Library/Open Source Software community project) 0x00740000

Library C:\Program Files\Fichiers communs\Apple\Apple Application Support\objc.dll (Objective-C Runtime Library/Apple Inc.) 0x00750000

Library C:\Program Files\Fichiers communs\Apple\Apple Application Support\libdispatch.dll (Dispatch Runtime Library/Apple Inc.) 0x00780000

Library C:\Program Files\Fichiers communs\Apple\Apple Application Support\icuin40.dll (IBM ICU I18N DLL/IBM Corporation and others) 0x007A0000

Library C:\Program Files\Fichiers communs\Apple\Apple Application Support\icuuc40.dll (IBM ICU Common DLL/IBM Corporation and others) 0x008B0000

Library C:\Program Files\Fichiers communs\Apple\Apple Application Support\icudt40.dll (ICU Data DLL/IBM Corporation and others) 0x4AD00000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x00DC0000

 

Process C:\Program Files\OrangeHSS\connectivity\connectivitymanager.exe (France Telecom SA) 472

Library C:\Program Files\OrangeHSS\connectivity\connectivitymanager.exe (France Telecom SA) 0x00400000

Library C:\Program Files\OrangeHSS\connectivity\ConnectivityFactory.dll (France Telecom SA) 0x10000000

Library C:\Program Files\OrangeHSS\connectivity\Sqlite3.dll (France Telecom SA) 0x00330000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\OrangeHSS\connectivity\ModifFT.dll (France Telecom SA) 0x00BF0000

Library C:\Program Files\OrangeHSS\connectivity\IfHelper.dll (France Telecom SA) 0x00C10000

Library C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\PTPCommunication\0\PTPCommunication.dll (France Telecom SA) 0x00C50000

Library C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertClient.dll (France Telecom SA) 0x01160000

Library C:\PROGRA~1\ORANGE~1\CONNEC~1\HandlerConnection.dll (France Telecom SA) 0x01380000

Library C:\PROGRA~1\ORANGE~1\CONNEC~1\HandlerProxy.dll (France Telecom SA) 0x013D0000

 

Process C:\Program Files\OrangeHSS\connectivity\CoreCom\CoreCom.exe (France Telecom SA) 504

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\CoreCom.exe (France Telecom SA) 0x00400000

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\IfHelper.dll (France Telecom SA) 0x10000000

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\WLANManager.dll (France Telecom SA) 0x00330000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\PMStub.dll (France Telecom SA) 0x003E0000

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\PhoneManager.dll (France Telecom SA) 0x00D30000

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\ShellDll.dll (France Telecom SA) 0x00D70000

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\AutoDetect.dll (France Telecom SA) 0x00E70000

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\GPRS.dll (France Telecom SA) 0x00F50000

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\ModifFT.dll (France Telecom SA) 0x00F60000

Library C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\PTPCommunication\0\PTPCommunication.dll (France Telecom SA) 0x00F90000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x01F00000

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\NativeWifiGen.dll (France Telecom SA) 0x026C0000

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\NDIS_Gen.dll (France Telecom SA) 0x026E0000

Library C:\WINDOWS\system32\W32N50.dll (WinDis 32 API & Platform Compatibility DLL/Printing Communications Assoc., Inc. (PCAUSA)) 0x02700000

 

Process C:\WINDOWS\system32\csrss.exe (Client Server Runtime Process/Microsoft Corporation) 536

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\WINDOWS\system32\winlogon.exe (Application d'ouverture de session Windows NT/Microsoft Corporation) 564

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library c:\program files\fichiers communs\logishrd\bluetooth\LBTWlgn.dll (Logitech Bluetooth Service/Logitech, Inc.) 0x10000000

Library c:\program files\fichiers communs\logishrd\bluetooth\LBTServ.dll (Logitech Bluetooth API/Logitech, Inc.) 0x011A0000

 

Process C:\WINDOWS\system32\services.exe (Applications Services et Contrôleur/Microsoft Corporation) 608

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x10000000

 

Process C:\WINDOWS\system32\lsass.exe (LSA Shell (Export Version)/Microsoft Corporation) 620

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x10000000

 

Process C:\WINDOWS\system32\svchost.exe (Generic Host Process for Win32 Services/Microsoft Corporation) 804

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\WINDOWS\system32\svchost.exe (Generic Host Process for Win32 Services/Microsoft Corporation) 852

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x10000000

 

Process C:\WINDOWS\System32\svchost.exe (Generic Host Process for Win32 Services/Microsoft Corporation) 944

Library C:\WINDOWS\System32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x10000000

 

Process C:\WINDOWS\system32\svchost.exe (Generic Host Process for Win32 Services/Microsoft Corporation) 984

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\WINDOWS\system32\svchost.exe (Generic Host Process for Win32 Services/Microsoft Corporation) 1044

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x10000000

 

Process C:\Program Files\Internet Explorer\iexplore.exe (Internet Explorer/Microsoft Corporation) 1156

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.) 0x00A40000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x10000000

Library C:\Program Files\Google\Google Analytics Opt-Out\gaoptout.dll (Google, Inc.) 0x025C0000

Library C:\Program Files\Google\Advertising Cookie Opt-out\opt_out.dll (Google Inc) 0x02610000

Library C:\Program Files\OrangeHSS\Launcher\Inactivity.Dll (France Telecom SA) 0x027E0000

Library C:\WINDOWS\system32\Macromed\Flash\Flash10t.ocx (Adobe Flash Player 10.3 r181/Adobe Systems, Inc.) 0x06A60000

 

Process C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (AntiVir shadow copy service/Avira GmbH) 1188

Library C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (AntiVir shadow copy service/Avira GmbH) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\avipc.dll (AVIRA IPC Library/Avira GmbH) 0x10000000

 

Process C:\WINDOWS\system32\svchost.exe (Generic Host Process for Win32 Services/Microsoft Corporation) 1192

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Antivirus On-Access Service/Avira GmbH) 1332

Library C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Antivirus On-Access Service/Avira GmbH) 0x00400000

Library C:\Program Files\Avira\AntiVir Desktop\libdb44.dll (Berkeley DB 4.4 DLL/Sleepycat Software) 0x13000000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\AVEvtLog.dll (Event Logger/Avira GmbH) 0x10000000

Library C:\Program Files\Avira\AntiVir Desktop\guardmsg.dll (AVGuard Messages (Deutsch)/Avira GmbH) 0x00D50000

Library C:\Program Files\Avira\AntiVir Desktop\cfglib.dll (Antivirus configuration library/Avira GmbH) 0x00D60000

Library C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll 0x00D80000

Library C:\Program Files\Avira\AntiVir Desktop\AVPREF.DLL (Prefix DLL/Avira GmbH) 0x00EF0000

Library C:\Program Files\Avira\AntiVir Desktop\avsmtp.dll (Antivirus email sender library/Avira GmbH) 0x00F10000

Library C:\Program Files\Avira\AntiVir Desktop\avipc.dll (AVIRA IPC Library/Avira GmbH) 0x00FF0000

Library C:\Program Files\Avira\AntiVir Desktop\AVGIO.DLL (On-access scan support/Avira GmbH) 0x01800000

Library C:\Program Files\Avira\AntiVir Desktop\avesvc.dll (Antivirus Engine Service Dynamic Link Library/Avira GmbH) 0x02790000

Library C:\Program Files\Avira\AntiVir Desktop\avesvcr.dll (avesvc.dll/Avira GmbH) 0x027D0000

Library C:\Program Files\Avira\AntiVir Desktop\onlcfg.dll (Online protection configuration dll/Avira GmbH) 0x027F0000

Library C:\Program Files\Avira\AntiVir Desktop\webcat.dll (Web Catigorization Library/Avira GmbH) 0x028F0000

Library C:\Program Files\Avira\AntiVir Desktop\avbb.dll (Avira Proactive Protection/Avira GmbH) 0x05620000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x076F0000

Library C:\Program Files\Avira\AntiVir Desktop\aecore.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x01930000

Library C:\Program Files\Avira\AntiVir Desktop\aevdf.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x01980000

Library C:\Program Files\Avira\AntiVir Desktop\aescript.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x019B0000

Library C:\Program Files\Avira\AntiVir Desktop\aescn.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x01B50000

Library C:\Program Files\Avira\AntiVir Desktop\aesbx.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x01D80000

Library C:\Program Files\Avira\AntiVir Desktop\aerdl.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x01DF0000

Library C:\Program Files\Avira\AntiVir Desktop\aepack.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x01EA0000

Library C:\Program Files\Avira\AntiVir Desktop\unacev2.dll (UNACE Dynamic Link Library/ACE Compression Software) 0x01F60000

Library C:\Program Files\Avira\AntiVir Desktop\aeoffice.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x01FC0000

Library C:\Program Files\Avira\AntiVir Desktop\aeheur.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x02010000

Library C:\Program Files\Avira\AntiVir Desktop\aehelp.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x02390000

Library C:\Program Files\Avira\AntiVir Desktop\aegen.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x023E0000

Library C:\Program Files\Avira\AntiVir Desktop\aeemu.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x02460000

Library C:\Program Files\Avira\AntiVir Desktop\aebb.dll (AntiVir Engine Module for Windows/Avira GmbH) 0x024E0000

 

Process C:\WINDOWS\system32\spoolsv.exe (Spooler SubSystem App/Microsoft Corporation) 1440

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\WINDOWS\system32\HpTcpMon.dll (Standard TCP/IP Port Monitor DLL/Hewlett Packard) 0x10000000

Library C:\WINDOWS\system32\hpzjrd01.dll (HP Rediscovery Library/Hewlett Packard) 0x009B0000

Library C:\WINDOWS\system32\HPTcpMUI.dll (Standard TCP/IP Port Monitor UI DLL/Microsoft Corporation) 0x00D60000

Library C:\WINDOWS\system32\hptcpmib.dll (Standard TCP/IP Port Monitor DLL/Hewlett Packard) 0x00DC0000

Library C:\WINDOWS\system32\hpz3l054.dll (LanguageMonitor/Hewlett-Packard Company) 0x00E00000

Library C:\WINDOWS\system32\msonpmon.dll (Microsoft Office OneNote 2007 Printer Driver/Microsoft Corporation) 0x00E10000

Library C:\WINDOWS\System32\spool\PRTPROCS\W32X86\hpzpp054.dll (Hewlett-Packard Corporation) 0x00E80000

Library C:\WINDOWS\System32\spool\PRTPROCS\W32X86\filterpipelineprintproc.dll (Print Filter Pipeline Proxy/Microsoft Corporation) 0x3F420000

Library C:\WINDOWS\System32\spool\PRTPROCS\W32X86\msonpppr.dll (Microsoft Office OneNote 2007 Printer Driver/Microsoft Corporation) 0x00EB0000

 

Process C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech LVPrcSrv Module./Logitech Inc.) 1488

Library C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech LVPrcSrv Module./Logitech Inc.) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\Program Files\Avira\AntiVir Desktop\sched.exe (Antivirus Scheduler/Avira GmbH) 1520

Library C:\Program Files\Avira\AntiVir Desktop\sched.exe (Antivirus Scheduler/Avira GmbH) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\schedr.dll (avschdr Dynamic Link Library/Avira GmbH) 0x10000000

Library C:\Program Files\Avira\AntiVir Desktop\avevtlog.dll (Event Logger/Avira GmbH) 0x00BE0000

Library C:\Program Files\Avira\AntiVir Desktop\cfglib.dll (Antivirus configuration library/Avira GmbH) 0x00D40000

Library C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll 0x00D60000

 

Process C:\WINDOWS\Explorer.EXE (Explorateur Windows/Microsoft Corporation) 1680

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\OrangeHSS\Launcher\Inactivity.Dll (France Telecom SA) 0x10000000

Library C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.) 0x00EA0000

 

Process C:\WINDOWS\system32\svchost.exe (Generic Host Process for Win32 Services/Microsoft Corporation) 1732

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe (France Telecom SA) 1796

Library C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe (France Telecom SA) 0x00400000

Library C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\IfHelper.dll (France Telecom SA) 0x10000000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\WINDOWS\system32\hkcmd.exe (hkcmd Module/Intel Corporation) 1856

Library C:\WINDOWS\system32\hkcmd.exe (hkcmd Module/Intel Corporation) 0x00400000

Library C:\WINDOWS\system32\hccutils.DLL (hccutils Module/Intel Corporation) 0x10000000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\WINDOWS\system32\igfxsrvc.dll (igfxsrvc Module/Intel Corporation) 0x00EE0000

Library C:\WINDOWS\system32\igfxres.dll (igfxres Module/Intel Corporation) 0x00F00000

 

Process C:\WINDOWS\system32\igfxpers.exe (persistence Module/Intel Corporation) 1864

Library C:\WINDOWS\system32\igfxpers.exe (persistence Module/Intel Corporation) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\WINDOWS\system32\igfxsrvc.dll (igfxsrvc Module/Intel Corporation) 0x10000000

 

Process C:\WINDOWS\RTHDCPL.EXE (Realtek HD Audio Control Panel/Realtek Semiconductor Corp.) 1876

Library C:\WINDOWS\RTHDCPL.EXE (Realtek HD Audio Control Panel/Realtek Semiconductor Corp.) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe (InstallShield Update Service Scheduler/InstallShield Software Corporation) 1952

Library C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe (InstallShield Update Service Scheduler/InstallShield Software Corporation) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (hpwuSchd Application/Hewlett-Packard) 1960

Library C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (hpwuSchd Application/Hewlett-Packard) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (GrooveMonitor Utility/Microsoft Corporation) 1972

Library C:\Program Files\Microsoft Office\Office12\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x6F500000

 

Process C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe (Nero Home/Nero AG) 2032

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe (Nero Home/Nero AG) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\Ahead\Lib\AdvrCntr2.dll (AdvrCntr Module/Nero AG) 0x10000000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingServicePS.dll (Nero Home/Nero AG) 0x00EF0000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvrPS.dll (Nero Home/Nero AG) 0x00F10000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMDataServices.dll (Nero Home/Nero AG) 0x018A0000

 

Process C:\Program Files\Java\jre6\bin\jqs.exe (Java Quick Starter Service/Sun Microsystems, Inc.) 2112

Library C:\Program Files\Java\jre6\bin\jqs.exe (Java Quick Starter Service/Sun Microsystems, Inc.) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x10000000

 

Process C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe (Logitech Video COM Service/Logitech Inc.) 2284

Library C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe (Logitech Video COM Service/Logitech Inc.) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCSCli.dll (Medusa Hardware Enumerator/Logitech Inc.) 0x10000000

Library C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCSPS.dll 0x00DF0000

 

Process C:\WINDOWS\system32\HPZipm12.exe (PML Driver/HP) 2396

Library C:\WINDOWS\system32\HPZipm12.exe (PML Driver/HP) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\WINDOWS\system32\svchost.exe (Generic Host Process for Win32 Services/Microsoft Corporation) 2428

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\WINDOWS\system32\hpowiax2.dll (Hewlett-Packard WIA minidriver./Hewlett-Packard) 0x10000000

 

Process C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe (Logitech Video COM Service/Logitech Inc.) 2568

Library C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe (Logitech Video COM Service/Logitech Inc.) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCSCli.dll (Medusa Hardware Enumerator/Logitech Inc.) 0x10000000

Library C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCSPS.dll 0x00E00000

 

Process C:\WINDOWS\System32\alg.exe (Application Layer Gateway Service/Microsoft Corporation) 2584

Library C:\WINDOWS\System32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x10000000

 

Process C:\WINDOWS\system32\wscntfy.exe (Windows Security Center Notification App/Microsoft Corporation) 2684

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.) 0x00BB0000

 

Process C:\Program Files\Avira\AntiVir Desktop\avmailc.exe (Antivirus MailScanner Service/Avira GmbH) 3084

Library C:\Program Files\Avira\AntiVir Desktop\avmailc.exe (Antivirus MailScanner Service/Avira GmbH) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\avipc.dll (AVIRA IPC Library/Avira GmbH) 0x10000000

Library C:\Program Files\Avira\AntiVir Desktop\mgrs.dll (AntiVir MailGuard Cache Module/Avira GmbH) 0x00700000

Library C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll 0x00970000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x00AD0000

 

Process C:\Program Files\OrangeHSS\connectivity\CoreCom\OraConfigRecover.exe (France Telecom SA) 3132

Library C:\Program Files\OrangeHSS\connectivity\CoreCom\OraConfigRecover.exe (France Telecom SA) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.) 0x003A0000

 

Process C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE (AntiVir WebGuard Service/Avira GmbH) 3144

Library C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE (AntiVir WebGuard Service/Avira GmbH) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Avira\AntiVir Desktop\avipc.dll (AVIRA IPC Library/Avira GmbH) 0x10000000

Library C:\Program Files\Avira\AntiVir Desktop\msgclient.dll (Message Client/Avira GmbH) 0x00900000

Library C:\Program Files\Avira\AntiVir Desktop\avsda.dll (AntiVir layered service provider/Avira GmbH) 0x00CE0000

 

Process C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe (France Telecom SA) 3164

Library C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe (France Telecom SA) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.) 0x003C0000

 

Process C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (Nero Home/Nero AG) 3384

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (Nero Home/Nero AG) 0x00400000

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingServicePS.dll (Nero Home/Nero AG) 0x10000000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMLogCxx.dll (Nero Home/Nero AG) 0x01950000

Library C:\Program Files\Fichiers communs\Ahead\Lib\log4cxx.dll (Log4cxx is C++ port of Log4j/Nero AG) 0x01960000

Library C:\Program Files\Fichiers communs\Ahead\Lib\NMDataServices.dll (Nero Home/Nero AG) 0x01B60000

 

Process C:\WINDOWS\system32\wbem\wmiprvse.exe (WMI/Microsoft Corporation) 3488

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

 

Process C:\Program Files\Internet Explorer\iexplore.exe (Internet Explorer/Microsoft Corporation) 5980

Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x753C0000

Library C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.) 0x00A40000

Library C:\Program Files\OrangeHSS\Launcher\Inactivity.Dll (France Telecom SA) 0x10000000

Library C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\PDFShell.dll (PDF Shell Extension/Adobe Systems, Inc.) 0x041F0000

Library C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\PDFShell.FRA 0x04250000

 

---- Services - GMER 1.0.15 ----

 

Service C:\Program Files\Avira\AntiVir Desktop\avmailc.exe (Antivirus MailScanner Service/Avira GmbH) [AUTO] AntiVirMailService

Service C:\Program Files\Avira\AntiVir Desktop\sched.exe (Antivirus Scheduler/Avira GmbH) [AUTO] AntiVirSchedulerService

Service C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Antivirus On-Access Service/Avira GmbH) [AUTO] AntiVirService

Service C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE (AntiVir WebGuard Service/Avira GmbH) [AUTO] AntiVirWebService

Service C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (MobileDeviceService/Apple Inc.) [AUTO] Apple Mobile Device

Service C:\Program Files\Avira\AntiVir Desktop\avgio.sys (Avira AntiVir Support for Minifilter/Avira GmbH) [sYSTEM] avgio

Service C:\WINDOWS\system32\DRIVERS\avgntflt.sys (Avira Minifilter Driver/Avira GmbH) [AUTO] avgntflt

Service C:\WINDOWS\system32\DRIVERS\avipbb.sys (Avira Driver for Security Enhancement/Avira GmbH) [sYSTEM] avipbb

Service C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys (Logitech USB Video Class Filter Driver/Logitech Inc.) [MANUAL] FilterService

Service C:\Program Files\Fichiers communs\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe (France Telecom SA) [AUTO] FTRTSVC

Service C:\WINDOWS\gdrv.sys (GIGABYTE Tools/Windows ® 2000 DDK provider) [MANUAL] gdrv

Service C:\Program [AUTO] gupdate

Service C:\Program [MANUAL] gupdatem

Service C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (gusvc/Google) [MANUAL] gusvc

Service C:\WINDOWS\system32\drivers\hardlock.sys (Hardlock Device Driver for Windows NT/Aladdin Knowledge Systems Ltd.) [AUTO] Hardlock

Service C:\WINDOWS\system32\DRIVERS\HDAudBus.sys (High Definition Audio Bus Driver v1.0a/Windows ® Server 2003 DDK provider) [MANUAL] HDAudBus

Service C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE (PortResolver Module/Hewlett-Packard Company) [MANUAL] HP Port Resolver

Service C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE (HP Status Server Module/Hewlett-Packard Company) [MANUAL] HP Status Server

Service C:\WINDOWS\system32\DRIVERS\HPZid412.sys (IEEE-1284.4-1999 Driver (Windows 2000)/HP) [MANUAL] HPZid412

Service C:\WINDOWS\system32\DRIVERS\HPZipr12.sys (IEEE-1284.4-1999 Print Class Driver/HP) [MANUAL] HPZipr12

Service C:\WINDOWS\system32\DRIVERS\HPZius12.sys (1284.4<->Usb Datalink Driver (Windows 2000)/HP) [MANUAL] HPZius12

Service C:\WINDOWS\system32\DRIVERS\ialmnt5.sys (Intel Graphics Miniport Driver/Intel Corporation) [MANUAL] ialm

Service C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe (IDriverT Module/Macrovision Corporation) [MANUAL] IDriverT

Service C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek® High Definition Audio Function Driver/Realtek Semiconductor Corp.) [MANUAL] IntcAzAudAddService

Service C:\Program Files\Java\jre6\bin\jqs.exe (Java Quick Starter Service/Sun Microsystems, Inc.) [AUTO] JavaQuickStarterService

Service C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys (Logitech PS2 Keyboard Filter Driver./Logitech, Inc.) [MANUAL] L8042Kbd

Service C:\WINDOWS\System32\Drivers\LBeepKE.sys (Logitech Consumer Control Filter Driver./Logitech, Inc.) [AUTO] LBeepKE

Service C:\Program Files\Fichiers communs\LogiShrd\Bluetooth\LBTServ.exe (Logitech Bluetooth Service/Logitech, Inc.) [MANUAL] LBTServ

Service C:\WINDOWS\System32\Drivers\LEqdUsb.Sys (Logitech Equad USB Driver./Logitech, Inc.) [MANUAL] LEqdUsb

Service C:\WINDOWS\System32\Drivers\LHidEqd.Sys (Logitech HID Filter Driver./Logitech, Inc.) [MANUAL] LHidEqd

Service C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys (Logitech HID Filter Driver./Logitech, Inc.) [MANUAL] LHidFilt

Service C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys (Logitech Mouse Filter Driver./Logitech, Inc.) [MANUAL] LMouFilt

Service C:\WINDOWS\System32\Drivers\LUsbFilt.Sys (Logitech USB Filter Driver./Logitech, Inc.) [MANUAL] LUsbFilt

Service C:\WINDOWS\system32\DRIVERS\LVcKap.sys [MANUAL] LVcKap

Service C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe (Logitech Video COM Service/Logitech Inc.) [AUTO] LVCOMSer

Service C:\WINDOWS\system32\DRIVERS\LVMVDrv.sys (Logitech Machine Vision Engine Loader/Logitech Inc.) [MANUAL] LVMVDrv

Service C:\WINDOWS\system32\DRIVERS\lvpopflt.sys (Logitech AudioProcessing Filter Driver/Logitech Inc.) [MANUAL] lvpopflt

Service C:\WINDOWS\system32\DRIVERS\LVPr2Mon.sys [MANUAL] LVPr2Mon

Service C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech LVPrcSrv Module./Logitech Inc.) [AUTO] LVPrcSrv

Service C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe (LogitechService Launcher/Logitech Inc.) [AUTO] LVSrvLauncher

Service C:\WINDOWS\system32\drivers\LVUSBSta.sys (USB Statistic Driver/Logitech Inc.) [MANUAL] LVUSBSta

Service C:\WINDOWS\system32\DRIVERS\lvuvc.sys (Logitech USB Video Class Driver/Logitech Inc.) [MANUAL] LVUVC

Service MSDTC Bridge 3.0.0.0

Service C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (Nero Home/Nero AG) [MANUAL] NMIndexingService

Service NMSAccessU

Service Outlook

Service C:\WINDOWS\system32\PCAMPR5.SYS (PCAUSA NDIS 5.0 MPR Protocol Driver/Printing Communications Assoc., Inc. (PCAUSA)) [MANUAL] PCAMPR5

Service C:\WINDOWS\system32\PCANDIS5.SYS (PCAUSA NDIS 5.0 Protocol Driver/Printing Communications Assoc., Inc. (PCAUSA)) [MANUAL] PCANDIS5

Service C:\WINDOWS\system32\HPZipm12.exe (PML Driver/HP) [AUTO] Pml Driver HPZ12

Service C:\WINDOWS\system32\Drivers\pssdk31.drv (PSSDK Driver Protocol v3.1.1 32bit/microOLAP Technologies LTD) [MANUAL] PsSdk31

Service C:\WINDOWS\system32\Drivers\pssdklbf.drv (PSSDK Driver LoopBack v3.1.1 32bit/microOLAP Technologies LTD) [MANUAL] PsSdkLBF

Service C:\WINDOWS\system32\DRIVERS\ptilink.sys (Parallel Technologies DirectParallel IO Library/Parallel Technologies, Inc.) [MANUAL] Ptilink

Service C:\WINDOWS\System32\Drivers\PxHelp20.sys (Px Engine Device Driver for Windows 2000/XP/Sonic Solutions) [bOOT] PxHelp20

Service C:\WINDOWS\system32\DRIVERS\rtl8185.sys (Realtek RTL8185 NDIS5.1 miniport driver/Realtek Semiconductor Corporation ) [MANUAL] rtl8185

Service C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys (Realtek 10/100/1000 NDIS 5.1 Driver /Realtek Semiconductor Corporation ) [MANUAL] RTLE8023xp

Service C:\WINDOWS\system32\DRIVERS\secdrv.sys (Macrovision SECURITY Driver/Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [MANUAL] Secdrv

Service ServiceModelEndpoint 3.0.0.0

Service ServiceModelOperation 3.0.0.0

Service ServiceModelService 3.0.0.0

Service SMSvcHost 3.0.0.0

Service C:\Program Files\Fichiers communs\SolidWorks Shared\Service\SolidWorksLicensing.exe (System Level Service Utility/SolidWorks) [MANUAL] SolidWorks Licensing Service

Service C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS (Sony USB Lower Filter driver/Sony Corporation) [MANUAL] SONYPVU1

Service C:\WINDOWS\system32\DRIVERS\ssmdrv.sys (AVIRA SnapShot Driver/Avira GmbH) [sYSTEM] ssmdrv

Service [MANUAL] StarOpen

Service C:\WINDOWS\system32\DRIVERS\StreamIP.sys (Microsoft IP Test Driver/Microsoft Corporation) [MANUAL] streamip

Service Windows Workflow Foundation 3.0.0.0

Service C:\WINDOWS\system32\drivers\WsAudioDevice_383.sys (Wondershare Virtual Audio Device/Wondershare) [MANUAL] WsAudioDevice_383

Service system32\drivers\xcpip.sys [MANUAL] xcpip

Service system32\drivers\xpsec.sys [MANUAL] xpsec

 

---- EOF - GMER 1.0.15 ----

Posté(e)

Bonsoir,

 

Redirection vers Gostats

Ce n'est pas une infection mais une stratégie de Google.

Pour l'éviter:

 

Aller à c:\Windows\System32\Drivers\etc\hosts

Décochez "Lecture seule"

Ajouter ceci;

127.0.0.1 www.google-analytics.com

Recocher "Lecture seule"

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...