Pub intempestive
Fermé
laura91
Messages postés
4
Date d'inscription
dimanche 15 novembre 2009
Statut
Membre
Dernière intervention
11 janvier 2010
-
5 déc. 2009 à 18:39
laura91 Messages postés 4 Date d'inscription dimanche 15 novembre 2009 Statut Membre Dernière intervention 11 janvier 2010 - 9 janv. 2010 à 14:08
laura91 Messages postés 4 Date d'inscription dimanche 15 novembre 2009 Statut Membre Dernière intervention 11 janvier 2010 - 9 janv. 2010 à 14:08
A voir également:
- Pub intempestive
- Youtube sans pub - Accueil - Streaming
- Netflix avec pub avis - Accueil - Streaming
- Stop pub gratuit - Télécharger - Divers Utilitaires
- Bloqueur de pub youtube - Accueil - Streaming
- Supprimer pub - Guide
2 réponses
eZula
Messages postés
3391
Date d'inscription
samedi 26 avril 2008
Statut
Contributeur
Dernière intervention
8 mai 2021
392
5 déc. 2009 à 18:40
5 déc. 2009 à 18:40
Bonjour,
télécharge GenProc http://www.genproc.com/GenProc.exe
double-clique sur GenProc.exe et poste le contenu du rapport qui s'ouvre
télécharge GenProc http://www.genproc.com/GenProc.exe
double-clique sur GenProc.exe et poste le contenu du rapport qui s'ouvre
laura91
Messages postés
4
Date d'inscription
dimanche 15 novembre 2009
Statut
Membre
Dernière intervention
11 janvier 2010
9 janv. 2010 à 14:08
9 janv. 2010 à 14:08
Voici le rapport :
Rapport GenProc 2.660 [3] - 09/01/2010 à 14:05:02
@ Windows VISTA Service Pack 2 - Acer - Mode normal
@ Mozilla Firefox 3.5.7 (fr) [Navigateur par défaut]
GenProc n'a détecté aucune infection caractéristique et suggère de suivre la procédure suivante :
# Etape 1/ Télécharge :
ToolsCleaner! http://pc-system.fr/ (A.Rothstein & Dj QUIOU) sur ton Bureau.
# Etape 2/
- Double-clique sur ToolsCleaner2.exe pour le lancer.
- Clique sur Recherche et laisse le scan agir.
- Clique sur Suppression pour finaliser.
- Tu peux, si tu le souhaites, te servir des Options Facultatives.
- Clique sur Quitter pour obtenir le rapport C:\TCleaner.txt
# Etape 3/
Poste un rapport Nod32 https://www.eset.com/ (il faut utiliser Internet Explorer)
- coche toutes les cases à chaque fois, et lorsque c'est terminé, colle le rapport :
C:\Program Files\EsetOnlineScanner\log.txt
~~~~ INFORMATION COMPLEMENTAIRE ~~~~
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-09 14:05:11
Windows 6.0.6002 Service Pack 2
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager]
"PendingFileRenameOperations"=str(7):"d\2\xfe40\x9d2\0\xffd0\xffffv\22\4\20\0\0\xf636P\x9f\x32b5*\xffc0\xffffv$è\0@\x9e\3\0\1\xffff6740-ec\x32340-02\x3130566f\x3330\x30300\b\0H\x9ehi\0\x9e\xac\0p\x9e\1\0\1,PoooNm\x3030\x3030\xff80\xffffvaJ\0\xdb58\x9e\1\0\1\0T\x2050Qe\x2079Ue\x337b7\x3335CE23-\x32382B0\x322d272E27C\rga ie\r\x2065ms\x2063zlafzl\x2e61eem32\xff80\xffffvaL\0\xe020\x9e\1\0\1lU\x2050Qe\x2079Ue{F\x3237B3\x33317-E9BF\x312dA30ACEC\rga ie\r\x2065ms\x2063zlafzl\x2e61eeooo\x88\0C:\Program Files\Free Music Zilla\FMZilla.exe:*:Enabled:FMZilla\0\0\0\xffd8\xffffv\20\4s.dll,-103\0mst\xffd0\xffffv\21\x378\0\xa528\x9f\3\0\1\0PceCtlgt\x306d\x3030\x3030\x3030\xffd0\xffffv\21\x378\0 \x9f\3\0\0013PceCtlgtm43C\xffe0\xffffv\5"\0`\x9e\1\0\1\0Coe\0¨\xffffn Z#Ê\0\0˜)\0\0\0\0\xffff\xffff\xffff\xffff\b\0@\xa0\xa4a8\e\xffff\xffff\0\0\0\0 \0D\0\37\0\4\0\x30303PN\xffc8\xffffv\eÀ\0\xfdd8\x9d\a\0\1\x9ePnigieeaeprtos\x2140&\xffe0\xffffApple, Inc.\0ˆy\xfff0\xffff \x9f@\x9f\0\0\xffe0\xffffv\a\16\0\xf3f0\x9d\1\0\1\x9eSrieØ\xffff"Tcpip" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"Tcpip" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0"Tcpip6" "{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}"\0"Tcpip6" "{5465A488-0DC8-4572-B6DB-B15FEBA330F1}"\0"Tcpip6" "{0E8390D9-C622-4555-B73E-33736513378A}"\0"Tcpip6" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\0Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\09AD\xffd0\xffffv\21\x378\0(\x9f\3\0\1.PceCtlgtm.1.\xffd0\xffffv\21\x378\0 \x9f\3\0\0011PceCtlgtm\08 \xffd8\xffffv\vn\0\xf7d8\x9d\1\0\0015Ojc it\0\0\30\0tunnel\0g\xea88S\xffd8\xffffl\3P\x92A\xa68eÀ\x92ÝBH\x9f\xa57aI \0v\3¨\xffff{4d36e972-e325-11ce-bfc1-08002be10318}\0\0\0\x300\xffd8\xffffv\17\4\xffffv\f\xae\0\xf318\x9d\1\0\1\0PoooNmgt\xffd0\xffffv\21\x378\0(\x9f\3\0\1cPceCtlgtm\5\x27c5c\xffd8\xffffv\fR\0h\x9e\1\0\1,PoooNm\0001¨\xffff%systemroot%\system32\wbem\wmiaprpl.dll\0\0\0\xffd0\xffffv\22\4\4machine.inf,%volmgr.devicedesc%;Gestionnaire de volume\0in\xffc0\xffffsystem32\DRIVERS\xaudio.sys\00041H\xffffMSAFD NetBIOS [\Device\NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}] SEQPACKET 5\0T H\xffffMSAFD NetBIOS [\Device\NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}] DATAGRAM 5\0001\x280ec\xffd0\xffffv\21\x378\0x\x9f\3\0\1\0PceCtlgtme D\xffc8\xffffv\31\4à\x9fah\xffe8\xffffl\2°\x9f\xe918H\xf748\x9e\xe1416\20\0l\1P\x9ed\x29c4hiv\r\4\0 \0\2p\5\0\0\24\1\0\0\02785F-DCDA-462E-B262-1E314AFAC753}] DATAGRAM 1\0\xffd0\xffffv\21\x378\0ø\x9f\3\0\1*PceCtlgtm\0\xe310\5\b\0et\xfff0\xffffp\x9f\x9f\1\0\xffd8\xffffv\f\4n ÁErroto\xffff\xffff\xffe0\xffffv\3\4d'horloge de répartition Microsoft\0\xffff\xffe0\xffffp\x9d \x9eÀ\x9eè\x9e\x9ep\x9e\x9e\xffe0\xffffv\5\34\00\x9e\1\0\1\xffffGo\xff70\xffff\xffe0\xffffExtended Base\0\xffd8\xffffv\f\xb0\0\x2880\x9e\1\0\1\6PoooNm\xffff\xffff\xffd0\xffff\xf288\x9d\xf3d0\x9d\xf670\x9d˜\x9eØ\x9e\x1368\x9e\x1ba8\x9eˆ\x9e\xfe18\x9d\x820\x009e39\xffc0\xffffv$4\0\x9e\3\0\00156d51-fc4d-ca91d125A} \0SEQPACKET 6\0\1\0 \xffff{4d36e972-e325-11ce-bfc1-08002be10318}\0008\0n ¨\xffff{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\0\0\0\xffe0\xffffv\4\4v\f\xae\0\x9d\1\0\1APoooNm 4\xffd8\xffffv\f\xb0\0H\x9d\1\0\1BPoooNmDe¸\xffff%systemroot%\system32\w32time.dll\0\xff88\xffffhccoin.dll,HCCOIN_Entry\0hcrstco.dll,HCResetCoinst_Entry\0\0\0¸\xffffP)`)Ø))˜)\xa550)\xa930)\xab68)\xa700)À)\xa990)ˆ)8)À\x9dx)0)˜)¨\xffffusbui.dll,USBControllerPropPageProvider\0BF\xff88\xffffhccoin.dll,HCCOIN_Entry\0hcrstco.dll,HCResetCoinst_Entry\0\0\0\xffc8\xffffv\34\6\0€)\a\0\1'Cr\x2065mnpr irsf uee\b\0\xdfe0V\xffd0\xffffv\26ú\0@\xa2\1\0\1.WPS-PPo\x2d74I-C-\b\0-C\xffe0\xffffv\a\22\0H\x9a\a\0\1\0Sucs\xffd8\xffffv\t\4am Files\Acer Arcade Deluxe\PlayMovie\000.fcl\0\b\0006:\xfff0\xffff\xee88\x9f\x9f\xef60\x9f°\xfffftime.windows.com,7b17b47\0\0\0\0\0\0\0\0\0\0\0\0\0\0\xffc8\xffff\x9d\x1dc8\x9e \x9e\xad8\x9e\x2020\x9e\xde0\x9e\x1078\x9e\xa48\x9e°\x9e\xa78\x9e\xf2a8\x9d0\x9e\1\0\xffd0\xffffv\25\4)\x32f0jwa\xffd8\xffffv\r\4\xffff\0\0\xffff\xffff\xffff\xffff\xffff\xffff\0\0\0\0\0\0\0\0 \0\a\0Gnrc\20\0ooNmgt\xffc8\xffffv \6\0ø)\a\0\1AIt\x286c\x2952 iee\x2073WF i\x206b5\x3030hi\x2000\x9eBIOS [\Device\NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}] SEQPACKET 0\0001}\xffd0\xffffv\27æ\0¨\xa2\1\0\1.WPS-PPo\x2d74O\x2d74TP¨\xffff@%SystemRoot%\System32\wshqos.dll,-102\0\x3030\x3030\x3030\xffd8\xffffv\fN\0à\x9e\1\0\1oPoooNmst\xffd0\xffffv\21\x378\0 \x9f\3\0\1!PceCtlgtme D\xffd0\xffffv\21\x378\0@\x9f\3\0\1oPceCtlgtmm32\xffd8\xffffv\f\xae\0\xcf8\x9e\1\0\1\0PoooNmI\x3053\xffd8\xffffv\f\xae\0\x2518\x9e\1\0\1\0PoooNme\0¨\xffff{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}\0\1o\xffe0\xffffnettun.inf\0ms\x9e¸\xffff`(\xa490 Ð)\xffff\xf8e0"\xffff\xffff\24\0\0\0\0\0\0\0\2\0&\0\x307bFD3F8\x3231-\x324259F-1FFFF3é\30\0au\0\0er\b\0v\t\xffd8\xffff@\x9cˆ\x9c0\x9cÀ\x9cà\x9c \x9e(\xa0\x1b88\x9eH\xa0\xffd0\xffffv\26\n\0è)\a\0\1\0Cr\x2065Mcoo\x2074IAA\34\b\0\x29e0\x9e\xffd8\xffffv\20N\0h\x9e\1\0\1éNtfIsacI\b\0\1\v\xffd0\xffffv\25J\0 \xa2\1\0\1mWPS-SPr-\x2d6eUP-\xffd8\xffffv\vü\0@\xa1\1\0\1\eWPO\x2d74UP-CH\xffffMSAFD NetBIOS [\Device\NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}] DATAGRAM 0\0\0vo \0\xf288\x9d\xf3d0\x9d\xf670\x9d˜\x9eØ\x9e\x1368\x9e\x1ba8\x9e\xfff0\xffff\xeac8\x9f\xeaf0\x9f\xeb20\x9f\xfe08\xffff"{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}"\0"{5465A488-0DC8-4572-B6DB-B15FEBA330F1}"\0"{0E8390D9-C622-4555-B73E-33736513378A}"\0"{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\0{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\000262\xffd8\xffffv\n\x80\0 \xa0\1\0\1\0DvcDs\0v\4\xffd8\xffffv\v\4°\x9f\x3300\xa0\x2820\x9eroH\xffffMSAFD NetBIOS [\Device\NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}] SEQPACKET 6\0\1\0\xffd8\xffffv\f\xae\0\x2a40\x9e\1\0\1BPoooNmDe\xffd0\xffffv\21\x378\0P\x9f\3\0\1APceCtlgtm2ng\xffd8\xffffv\f\xb0\00\x9e\1\0\1\21PoooNm\1t\xffd8\xffffv\20j\0ˆ\xa1\2\0\1 EetesgFl\xffc8\xffff\xe710:\xeab0:Pgðh`hh\x3240j\xf590\x9d\xf8d0\x9d\xf1c0\x9dÈ\x9e\x2458\x9e\x9e\xffd8\xffffv\fN\0\xf230\x9d\1\0\1.PoooNm03H\xffffMSAFD NetBIOS [\Device\NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}] DATAGRAM 6\0\0\0\0\xffd0\xffffv\21\x378\0(\x9f\3\0\1BPceCtlgtmice\xffd8\xffffv\f\xae\0"{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}"\0"Tcpip6" "{5465A488-0DC8-4572-B6DB-B15FEBA330F1}"\0"Tcpip6" "{0E8390D9-C622-4555-B73E-33736513378A}"\0"Tcpip6" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\0Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\000753\xb8\0C:\Program Files\Free Music Zilla\FMZilla.exe:*:Enabled:FMZilla\0\0*\0:\0\0\0\n\0Cneto\0\x3032-\xffd8\xffffv\20\4-9788-4239-99AA-2043CBD9ADEB}\0\Device\Smb_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\Smb_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\Smb_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\Smb_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\Smb_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Smb_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetbiosSmb\0\Device\Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetBT_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0etBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0\xffd8\xffffv\f\4v\25¼\0ð\xa2\1\0\1-WPS-\x2d6eUPNSoe-\xffd8\xffffAdresse réseau\0l\0\x9e\xfff8\xffff@\x9e¸\xffffà)0)\xab20)\0p\xa2\1\0\1.WPS-Wv-u-CC-\xffd0\xffffv\23*\0X\x9e\1\0\1\0LctoIfrain\1\0\xffe8\xfffftunnel\0\0Ø\x9e\xffe8\xffffl\2à\x9f\xf6368\x9f\x32b5*\xffc8\xffffv\32¼\0P\xa2\1\0\1.WPS-M-u-C-ocp-C,\xffc8\xffffv\32¾\0\xa2\1\0\1,WPS-M-u-D-ocp,\xefd0,¨\xffffn è|Ê\0\0\x1400\x9e\2\0\0\0\x17e0\x88\xffff\xffff\2\0 \x87\xa4a8\e\xffff\xffff\24\0\0\0\20\0B\0\1\0\3\0Nira\xfff0\xffffType\0e\xff98\xffffvK2\00\x9e\1\0\1!T\x2050Qe\x2079Ue{F9\x323818D-D78\x3242\x322dD81\x304164C\idw\xlr\x2e72eel\0\xffd8\xffffndis5_ip6_tunnel\0 \20\0sf uee\xffd0\xffffv\26¼\0\xa2\1\0\1,WPS-u-C-ocp,\xffd0\xffffv\25º\0À\xa2\1\0\1-WPS-\x2d6eTPNSoep\20\0Type\0e\xffe0\xffff6.0.9999.45\0\1\x87\xffd8\xffffv\t\n\0¸\x9e\1\0\1.PrmeceiT\b\0H\x9e\xffd8\xffffv\f\4\xffffv\n\16\0À\x9e\1\0\1cLwragmgt\b\0ce\Smb_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Smb_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\Smb_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\Smb_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\Smb_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\Smb_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Smb_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetbiosSmb\0\Device\NetBT_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0vice\NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0-B8\xffffC:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\decryption.exe:*:Enabled:decryption\0 \xffffvH\xb3\0Ð\x9e\1\0\1\0C\rga ie\crEpwrn ehooyeaaeuiyx6eSg.xH\xffffC:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSMgr.exe:*:Enabled:eDSMgr\0\xff98\xffffvK\xbf\0\xab58\x9e\1\0\1\0C\rga ie\crEpwrn ehooyeaaeuiyx6eSbn\x2e72eep\0 \xffffvH\xb3\0 \x9e\1\0\1nC\rga ie\crEpwrn ehooyeaaeuiyx4eSs.x\xff68\xffffs Ð\x8d˜\x9e\1\0|\0\1\\0l\0\0\0\24\0\2H\3\0 \0 \0\0\0\0`\x9e\2\0\0\0\x8d8\x88\xffff\xffff\0\0\xffff\xffff\xa4a8\e\xffff\xffff\34\0\0\0\0\0\0\0\1\0\6\0Prma\20\0 e\b\0000 \xffc8\xffffv\31¼\0\xa5d8\xa2\1\0\1\eWPS-M-\x2d6eUPNSoe- -\xffc8\xffffv\36€\0x\xa1\1\0\1\eWPS-TPT-u-C-ocp-\xffc8\xffffv\35~\0\1,WPS-TPT-\x2d6eTPNSoe,\xffd8\xffffv\nú\0@\xa1\1\0\1\eWPI-D-C-\xff98\xffffvK4\0\x1a70\xa0\1\0\1\0U\x2050Qe\x2079Ue{359BC\x3031-ABBF-\x30453\x30315\x3239BC\idw\xlr\x2e72ee\0 \xffffn è|Ê\0\0¨\x9e\0\0\0\0\xffff\xffff\xffff\xffff\3\0\xdaf8\x86\xa4a8\e\xffff\xffff\0\0\0\0\22\0\36\0\0\0\16\0Ntokdrs\t\xffe8\xffff*isatap\0me\b\0Sb\xffd8\xffffv\r\xbe\0\x1078\xa0\a\0\0015CmailIs\0\xffc0\xffffsystem32\DRIVERS\WUDFRd.sys\0}Æ\xffd0\xffffv\24*\0Ð\xa2\1\0\1,WPS-Wv-u-Dp,\xffd8\xffffv\n\30\0\xfe50\x9d\1\0\1eIfeto\x9dØ\x9e¨\xffffn è|Ê\0\0¨\x9e\0\0\0\0\xffff\xffff\xffff\xffff\3\0\x5f8\x87\xa4a8\e\xffff\xffff\0\0\0\0\22\0\n\0\1\0\4\0Tpok¸\xffffPilote de carte Microsoft ISATAP\0\0\xffd8\xffffv\n"\00\x9e\1\0\1\x9eUpragata\b\0\b\0\xffd0\xffffPort_#0004.Hub_#0008\09\xffd8\xffffv\f\30\0H\x9e\1\0\1\x88PoieNmà\x96\xffc0\xffffConnexion au réseau local* 2\0o\xfff0\xffffx\x9f˜\x9fp\0hiServer_Smb_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanServer_Smb_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\LanmanServer_Smb_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\LanmanServer_Smb_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanServer_Smb_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_Smb_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanServer_NetbiosSmb\0\Device\LanmanServer_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\LanmanServer_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\LanmanServer_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanServer_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanServer_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanServer_NetBT_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_NetBT_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanServer_NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\LanmanServer_NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\LanmanServer_NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanServer_NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0anmanServer_NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanServer_NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0_s\0 \xffffn è|Ê\0\0`\x9e\0\0\0\0\xffff\xffff\xffff\xffff\2\0¸\x87\xa4a8\e\xffff\xffff\0\0\0\0\24\0"\0\0\0\n\0Itraep6_\xffe0\xffffv\4\26\0P\x9e\3\0\1\x9dDtà\x9e\xe7b8\x9e\xffff\xffff\0\0\0\0\x98\0Ã\0\0\0\4\0Ls\0\x300 \xffffvH\xb3\08\x9e\1\0\1\0C\rga ie\crEpwrn ehooyeaaeuiyx6eSs.xH\xffffC:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSfsu.exe:*:Enabled:eDSfsu\0\20\0home\0\1hi\0\0\0\0\0\0\0\0\xf8c8\xffff"Smb" "Tcpip" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"Smb" "Tcpip" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0"Smb" "Tcpip6" "{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}"\0"Smb" "Tcpip6" "{5465A488-0DC8-4572-B6DB-B15FEBA330F1}"\0"Smb" "Tcpip6" "{0E8390D9-C622-4555-B73E-33736513378A}"\0"Smb" "Tcpip6" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"Smb" "Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0"NetbiosSmb"\0"NetBT" "Tcpip" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"NetBT" "Tcpip" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0"NetBT" "Tcpip6" "{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}"\0"NetBT" "Tcpip6" "{5465A488-0DC8-4572-B6DB-B15FEBA330F1}"\0"NetBT" "Tcpip6" "{0E8390D9-C622-4555-B73E-33736513378A}"\0"NetBT" "Tcpip6" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"NetBT" "Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\0tBT" "Tcpip6" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"NetBT" "Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\08\xffff\Device\NetBT_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0E4}p\xffff\Device\Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0Device\Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0}\xffd8\xffffv\v\20\0¨\x9e\1\0\1\x9eCmoet\xff64\xffff\xffff\xff98\xffffn ’øÊ\0\0p2\0\0\0\0\xffff\xffff\xffff\xffff\1\0°\x9eà%\xffff\xffff\0\0\0\0\32\0\4\0\0\0\21\0Dvc aaees\0v\r\xffd8\xffffv\r\4\crEpwrn ehooyeaaeuiyx6dcyto.x\0\0hition_Smb_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\LanmanWorkstation_Smb_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\LanmanWorkstation_Smb_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanWorkstation_Smb_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanWorkstation_Smb_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanWorkstation_NetbiosSmb\0\Device\LanmanWorkstation_NetBT_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanWorkstation_NetBT_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0vice\LanmanWorkstation_NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0¨\xffffn ’øÊ\0\0\xaab0\x9e\0\0\0\0\xffff\xffff\xffff\xffff\2\0ð\x88#\xffff\xffff\0\0\0\0\b\0z\0\0\0\b\0\x3030\x3030\x3030\x3030\xff80\xffffnettun.inf:Microsoft.NTx86:ISATAP.ndi:6.0.6002.18005:*isatap\0 \xffc8\xffffCarte Microsoft ISATAP\0\0\0\0\xffe0\xffffv\4\4\2\xab28\x9e.N¨\xffffn ’øÊ\0\0Ø\x9e\1\0\0\0\x9e\xffff\xffff\0\0\xffff\xffff#\xffff\xffff\20\0\0\0\0\0\0\0\2"
scanning hidden registry entries ...
scan completed successfully
hidden services: 0
Rapport de ZHPDiag v1.24.42 par Nicolas Coolman
Run by laura at 09/01/2010 14:06:44
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Platform : Windows Vista (TM) Home Premium (6.0.6002) Service Pack 2
MSIE: Internet Explorer v8.0.6001.18865
MFIE: Mozilla Firefox (3.5.7)
Boot mode: Normal (Normal boot)
Total RAM: 3065 MB (65% free)
System drive C: has 77 GB (53%) free of 144 GB
---\\
[MD5.18B4B12358EFCF68D76812058A26181F] - C:\Program Files\Windows Live\Messenger\msnmsgr.exe
[MD5.31AFABDB5E9560E014B14EA8EC1F3635] - C:\Program Files\uTorrent\uTorrent.exe
[MD5.BF08674925F151BD4537B89A493E3E0C] - C:\Windows\ehome\ehTray.exe
[MD5.9E35FF7F943AE0FB89192BFE058B7FD4] - C:\Program Files\Windows Sidebar\Sidebar.exe
[MD5.3794B461C45882E06856F282EEF025AF] - C:\Windows\system32\svchost.exe
[MD5.9015BC03F62940527EC92D45EE89E46F] - C:\Program Files\Avira\AntiVir Desktop\sched.exe
[MD5.B8720A787C1223492E6F319465E996CE] - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
[MD5.4B5AE15E5C73EB4DC8DBEC2788230D41] - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
[MD5.3F56903E124E820AEECE6D471583C6C1] - C:\Program Files\Bonjour\mDNSResponder.exe
[MD5.09E6AFFAE6C0E9158BF05C7D08D0107A] - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
[MD5.5CA9B1062C0C3E3AE19C23AD9D8A5048] - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
[MD5.2CE2DDCB1A41ED4488A2A8B98D286B3D] - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
[MD5.27D2754314D12EB27D81D462FD0D86C0] - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
[MD5.54B6E150BFF4A47EB0D204119D262E46] - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
[MD5.3E42C4691AAD4B1E8D0466F9CBF05CBE] - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
[MD5.33FFC1E1117C4BE00A07AEDD72AE68B1] - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
[MD5.793FF718477345CD5D232C50BED1E452] - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
[MD5.5E25F0B6F0BB3F2A880598AF1BA36174] - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
[MD5.1E1A308F4229FAB0011A0745EE8377AE] - C:\Acer\Mobility Center\MobilityService.exe
[MD5.A2B6583A5652A385DFF5E4F49AD48761] - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
[MD5.40B87FE8A1A9A5AC9E5A91D96F212BCD] - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
[MD5.3FF45B7F17D5837216ABAE652CC61540] - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
[MD5.17E0BEF5CA5C9CE52CC8082AC6EBC449] - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
[MD5.73835C4F79ADC404EF39C8A9E2D4183B] - C:\Program Files\Acer\Acer VCM\RS_Service.exe
[MD5.3978F3540329E16C0AC3BCF677E5669F] - C:\Windows\system32\lsass.exe
[MD5.862BB4CBC05D80C5B45BE430E5EF872F] - C:\Windows\system32\SLsvc.exe
[MD5.524BFBEA40E6E404737CCBC754647A2E] - C:\Windows\System32\spoolsv.exe
[MD5.D9250B31B353EE3322C1CAD411997E38] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
[MD5.AED0DFF80C6B3914769407E78D7AB21A] - C:\Windows\system32\SearchIndexer.exe
[MD5.CD5F291A1161F15896D1A4D63DAFF5DF] - C:\Windows\system32\DRIVERS\xaudio.exe
---\\
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=explorer.exe
---\\
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fmz.qiwa.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.hugedomains.com/domain_profile.cfm?d=duxet&e=com
---\\
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
---\\
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\system32\ieframe.dll
---\\
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} -
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
---\\
O4 - HKCU\..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKLM\..\policies\Explorer: [BindDirectlyToPropertySetStorage] Data=0
O4 - HKUS\S-1-5-18\..\Run: [photo_id] C:\Windows\system32\config\systemprofile\photo_id.exe
O4 - HKUS\S-1-5-18\..\Run: [vegas] rundll32.exe C:\Windows\system32\sshnas.dll,DllWork
O4 - HKUS\S-1-5-18\..\Run: [cbssreg] C:\Windows\TEMP\ovdk.tmp\svchost.exe
O4 - HKUS\S-1-5-18\..\Run: [photo_id] C:\Windows\system32\config\systemprofile\photo_id.exe
O4 - HKUS\S-1-5-18\..\Run: [vegas] rundll32.exe C:\Windows\system32\sshnas.dll,DllWork
O4 - HKUS\S-1-5-18\..\Run: [cbssreg] C:\Windows\TEMP\ovdk.tmp\svchost.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - Global Startup: Acer VCM.lnk - C:\Program Files\Acer\Acer VCM\AcerVCM.exe
---\\
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\IETag.ico
O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll,103
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFBARH.ICO
---\\
O10 - WLSP:\000000000001\Winsock LSP File - C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File - C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File - C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File - C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File - C:\Program Files\Bonjour\mdnsNSP.dll
O10 - WLSP:\000000000006\Winsock LSP File - C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000007\Winsock LSP File - C:\Windows\system32\winrnr.dll
---\\
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\system32\urlmon.dll
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\msvidctl.dll
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\msvidctl.dll
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
---\\
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O20 - Winlogon Notify: spba - C:\Program Files\Common Files\SPBA\homefus2.dll
---\\
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll
---\\
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - %SystemRoot%\system32\browseui.dll
---\\
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService (CLHNService) - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service (eDataSecurity Service) - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iGroupTec Service (IGBASVC) - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: MobilityService (MobilityService) - C:\Acer\Mobility Center\MobilityService.exe -p
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - C:\Windows\system32\SLsvc.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - C:\Windows\System32\spoolsv.exe
O23 - Service: Windows Live ID Sign-in Assistant (wlidsvc) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - C:\Windows\system32\SearchIndexer.exe /Embedding
O23 - Service: XAudioService (XAudioService) - C:\Windows\system32\DRIVERS\xaudio.exe
O23 - Service: {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) - C:\WindowsC:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl
---\\
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Ad-Aware Update (Weekly).job
---\\
O41 - Driver: Ancilliary Function Driver for Winsock (AFD) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: avgio (avgio) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys
O41 - Driver: avipbb (avipbb) - C:\WINDOWS\system32\DRIVERS\avipbb.sys
O41 - Driver: Pilote de CD-ROM (cdrom) - C:\WINDOWS\system32\DRIVERS\cdrom.sys
O41 - Driver: @%systemroot%\system32\drivers\dfsc.sys,-101 (DfsC) - C:\WINDOWS\System32\Drivers\dfsc.sys
O41 - Driver: Pilote pour clavier i8042 et souris sur port PS/2 (i8042p
Rapport GenProc 2.660 [3] - 09/01/2010 à 14:05:02
@ Windows VISTA Service Pack 2 - Acer - Mode normal
@ Mozilla Firefox 3.5.7 (fr) [Navigateur par défaut]
GenProc n'a détecté aucune infection caractéristique et suggère de suivre la procédure suivante :
# Etape 1/ Télécharge :
ToolsCleaner! http://pc-system.fr/ (A.Rothstein & Dj QUIOU) sur ton Bureau.
# Etape 2/
- Double-clique sur ToolsCleaner2.exe pour le lancer.
- Clique sur Recherche et laisse le scan agir.
- Clique sur Suppression pour finaliser.
- Tu peux, si tu le souhaites, te servir des Options Facultatives.
- Clique sur Quitter pour obtenir le rapport C:\TCleaner.txt
# Etape 3/
Poste un rapport Nod32 https://www.eset.com/ (il faut utiliser Internet Explorer)
- coche toutes les cases à chaque fois, et lorsque c'est terminé, colle le rapport :
C:\Program Files\EsetOnlineScanner\log.txt
~~~~ INFORMATION COMPLEMENTAIRE ~~~~
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-09 14:05:11
Windows 6.0.6002 Service Pack 2
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager]
"PendingFileRenameOperations"=str(7):"d\2\xfe40\x9d2\0\xffd0\xffffv\22\4\20\0\0\xf636P\x9f\x32b5*\xffc0\xffffv$è\0@\x9e\3\0\1\xffff6740-ec\x32340-02\x3130566f\x3330\x30300\b\0H\x9ehi\0\x9e\xac\0p\x9e\1\0\1,PoooNm\x3030\x3030\xff80\xffffvaJ\0\xdb58\x9e\1\0\1\0T\x2050Qe\x2079Ue\x337b7\x3335CE23-\x32382B0\x322d272E27C\rga ie\r\x2065ms\x2063zlafzl\x2e61eem32\xff80\xffffvaL\0\xe020\x9e\1\0\1lU\x2050Qe\x2079Ue{F\x3237B3\x33317-E9BF\x312dA30ACEC\rga ie\r\x2065ms\x2063zlafzl\x2e61eeooo\x88\0C:\Program Files\Free Music Zilla\FMZilla.exe:*:Enabled:FMZilla\0\0\0\xffd8\xffffv\20\4s.dll,-103\0mst\xffd0\xffffv\21\x378\0\xa528\x9f\3\0\1\0PceCtlgt\x306d\x3030\x3030\x3030\xffd0\xffffv\21\x378\0 \x9f\3\0\0013PceCtlgtm43C\xffe0\xffffv\5"\0`\x9e\1\0\1\0Coe\0¨\xffffn Z#Ê\0\0˜)\0\0\0\0\xffff\xffff\xffff\xffff\b\0@\xa0\xa4a8\e\xffff\xffff\0\0\0\0 \0D\0\37\0\4\0\x30303PN\xffc8\xffffv\eÀ\0\xfdd8\x9d\a\0\1\x9ePnigieeaeprtos\x2140&\xffe0\xffffApple, Inc.\0ˆy\xfff0\xffff \x9f@\x9f\0\0\xffe0\xffffv\a\16\0\xf3f0\x9d\1\0\1\x9eSrieØ\xffff"Tcpip" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"Tcpip" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0"Tcpip6" "{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}"\0"Tcpip6" "{5465A488-0DC8-4572-B6DB-B15FEBA330F1}"\0"Tcpip6" "{0E8390D9-C622-4555-B73E-33736513378A}"\0"Tcpip6" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\0Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\09AD\xffd0\xffffv\21\x378\0(\x9f\3\0\1.PceCtlgtm.1.\xffd0\xffffv\21\x378\0 \x9f\3\0\0011PceCtlgtm\08 \xffd8\xffffv\vn\0\xf7d8\x9d\1\0\0015Ojc it\0\0\30\0tunnel\0g\xea88S\xffd8\xffffl\3P\x92A\xa68eÀ\x92ÝBH\x9f\xa57aI \0v\3¨\xffff{4d36e972-e325-11ce-bfc1-08002be10318}\0\0\0\x300\xffd8\xffffv\17\4\xffffv\f\xae\0\xf318\x9d\1\0\1\0PoooNmgt\xffd0\xffffv\21\x378\0(\x9f\3\0\1cPceCtlgtm\5\x27c5c\xffd8\xffffv\fR\0h\x9e\1\0\1,PoooNm\0001¨\xffff%systemroot%\system32\wbem\wmiaprpl.dll\0\0\0\xffd0\xffffv\22\4\4machine.inf,%volmgr.devicedesc%;Gestionnaire de volume\0in\xffc0\xffffsystem32\DRIVERS\xaudio.sys\00041H\xffffMSAFD NetBIOS [\Device\NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}] SEQPACKET 5\0T H\xffffMSAFD NetBIOS [\Device\NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}] DATAGRAM 5\0001\x280ec\xffd0\xffffv\21\x378\0x\x9f\3\0\1\0PceCtlgtme D\xffc8\xffffv\31\4à\x9fah\xffe8\xffffl\2°\x9f\xe918H\xf748\x9e\xe1416\20\0l\1P\x9ed\x29c4hiv\r\4\0 \0\2p\5\0\0\24\1\0\0\02785F-DCDA-462E-B262-1E314AFAC753}] DATAGRAM 1\0\xffd0\xffffv\21\x378\0ø\x9f\3\0\1*PceCtlgtm\0\xe310\5\b\0et\xfff0\xffffp\x9f\x9f\1\0\xffd8\xffffv\f\4n ÁErroto\xffff\xffff\xffe0\xffffv\3\4d'horloge de répartition Microsoft\0\xffff\xffe0\xffffp\x9d \x9eÀ\x9eè\x9e\x9ep\x9e\x9e\xffe0\xffffv\5\34\00\x9e\1\0\1\xffffGo\xff70\xffff\xffe0\xffffExtended Base\0\xffd8\xffffv\f\xb0\0\x2880\x9e\1\0\1\6PoooNm\xffff\xffff\xffd0\xffff\xf288\x9d\xf3d0\x9d\xf670\x9d˜\x9eØ\x9e\x1368\x9e\x1ba8\x9eˆ\x9e\xfe18\x9d\x820\x009e39\xffc0\xffffv$4\0\x9e\3\0\00156d51-fc4d-ca91d125A} \0SEQPACKET 6\0\1\0 \xffff{4d36e972-e325-11ce-bfc1-08002be10318}\0008\0n ¨\xffff{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\0\0\0\xffe0\xffffv\4\4v\f\xae\0\x9d\1\0\1APoooNm 4\xffd8\xffffv\f\xb0\0H\x9d\1\0\1BPoooNmDe¸\xffff%systemroot%\system32\w32time.dll\0\xff88\xffffhccoin.dll,HCCOIN_Entry\0hcrstco.dll,HCResetCoinst_Entry\0\0\0¸\xffffP)`)Ø))˜)\xa550)\xa930)\xab68)\xa700)À)\xa990)ˆ)8)À\x9dx)0)˜)¨\xffffusbui.dll,USBControllerPropPageProvider\0BF\xff88\xffffhccoin.dll,HCCOIN_Entry\0hcrstco.dll,HCResetCoinst_Entry\0\0\0\xffc8\xffffv\34\6\0€)\a\0\1'Cr\x2065mnpr irsf uee\b\0\xdfe0V\xffd0\xffffv\26ú\0@\xa2\1\0\1.WPS-PPo\x2d74I-C-\b\0-C\xffe0\xffffv\a\22\0H\x9a\a\0\1\0Sucs\xffd8\xffffv\t\4am Files\Acer Arcade Deluxe\PlayMovie\000.fcl\0\b\0006:\xfff0\xffff\xee88\x9f\x9f\xef60\x9f°\xfffftime.windows.com,7b17b47\0\0\0\0\0\0\0\0\0\0\0\0\0\0\xffc8\xffff\x9d\x1dc8\x9e \x9e\xad8\x9e\x2020\x9e\xde0\x9e\x1078\x9e\xa48\x9e°\x9e\xa78\x9e\xf2a8\x9d0\x9e\1\0\xffd0\xffffv\25\4)\x32f0jwa\xffd8\xffffv\r\4\xffff\0\0\xffff\xffff\xffff\xffff\xffff\xffff\0\0\0\0\0\0\0\0 \0\a\0Gnrc\20\0ooNmgt\xffc8\xffffv \6\0ø)\a\0\1AIt\x286c\x2952 iee\x2073WF i\x206b5\x3030hi\x2000\x9eBIOS [\Device\NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}] SEQPACKET 0\0001}\xffd0\xffffv\27æ\0¨\xa2\1\0\1.WPS-PPo\x2d74O\x2d74TP¨\xffff@%SystemRoot%\System32\wshqos.dll,-102\0\x3030\x3030\x3030\xffd8\xffffv\fN\0à\x9e\1\0\1oPoooNmst\xffd0\xffffv\21\x378\0 \x9f\3\0\1!PceCtlgtme D\xffd0\xffffv\21\x378\0@\x9f\3\0\1oPceCtlgtmm32\xffd8\xffffv\f\xae\0\xcf8\x9e\1\0\1\0PoooNmI\x3053\xffd8\xffffv\f\xae\0\x2518\x9e\1\0\1\0PoooNme\0¨\xffff{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}\0\1o\xffe0\xffffnettun.inf\0ms\x9e¸\xffff`(\xa490 Ð)\xffff\xf8e0"\xffff\xffff\24\0\0\0\0\0\0\0\2\0&\0\x307bFD3F8\x3231-\x324259F-1FFFF3é\30\0au\0\0er\b\0v\t\xffd8\xffff@\x9cˆ\x9c0\x9cÀ\x9cà\x9c \x9e(\xa0\x1b88\x9eH\xa0\xffd0\xffffv\26\n\0è)\a\0\1\0Cr\x2065Mcoo\x2074IAA\34\b\0\x29e0\x9e\xffd8\xffffv\20N\0h\x9e\1\0\1éNtfIsacI\b\0\1\v\xffd0\xffffv\25J\0 \xa2\1\0\1mWPS-SPr-\x2d6eUP-\xffd8\xffffv\vü\0@\xa1\1\0\1\eWPO\x2d74UP-CH\xffffMSAFD NetBIOS [\Device\NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}] DATAGRAM 0\0\0vo \0\xf288\x9d\xf3d0\x9d\xf670\x9d˜\x9eØ\x9e\x1368\x9e\x1ba8\x9e\xfff0\xffff\xeac8\x9f\xeaf0\x9f\xeb20\x9f\xfe08\xffff"{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}"\0"{5465A488-0DC8-4572-B6DB-B15FEBA330F1}"\0"{0E8390D9-C622-4555-B73E-33736513378A}"\0"{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\0{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\000262\xffd8\xffffv\n\x80\0 \xa0\1\0\1\0DvcDs\0v\4\xffd8\xffffv\v\4°\x9f\x3300\xa0\x2820\x9eroH\xffffMSAFD NetBIOS [\Device\NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}] SEQPACKET 6\0\1\0\xffd8\xffffv\f\xae\0\x2a40\x9e\1\0\1BPoooNmDe\xffd0\xffffv\21\x378\0P\x9f\3\0\1APceCtlgtm2ng\xffd8\xffffv\f\xb0\00\x9e\1\0\1\21PoooNm\1t\xffd8\xffffv\20j\0ˆ\xa1\2\0\1 EetesgFl\xffc8\xffff\xe710:\xeab0:Pgðh`hh\x3240j\xf590\x9d\xf8d0\x9d\xf1c0\x9dÈ\x9e\x2458\x9e\x9e\xffd8\xffffv\fN\0\xf230\x9d\1\0\1.PoooNm03H\xffffMSAFD NetBIOS [\Device\NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}] DATAGRAM 6\0\0\0\0\xffd0\xffffv\21\x378\0(\x9f\3\0\1BPceCtlgtmice\xffd8\xffffv\f\xae\0"{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}"\0"Tcpip6" "{5465A488-0DC8-4572-B6DB-B15FEBA330F1}"\0"Tcpip6" "{0E8390D9-C622-4555-B73E-33736513378A}"\0"Tcpip6" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\0Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\000753\xb8\0C:\Program Files\Free Music Zilla\FMZilla.exe:*:Enabled:FMZilla\0\0*\0:\0\0\0\n\0Cneto\0\x3032-\xffd8\xffffv\20\4-9788-4239-99AA-2043CBD9ADEB}\0\Device\Smb_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\Smb_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\Smb_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\Smb_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\Smb_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Smb_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetbiosSmb\0\Device\Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetBT_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0etBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0\xffd8\xffffv\f\4v\25¼\0ð\xa2\1\0\1-WPS-\x2d6eUPNSoe-\xffd8\xffffAdresse réseau\0l\0\x9e\xfff8\xffff@\x9e¸\xffffà)0)\xab20)\0p\xa2\1\0\1.WPS-Wv-u-CC-\xffd0\xffffv\23*\0X\x9e\1\0\1\0LctoIfrain\1\0\xffe8\xfffftunnel\0\0Ø\x9e\xffe8\xffffl\2à\x9f\xf6368\x9f\x32b5*\xffc8\xffffv\32¼\0P\xa2\1\0\1.WPS-M-u-C-ocp-C,\xffc8\xffffv\32¾\0\xa2\1\0\1,WPS-M-u-D-ocp,\xefd0,¨\xffffn è|Ê\0\0\x1400\x9e\2\0\0\0\x17e0\x88\xffff\xffff\2\0 \x87\xa4a8\e\xffff\xffff\24\0\0\0\20\0B\0\1\0\3\0Nira\xfff0\xffffType\0e\xff98\xffffvK2\00\x9e\1\0\1!T\x2050Qe\x2079Ue{F9\x323818D-D78\x3242\x322dD81\x304164C\idw\xlr\x2e72eel\0\xffd8\xffffndis5_ip6_tunnel\0 \20\0sf uee\xffd0\xffffv\26¼\0\xa2\1\0\1,WPS-u-C-ocp,\xffd0\xffffv\25º\0À\xa2\1\0\1-WPS-\x2d6eTPNSoep\20\0Type\0e\xffe0\xffff6.0.9999.45\0\1\x87\xffd8\xffffv\t\n\0¸\x9e\1\0\1.PrmeceiT\b\0H\x9e\xffd8\xffffv\f\4\xffffv\n\16\0À\x9e\1\0\1cLwragmgt\b\0ce\Smb_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Smb_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\Smb_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\Smb_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\Smb_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\Smb_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Smb_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetbiosSmb\0\Device\NetBT_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0vice\NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0-B8\xffffC:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\decryption.exe:*:Enabled:decryption\0 \xffffvH\xb3\0Ð\x9e\1\0\1\0C\rga ie\crEpwrn ehooyeaaeuiyx6eSg.xH\xffffC:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSMgr.exe:*:Enabled:eDSMgr\0\xff98\xffffvK\xbf\0\xab58\x9e\1\0\1\0C\rga ie\crEpwrn ehooyeaaeuiyx6eSbn\x2e72eep\0 \xffffvH\xb3\0 \x9e\1\0\1nC\rga ie\crEpwrn ehooyeaaeuiyx4eSs.x\xff68\xffffs Ð\x8d˜\x9e\1\0|\0\1\\0l\0\0\0\24\0\2H\3\0 \0 \0\0\0\0`\x9e\2\0\0\0\x8d8\x88\xffff\xffff\0\0\xffff\xffff\xa4a8\e\xffff\xffff\34\0\0\0\0\0\0\0\1\0\6\0Prma\20\0 e\b\0000 \xffc8\xffffv\31¼\0\xa5d8\xa2\1\0\1\eWPS-M-\x2d6eUPNSoe- -\xffc8\xffffv\36€\0x\xa1\1\0\1\eWPS-TPT-u-C-ocp-\xffc8\xffffv\35~\0\1,WPS-TPT-\x2d6eTPNSoe,\xffd8\xffffv\nú\0@\xa1\1\0\1\eWPI-D-C-\xff98\xffffvK4\0\x1a70\xa0\1\0\1\0U\x2050Qe\x2079Ue{359BC\x3031-ABBF-\x30453\x30315\x3239BC\idw\xlr\x2e72ee\0 \xffffn è|Ê\0\0¨\x9e\0\0\0\0\xffff\xffff\xffff\xffff\3\0\xdaf8\x86\xa4a8\e\xffff\xffff\0\0\0\0\22\0\36\0\0\0\16\0Ntokdrs\t\xffe8\xffff*isatap\0me\b\0Sb\xffd8\xffffv\r\xbe\0\x1078\xa0\a\0\0015CmailIs\0\xffc0\xffffsystem32\DRIVERS\WUDFRd.sys\0}Æ\xffd0\xffffv\24*\0Ð\xa2\1\0\1,WPS-Wv-u-Dp,\xffd8\xffffv\n\30\0\xfe50\x9d\1\0\1eIfeto\x9dØ\x9e¨\xffffn è|Ê\0\0¨\x9e\0\0\0\0\xffff\xffff\xffff\xffff\3\0\x5f8\x87\xa4a8\e\xffff\xffff\0\0\0\0\22\0\n\0\1\0\4\0Tpok¸\xffffPilote de carte Microsoft ISATAP\0\0\xffd8\xffffv\n"\00\x9e\1\0\1\x9eUpragata\b\0\b\0\xffd0\xffffPort_#0004.Hub_#0008\09\xffd8\xffffv\f\30\0H\x9e\1\0\1\x88PoieNmà\x96\xffc0\xffffConnexion au réseau local* 2\0o\xfff0\xffffx\x9f˜\x9fp\0hiServer_Smb_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanServer_Smb_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\LanmanServer_Smb_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\LanmanServer_Smb_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanServer_Smb_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_Smb_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanServer_NetbiosSmb\0\Device\LanmanServer_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\LanmanServer_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\LanmanServer_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanServer_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanServer_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanServer_NetBT_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_NetBT_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanServer_NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\LanmanServer_NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\LanmanServer_NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanServer_NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0anmanServer_NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanServer_NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanServer_NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0_s\0 \xffffn è|Ê\0\0`\x9e\0\0\0\0\xffff\xffff\xffff\xffff\2\0¸\x87\xa4a8\e\xffff\xffff\0\0\0\0\24\0"\0\0\0\n\0Itraep6_\xffe0\xffffv\4\26\0P\x9e\3\0\1\x9dDtà\x9e\xe7b8\x9e\xffff\xffff\0\0\0\0\x98\0Ã\0\0\0\4\0Ls\0\x300 \xffffvH\xb3\08\x9e\1\0\1\0C\rga ie\crEpwrn ehooyeaaeuiyx6eSs.xH\xffffC:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSfsu.exe:*:Enabled:eDSfsu\0\20\0home\0\1hi\0\0\0\0\0\0\0\0\xf8c8\xffff"Smb" "Tcpip" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"Smb" "Tcpip" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0"Smb" "Tcpip6" "{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}"\0"Smb" "Tcpip6" "{5465A488-0DC8-4572-B6DB-B15FEBA330F1}"\0"Smb" "Tcpip6" "{0E8390D9-C622-4555-B73E-33736513378A}"\0"Smb" "Tcpip6" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"Smb" "Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0"NetbiosSmb"\0"NetBT" "Tcpip" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"NetBT" "Tcpip" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0"NetBT" "Tcpip6" "{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}"\0"NetBT" "Tcpip6" "{5465A488-0DC8-4572-B6DB-B15FEBA330F1}"\0"NetBT" "Tcpip6" "{0E8390D9-C622-4555-B73E-33736513378A}"\0"NetBT" "Tcpip6" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"NetBT" "Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\0tBT" "Tcpip6" "{322B8734-9788-4239-99AA-2043CBD9ADEB}"\0"NetBT" "Tcpip6" "{F8B2785F-DCDA-462E-B262-1E314AFAC753}"\0\08\xffff\Device\NetBT_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0Device\NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0E4}p\xffff\Device\Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0Device\Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0}\xffd8\xffffv\v\20\0¨\x9e\1\0\1\x9eCmoet\xff64\xffff\xffff\xff98\xffffn ’øÊ\0\0p2\0\0\0\0\xffff\xffff\xffff\xffff\1\0°\x9eà%\xffff\xffff\0\0\0\0\32\0\4\0\0\0\21\0Dvc aaees\0v\r\xffd8\xffffv\r\4\crEpwrn ehooyeaaeuiyx6dcyto.x\0\0hition_Smb_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\LanmanWorkstation_Smb_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\LanmanWorkstation_Smb_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanWorkstation_Smb_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanWorkstation_Smb_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanWorkstation_NetbiosSmb\0\Device\LanmanWorkstation_NetBT_Tcpip_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanWorkstation_NetBT_Tcpip_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{0FAD13CF-8412-4B25-95F5-71DF5F1FFF53}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{5465A488-0DC8-4572-B6DB-B15FEBA330F1}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{0E8390D9-C622-4555-B73E-33736513378A}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0vice\LanmanWorkstation_NetBT_Tcpip6_{322B8734-9788-4239-99AA-2043CBD9ADEB}\0\Device\LanmanWorkstation_NetBT_Tcpip6_{F8B2785F-DCDA-462E-B262-1E314AFAC753}\0\0¨\xffffn ’øÊ\0\0\xaab0\x9e\0\0\0\0\xffff\xffff\xffff\xffff\2\0ð\x88#\xffff\xffff\0\0\0\0\b\0z\0\0\0\b\0\x3030\x3030\x3030\x3030\xff80\xffffnettun.inf:Microsoft.NTx86:ISATAP.ndi:6.0.6002.18005:*isatap\0 \xffc8\xffffCarte Microsoft ISATAP\0\0\0\0\xffe0\xffffv\4\4\2\xab28\x9e.N¨\xffffn ’øÊ\0\0Ø\x9e\1\0\0\0\x9e\xffff\xffff\0\0\xffff\xffff#\xffff\xffff\20\0\0\0\0\0\0\0\2"
scanning hidden registry entries ...
scan completed successfully
hidden services: 0
Rapport de ZHPDiag v1.24.42 par Nicolas Coolman
Run by laura at 09/01/2010 14:06:44
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Platform : Windows Vista (TM) Home Premium (6.0.6002) Service Pack 2
MSIE: Internet Explorer v8.0.6001.18865
MFIE: Mozilla Firefox (3.5.7)
Boot mode: Normal (Normal boot)
Total RAM: 3065 MB (65% free)
System drive C: has 77 GB (53%) free of 144 GB
---\\
[MD5.18B4B12358EFCF68D76812058A26181F] - C:\Program Files\Windows Live\Messenger\msnmsgr.exe
[MD5.31AFABDB5E9560E014B14EA8EC1F3635] - C:\Program Files\uTorrent\uTorrent.exe
[MD5.BF08674925F151BD4537B89A493E3E0C] - C:\Windows\ehome\ehTray.exe
[MD5.9E35FF7F943AE0FB89192BFE058B7FD4] - C:\Program Files\Windows Sidebar\Sidebar.exe
[MD5.3794B461C45882E06856F282EEF025AF] - C:\Windows\system32\svchost.exe
[MD5.9015BC03F62940527EC92D45EE89E46F] - C:\Program Files\Avira\AntiVir Desktop\sched.exe
[MD5.B8720A787C1223492E6F319465E996CE] - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
[MD5.4B5AE15E5C73EB4DC8DBEC2788230D41] - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
[MD5.3F56903E124E820AEECE6D471583C6C1] - C:\Program Files\Bonjour\mDNSResponder.exe
[MD5.09E6AFFAE6C0E9158BF05C7D08D0107A] - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
[MD5.5CA9B1062C0C3E3AE19C23AD9D8A5048] - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
[MD5.2CE2DDCB1A41ED4488A2A8B98D286B3D] - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
[MD5.27D2754314D12EB27D81D462FD0D86C0] - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
[MD5.54B6E150BFF4A47EB0D204119D262E46] - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
[MD5.3E42C4691AAD4B1E8D0466F9CBF05CBE] - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
[MD5.33FFC1E1117C4BE00A07AEDD72AE68B1] - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
[MD5.793FF718477345CD5D232C50BED1E452] - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
[MD5.5E25F0B6F0BB3F2A880598AF1BA36174] - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
[MD5.1E1A308F4229FAB0011A0745EE8377AE] - C:\Acer\Mobility Center\MobilityService.exe
[MD5.A2B6583A5652A385DFF5E4F49AD48761] - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
[MD5.40B87FE8A1A9A5AC9E5A91D96F212BCD] - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
[MD5.3FF45B7F17D5837216ABAE652CC61540] - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
[MD5.17E0BEF5CA5C9CE52CC8082AC6EBC449] - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
[MD5.73835C4F79ADC404EF39C8A9E2D4183B] - C:\Program Files\Acer\Acer VCM\RS_Service.exe
[MD5.3978F3540329E16C0AC3BCF677E5669F] - C:\Windows\system32\lsass.exe
[MD5.862BB4CBC05D80C5B45BE430E5EF872F] - C:\Windows\system32\SLsvc.exe
[MD5.524BFBEA40E6E404737CCBC754647A2E] - C:\Windows\System32\spoolsv.exe
[MD5.D9250B31B353EE3322C1CAD411997E38] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
[MD5.AED0DFF80C6B3914769407E78D7AB21A] - C:\Windows\system32\SearchIndexer.exe
[MD5.CD5F291A1161F15896D1A4D63DAFF5DF] - C:\Windows\system32\DRIVERS\xaudio.exe
---\\
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=explorer.exe
---\\
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fmz.qiwa.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.hugedomains.com/domain_profile.cfm?d=duxet&e=com
---\\
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
---\\
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\system32\ieframe.dll
---\\
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} -
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
---\\
O4 - HKCU\..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKLM\..\policies\Explorer: [BindDirectlyToPropertySetStorage] Data=0
O4 - HKUS\S-1-5-18\..\Run: [photo_id] C:\Windows\system32\config\systemprofile\photo_id.exe
O4 - HKUS\S-1-5-18\..\Run: [vegas] rundll32.exe C:\Windows\system32\sshnas.dll,DllWork
O4 - HKUS\S-1-5-18\..\Run: [cbssreg] C:\Windows\TEMP\ovdk.tmp\svchost.exe
O4 - HKUS\S-1-5-18\..\Run: [photo_id] C:\Windows\system32\config\systemprofile\photo_id.exe
O4 - HKUS\S-1-5-18\..\Run: [vegas] rundll32.exe C:\Windows\system32\sshnas.dll,DllWork
O4 - HKUS\S-1-5-18\..\Run: [cbssreg] C:\Windows\TEMP\ovdk.tmp\svchost.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - Global Startup: Acer VCM.lnk - C:\Program Files\Acer\Acer VCM\AcerVCM.exe
---\\
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\IETag.ico
O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll,103
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFBARH.ICO
---\\
O10 - WLSP:\000000000001\Winsock LSP File - C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File - C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File - C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File - C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File - C:\Program Files\Bonjour\mdnsNSP.dll
O10 - WLSP:\000000000006\Winsock LSP File - C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000007\Winsock LSP File - C:\Windows\system32\winrnr.dll
---\\
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\system32\urlmon.dll
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\msvidctl.dll
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\msvidctl.dll
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
---\\
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O20 - Winlogon Notify: spba - C:\Program Files\Common Files\SPBA\homefus2.dll
---\\
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll
---\\
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - %SystemRoot%\system32\browseui.dll
---\\
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService (CLHNService) - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service (eDataSecurity Service) - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iGroupTec Service (IGBASVC) - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: MobilityService (MobilityService) - C:\Acer\Mobility Center\MobilityService.exe -p
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - C:\Windows\system32\SLsvc.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - C:\Windows\System32\spoolsv.exe
O23 - Service: Windows Live ID Sign-in Assistant (wlidsvc) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - C:\Windows\system32\SearchIndexer.exe /Embedding
O23 - Service: XAudioService (XAudioService) - C:\Windows\system32\DRIVERS\xaudio.exe
O23 - Service: {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) - C:\WindowsC:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl
---\\
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Ad-Aware Update (Weekly).job
---\\
O41 - Driver: Ancilliary Function Driver for Winsock (AFD) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: avgio (avgio) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys
O41 - Driver: avipbb (avipbb) - C:\WINDOWS\system32\DRIVERS\avipbb.sys
O41 - Driver: Pilote de CD-ROM (cdrom) - C:\WINDOWS\system32\DRIVERS\cdrom.sys
O41 - Driver: @%systemroot%\system32\drivers\dfsc.sys,-101 (DfsC) - C:\WINDOWS\System32\Drivers\dfsc.sys
O41 - Driver: Pilote pour clavier i8042 et souris sur port PS/2 (i8042p