Comment supprimer antimalware doctor?
Fermé
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
-
29 avril 2010 à 23:45
Utilisateur anonyme - 10 mai 2010 à 17:56
Utilisateur anonyme - 10 mai 2010 à 17:56
A voir également:
- Comment supprimer antimalware doctor?
- Comment supprimer une page sur word - Guide
- Supprimer compte instagram - Guide
- Pc doctor - Télécharger - Optimisation
- Supprimer pub youtube - Accueil - Streaming
- Comment recuperer un message supprimé sur whatsapp - Guide
80 réponses
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
7 mai 2010 à 19:19
7 mai 2010 à 19:19
.text C:\WINDOWS\system32\svchost.exe[1284] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 006D1924
.text C:\WINDOWS\system32\svchost.exe[1284] WS2_32.dll!send 719F4C27 5 Bytes JMP 006D1958
.text C:\WINDOWS\system32\svchost.exe[1284] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 006D1975
.text C:\WINDOWS\system32\svchost.exe[1284] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 006C3909
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000740AE
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00073E67
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0007405A
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00073FC5
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0008572E
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000805E3
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00080552
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000805B4
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0008061F
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00085863
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00087D10
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00087DB7
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00087D78
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00087D55
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00087C84
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00087CA6
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00087D32
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00087CEC
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00087CC8
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00081924
.text C:\WINDOWS\system32\svchost.exe[1284] WS2_32.dll!send 719F4C27 5 Bytes JMP 006D1958
.text C:\WINDOWS\system32\svchost.exe[1284] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 006D1975
.text C:\WINDOWS\system32\svchost.exe[1284] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 006C3909
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000740AE
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00073E67
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0007405A
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00073FC5
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0008572E
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000805E3
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00080552
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000805B4
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0008061F
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00085863
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00087D10
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00087DB7
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00087D78
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00087D55
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00087C84
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00087CA6
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00087D32
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00087CEC
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00087CC8
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00081924
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
7 mai 2010 à 19:20
7 mai 2010 à 19:20
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WS2_32.dll!send 719F4C27 5 Bytes JMP 00081958
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00081975
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00073909
.text C:\WINDOWS\eHome\ehSched.exe[1416] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000740AE
.text C:\WINDOWS\eHome\ehSched.exe[1416] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00073E67
.text C:\WINDOWS\eHome\ehSched.exe[1416] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0007405A
.text C:\WINDOWS\eHome\ehSched.exe[1416] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00073FC5
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0008572E
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000805E3
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00080552
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000805B4
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0008061F
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00085863
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00087D10
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00087DB7
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00087D78
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00087D55
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00087C84
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00087CA6
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00087D32
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00087CEC
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00087CC8
.text C:\WINDOWS\eHome\ehSched.exe[1416] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00081924
.text C:\WINDOWS\eHome\ehSched.exe[1416] WS2_32.dll!send 719F4C27 5 Bytes JMP 00081958
.text C:\WINDOWS\eHome\ehSched.exe[1416] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00081975
.text C:\WINDOWS\eHome\ehSched.exe[1416] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00073909
.text C:\WINDOWS\system32\spoolsv.exe[1476] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 009440AE
.text C:\WINDOWS\system32\spoolsv.exe[1476] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00943E67
.text C:\WINDOWS\system32\spoolsv.exe[1476] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0094405A
.text C:\WINDOWS\system32\spoolsv.exe[1476] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00943FC5
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0095572E
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 009505E3
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00950552
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 009505B4
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0095061F
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00955863
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00957D10
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00081975
.text C:\WINDOWS\eHome\ehRecvr.exe[1388] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00073909
.text C:\WINDOWS\eHome\ehSched.exe[1416] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000740AE
.text C:\WINDOWS\eHome\ehSched.exe[1416] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00073E67
.text C:\WINDOWS\eHome\ehSched.exe[1416] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0007405A
.text C:\WINDOWS\eHome\ehSched.exe[1416] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00073FC5
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0008572E
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000805E3
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00080552
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000805B4
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0008061F
.text C:\WINDOWS\eHome\ehSched.exe[1416] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00085863
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00087D10
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00087DB7
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00087D78
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00087D55
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00087C84
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00087CA6
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00087D32
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00087CEC
.text C:\WINDOWS\eHome\ehSched.exe[1416] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00087CC8
.text C:\WINDOWS\eHome\ehSched.exe[1416] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00081924
.text C:\WINDOWS\eHome\ehSched.exe[1416] WS2_32.dll!send 719F4C27 5 Bytes JMP 00081958
.text C:\WINDOWS\eHome\ehSched.exe[1416] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00081975
.text C:\WINDOWS\eHome\ehSched.exe[1416] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00073909
.text C:\WINDOWS\system32\spoolsv.exe[1476] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 009440AE
.text C:\WINDOWS\system32\spoolsv.exe[1476] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00943E67
.text C:\WINDOWS\system32\spoolsv.exe[1476] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0094405A
.text C:\WINDOWS\system32\spoolsv.exe[1476] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00943FC5
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0095572E
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 009505E3
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00950552
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 009505B4
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0095061F
.text C:\WINDOWS\system32\spoolsv.exe[1476] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00955863
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00957D10
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
7 mai 2010 à 19:21
7 mai 2010 à 19:21
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00957DB7
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00957D78
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00957D55
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00957C84
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00957CA6
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00957D32
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00957CEC
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00957CC8
.text C:\WINDOWS\system32\spoolsv.exe[1476] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00951924
.text C:\WINDOWS\system32\spoolsv.exe[1476] WS2_32.dll!send 719F4C27 5 Bytes JMP 00951958
.text C:\WINDOWS\system32\spoolsv.exe[1476] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00951975
.text C:\WINDOWS\system32\spoolsv.exe[1476] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00943909
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 016D40AE
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 016D3E67
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 016D405A
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 016D3FC5
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 016E572E
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 016E05E3
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 016E0552
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 016E05B4
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 016E061F
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 016E5863
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 016E7D10
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 016E7DB7
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 016E7D78
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 016E7D55
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 016E7C84
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00957D78
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00957D55
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00957C84
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00957CA6
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00957D32
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00957CEC
.text C:\WINDOWS\system32\spoolsv.exe[1476] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00957CC8
.text C:\WINDOWS\system32\spoolsv.exe[1476] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00951924
.text C:\WINDOWS\system32\spoolsv.exe[1476] WS2_32.dll!send 719F4C27 5 Bytes JMP 00951958
.text C:\WINDOWS\system32\spoolsv.exe[1476] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00951975
.text C:\WINDOWS\system32\spoolsv.exe[1476] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00943909
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 016D40AE
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 016D3E67
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 016D405A
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 016D3FC5
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 016E572E
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 016E05E3
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 016E0552
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 016E05B4
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 016E061F
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 016E5863
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 016E7D10
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 016E7DB7
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 016E7D78
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 016E7D55
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 016E7C84
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
7 mai 2010 à 19:22
7 mai 2010 à 19:22
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 016E7CA6
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 016E7D32
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 016E7CEC
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 016E7CC8
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 016E1924
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WS2_32.dll!send 719F4C27 5 Bytes JMP 016E1958
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 016E1975
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 016D3909
.text C:\WINDOWS\Explorer.EXE[1760] ntdll.dll!NtProtectVirtualMemory 7C91D6EE 5 Bytes JMP 00B7000A
.text C:\WINDOWS\Explorer.EXE[1760] ntdll.dll!NtWriteVirtualMemory 7C91DFAE 5 Bytes JMP 00C1000A
.text C:\WINDOWS\Explorer.EXE[1760] ntdll.dll!KiUserExceptionDispatcher 7C91E47C 5 Bytes JMP 00B6000C
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 001340AE
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00133E67
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0013405A
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00133FC5
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00141924
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WS2_32.dll!send 719F4C27 5 Bytes JMP 00141958
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00141975
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0014572E
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 001405E3
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00140552
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 001405B4
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0014061F
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00145863
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00147D10
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00147DB7
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00147D78
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00147D55
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00147C84
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00147CA6
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00147D32
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00147CEC
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00147CC8
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00133909
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 016E7D32
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 016E7CEC
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 016E7CC8
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 016E1924
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WS2_32.dll!send 719F4C27 5 Bytes JMP 016E1958
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 016E1975
.text C:\WINDOWS\system32\Ati2evxx.exe[1612] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 016D3909
.text C:\WINDOWS\Explorer.EXE[1760] ntdll.dll!NtProtectVirtualMemory 7C91D6EE 5 Bytes JMP 00B7000A
.text C:\WINDOWS\Explorer.EXE[1760] ntdll.dll!NtWriteVirtualMemory 7C91DFAE 5 Bytes JMP 00C1000A
.text C:\WINDOWS\Explorer.EXE[1760] ntdll.dll!KiUserExceptionDispatcher 7C91E47C 5 Bytes JMP 00B6000C
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 001340AE
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00133E67
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0013405A
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00133FC5
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00141924
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WS2_32.dll!send 719F4C27 5 Bytes JMP 00141958
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00141975
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0014572E
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 001405E3
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00140552
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 001405B4
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0014061F
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00145863
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00147D10
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00147DB7
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00147D78
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00147D55
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00147C84
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00147CA6
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00147D32
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00147CEC
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00147CC8
.text C:\Program Files\Java\jre6\bin\jqs.exe[1796] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00133909
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
7 mai 2010 à 19:23
7 mai 2010 à 19:23
text C:\WINDOWS\system32\svchost.exe[2240] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000840AE
.text C:\WINDOWS\system32\svchost.exe[2240] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00083E67
.text C:\WINDOWS\system32\svchost.exe[2240] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0008405A
.text C:\WINDOWS\system32\svchost.exe[2240] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00083FC5
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0009572E
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000905E3
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00090552
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000905B4
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0009061F
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00095863
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00097D10
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00097DB7
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00097D78
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00097D55
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00097C84
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00097CA6
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00097D32
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00097CEC
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00097CC8
.text C:\WINDOWS\system32\svchost.exe[2240] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00091924
.text C:\WINDOWS\system32\svchost.exe[2240] WS2_32.dll!send 719F4C27 5 Bytes JMP 00091958
.text C:\WINDOWS\system32\svchost.exe[2240] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00091975
.text C:\WINDOWS\system32\svchost.exe[2240] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00083909
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 001340AE
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00133E67
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0013405A
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00133FC5
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0014572E
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 001405E3
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00140552
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 001405B4
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0014061F
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00145863
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00147D10
.text C:\WINDOWS\system32\svchost.exe[2240] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00083E67
.text C:\WINDOWS\system32\svchost.exe[2240] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0008405A
.text C:\WINDOWS\system32\svchost.exe[2240] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00083FC5
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0009572E
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000905E3
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00090552
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000905B4
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0009061F
.text C:\WINDOWS\system32\svchost.exe[2240] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00095863
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00097D10
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00097DB7
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00097D78
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00097D55
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00097C84
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00097CA6
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00097D32
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00097CEC
.text C:\WINDOWS\system32\svchost.exe[2240] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00097CC8
.text C:\WINDOWS\system32\svchost.exe[2240] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00091924
.text C:\WINDOWS\system32\svchost.exe[2240] WS2_32.dll!send 719F4C27 5 Bytes JMP 00091958
.text C:\WINDOWS\system32\svchost.exe[2240] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00091975
.text C:\WINDOWS\system32\svchost.exe[2240] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00083909
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 001340AE
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00133E67
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0013405A
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00133FC5
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0014572E
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 001405E3
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00140552
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 001405B4
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0014061F
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00145863
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00147D10
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
7 mai 2010 à 19:23
7 mai 2010 à 19:23
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00147DB7
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00147D78
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00147D55
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00147C84
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00147CA6
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00147D32
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00147CEC
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00147CC8
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00141924
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WS2_32.dll!send 719F4C27 5 Bytes JMP 00141958
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00141975
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00133909
.text C:\WINDOWS\system32\svchost.exe[2348] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000840AE
.text C:\WINDOWS\system32\svchost.exe[2348] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00083E67
.text C:\WINDOWS\system32\svchost.exe[2348] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0008405A
.text C:\WINDOWS\system32\svchost.exe[2348] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00083FC5
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0009572E
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000905E3
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00090552
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000905B4
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0009061F
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00095863
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00097D10
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00097DB7
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00097D78
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00097D55
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00097C84
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00097CA6
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00097D32
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00097CEC
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00097CC8
.text C:\WINDOWS\system32\svchost.exe[2348] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00091924
.text C:\WINDOWS\system32\svchost.exe[2348] WS2_32.dll!send 719F4C27 5 Bytes JMP 00091958
.text C:\WINDOWS\system32\svchost.exe[2348] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00091975
.text C:\WINDOWS\system32\svchost.exe[2348] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00083909
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000840AE
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00083E67
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0008405A
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00083FC5
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0009572E
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000905E3
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00090552
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000905B4
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0009061F
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!CreateWindowExW 7E3AD0A3 5 Bytes JMP 28003CA0 C:\Program Files\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou)
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00095863
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00091924
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WS2_32.dll!send 719F4C27 5 Bytes JMP 00091958
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00091975
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] ole32.dll!CoInitializeEx 774BEF7B 5 Bytes JMP 28002100 C:\Program Files\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou)
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00083909
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00097D10
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00097DB7
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00097D78
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00097D55
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00097C84
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00097CA6
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00097D32
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00097CEC
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00097CC8
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00147D78
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00147D55
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00147C84
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00147CA6
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00147D32
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00147CEC
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00147CC8
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00141924
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WS2_32.dll!send 719F4C27 5 Bytes JMP 00141958
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00141975
.text C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe[2340] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00133909
.text C:\WINDOWS\system32\svchost.exe[2348] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000840AE
.text C:\WINDOWS\system32\svchost.exe[2348] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00083E67
.text C:\WINDOWS\system32\svchost.exe[2348] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0008405A
.text C:\WINDOWS\system32\svchost.exe[2348] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00083FC5
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0009572E
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000905E3
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00090552
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000905B4
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0009061F
.text C:\WINDOWS\system32\svchost.exe[2348] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00095863
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00097D10
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00097DB7
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00097D78
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00097D55
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00097C84
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00097CA6
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00097D32
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00097CEC
.text C:\WINDOWS\system32\svchost.exe[2348] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00097CC8
.text C:\WINDOWS\system32\svchost.exe[2348] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00091924
.text C:\WINDOWS\system32\svchost.exe[2348] WS2_32.dll!send 719F4C27 5 Bytes JMP 00091958
.text C:\WINDOWS\system32\svchost.exe[2348] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00091975
.text C:\WINDOWS\system32\svchost.exe[2348] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00083909
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000840AE
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00083E67
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0008405A
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00083FC5
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0009572E
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000905E3
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00090552
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000905B4
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0009061F
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!CreateWindowExW 7E3AD0A3 5 Bytes JMP 28003CA0 C:\Program Files\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou)
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00095863
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00091924
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WS2_32.dll!send 719F4C27 5 Bytes JMP 00091958
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00091975
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] ole32.dll!CoInitializeEx 774BEF7B 5 Bytes JMP 28002100 C:\Program Files\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou)
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00083909
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00097D10
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00097DB7
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00097D78
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00097D55
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00097C84
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00097CA6
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00097D32
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00097CEC
.text C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2524] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00097CC8
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
7 mai 2010 à 19:29
7 mai 2010 à 19:29
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000740AE
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00073E67
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0007405A
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00073FC5
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0008572E
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000805E3
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00080552
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000805B4
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0008061F
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00085863
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00081924
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WS2_32.dll!send 719F4C27 5 Bytes JMP 00081958
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00081975
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00087D10
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00087DB7
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00087D78
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00087D55
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00087C84
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00087CA6
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00087D32
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00087CEC
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00087CC8
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00073909
.text C:\WINDOWS\system32\dllhost.exe[3312] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000840AE
.text C:\WINDOWS\system32\dllhost.exe[3312] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00083E67
.text C:\WINDOWS\system32\dllhost.exe[3312] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0008405A
.text C:\WINDOWS\system32\dllhost.exe[3312] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00083FC5
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0009572E
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000905E3
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00090552
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000905B4
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0009061F
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00095863
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00097D10
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00097DB7
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00097D78
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00097D55
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00097C84
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00097CA6
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00097D32
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00097CEC
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00097CC8
.text C:\WINDOWS\system32\dllhost.exe[3312] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00091924
.text C:\WINDOWS\system32\dllhost.exe[3312] WS2_32.dll!send 719F4C27 5 Bytes JMP 00091958
.text C:\WINDOWS\system32\dllhost.exe[3312] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00091975
.text C:\WINDOWS\system32\dllhost.exe[3312] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00083909
.text C:\WINDOWS\System32\svchost.exe[3408] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000840AE
.text C:\WINDOWS\System32\svchost.exe[3408] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00083E67
.text C:\WINDOWS\System32\svchost.exe[3408] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0008405A
.text C:\WINDOWS\System32\svchost.exe[3408] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00083FC5
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0009572E
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000905E3
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00090552
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000905B4
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0009061F
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00095863
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00097D10
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00097DB7
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00097D78
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00097D55
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00073E67
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0007405A
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00073FC5
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0008572E
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000805E3
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00080552
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000805B4
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0008061F
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00085863
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00081924
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WS2_32.dll!send 719F4C27 5 Bytes JMP 00081958
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00081975
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00087D10
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00087DB7
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00087D78
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00087D55
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00087C84
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00087CA6
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00087D32
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00087CEC
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00087CC8
.text C:\WINDOWS\ehome\mcrdsvc.exe[2544] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00073909
.text C:\WINDOWS\system32\dllhost.exe[3312] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000840AE
.text C:\WINDOWS\system32\dllhost.exe[3312] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00083E67
.text C:\WINDOWS\system32\dllhost.exe[3312] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0008405A
.text C:\WINDOWS\system32\dllhost.exe[3312] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00083FC5
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0009572E
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000905E3
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00090552
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000905B4
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0009061F
.text C:\WINDOWS\system32\dllhost.exe[3312] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00095863
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00097D10
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00097DB7
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00097D78
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00097D55
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00097C84
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00097CA6
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00097D32
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00097CEC
.text C:\WINDOWS\system32\dllhost.exe[3312] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00097CC8
.text C:\WINDOWS\system32\dllhost.exe[3312] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00091924
.text C:\WINDOWS\system32\dllhost.exe[3312] WS2_32.dll!send 719F4C27 5 Bytes JMP 00091958
.text C:\WINDOWS\system32\dllhost.exe[3312] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00091975
.text C:\WINDOWS\system32\dllhost.exe[3312] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00083909
.text C:\WINDOWS\System32\svchost.exe[3408] ntdll.dll!NtCreateFile 7C91D0AE 5 Bytes JMP 000840AE
.text C:\WINDOWS\System32\svchost.exe[3408] ntdll.dll!NtCreateThread 7C91D1AE 5 Bytes JMP 00083E67
.text C:\WINDOWS\System32\svchost.exe[3408] ntdll.dll!NtQueryDirectoryFile 7C91D76E 5 Bytes JMP 0008405A
.text C:\WINDOWS\System32\svchost.exe[3408] ntdll.dll!LdrLoadDll 7C9263C3 5 Bytes JMP 00083FC5
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!TranslateMessage 7E398BF6 5 Bytes JMP 0009572E
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!DefWindowProcW 7E3A8D20 5 Bytes JMP 000905E3
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!BeginPaint 7E3A8FE9 5 Bytes JMP 00090552
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!EndPaint 7E3A8FFD 5 Bytes JMP 000905B4
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!DefWindowProcA 7E3AC17E 5 Bytes JMP 0009061F
.text C:\WINDOWS\System32\svchost.exe[3408] USER32.dll!GetClipboardData 7E3B0DBA 5 Bytes JMP 00095863
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!InternetReadFile 404B654B 5 Bytes JMP 00097D10
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!HttpQueryInfoA 404B878D 5 Bytes JMP 00097DB7
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!InternetCloseHandle 404B9088 5 Bytes JMP 00097D78
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!InternetQueryDataAvailable 404BBF7F 5 Bytes JMP 00097D55
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
7 mai 2010 à 19:30
7 mai 2010 à 19:30
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!HttpSendRequestW 404BFABE 5 Bytes JMP 00097C84
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00097CA6
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00097D32
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00097CEC
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00097CC8
.text C:\WINDOWS\System32\svchost.exe[3408] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00091924
.text C:\WINDOWS\System32\svchost.exe[3408] WS2_32.dll!send 719F4C27 5 Bytes JMP 00091958
.text C:\WINDOWS\System32\svchost.exe[3408] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00091975
.text C:\WINDOWS\System32\svchost.exe[3408] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00083909
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Fastfat \Fat EB1F2D20
Device \FileSystem\Fastfat \Fat EB202428
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
Device -> \Driver\atapi \Device\Harddisk0\DR0 85A8EEE4
---- Files - GMER 1.0.15 ----
File C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\UP9IJF7W\AdServerServletCA1TQ71P.htm 2764 bytes
File C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\UP9IJF7W\AdServerServletCA5BJI03.htm 2091 bytes
File C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\UP9IJF7W\AdServerServletCA6L53BK.htm 1344 bytes
File C:\My old Disk Structure -- 07-02-23 0535PM\Documents and Settings\abu wa umm outhman\Local Settings\Application Data\Microsoft\Messenger\joelle_bobigny@hotmail.fr\SharingMetadata\oum-ishaac@hotmail.fr\DFSR\Staging\CS{C23273BF-282D-D8FF-59AF-32670D8B5BA2}\01\10-{C23273BF-282D-D8FF-59AF-32670D8B5BA2}-v1-{5E13F5D7-115F-442F-883E-FAD33DE32810}-v10-Downloaded.frx 112 bytes
File C:\WINDOWS\system32\DRIVERS\tcpip.sys suspicious modification
File C:\WINDOWS\system32\drivers\atapi.sys suspicious modification
---- EOF - GMER 1.0.15 ----
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!HttpSendRequestA 404CEE89 5 Bytes JMP 00097CA6
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!InternetReadFileExA 404D3381 5 Bytes JMP 00097D32
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!HttpSendRequestExA 4052A70A 5 Bytes JMP 00097CEC
.text C:\WINDOWS\System32\svchost.exe[3408] WININET.dll!HttpSendRequestExW 4052A763 5 Bytes JMP 00097CC8
.text C:\WINDOWS\System32\svchost.exe[3408] WS2_32.dll!closesocket 719F3E2B 5 Bytes JMP 00091924
.text C:\WINDOWS\System32\svchost.exe[3408] WS2_32.dll!send 719F4C27 5 Bytes JMP 00091958
.text C:\WINDOWS\System32\svchost.exe[3408] WS2_32.dll!WSASend 719F68FA 5 Bytes JMP 00091975
.text C:\WINDOWS\System32\svchost.exe[3408] CRYPT32.dll!PFXImportCertStore 77A4FF8F 5 Bytes JMP 00083909
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Fastfat \Fat EB1F2D20
Device \FileSystem\Fastfat \Fat EB202428
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
Device -> \Driver\atapi \Device\Harddisk0\DR0 85A8EEE4
---- Files - GMER 1.0.15 ----
File C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\UP9IJF7W\AdServerServletCA1TQ71P.htm 2764 bytes
File C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\UP9IJF7W\AdServerServletCA5BJI03.htm 2091 bytes
File C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\UP9IJF7W\AdServerServletCA6L53BK.htm 1344 bytes
File C:\My old Disk Structure -- 07-02-23 0535PM\Documents and Settings\abu wa umm outhman\Local Settings\Application Data\Microsoft\Messenger\joelle_bobigny@hotmail.fr\SharingMetadata\oum-ishaac@hotmail.fr\DFSR\Staging\CS{C23273BF-282D-D8FF-59AF-32670D8B5BA2}\01\10-{C23273BF-282D-D8FF-59AF-32670D8B5BA2}-v1-{5E13F5D7-115F-442F-883E-FAD33DE32810}-v10-Downloaded.frx 112 bytes
File C:\WINDOWS\system32\DRIVERS\tcpip.sys suspicious modification
File C:\WINDOWS\system32\drivers\atapi.sys suspicious modification
---- EOF - GMER 1.0.15 ----
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
7 mai 2010 à 19:31
7 mai 2010 à 19:31
Bonjour
désolé jai du le couper en plusieurs parties je comprends que cela puisse etre illisible ou difficilement si je peux l'envoyer sous un autre format
dites le moi
Merci
désolé jai du le couper en plusieurs parties je comprends que cela puisse etre illisible ou difficilement si je peux l'envoyer sous un autre format
dites le moi
Merci
Utilisateur anonyme
Modifié par gen-hackman le 7/05/2010 à 19:56
Modifié par gen-hackman le 7/05/2010 à 19:56
___________________________________________________
=>/!\Le script qui suit a été écrit spécialement cet ordinateur/!\ <=
=>il est fort déconseillé de le transposer sur un autre ordinateur !<=
---------------------------------------------------------------------------
Toujours avec toutes les protections désactivées, fais ceci :
? Ouvre le bloc-notes (Menu démarrer --> programmes --> accessoires --> bloc-notes)
? Copie/colle dans le bloc-notes ce qui entre les lignes ci dessous (sans les lignes) :
----------------------------------------------------------
KillAll::
MBR::
TDL::
C:\Windows\System32\Drivers\tcpip.sys
C:\Windows\system32\drivers\atapi.sys
SkipFix::
------------------------------------------------------------------
? Enregistre ce fichier sur ton Bureau (et pas ailleurs !) sous le nom CFScript.txt
? Quitte le Bloc Notes
? Fais un glisser/déposer de ce fichier CFScript sur le fichier combofix
? Patiente le temps du scan. Le Bureau va disparaître à plusieurs reprises : c'est normal ! Ne touche à rien tant que le scan n'est pas terminé.
? Une fois le scan achevé, un rapport va s'afficher: poste son contenu.
? Si le fichier ne s'ouvre pas, il se trouve ici => C:\ComboFix.txt
?G3?-?@¢??@?(TM)©®?
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
8 mai 2010 à 00:54
8 mai 2010 à 00:54
je l'ai fais mais rien ne se passe
( je n'arrive toujours pas a ouvrir certains programme dont combofix par exemple)
( je n'arrive toujours pas a ouvrir certains programme dont combofix par exemple)
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
8 mai 2010 à 18:35
8 mai 2010 à 18:35
oui oui c'est ce que jai fais
Utilisateur anonyme
8 mai 2010 à 18:40
8 mai 2010 à 18:40
on va la jouer au vice :
reessaie avec juste ceci :
KillAll::
TDL::
C:\Windows\System32\Drivers\tcpip.sys
C:\Windows\system32\drivers\atapi.sys
reessaie avec juste ceci :
KillAll::
TDL::
C:\Windows\System32\Drivers\tcpip.sys
C:\Windows\system32\drivers\atapi.sys
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
9 mai 2010 à 00:48
9 mai 2010 à 00:48
ca ne marche toujours pas
c'est peut etre du au fait que le programme ne s'ouvre pas en temps normal nan?
c'est peut etre du au fait que le programme ne s'ouvre pas en temps normal nan?
Utilisateur anonyme
9 mai 2010 à 04:38
9 mai 2010 à 04:38
Télécharge SF.exe de C_XX
*Double clique sur SF.exe (Exécuter en tant qu'administrateur pour Vista/7) .
*Une fenêtre "cmd" va s'ouvrir .
*Tape atapi.sys et dans cette fenêtre et [Entrée].
*Patiente pendant la recherche.
*Une fenêtre avec un log.txt va s'afficher.
*Copie/colle ce rapport dans ta prochaine réponse.
fais de meme avec tcpip.sys
*Double clique sur SF.exe (Exécuter en tant qu'administrateur pour Vista/7) .
*Une fenêtre "cmd" va s'ouvrir .
*Tape atapi.sys et dans cette fenêtre et [Entrée].
*Patiente pendant la recherche.
*Une fenêtre avec un log.txt va s'afficher.
*Copie/colle ce rapport dans ta prochaine réponse.
fais de meme avec tcpip.sys
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
9 mai 2010 à 19:07
9 mai 2010 à 19:07
Salut
c'est toujours la meme histoire
windows ne peut pas ouvrir ce fichier et me demande soit
de selectionner le programme parmis une liste
ou d'utiliser le service web
pareil en mode sans echec
c'est toujours la meme histoire
windows ne peut pas ouvrir ce fichier et me demande soit
de selectionner le programme parmis une liste
ou d'utiliser le service web
pareil en mode sans echec
Utilisateur anonyme
9 mai 2010 à 20:22
9 mai 2010 à 20:22
ok dezippe ceci et execute-le par double clic
http://sd-1.archive-host.com/membres/up/829108531491024/Temp_Tools/Find.zip
http://sd-1.archive-host.com/membres/up/829108531491024/Temp_Tools/Find.zip
soulysilak
Messages postés
52
Date d'inscription
jeudi 29 avril 2010
Statut
Membre
Dernière intervention
10 mai 2010
10 mai 2010 à 17:46
10 mai 2010 à 17:46
Salut
J'ai dézippé et jai trouvé deux fichiers
le premier c'est un fichier EXE CHK-drv qui ne s'ouvre pas
et le deuxieme c'est un raccourci vers le programme cela donne a une fenetre noire il y a des ecritures et rien ne se passe
donc voila
mais bon laissé tomber car je déménage aujourdhui et dans mon prochain logement j'aurai une autre unité centrale donc fini antimalware doctor
Je tiens a vous remercier pour votre patience et surtout pour votre aide
juste une question vous pouvez me dire ce qu'il en ressort de toutes les analyses faites?
et avez vous un anti virus a me conseiller?et si vous avez des conseils je suis preneur
MERCI ENCORE!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
J'ai dézippé et jai trouvé deux fichiers
le premier c'est un fichier EXE CHK-drv qui ne s'ouvre pas
et le deuxieme c'est un raccourci vers le programme cela donne a une fenetre noire il y a des ecritures et rien ne se passe
donc voila
mais bon laissé tomber car je déménage aujourdhui et dans mon prochain logement j'aurai une autre unité centrale donc fini antimalware doctor
Je tiens a vous remercier pour votre patience et surtout pour votre aide
juste une question vous pouvez me dire ce qu'il en ressort de toutes les analyses faites?
et avez vous un anti virus a me conseiller?et si vous avez des conseils je suis preneur
MERCI ENCORE!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
Utilisateur anonyme
10 mai 2010 à 17:56
10 mai 2010 à 17:56
je ne comprends pas comment tu as pu trouver deux fichiers alors qu'il n y en a qu un