PB PHYSICALDRIVE0
Fermé
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
-
31 mars 2011 à 22:13
bonikik Messages postés 12 Date d'inscription jeudi 31 mars 2011 Statut Membre Dernière intervention 5 avril 2011 - 5 avril 2011 à 17:29
bonikik Messages postés 12 Date d'inscription jeudi 31 mars 2011 Statut Membre Dernière intervention 5 avril 2011 - 5 avril 2011 à 17:29
9 réponses
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
31 mars 2011 à 22:15
31 mars 2011 à 22:15
Salut,
Bienvenue.
Voici la procédure à suivre.
Prière de lire attentivement les instructions pour les suivre correctement.
Bien poster les rapports comme demandés afin de pouvoir les analyser.
ETAPE 1 :
Passe un coup de TDSSKiller : https://forum.malekal.com/viewtopic.php?t=28637&start=
Poste le rapport ici.
ETAPE 2 :
Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour, fais un scan rapide, supprime tout et poste le rapport ici.
!!! Malwarebyte doit être à jour avant de faire le scan !!!
ETAPE 3 :
Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/
* Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
(Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)
* Lance OTL
* Sous Peronnalisation, copie-colle ce qu'il y a dans le cadre ci-dessous :
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%temp%\.exe /s
%SYSTEMDRIVE%\*.exe
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
/md5start
explorer.exe
winlogon.exe
wininit.exe
/md5stop
CREATERESTOREPOINT
nslookup www.google.fr /c
* Clique sur le bouton Analyse.
* Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer les rapports.
Donnes le liens pjjoint ici ensuite pour pouvoir être consultés.
Bienvenue.
Voici la procédure à suivre.
Prière de lire attentivement les instructions pour les suivre correctement.
Bien poster les rapports comme demandés afin de pouvoir les analyser.
ETAPE 1 :
Passe un coup de TDSSKiller : https://forum.malekal.com/viewtopic.php?t=28637&start=
Poste le rapport ici.
ETAPE 2 :
Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour, fais un scan rapide, supprime tout et poste le rapport ici.
!!! Malwarebyte doit être à jour avant de faire le scan !!!
ETAPE 3 :
Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/
* Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
(Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)
* Lance OTL
* Sous Peronnalisation, copie-colle ce qu'il y a dans le cadre ci-dessous :
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%temp%\.exe /s
%SYSTEMDRIVE%\*.exe
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
/md5start
explorer.exe
winlogon.exe
wininit.exe
/md5stop
CREATERESTOREPOINT
nslookup www.google.fr /c
* Clique sur le bouton Analyse.
* Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer les rapports.
Donnes le liens pjjoint ici ensuite pour pouvoir être consultés.
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
31 mars 2011 à 23:07
31 mars 2011 à 23:07
je les poste où les rapports?? ;(
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
31 mars 2011 à 23:12
31 mars 2011 à 23:12
tu postes les rapports et les liens des rapports ici.
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
31 mars 2011 à 23:15
31 mars 2011 à 23:15
2011/03/31 22:23:35.0807 0468 TDSS rootkit removing tool 2.4.21.0 Mar 10 2011 12:26:28
2011/03/31 22:23:37.0731 0468 ================================================================================
2011/03/31 22:23:37.0731 0468 SystemInfo:
2011/03/31 22:23:37.0731 0468
2011/03/31 22:23:37.0731 0468 OS Version: 6.0.6001 ServicePack: 1.0
2011/03/31 22:23:37.0731 0468 Product type: Workstation
2011/03/31 22:23:37.0732 0468 ComputerName: KIKI
2011/03/31 22:23:37.0733 0468 UserName: boul
2011/03/31 22:23:37.0733 0468 Windows directory: C:\Windows
2011/03/31 22:23:37.0733 0468 System windows directory: C:\Windows
2011/03/31 22:23:37.0733 0468 Processor architecture: Intel x86
2011/03/31 22:23:37.0733 0468 Number of processors: 2
2011/03/31 22:23:37.0733 0468 Page size: 0x1000
2011/03/31 22:23:37.0733 0468 Boot type: Normal boot
2011/03/31 22:23:37.0733 0468 ================================================================================
2011/03/31 22:23:38.0670 0468 Initialize success
2011/03/31 22:23:41.0185 7152 ================================================================================
2011/03/31 22:23:41.0185 7152 Scan started
2011/03/31 22:23:41.0185 7152 Mode: Manual;
2011/03/31 22:23:41.0185 7152 ================================================================================
2011/03/31 22:23:43.0638 7152 ACPI (fcb8c7210f0135e24c6580f7f649c73c) C:\Windows\system32\drivers\acpi.sys
2011/03/31 22:23:43.0776 7152 adp94xx (2edc5bbac6c651ece337bde8ed97c9fb) C:\Windows\system32\drivers\adp94xx.sys
2011/03/31 22:23:43.0899 7152 adpahci (b84088ca3cdca97da44a984c6ce1ccad) C:\Windows\system32\drivers\adpahci.sys
2011/03/31 22:23:43.0993 7152 adpu160m (7880c67bccc27c86fd05aa2afb5ea469) C:\Windows\system32\drivers\adpu160m.sys
2011/03/31 22:23:44.0222 7152 adpu320 (9ae713f8e30efc2abccd84904333df4d) C:\Windows\system32\drivers\adpu320.sys
2011/03/31 22:23:44.0566 7152 AFD (763e172a55177e478cb419f88fd0ba03) C:\Windows\system32\drivers\afd.sys
2011/03/31 22:23:44.0755 7152 agp440 (ef23439cdd587f64c2c1b8825cead7d8) C:\Windows\system32\drivers\agp440.sys
2011/03/31 22:23:44.0832 7152 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
2011/03/31 22:23:44.0996 7152 aliide (90395b64600ebb4552e26e178c94b2e4) C:\Windows\system32\drivers\aliide.sys
2011/03/31 22:23:45.0275 7152 amdagp (2b13e304c9dfdfa5eb582f6a149fa2c7) C:\Windows\system32\drivers\amdagp.sys
2011/03/31 22:23:45.0342 7152 amdide (0577df1d323fe75a739c787893d300ea) C:\Windows\system32\drivers\amdide.sys
2011/03/31 22:23:45.0402 7152 AmdK7 (dc487885bcef9f28eece6fac0e5ddfc5) C:\Windows\system32\drivers\amdk7.sys
2011/03/31 22:23:45.0482 7152 AmdK8 (0ca0071da4315b00fc1328ca86b425da) C:\Windows\system32\drivers\amdk8.sys
2011/03/31 22:23:45.0545 7152 arc (5f673180268bb1fdb69c99b6619fe379) C:\Windows\system32\drivers\arc.sys
2011/03/31 22:23:45.0607 7152 arcsas (957f7540b5e7f602e44648c7de5a1c05) C:\Windows\system32\drivers\arcsas.sys
2011/03/31 22:23:45.0724 7152 aswFsBlk (1c2e6bb4fe8621b1b863855b02bc33eb) C:\Windows\system32\drivers\aswFsBlk.sys
2011/03/31 22:23:45.0921 7152 aswMonFlt (b0f137f664f10829cd2380b0e20e7c29) C:\Windows\system32\drivers\aswMonFlt.sys
2011/03/31 22:23:45.0980 7152 aswRdr (b6a9373619d851be80fb5f1b5eed0d4e) C:\Windows\system32\drivers\aswRdr.sys
2011/03/31 22:23:46.0097 7152 aswSnx (9be41c1ae8bc481eb662d85c98d979c2) C:\Windows\system32\drivers\aswSnx.sys
2011/03/31 22:23:46.0158 7152 aswSP (4b1a54ba2bc5873a774df6b70ab8b0b3) C:\Windows\system32\drivers\aswSP.sys
2011/03/31 22:23:46.0254 7152 aswTdi (c7f1cea32766184911293f4e1ee653f5) C:\Windows\system32\drivers\aswTdi.sys
2011/03/31 22:23:46.0306 7152 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
2011/03/31 22:23:46.0370 7152 atapi (2d9c903dc76a66813d350a562de40ed9) C:\Windows\system32\drivers\atapi.sys
2011/03/31 22:23:46.0465 7152 athsgt (187c905e157d791a3a404eadf8fae754) C:\Windows\system32\DRIVERS\athsgt.sys
2011/03/31 22:23:46.0701 7152 atksgt (3c4b9850a2631c2263507400d029057b) C:\Windows\system32\DRIVERS\atksgt.sys
2011/03/31 22:23:46.0986 7152 AVG Anti-Rootkit (e8054a423e5d2bdae6062bab6da159c4) C:\Windows\system32\DRIVERS\avgarkt.sys
2011/03/31 22:23:47.0133 7152 AvgArCln (ec08d1625f5c6cf2a57b79eb35186f8c) C:\Windows\system32\DRIVERS\AvgArCln.sys
2011/03/31 22:23:47.0245 7152 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
2011/03/31 22:23:47.0532 7152 bowser (74b442b2be1260b7588c136177ceac66) C:\Windows\system32\DRIVERS\bowser.sys
2011/03/31 22:23:47.0571 7152 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
2011/03/31 22:23:47.0614 7152 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
2011/03/31 22:23:47.0692 7152 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
2011/03/31 22:23:47.0776 7152 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
2011/03/31 22:23:47.0840 7152 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
2011/03/31 22:23:47.0920 7152 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
2011/03/31 22:23:47.0973 7152 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
2011/03/31 22:23:48.0061 7152 CamDrL (0f5ca31bb3fdb5c1e63c170cfbecc93b) C:\Windows\system32\DRIVERS\Camdrl.sys
2011/03/31 22:23:48.0150 7152 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
2011/03/31 22:23:48.0199 7152 cdrom (1ec25cea0de6ac4718bf89f9e1778b57) C:\Windows\system32\DRIVERS\cdrom.sys
2011/03/31 22:23:48.0277 7152 circlass (da8e0afc7baa226c538ef53ac2f90897) C:\Windows\system32\drivers\circlass.sys
2011/03/31 22:23:48.0344 7152 CLFS (465745561c832b29f7c48b488aab3842) C:\Windows\system32\CLFS.sys
2011/03/31 22:23:48.0462 7152 cmdide (45201046c776ffdaf3fc8a0029c581c8) C:\Windows\system32\drivers\cmdide.sys
2011/03/31 22:23:48.0522 7152 Compbatt (82b8c91d327cfecf76cb58716f7d4997) C:\Windows\system32\drivers\compbatt.sys
2011/03/31 22:23:48.0628 7152 crcdisk (2a213ae086bbec5e937553c7d9a2b22c) C:\Windows\system32\drivers\crcdisk.sys
2011/03/31 22:23:48.0688 7152 Crusoe (22a7f883508176489f559ee745b5bf5d) C:\Windows\system32\drivers\crusoe.sys
2011/03/31 22:23:48.0817 7152 DfsC (9e635ae5e8ad93e2b5989e2e23679f97) C:\Windows\system32\Drivers\dfsc.sys
2011/03/31 22:23:48.0911 7152 disk (64109e623abd6955c8fb110b592e68b7) C:\Windows\system32\drivers\disk.sys
2011/03/31 22:23:49.0087 7152 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
2011/03/31 22:23:49.0185 7152 DXGKrnl (85f33880b8cfb554bd3d9ccdb486845a) C:\Windows\System32\drivers\dxgkrnl.sys
2011/03/31 22:23:49.0264 7152 E1G60 (f88fb26547fd2ce6d0a5af2985892c48) C:\Windows\system32\DRIVERS\E1G60I32.sys
2011/03/31 22:23:49.0406 7152 Ecache (dd2cd259d83d8b72c02c5f2331ff9d68) C:\Windows\system32\drivers\ecache.sys
2011/03/31 22:23:49.0537 7152 ElbyCDFL (ce37e3d51912e59c80c6d84337c0b4cd) C:\Windows\system32\Drivers\ElbyCDFL.sys
2011/03/31 22:23:49.0623 7152 ElbyCDIO (aaa8999a169e39fb8b48ae49cd6ac30a) C:\Windows\system32\Drivers\ElbyCDIO.sys
2011/03/31 22:23:49.0677 7152 elxstor (e8f3f21a71720c84bcf423b80028359f) C:\Windows\system32\drivers\elxstor.sys
2011/03/31 22:23:49.0826 7152 exfat (0d858eb20589a34efb25695acaa6aa2d) C:\Windows\system32\drivers\exfat.sys
2011/03/31 22:23:49.0887 7152 fastfat (3c489390c2e2064563727752af8eab9e) C:\Windows\system32\drivers\fastfat.sys
2011/03/31 22:23:49.0955 7152 fdc (63bdada84951b9c03e641800e176898a) C:\Windows\system32\DRIVERS\fdc.sys
2011/03/31 22:23:50.0053 7152 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
2011/03/31 22:23:50.0105 7152 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
2011/03/31 22:23:50.0160 7152 flpydisk (6603957eff5ec62d25075ea8ac27de68) C:\Windows\system32\DRIVERS\flpydisk.sys
2011/03/31 22:23:50.0228 7152 FltMgr (05ea53afe985443011e36dab07343b46) C:\Windows\system32\drivers\fltmgr.sys
2011/03/31 22:23:50.0320 7152 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
2011/03/31 22:23:50.0390 7152 gagp30kx (4e1cd0a45c50a8882616cae5bf82f3c5) C:\Windows\system32\drivers\gagp30kx.sys
2011/03/31 22:23:50.0478 7152 GEARAspiWDM (f2f431d1573ee632975c524418655b84) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
2011/03/31 22:23:50.0633 7152 HDAudBus (c87b1ee051c0464491c1a7b03fa0bc99) C:\Windows\system32\DRIVERS\HDAudBus.sys
2011/03/31 22:23:50.0697 7152 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
2011/03/31 22:23:50.0801 7152 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
2011/03/31 22:23:50.0936 7152 HidUsb (854ca287ab7faf949617a788306d967e) C:\Windows\system32\DRIVERS\hidusb.sys
2011/03/31 22:23:51.0021 7152 HpCISSs (df353b401001246853763c4b7aaa6f50) C:\Windows\system32\drivers\hpcisss.sys
2011/03/31 22:23:51.0119 7152 HTTP (96e241624c71211a79c84f50a8e71cab) C:\Windows\system32\drivers\HTTP.sys
2011/03/31 22:23:51.0185 7152 i2omp (324c2152ff2c61abae92d09f3cca4d63) C:\Windows\system32\drivers\i2omp.sys
2011/03/31 22:23:51.0252 7152 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
2011/03/31 22:23:51.0330 7152 iaStorV (c957bf4b5d80b46c5017bf0101e6c906) C:\Windows\system32\drivers\iastorv.sys
2011/03/31 22:23:51.0473 7152 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
2011/03/31 22:23:51.0646 7152 IntcAzAudAddService (5d854cbac8b7b4b964406f9808c95fae) C:\Windows\system32\drivers\RTKVHDA.sys
2011/03/31 22:23:51.0751 7152 intelide (97469037714070e45194ed318d636401) C:\Windows\system32\drivers\intelide.sys
2011/03/31 22:23:51.0812 7152 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
2011/03/31 22:23:51.0895 7152 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
2011/03/31 22:23:52.0052 7152 IPMIDRV (40f34f8aba2a015d780e4b09138b6c17) C:\Windows\system32\drivers\ipmidrv.sys
2011/03/31 22:23:52.0157 7152 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
2011/03/31 22:23:52.0217 7152 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
2011/03/31 22:23:52.0317 7152 isapnp (350fca7e73cf65bcef43fae1e4e91293) C:\Windows\system32\drivers\isapnp.sys
2011/03/31 22:23:52.0392 7152 iScsiPrt (f247eec28317f6c739c16de420097301) C:\Windows\system32\DRIVERS\msiscsi.sys
2011/03/31 22:23:52.0506 7152 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
2011/03/31 22:23:52.0574 7152 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
2011/03/31 22:23:52.0645 7152 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
2011/03/31 22:23:52.0769 7152 kbdhid (18247836959ba67e3511b62846b9c2e0) C:\Windows\system32\DRIVERS\kbdhid.sys
2011/03/31 22:23:52.0878 7152 KSecDD (7a0cf7908b6824d6a2a1d313e5ae3dca) C:\Windows\system32\Drivers\ksecdd.sys
2011/03/31 22:23:53.0024 7152 limsgt (6ac289ab3de19bee4868666ea3eef34b) C:\Windows\system32\DRIVERS\limsgt.sys
2011/03/31 22:23:53.0124 7152 lirsgt (4127e8b6ddb4090e815c1f8852c277d3) C:\Windows\system32\DRIVERS\lirsgt.sys
2011/03/31 22:23:53.0236 7152 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
2011/03/31 22:23:53.0387 7152 LSI_FC (a2262fb9f28935e862b4db46438c80d2) C:\Windows\system32\drivers\lsi_fc.sys
2011/03/31 22:23:53.0456 7152 LSI_SAS (30d73327d390f72a62f32c103daf1d6d) C:\Windows\system32\drivers\lsi_sas.sys
2011/03/31 22:23:53.0573 7152 LSI_SCSI (e1e36fefd45849a95f1ab81de0159fe3) C:\Windows\system32\drivers\lsi_scsi.sys
2011/03/31 22:23:53.0652 7152 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
2011/03/31 22:23:53.0799 7152 LVcKap (fb548ff809634bfa866312b37d8a18ae) C:\Windows\system32\DRIVERS\LVcKap.sys
2011/03/31 22:23:54.0012 7152 LVMVDrv (fe3fb994f8702d9e37648927819b74b8) C:\Windows\system32\DRIVERS\LVMVDrv.sys
2011/03/31 22:23:54.0165 7152 LVPr2Mon (c7ea51f1ab10b0b2b443f4d5589fc1a5) C:\Windows\system32\DRIVERS\LVPr2Mon.sys
2011/03/31 22:23:54.0283 7152 LVUSBSta (caef4c05ba2c1acad4ebcaa4261cd55d) C:\Windows\system32\drivers\LVUSBSta.sys
2011/03/31 22:23:54.0391 7152 megasas (d153b14fc6598eae8422a2037553adce) C:\Windows\system32\drivers\megasas.sys
2011/03/31 22:23:54.0507 7152 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
2011/03/31 22:23:54.0578 7152 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
2011/03/31 22:23:54.0699 7152 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
2011/03/31 22:23:54.0769 7152 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
2011/03/31 22:23:54.0911 7152 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
2011/03/31 22:23:55.0003 7152 mpio (583a41f26278d9e0ea548163d6139397) C:\Windows\system32\drivers\mpio.sys
2011/03/31 22:23:55.0077 7152 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
2011/03/31 22:23:55.0232 7152 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
2011/03/31 22:23:55.0396 7152 MRxDAV (ae3de84536b6799d2267443cec8edbb9) C:\Windows\system32\drivers\mrxdav.sys
2011/03/31 22:23:55.0525 7152 mrxsmb (7afc42e60432fd1014f5342f2b1b1f74) C:\Windows\system32\DRIVERS\mrxsmb.sys
2011/03/31 22:23:55.0741 7152 mrxsmb10 (8a75752ae17924f65452746674b14b78) C:\Windows\system32\DRIVERS\mrxsmb10.sys
2011/03/31 22:23:55.0828 7152 mrxsmb20 (f4d0f3252e651f02be64984ffa738394) C:\Windows\system32\DRIVERS\mrxsmb20.sys
2011/03/31 22:23:55.0941 7152 msahci (742aed7939e734c36b7e8d6228ce26b7) C:\Windows\system32\drivers\msahci.sys
2011/03/31 22:23:55.0993 7152 msdsm (3fc82a2ae4cc149165a94699183d3028) C:\Windows\system32\drivers\msdsm.sys
2011/03/31 22:23:56.0165 7152 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
2011/03/31 22:23:56.0226 7152 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
2011/03/31 22:23:56.0315 7152 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
2011/03/31 22:23:56.0383 7152 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
2011/03/31 22:23:56.0467 7152 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
2011/03/31 22:23:56.0535 7152 MsRPC (b5614aecb05a9340aa0fb55bf561cc63) C:\Windows\system32\drivers\MsRPC.sys
2011/03/31 22:23:56.0626 7152 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
2011/03/31 22:23:56.0707 7152 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
2011/03/31 22:23:56.0764 7152 Mup (6dfd1d322de55b0b7db7d21b90bec49c) C:\Windows\system32\Drivers\mup.sys
2011/03/31 22:23:56.0835 7152 NativeWifiP (3c21ce48ff529bb73dadb98770b54025) C:\Windows\system32\DRIVERS\nwifi.sys
2011/03/31 22:23:56.0923 7152 NDIS (9bdc71790fa08f0a0b5f10462b1bd0b1) C:\Windows\system32\drivers\ndis.sys
2011/03/31 22:23:57.0034 7152 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
2011/03/31 22:23:57.0133 7152 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
2011/03/31 22:23:57.0194 7152 NdisWan (3d14c3b3496f88890d431e8aa022a411) C:\Windows\system32\DRIVERS\ndiswan.sys
2011/03/31 22:23:57.0315 7152 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
2011/03/31 22:23:57.0369 7152 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
2011/03/31 22:23:57.0436 7152 netbt (7c5fee5b1c5728507cd96fb4a13e7a02) C:\Windows\system32\DRIVERS\netbt.sys
2011/03/31 22:23:57.0600 7152 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
2011/03/31 22:23:57.0725 7152 Npfs (ecb5003f484f9ed6c608d6d6c7886cbb) C:\Windows\system32\drivers\Npfs.sys
2011/03/31 22:23:57.0814 7152 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
2011/03/31 22:23:57.0932 7152 Ntfs (b4effe29eb4f15538fd8a9681108492d) C:\Windows\system32\drivers\Ntfs.sys
2011/03/31 22:23:58.0105 7152 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
2011/03/31 22:23:58.0222 7152 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
2011/03/31 22:23:58.0584 7152 nvlddmkm (377140a534d013bd661c69f1741de43c) C:\Windows\system32\DRIVERS\nvlddmkm.sys
2011/03/31 22:23:59.0000 7152 nvraid (e69e946f80c1c31c53003bfbf50cbb7c) C:\Windows\system32\drivers\nvraid.sys
2011/03/31 22:23:59.0047 7152 nvstor (9e0ba19a28c498a6d323d065db76dffc) C:\Windows\system32\drivers\nvstor.sys
2011/03/31 22:23:59.0120 7152 nv_agp (07c186427eb8fcc3d8d7927187f260f7) C:\Windows\system32\drivers\nv_agp.sys
2011/03/31 22:23:59.0427 7152 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys
2011/03/31 22:24:00.0117 7152 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
2011/03/31 22:24:00.0387 7152 partmgr (3b38467e7c3daed009dfe359e17f139f) C:\Windows\system32\drivers\partmgr.sys
2011/03/31 22:24:00.0618 7152 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
2011/03/31 22:24:00.0855 7152 pci (01b94418deb235dff777cc80076354b4) C:\Windows\system32\drivers\pci.sys
2011/03/31 22:24:00.0916 7152 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys
2011/03/31 22:24:00.0985 7152 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
2011/03/31 22:24:01.0055 7152 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\Windows\system32\Drivers\pcouffin.sys
2011/03/31 22:24:01.0162 7152 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
2011/03/31 22:24:01.0481 7152 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
2011/03/31 22:24:01.0561 7152 Processor (0e3cef5d28b40cf273281d620c50700a) C:\Windows\system32\drivers\processr.sys
2011/03/31 22:24:01.0687 7152 PSched (bfef604508a0ed1eae2a73e872555ffb) C:\Windows\system32\DRIVERS\pacer.sys
2011/03/31 22:24:01.0779 7152 PxHelp20 (49452bfcec22f36a7a9b9c2181bc3042) C:\Windows\system32\Drivers\PxHelp20.sys
2011/03/31 22:24:02.0040 7152 ql2300 (ccdac889326317792480c0a67156a1ec) C:\Windows\system32\drivers\ql2300.sys
2011/03/31 22:24:02.0287 7152 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
2011/03/31 22:24:02.0613 7152 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
2011/03/31 22:24:02.0753 7152 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
2011/03/31 22:24:02.0938 7152 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
2011/03/31 22:24:03.0041 7152 RasPppoe (3e9d9b048107b40d87b97df2e48e0744) C:\Windows\system32\DRIVERS\raspppoe.sys
2011/03/31 22:24:03.0135 7152 RasSstp (a7d141684e9500ac928a772ed8e6b671) C:\Windows\system32\DRIVERS\rassstp.sys
2011/03/31 22:24:03.0197 7152 rdbss (6e1c5d0457622f9ee35f683110e93d14) C:\Windows\system32\DRIVERS\rdbss.sys
2011/03/31 22:24:03.0330 7152 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
2011/03/31 22:24:03.0405 7152 rdpdr (e8bd98d46f2ed77132ba927fccb47d8b) C:\Windows\system32\drivers\rdpdr.sys
2011/03/31 22:24:03.0455 7152 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
2011/03/31 22:24:03.0511 7152 RDPWD (e1c18f4097a5abcec941dc4b2f99db7e) C:\Windows\system32\drivers\RDPWD.sys
2011/03/31 22:24:03.0677 7152 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
2011/03/31 22:24:03.0725 7152 RTL8023xp (8de22fb05e4a0f797b1e442eb4b3b51c) C:\Windows\system32\DRIVERS\Rtnicxp.sys
2011/03/31 22:24:03.0823 7152 SASDIFSV (a3281aec37e0720a2bc28034c2df2a56) C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
2011/03/31 22:24:03.0863 7152 SASENUM (7ce61c25c159f50f9eaf6d77fc83fa35) C:\Program Files\SUPERAntiSpyware\SASENUM.SYS
2011/03/31 22:24:03.0924 7152 SASKUTIL (61db0d0756a99506207fd724e3692b25) C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
2011/03/31 22:24:04.0034 7152 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
2011/03/31 22:24:04.0199 7152 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
2011/03/31 22:24:04.0382 7152 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
2011/03/31 22:24:04.0539 7152 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
2011/03/31 22:24:04.0665 7152 sffdisk (103b79418da647736ee95645f305f68a) C:\Windows\system32\drivers\sffdisk.sys
2011/03/31 22:24:04.0717 7152 sffp_mmc (8fd08a310645fe872eeec6e08c6bf3ee) C:\Windows\system32\drivers\sffp_mmc.sys
2011/03/31 22:24:04.0767 7152 sffp_sd (9cfa05fcfcb7124e69cfc812b72f9614) C:\Windows\system32\drivers\sffp_sd.sys
2011/03/31 22:24:04.0829 7152 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
2011/03/31 22:24:05.0163 7152 sisagp (d2a595d6eebeeaf4334f8e50efbc9931) C:\Windows\system32\drivers\sisagp.sys
2011/03/31 22:24:05.0286 7152 SiSRaid2 (cedd6f4e7d84e9f98b34b3fe988373aa) C:\Windows\system32\drivers\sisraid2.sys
2011/03/31 22:24:05.0432 7152 SiSRaid4 (df843c528c4f69d12ce41ce462e973a7) C:\Windows\system32\drivers\sisraid4.sys
2011/03/31 22:24:05.0556 7152 Smb (031e6bcd53c9b2b9ace111eafec347b6) C:\Windows\system32\DRIVERS\smb.sys
2011/03/31 22:24:05.0705 7152 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
2011/03/31 22:24:05.0810 7152 srv (9a0163e7fbe59da0591bb1ad77d92e63) C:\Windows\system32\DRIVERS\srv.sys
2011/03/31 22:24:05.0943 7152 srv2 (c7da26d2c7d480b1dd38ca19cc90b821) C:\Windows\system32\DRIVERS\srv2.sys
2011/03/31 22:24:06.0048 7152 srvnet (f9c65e1e00a6bbf7c57d9b8ea068c525) C:\Windows\system32\DRIVERS\srvnet.sys
2011/03/31 22:24:06.0115 7152 sscdbus (d5dffeaa1e15d4effabb9d9a3068ac5b) C:\Windows\system32\DRIVERS\sscdbus.sys
2011/03/31 22:24:06.0205 7152 sscdmdfl (8a1be0c347814f482f493aea619d57f6) C:\Windows\system32\DRIVERS\sscdmdfl.sys
2011/03/31 22:24:06.0259 7152 sscdmdm (5ab0b1987f682a59b15b78f84c6ad7d0) C:\Windows\system32\DRIVERS\sscdmdm.sys
2011/03/31 22:24:06.0378 7152 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
2011/03/31 22:24:06.0485 7152 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
2011/03/31 22:24:06.0551 7152 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
2011/03/31 22:24:06.0617 7152 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
2011/03/31 22:24:06.0793 7152 Tcpip (782568ab6a43160a159b6215b70bcce9) C:\Windows\system32\drivers\tcpip.sys
2011/03/31 22:24:06.0927 7152 Tcpip6 (782568ab6a43160a159b6215b70bcce9) C:\Windows\system32\DRIVERS\tcpip.sys
2011/03/31 22:24:07.0017 7152 tcpipreg (d4a2e4a4b011f3a883af77315a5ae76b) C:\Windows\system32\drivers\tcpipreg.sys
2011/03/31 22:24:07.0099 7152 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
2011/03/31 22:24:07.0149 7152 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
2011/03/31 22:24:07.0250 7152 tdx (d09276b1fab033ce1d40dcbdf303d10f) C:\Windows\system32\DRIVERS\tdx.sys
2011/03/31 22:24:07.0345 7152 TermDD (a048056f5e1a96a9bf3071b91741a5aa) C:\Windows\system32\DRIVERS\termdd.sys
2011/03/31 22:24:07.0531 7152 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
2011/03/31 22:24:07.0618 7152 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
2011/03/31 22:24:07.0694 7152 tunnel (119b8184e106baedc83fce5ddf3950da) C:\Windows\system32\DRIVERS\tunnel.sys
2011/03/31 22:24:07.0789 7152 uagp35 (c3ade15414120033a36c0f293d4a4121) C:\Windows\system32\drivers\uagp35.sys
2011/03/31 22:24:07.0891 7152 udfs (8b5088058fa1d1cd897a2113ccff6c58) C:\Windows\system32\DRIVERS\udfs.sys
2011/03/31 22:24:08.0017 7152 uliagpkx (75e6890ebfce0841d3291b02e7a8bdb0) C:\Windows\system32\drivers\uliagpkx.sys
2011/03/31 22:24:08.0088 7152 uliahci (3cd4ea35a6221b85dcc25daa46313f8d) C:\Windows\system32\drivers\uliahci.sys
2011/03/31 22:24:08.0165 7152 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
2011/03/31 22:24:08.0268 7152 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
2011/03/31 22:24:08.0367 7152 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
2011/03/31 22:24:08.0533 7152 usbaudio (292a25bb75a568ae2c67169ba2c6365a) C:\Windows\system32\drivers\usbaudio.sys
2011/03/31 22:24:08.0595 7152 usbbus (a901bd3f8e0685bc914c8302e369ef09) C:\Windows\system32\DRIVERS\lgusbbus.sys
2011/03/31 22:24:08.0733 7152 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
2011/03/31 22:24:08.0818 7152 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
2011/03/31 22:24:08.0912 7152 UsbDiag (a5e3fe58b9b13b932dfe0d2a4a417f51) C:\Windows\system32\DRIVERS\lgusbdiag.sys
2011/03/31 22:24:09.0038 7152 usbehci (cebe90821810e76320155beba722fcf9) C:\Windows\system32\DRIVERS\usbehci.sys
2011/03/31 22:24:09.0141 7152 usbhub (cc6b28e4ce39951357963119ce47b143) C:\Windows\system32\DRIVERS\usbhub.sys
2011/03/31 22:24:09.0220 7152 USBModem (320cb67e5505ba561081efeaf07ea31b) C:\Windows\system32\DRIVERS\lgusbmodem.sys
2011/03/31 22:24:09.0302 7152 usbohci (7bdb7b0e7d45ac0402d78b90789ef47c) C:\Windows\system32\DRIVERS\usbohci.sys
2011/03/31 22:24:09.0373 7152 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
2011/03/31 22:24:09.0438 7152 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
2011/03/31 22:24:09.0493 7152 USBSTOR (87ba6b83c5d19b69160968d07d6e2982) C:\Windows\system32\DRIVERS\USBSTOR.SYS
2011/03/31 22:24:09.0564 7152 usbuhci (325dbbacb8a36af9988ccf40eac228cc) C:\Windows\system32\DRIVERS\usbuhci.sys
2011/03/31 22:24:09.0658 7152 USB_RNDIS (d173f7b936c8f579bcc4f78da861929c) C:\Windows\system32\DRIVERS\usb8023.sys
2011/03/31 22:24:10.0084 7152 vga (7d92be0028ecdedec74617009084b5ef) C:\Windows\system32\DRIVERS\vgapnp.sys
2011/03/31 22:24:10.0147 7152 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
2011/03/31 22:24:10.0315 7152 viaagp (045d9961e591cf0674a920b6ba3ba5cb) C:\Windows\system32\drivers\viaagp.sys
2011/03/31 22:24:10.0388 7152 ViaC7 (56a4de5f02f2e88182b0981119b4dd98) C:\Windows\system32\drivers\viac7.sys
2011/03/31 22:24:10.0471 7152 viaide (fd2e3175fcada350c7ab4521dca187ec) C:\Windows\system32\drivers\viaide.sys
2011/03/31 22:24:10.0537 7152 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
2011/03/31 22:24:10.0634 7152 volmgrx (98f5ffe6316bd74e9e2c97206c190196) C:\Windows\system32\drivers\volmgrx.sys
2011/03/31 22:24:10.0747 7152 volsnap (d8b4a53dd2769f226b3eb374374987c9) C:\Windows\system32\drivers\volsnap.sys
2011/03/31 22:24:10.0828 7152 vsmraid (d984439746d42b30fc65a4c3546c6829) C:\Windows\system32\drivers\vsmraid.sys
2011/03/31 22:24:11.0115 7152 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
2011/03/31 22:24:11.0180 7152 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
2011/03/31 22:24:11.0205 7152 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
2011/03/31 22:24:11.0272 7152 wanatw (0a716c08cb13c3a8f4f51e882dbf7416) C:\Windows\system32\DRIVERS\wanatw4.sys
2011/03/31 22:24:11.0402 7152 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
2011/03/31 22:24:11.0522 7152 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
2011/03/31 22:24:11.0881 7152 winusb (f03110711b17ad31271cb2baf0dbb2b1) C:\Windows\system32\DRIVERS\winusb.sys
2011/03/31 22:24:11.0975 7152 WmiAcpi (701a9f884a294327e9141d73746ee279) C:\Windows\system32\drivers\wmiacpi.sys
2011/03/31 22:24:12.0163 7152 WpdUsb (0cec23084b51b8288099eb710224e955) C:\Windows\system32\DRIVERS\wpdusb.sys
2011/03/31 22:24:12.0229 7152 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
2011/03/31 22:24:12.0338 7152 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
2011/03/31 22:24:12.0446 7152 \HardDisk0 - detected Rootkit.Win32.TDSS.tdl4 (0)
2011/03/31 22:24:12.0455 7152 ================================================================================
2011/03/31 22:24:12.0455 7152 Scan finished
2011/03/31 22:24:12.0455 7152 ================================================================================
2011/03/31 22:24:12.0505 7224 Detected object count: 1
2011/03/31 22:23:37.0731 0468 ================================================================================
2011/03/31 22:23:37.0731 0468 SystemInfo:
2011/03/31 22:23:37.0731 0468
2011/03/31 22:23:37.0731 0468 OS Version: 6.0.6001 ServicePack: 1.0
2011/03/31 22:23:37.0731 0468 Product type: Workstation
2011/03/31 22:23:37.0732 0468 ComputerName: KIKI
2011/03/31 22:23:37.0733 0468 UserName: boul
2011/03/31 22:23:37.0733 0468 Windows directory: C:\Windows
2011/03/31 22:23:37.0733 0468 System windows directory: C:\Windows
2011/03/31 22:23:37.0733 0468 Processor architecture: Intel x86
2011/03/31 22:23:37.0733 0468 Number of processors: 2
2011/03/31 22:23:37.0733 0468 Page size: 0x1000
2011/03/31 22:23:37.0733 0468 Boot type: Normal boot
2011/03/31 22:23:37.0733 0468 ================================================================================
2011/03/31 22:23:38.0670 0468 Initialize success
2011/03/31 22:23:41.0185 7152 ================================================================================
2011/03/31 22:23:41.0185 7152 Scan started
2011/03/31 22:23:41.0185 7152 Mode: Manual;
2011/03/31 22:23:41.0185 7152 ================================================================================
2011/03/31 22:23:43.0638 7152 ACPI (fcb8c7210f0135e24c6580f7f649c73c) C:\Windows\system32\drivers\acpi.sys
2011/03/31 22:23:43.0776 7152 adp94xx (2edc5bbac6c651ece337bde8ed97c9fb) C:\Windows\system32\drivers\adp94xx.sys
2011/03/31 22:23:43.0899 7152 adpahci (b84088ca3cdca97da44a984c6ce1ccad) C:\Windows\system32\drivers\adpahci.sys
2011/03/31 22:23:43.0993 7152 adpu160m (7880c67bccc27c86fd05aa2afb5ea469) C:\Windows\system32\drivers\adpu160m.sys
2011/03/31 22:23:44.0222 7152 adpu320 (9ae713f8e30efc2abccd84904333df4d) C:\Windows\system32\drivers\adpu320.sys
2011/03/31 22:23:44.0566 7152 AFD (763e172a55177e478cb419f88fd0ba03) C:\Windows\system32\drivers\afd.sys
2011/03/31 22:23:44.0755 7152 agp440 (ef23439cdd587f64c2c1b8825cead7d8) C:\Windows\system32\drivers\agp440.sys
2011/03/31 22:23:44.0832 7152 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
2011/03/31 22:23:44.0996 7152 aliide (90395b64600ebb4552e26e178c94b2e4) C:\Windows\system32\drivers\aliide.sys
2011/03/31 22:23:45.0275 7152 amdagp (2b13e304c9dfdfa5eb582f6a149fa2c7) C:\Windows\system32\drivers\amdagp.sys
2011/03/31 22:23:45.0342 7152 amdide (0577df1d323fe75a739c787893d300ea) C:\Windows\system32\drivers\amdide.sys
2011/03/31 22:23:45.0402 7152 AmdK7 (dc487885bcef9f28eece6fac0e5ddfc5) C:\Windows\system32\drivers\amdk7.sys
2011/03/31 22:23:45.0482 7152 AmdK8 (0ca0071da4315b00fc1328ca86b425da) C:\Windows\system32\drivers\amdk8.sys
2011/03/31 22:23:45.0545 7152 arc (5f673180268bb1fdb69c99b6619fe379) C:\Windows\system32\drivers\arc.sys
2011/03/31 22:23:45.0607 7152 arcsas (957f7540b5e7f602e44648c7de5a1c05) C:\Windows\system32\drivers\arcsas.sys
2011/03/31 22:23:45.0724 7152 aswFsBlk (1c2e6bb4fe8621b1b863855b02bc33eb) C:\Windows\system32\drivers\aswFsBlk.sys
2011/03/31 22:23:45.0921 7152 aswMonFlt (b0f137f664f10829cd2380b0e20e7c29) C:\Windows\system32\drivers\aswMonFlt.sys
2011/03/31 22:23:45.0980 7152 aswRdr (b6a9373619d851be80fb5f1b5eed0d4e) C:\Windows\system32\drivers\aswRdr.sys
2011/03/31 22:23:46.0097 7152 aswSnx (9be41c1ae8bc481eb662d85c98d979c2) C:\Windows\system32\drivers\aswSnx.sys
2011/03/31 22:23:46.0158 7152 aswSP (4b1a54ba2bc5873a774df6b70ab8b0b3) C:\Windows\system32\drivers\aswSP.sys
2011/03/31 22:23:46.0254 7152 aswTdi (c7f1cea32766184911293f4e1ee653f5) C:\Windows\system32\drivers\aswTdi.sys
2011/03/31 22:23:46.0306 7152 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
2011/03/31 22:23:46.0370 7152 atapi (2d9c903dc76a66813d350a562de40ed9) C:\Windows\system32\drivers\atapi.sys
2011/03/31 22:23:46.0465 7152 athsgt (187c905e157d791a3a404eadf8fae754) C:\Windows\system32\DRIVERS\athsgt.sys
2011/03/31 22:23:46.0701 7152 atksgt (3c4b9850a2631c2263507400d029057b) C:\Windows\system32\DRIVERS\atksgt.sys
2011/03/31 22:23:46.0986 7152 AVG Anti-Rootkit (e8054a423e5d2bdae6062bab6da159c4) C:\Windows\system32\DRIVERS\avgarkt.sys
2011/03/31 22:23:47.0133 7152 AvgArCln (ec08d1625f5c6cf2a57b79eb35186f8c) C:\Windows\system32\DRIVERS\AvgArCln.sys
2011/03/31 22:23:47.0245 7152 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
2011/03/31 22:23:47.0532 7152 bowser (74b442b2be1260b7588c136177ceac66) C:\Windows\system32\DRIVERS\bowser.sys
2011/03/31 22:23:47.0571 7152 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
2011/03/31 22:23:47.0614 7152 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
2011/03/31 22:23:47.0692 7152 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
2011/03/31 22:23:47.0776 7152 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
2011/03/31 22:23:47.0840 7152 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
2011/03/31 22:23:47.0920 7152 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
2011/03/31 22:23:47.0973 7152 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
2011/03/31 22:23:48.0061 7152 CamDrL (0f5ca31bb3fdb5c1e63c170cfbecc93b) C:\Windows\system32\DRIVERS\Camdrl.sys
2011/03/31 22:23:48.0150 7152 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
2011/03/31 22:23:48.0199 7152 cdrom (1ec25cea0de6ac4718bf89f9e1778b57) C:\Windows\system32\DRIVERS\cdrom.sys
2011/03/31 22:23:48.0277 7152 circlass (da8e0afc7baa226c538ef53ac2f90897) C:\Windows\system32\drivers\circlass.sys
2011/03/31 22:23:48.0344 7152 CLFS (465745561c832b29f7c48b488aab3842) C:\Windows\system32\CLFS.sys
2011/03/31 22:23:48.0462 7152 cmdide (45201046c776ffdaf3fc8a0029c581c8) C:\Windows\system32\drivers\cmdide.sys
2011/03/31 22:23:48.0522 7152 Compbatt (82b8c91d327cfecf76cb58716f7d4997) C:\Windows\system32\drivers\compbatt.sys
2011/03/31 22:23:48.0628 7152 crcdisk (2a213ae086bbec5e937553c7d9a2b22c) C:\Windows\system32\drivers\crcdisk.sys
2011/03/31 22:23:48.0688 7152 Crusoe (22a7f883508176489f559ee745b5bf5d) C:\Windows\system32\drivers\crusoe.sys
2011/03/31 22:23:48.0817 7152 DfsC (9e635ae5e8ad93e2b5989e2e23679f97) C:\Windows\system32\Drivers\dfsc.sys
2011/03/31 22:23:48.0911 7152 disk (64109e623abd6955c8fb110b592e68b7) C:\Windows\system32\drivers\disk.sys
2011/03/31 22:23:49.0087 7152 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
2011/03/31 22:23:49.0185 7152 DXGKrnl (85f33880b8cfb554bd3d9ccdb486845a) C:\Windows\System32\drivers\dxgkrnl.sys
2011/03/31 22:23:49.0264 7152 E1G60 (f88fb26547fd2ce6d0a5af2985892c48) C:\Windows\system32\DRIVERS\E1G60I32.sys
2011/03/31 22:23:49.0406 7152 Ecache (dd2cd259d83d8b72c02c5f2331ff9d68) C:\Windows\system32\drivers\ecache.sys
2011/03/31 22:23:49.0537 7152 ElbyCDFL (ce37e3d51912e59c80c6d84337c0b4cd) C:\Windows\system32\Drivers\ElbyCDFL.sys
2011/03/31 22:23:49.0623 7152 ElbyCDIO (aaa8999a169e39fb8b48ae49cd6ac30a) C:\Windows\system32\Drivers\ElbyCDIO.sys
2011/03/31 22:23:49.0677 7152 elxstor (e8f3f21a71720c84bcf423b80028359f) C:\Windows\system32\drivers\elxstor.sys
2011/03/31 22:23:49.0826 7152 exfat (0d858eb20589a34efb25695acaa6aa2d) C:\Windows\system32\drivers\exfat.sys
2011/03/31 22:23:49.0887 7152 fastfat (3c489390c2e2064563727752af8eab9e) C:\Windows\system32\drivers\fastfat.sys
2011/03/31 22:23:49.0955 7152 fdc (63bdada84951b9c03e641800e176898a) C:\Windows\system32\DRIVERS\fdc.sys
2011/03/31 22:23:50.0053 7152 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
2011/03/31 22:23:50.0105 7152 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
2011/03/31 22:23:50.0160 7152 flpydisk (6603957eff5ec62d25075ea8ac27de68) C:\Windows\system32\DRIVERS\flpydisk.sys
2011/03/31 22:23:50.0228 7152 FltMgr (05ea53afe985443011e36dab07343b46) C:\Windows\system32\drivers\fltmgr.sys
2011/03/31 22:23:50.0320 7152 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
2011/03/31 22:23:50.0390 7152 gagp30kx (4e1cd0a45c50a8882616cae5bf82f3c5) C:\Windows\system32\drivers\gagp30kx.sys
2011/03/31 22:23:50.0478 7152 GEARAspiWDM (f2f431d1573ee632975c524418655b84) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
2011/03/31 22:23:50.0633 7152 HDAudBus (c87b1ee051c0464491c1a7b03fa0bc99) C:\Windows\system32\DRIVERS\HDAudBus.sys
2011/03/31 22:23:50.0697 7152 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
2011/03/31 22:23:50.0801 7152 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
2011/03/31 22:23:50.0936 7152 HidUsb (854ca287ab7faf949617a788306d967e) C:\Windows\system32\DRIVERS\hidusb.sys
2011/03/31 22:23:51.0021 7152 HpCISSs (df353b401001246853763c4b7aaa6f50) C:\Windows\system32\drivers\hpcisss.sys
2011/03/31 22:23:51.0119 7152 HTTP (96e241624c71211a79c84f50a8e71cab) C:\Windows\system32\drivers\HTTP.sys
2011/03/31 22:23:51.0185 7152 i2omp (324c2152ff2c61abae92d09f3cca4d63) C:\Windows\system32\drivers\i2omp.sys
2011/03/31 22:23:51.0252 7152 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
2011/03/31 22:23:51.0330 7152 iaStorV (c957bf4b5d80b46c5017bf0101e6c906) C:\Windows\system32\drivers\iastorv.sys
2011/03/31 22:23:51.0473 7152 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
2011/03/31 22:23:51.0646 7152 IntcAzAudAddService (5d854cbac8b7b4b964406f9808c95fae) C:\Windows\system32\drivers\RTKVHDA.sys
2011/03/31 22:23:51.0751 7152 intelide (97469037714070e45194ed318d636401) C:\Windows\system32\drivers\intelide.sys
2011/03/31 22:23:51.0812 7152 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
2011/03/31 22:23:51.0895 7152 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
2011/03/31 22:23:52.0052 7152 IPMIDRV (40f34f8aba2a015d780e4b09138b6c17) C:\Windows\system32\drivers\ipmidrv.sys
2011/03/31 22:23:52.0157 7152 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
2011/03/31 22:23:52.0217 7152 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
2011/03/31 22:23:52.0317 7152 isapnp (350fca7e73cf65bcef43fae1e4e91293) C:\Windows\system32\drivers\isapnp.sys
2011/03/31 22:23:52.0392 7152 iScsiPrt (f247eec28317f6c739c16de420097301) C:\Windows\system32\DRIVERS\msiscsi.sys
2011/03/31 22:23:52.0506 7152 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
2011/03/31 22:23:52.0574 7152 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
2011/03/31 22:23:52.0645 7152 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
2011/03/31 22:23:52.0769 7152 kbdhid (18247836959ba67e3511b62846b9c2e0) C:\Windows\system32\DRIVERS\kbdhid.sys
2011/03/31 22:23:52.0878 7152 KSecDD (7a0cf7908b6824d6a2a1d313e5ae3dca) C:\Windows\system32\Drivers\ksecdd.sys
2011/03/31 22:23:53.0024 7152 limsgt (6ac289ab3de19bee4868666ea3eef34b) C:\Windows\system32\DRIVERS\limsgt.sys
2011/03/31 22:23:53.0124 7152 lirsgt (4127e8b6ddb4090e815c1f8852c277d3) C:\Windows\system32\DRIVERS\lirsgt.sys
2011/03/31 22:23:53.0236 7152 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
2011/03/31 22:23:53.0387 7152 LSI_FC (a2262fb9f28935e862b4db46438c80d2) C:\Windows\system32\drivers\lsi_fc.sys
2011/03/31 22:23:53.0456 7152 LSI_SAS (30d73327d390f72a62f32c103daf1d6d) C:\Windows\system32\drivers\lsi_sas.sys
2011/03/31 22:23:53.0573 7152 LSI_SCSI (e1e36fefd45849a95f1ab81de0159fe3) C:\Windows\system32\drivers\lsi_scsi.sys
2011/03/31 22:23:53.0652 7152 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
2011/03/31 22:23:53.0799 7152 LVcKap (fb548ff809634bfa866312b37d8a18ae) C:\Windows\system32\DRIVERS\LVcKap.sys
2011/03/31 22:23:54.0012 7152 LVMVDrv (fe3fb994f8702d9e37648927819b74b8) C:\Windows\system32\DRIVERS\LVMVDrv.sys
2011/03/31 22:23:54.0165 7152 LVPr2Mon (c7ea51f1ab10b0b2b443f4d5589fc1a5) C:\Windows\system32\DRIVERS\LVPr2Mon.sys
2011/03/31 22:23:54.0283 7152 LVUSBSta (caef4c05ba2c1acad4ebcaa4261cd55d) C:\Windows\system32\drivers\LVUSBSta.sys
2011/03/31 22:23:54.0391 7152 megasas (d153b14fc6598eae8422a2037553adce) C:\Windows\system32\drivers\megasas.sys
2011/03/31 22:23:54.0507 7152 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
2011/03/31 22:23:54.0578 7152 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
2011/03/31 22:23:54.0699 7152 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
2011/03/31 22:23:54.0769 7152 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
2011/03/31 22:23:54.0911 7152 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
2011/03/31 22:23:55.0003 7152 mpio (583a41f26278d9e0ea548163d6139397) C:\Windows\system32\drivers\mpio.sys
2011/03/31 22:23:55.0077 7152 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
2011/03/31 22:23:55.0232 7152 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
2011/03/31 22:23:55.0396 7152 MRxDAV (ae3de84536b6799d2267443cec8edbb9) C:\Windows\system32\drivers\mrxdav.sys
2011/03/31 22:23:55.0525 7152 mrxsmb (7afc42e60432fd1014f5342f2b1b1f74) C:\Windows\system32\DRIVERS\mrxsmb.sys
2011/03/31 22:23:55.0741 7152 mrxsmb10 (8a75752ae17924f65452746674b14b78) C:\Windows\system32\DRIVERS\mrxsmb10.sys
2011/03/31 22:23:55.0828 7152 mrxsmb20 (f4d0f3252e651f02be64984ffa738394) C:\Windows\system32\DRIVERS\mrxsmb20.sys
2011/03/31 22:23:55.0941 7152 msahci (742aed7939e734c36b7e8d6228ce26b7) C:\Windows\system32\drivers\msahci.sys
2011/03/31 22:23:55.0993 7152 msdsm (3fc82a2ae4cc149165a94699183d3028) C:\Windows\system32\drivers\msdsm.sys
2011/03/31 22:23:56.0165 7152 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
2011/03/31 22:23:56.0226 7152 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
2011/03/31 22:23:56.0315 7152 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
2011/03/31 22:23:56.0383 7152 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
2011/03/31 22:23:56.0467 7152 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
2011/03/31 22:23:56.0535 7152 MsRPC (b5614aecb05a9340aa0fb55bf561cc63) C:\Windows\system32\drivers\MsRPC.sys
2011/03/31 22:23:56.0626 7152 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
2011/03/31 22:23:56.0707 7152 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
2011/03/31 22:23:56.0764 7152 Mup (6dfd1d322de55b0b7db7d21b90bec49c) C:\Windows\system32\Drivers\mup.sys
2011/03/31 22:23:56.0835 7152 NativeWifiP (3c21ce48ff529bb73dadb98770b54025) C:\Windows\system32\DRIVERS\nwifi.sys
2011/03/31 22:23:56.0923 7152 NDIS (9bdc71790fa08f0a0b5f10462b1bd0b1) C:\Windows\system32\drivers\ndis.sys
2011/03/31 22:23:57.0034 7152 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
2011/03/31 22:23:57.0133 7152 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
2011/03/31 22:23:57.0194 7152 NdisWan (3d14c3b3496f88890d431e8aa022a411) C:\Windows\system32\DRIVERS\ndiswan.sys
2011/03/31 22:23:57.0315 7152 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
2011/03/31 22:23:57.0369 7152 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
2011/03/31 22:23:57.0436 7152 netbt (7c5fee5b1c5728507cd96fb4a13e7a02) C:\Windows\system32\DRIVERS\netbt.sys
2011/03/31 22:23:57.0600 7152 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
2011/03/31 22:23:57.0725 7152 Npfs (ecb5003f484f9ed6c608d6d6c7886cbb) C:\Windows\system32\drivers\Npfs.sys
2011/03/31 22:23:57.0814 7152 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
2011/03/31 22:23:57.0932 7152 Ntfs (b4effe29eb4f15538fd8a9681108492d) C:\Windows\system32\drivers\Ntfs.sys
2011/03/31 22:23:58.0105 7152 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
2011/03/31 22:23:58.0222 7152 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
2011/03/31 22:23:58.0584 7152 nvlddmkm (377140a534d013bd661c69f1741de43c) C:\Windows\system32\DRIVERS\nvlddmkm.sys
2011/03/31 22:23:59.0000 7152 nvraid (e69e946f80c1c31c53003bfbf50cbb7c) C:\Windows\system32\drivers\nvraid.sys
2011/03/31 22:23:59.0047 7152 nvstor (9e0ba19a28c498a6d323d065db76dffc) C:\Windows\system32\drivers\nvstor.sys
2011/03/31 22:23:59.0120 7152 nv_agp (07c186427eb8fcc3d8d7927187f260f7) C:\Windows\system32\drivers\nv_agp.sys
2011/03/31 22:23:59.0427 7152 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys
2011/03/31 22:24:00.0117 7152 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
2011/03/31 22:24:00.0387 7152 partmgr (3b38467e7c3daed009dfe359e17f139f) C:\Windows\system32\drivers\partmgr.sys
2011/03/31 22:24:00.0618 7152 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
2011/03/31 22:24:00.0855 7152 pci (01b94418deb235dff777cc80076354b4) C:\Windows\system32\drivers\pci.sys
2011/03/31 22:24:00.0916 7152 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys
2011/03/31 22:24:00.0985 7152 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
2011/03/31 22:24:01.0055 7152 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\Windows\system32\Drivers\pcouffin.sys
2011/03/31 22:24:01.0162 7152 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
2011/03/31 22:24:01.0481 7152 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
2011/03/31 22:24:01.0561 7152 Processor (0e3cef5d28b40cf273281d620c50700a) C:\Windows\system32\drivers\processr.sys
2011/03/31 22:24:01.0687 7152 PSched (bfef604508a0ed1eae2a73e872555ffb) C:\Windows\system32\DRIVERS\pacer.sys
2011/03/31 22:24:01.0779 7152 PxHelp20 (49452bfcec22f36a7a9b9c2181bc3042) C:\Windows\system32\Drivers\PxHelp20.sys
2011/03/31 22:24:02.0040 7152 ql2300 (ccdac889326317792480c0a67156a1ec) C:\Windows\system32\drivers\ql2300.sys
2011/03/31 22:24:02.0287 7152 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
2011/03/31 22:24:02.0613 7152 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
2011/03/31 22:24:02.0753 7152 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
2011/03/31 22:24:02.0938 7152 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
2011/03/31 22:24:03.0041 7152 RasPppoe (3e9d9b048107b40d87b97df2e48e0744) C:\Windows\system32\DRIVERS\raspppoe.sys
2011/03/31 22:24:03.0135 7152 RasSstp (a7d141684e9500ac928a772ed8e6b671) C:\Windows\system32\DRIVERS\rassstp.sys
2011/03/31 22:24:03.0197 7152 rdbss (6e1c5d0457622f9ee35f683110e93d14) C:\Windows\system32\DRIVERS\rdbss.sys
2011/03/31 22:24:03.0330 7152 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
2011/03/31 22:24:03.0405 7152 rdpdr (e8bd98d46f2ed77132ba927fccb47d8b) C:\Windows\system32\drivers\rdpdr.sys
2011/03/31 22:24:03.0455 7152 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
2011/03/31 22:24:03.0511 7152 RDPWD (e1c18f4097a5abcec941dc4b2f99db7e) C:\Windows\system32\drivers\RDPWD.sys
2011/03/31 22:24:03.0677 7152 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
2011/03/31 22:24:03.0725 7152 RTL8023xp (8de22fb05e4a0f797b1e442eb4b3b51c) C:\Windows\system32\DRIVERS\Rtnicxp.sys
2011/03/31 22:24:03.0823 7152 SASDIFSV (a3281aec37e0720a2bc28034c2df2a56) C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
2011/03/31 22:24:03.0863 7152 SASENUM (7ce61c25c159f50f9eaf6d77fc83fa35) C:\Program Files\SUPERAntiSpyware\SASENUM.SYS
2011/03/31 22:24:03.0924 7152 SASKUTIL (61db0d0756a99506207fd724e3692b25) C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
2011/03/31 22:24:04.0034 7152 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
2011/03/31 22:24:04.0199 7152 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
2011/03/31 22:24:04.0382 7152 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
2011/03/31 22:24:04.0539 7152 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
2011/03/31 22:24:04.0665 7152 sffdisk (103b79418da647736ee95645f305f68a) C:\Windows\system32\drivers\sffdisk.sys
2011/03/31 22:24:04.0717 7152 sffp_mmc (8fd08a310645fe872eeec6e08c6bf3ee) C:\Windows\system32\drivers\sffp_mmc.sys
2011/03/31 22:24:04.0767 7152 sffp_sd (9cfa05fcfcb7124e69cfc812b72f9614) C:\Windows\system32\drivers\sffp_sd.sys
2011/03/31 22:24:04.0829 7152 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
2011/03/31 22:24:05.0163 7152 sisagp (d2a595d6eebeeaf4334f8e50efbc9931) C:\Windows\system32\drivers\sisagp.sys
2011/03/31 22:24:05.0286 7152 SiSRaid2 (cedd6f4e7d84e9f98b34b3fe988373aa) C:\Windows\system32\drivers\sisraid2.sys
2011/03/31 22:24:05.0432 7152 SiSRaid4 (df843c528c4f69d12ce41ce462e973a7) C:\Windows\system32\drivers\sisraid4.sys
2011/03/31 22:24:05.0556 7152 Smb (031e6bcd53c9b2b9ace111eafec347b6) C:\Windows\system32\DRIVERS\smb.sys
2011/03/31 22:24:05.0705 7152 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
2011/03/31 22:24:05.0810 7152 srv (9a0163e7fbe59da0591bb1ad77d92e63) C:\Windows\system32\DRIVERS\srv.sys
2011/03/31 22:24:05.0943 7152 srv2 (c7da26d2c7d480b1dd38ca19cc90b821) C:\Windows\system32\DRIVERS\srv2.sys
2011/03/31 22:24:06.0048 7152 srvnet (f9c65e1e00a6bbf7c57d9b8ea068c525) C:\Windows\system32\DRIVERS\srvnet.sys
2011/03/31 22:24:06.0115 7152 sscdbus (d5dffeaa1e15d4effabb9d9a3068ac5b) C:\Windows\system32\DRIVERS\sscdbus.sys
2011/03/31 22:24:06.0205 7152 sscdmdfl (8a1be0c347814f482f493aea619d57f6) C:\Windows\system32\DRIVERS\sscdmdfl.sys
2011/03/31 22:24:06.0259 7152 sscdmdm (5ab0b1987f682a59b15b78f84c6ad7d0) C:\Windows\system32\DRIVERS\sscdmdm.sys
2011/03/31 22:24:06.0378 7152 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
2011/03/31 22:24:06.0485 7152 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
2011/03/31 22:24:06.0551 7152 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
2011/03/31 22:24:06.0617 7152 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
2011/03/31 22:24:06.0793 7152 Tcpip (782568ab6a43160a159b6215b70bcce9) C:\Windows\system32\drivers\tcpip.sys
2011/03/31 22:24:06.0927 7152 Tcpip6 (782568ab6a43160a159b6215b70bcce9) C:\Windows\system32\DRIVERS\tcpip.sys
2011/03/31 22:24:07.0017 7152 tcpipreg (d4a2e4a4b011f3a883af77315a5ae76b) C:\Windows\system32\drivers\tcpipreg.sys
2011/03/31 22:24:07.0099 7152 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
2011/03/31 22:24:07.0149 7152 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
2011/03/31 22:24:07.0250 7152 tdx (d09276b1fab033ce1d40dcbdf303d10f) C:\Windows\system32\DRIVERS\tdx.sys
2011/03/31 22:24:07.0345 7152 TermDD (a048056f5e1a96a9bf3071b91741a5aa) C:\Windows\system32\DRIVERS\termdd.sys
2011/03/31 22:24:07.0531 7152 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
2011/03/31 22:24:07.0618 7152 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
2011/03/31 22:24:07.0694 7152 tunnel (119b8184e106baedc83fce5ddf3950da) C:\Windows\system32\DRIVERS\tunnel.sys
2011/03/31 22:24:07.0789 7152 uagp35 (c3ade15414120033a36c0f293d4a4121) C:\Windows\system32\drivers\uagp35.sys
2011/03/31 22:24:07.0891 7152 udfs (8b5088058fa1d1cd897a2113ccff6c58) C:\Windows\system32\DRIVERS\udfs.sys
2011/03/31 22:24:08.0017 7152 uliagpkx (75e6890ebfce0841d3291b02e7a8bdb0) C:\Windows\system32\drivers\uliagpkx.sys
2011/03/31 22:24:08.0088 7152 uliahci (3cd4ea35a6221b85dcc25daa46313f8d) C:\Windows\system32\drivers\uliahci.sys
2011/03/31 22:24:08.0165 7152 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
2011/03/31 22:24:08.0268 7152 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
2011/03/31 22:24:08.0367 7152 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
2011/03/31 22:24:08.0533 7152 usbaudio (292a25bb75a568ae2c67169ba2c6365a) C:\Windows\system32\drivers\usbaudio.sys
2011/03/31 22:24:08.0595 7152 usbbus (a901bd3f8e0685bc914c8302e369ef09) C:\Windows\system32\DRIVERS\lgusbbus.sys
2011/03/31 22:24:08.0733 7152 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
2011/03/31 22:24:08.0818 7152 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
2011/03/31 22:24:08.0912 7152 UsbDiag (a5e3fe58b9b13b932dfe0d2a4a417f51) C:\Windows\system32\DRIVERS\lgusbdiag.sys
2011/03/31 22:24:09.0038 7152 usbehci (cebe90821810e76320155beba722fcf9) C:\Windows\system32\DRIVERS\usbehci.sys
2011/03/31 22:24:09.0141 7152 usbhub (cc6b28e4ce39951357963119ce47b143) C:\Windows\system32\DRIVERS\usbhub.sys
2011/03/31 22:24:09.0220 7152 USBModem (320cb67e5505ba561081efeaf07ea31b) C:\Windows\system32\DRIVERS\lgusbmodem.sys
2011/03/31 22:24:09.0302 7152 usbohci (7bdb7b0e7d45ac0402d78b90789ef47c) C:\Windows\system32\DRIVERS\usbohci.sys
2011/03/31 22:24:09.0373 7152 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
2011/03/31 22:24:09.0438 7152 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
2011/03/31 22:24:09.0493 7152 USBSTOR (87ba6b83c5d19b69160968d07d6e2982) C:\Windows\system32\DRIVERS\USBSTOR.SYS
2011/03/31 22:24:09.0564 7152 usbuhci (325dbbacb8a36af9988ccf40eac228cc) C:\Windows\system32\DRIVERS\usbuhci.sys
2011/03/31 22:24:09.0658 7152 USB_RNDIS (d173f7b936c8f579bcc4f78da861929c) C:\Windows\system32\DRIVERS\usb8023.sys
2011/03/31 22:24:10.0084 7152 vga (7d92be0028ecdedec74617009084b5ef) C:\Windows\system32\DRIVERS\vgapnp.sys
2011/03/31 22:24:10.0147 7152 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
2011/03/31 22:24:10.0315 7152 viaagp (045d9961e591cf0674a920b6ba3ba5cb) C:\Windows\system32\drivers\viaagp.sys
2011/03/31 22:24:10.0388 7152 ViaC7 (56a4de5f02f2e88182b0981119b4dd98) C:\Windows\system32\drivers\viac7.sys
2011/03/31 22:24:10.0471 7152 viaide (fd2e3175fcada350c7ab4521dca187ec) C:\Windows\system32\drivers\viaide.sys
2011/03/31 22:24:10.0537 7152 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
2011/03/31 22:24:10.0634 7152 volmgrx (98f5ffe6316bd74e9e2c97206c190196) C:\Windows\system32\drivers\volmgrx.sys
2011/03/31 22:24:10.0747 7152 volsnap (d8b4a53dd2769f226b3eb374374987c9) C:\Windows\system32\drivers\volsnap.sys
2011/03/31 22:24:10.0828 7152 vsmraid (d984439746d42b30fc65a4c3546c6829) C:\Windows\system32\drivers\vsmraid.sys
2011/03/31 22:24:11.0115 7152 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
2011/03/31 22:24:11.0180 7152 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
2011/03/31 22:24:11.0205 7152 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
2011/03/31 22:24:11.0272 7152 wanatw (0a716c08cb13c3a8f4f51e882dbf7416) C:\Windows\system32\DRIVERS\wanatw4.sys
2011/03/31 22:24:11.0402 7152 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
2011/03/31 22:24:11.0522 7152 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
2011/03/31 22:24:11.0881 7152 winusb (f03110711b17ad31271cb2baf0dbb2b1) C:\Windows\system32\DRIVERS\winusb.sys
2011/03/31 22:24:11.0975 7152 WmiAcpi (701a9f884a294327e9141d73746ee279) C:\Windows\system32\drivers\wmiacpi.sys
2011/03/31 22:24:12.0163 7152 WpdUsb (0cec23084b51b8288099eb710224e955) C:\Windows\system32\DRIVERS\wpdusb.sys
2011/03/31 22:24:12.0229 7152 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
2011/03/31 22:24:12.0338 7152 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
2011/03/31 22:24:12.0446 7152 \HardDisk0 - detected Rootkit.Win32.TDSS.tdl4 (0)
2011/03/31 22:24:12.0455 7152 ================================================================================
2011/03/31 22:24:12.0455 7152 Scan finished
2011/03/31 22:24:12.0455 7152 ================================================================================
2011/03/31 22:24:12.0505 7224 Detected object count: 1
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
1 avril 2011 à 07:03
1 avril 2011 à 07:03
vous avez recu mes rapports? et TDSSKiller me dit "rootkit.win32.TDSS.tdl4" je clik sur "cure" et je continue de suivre vos etapes ou koi? je suis completement perdu! snif snif
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
Modifié par bonikik le 1/04/2011 à 07:00
Modifié par bonikik le 1/04/2011 à 07:00
vous avez recu mes rapports? et TDSSKiller me dit "rootkit.win32.TDSS.tdl4" je clik sur "cure" et je continue de suivre vos etapes ou koi? je suis completement perdu! snif snif
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
1 avril 2011 à 10:19
1 avril 2011 à 10:19
yep tu clics sur cure, tu redémarres le PC et tu continues.
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
1 avril 2011 à 10:58
1 avril 2011 à 10:58
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Version de la base de données: 6233
Windows 6.0.6001 Service Pack 1
Internet Explorer 8.0.6001.18999
01/04/2011 10:45:03
mbam-log-2011-04-01 (10-45-03).txt
Type d'examen: Examen rapide
Elément(s) analysé(s): 153916
Temps écoulé: 6 minute(s), 4 seconde(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 36
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 4
Fichier(s) infecté(s): 20
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\CLSID\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{E343EDFC-1E6C-4CB5-AA29-E9C922641C80} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{D8560AC2-21B5-4C1A-BDD4-BD12BC83B082} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.RprtCtrl.1 (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.RprtCtrl (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{20EA9658-6BC3-4599-A87D-6371FE9295FC} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.HbAx.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.HbAx (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A16AD1E9-F69A-45AF-9462-B1C286708842} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.IEButtonA.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.IEButtonA (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.HbInfoBand.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.HbInfoBand (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{C9CCBB35-D123-4A31-AFFC-9B2933132116} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.IEButton.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.IEButton (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\32 Vegas Casino (Adware.21Nova) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\fcn (Rogue.Residue) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\WinButler (Adware.WinButler) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\32 Vegas Casino (Adware.21Nova) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
c:\Users\boul\AppData\Roaming\winbutler (Adware.WinButler) -> Quarantined and deleted successfully.
c:\program files\shoppingreport (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shoppingreport\Bin (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shoppingreport\Bin\2.6.71 (Adware.ShopperReports) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
c:\program files\shoppingreport\Bin\2.6.71\shoppingreport.dll (Adware.SmartShopper) -> Quarantined and deleted successfully.
c:\Users\boul\AppData\Local\Temp\A88D.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\boul\AppData\Local\Temp\B76A.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\Users\boul\AppData\Local\Temp\B7E8.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\Users\boul\VLCSetup.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\cfjwa_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\coamuki_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\eymqkqw_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\ladtqg_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\qrpzddbwx_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\xpzseu_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\cfjwa_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\coamuki_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\eymqkqw_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\ladtqg_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\qcdgq_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\qrpzddbwx_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\xpzseu_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\AppData\Roaming\winbutler\config.cfg (Adware.WinButler) -> Quarantined and deleted successfully.
c:\program files\shoppingreport\Uninst.exe (Adware.ShopperReports) -> Quarantined and deleted successfully.
www.malwarebytes.org
Version de la base de données: 6233
Windows 6.0.6001 Service Pack 1
Internet Explorer 8.0.6001.18999
01/04/2011 10:45:03
mbam-log-2011-04-01 (10-45-03).txt
Type d'examen: Examen rapide
Elément(s) analysé(s): 153916
Temps écoulé: 6 minute(s), 4 seconde(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 36
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 4
Fichier(s) infecté(s): 20
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\CLSID\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{E343EDFC-1E6C-4CB5-AA29-E9C922641C80} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{D8560AC2-21B5-4C1A-BDD4-BD12BC83B082} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.RprtCtrl.1 (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.RprtCtrl (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{20EA9658-6BC3-4599-A87D-6371FE9295FC} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.HbAx.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.HbAx (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A16AD1E9-F69A-45AF-9462-B1C286708842} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.IEButtonA.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.IEButtonA (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.HbInfoBand.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.HbInfoBand (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{C9CCBB35-D123-4A31-AFFC-9B2933132116} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.IEButton.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShoppingReport.IEButton (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\32 Vegas Casino (Adware.21Nova) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\fcn (Rogue.Residue) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\WinButler (Adware.WinButler) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\32 Vegas Casino (Adware.21Nova) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
c:\Users\boul\AppData\Roaming\winbutler (Adware.WinButler) -> Quarantined and deleted successfully.
c:\program files\shoppingreport (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shoppingreport\Bin (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shoppingreport\Bin\2.6.71 (Adware.ShopperReports) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
c:\program files\shoppingreport\Bin\2.6.71\shoppingreport.dll (Adware.SmartShopper) -> Quarantined and deleted successfully.
c:\Users\boul\AppData\Local\Temp\A88D.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\boul\AppData\Local\Temp\B76A.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\Users\boul\AppData\Local\Temp\B7E8.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\Users\boul\VLCSetup.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\cfjwa_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\coamuki_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\eymqkqw_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\ladtqg_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\qrpzddbwx_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\xpzseu_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\cfjwa_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\coamuki_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\eymqkqw_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\ladtqg_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\qcdgq_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\qrpzddbwx_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\local settings\application data\xpzseu_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\Users\boul\AppData\Roaming\winbutler\config.cfg (Adware.WinButler) -> Quarantined and deleted successfully.
c:\program files\shoppingreport\Uninst.exe (Adware.ShopperReports) -> Quarantined and deleted successfully.
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
1 avril 2011 à 15:23
1 avril 2011 à 15:23
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
1 avril 2011 à 16:00
1 avril 2011 à 16:00
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
1 avril 2011 à 15:18
1 avril 2011 à 15:18
* Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer les rapports.
Donnes le liens pjjoint ici ensuite pour pouvoir être consultés.
Donnes le liens pjjoint ici ensuite pour pouvoir être consultés.
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
Modifié par Malekal_morte- le 1/04/2011 à 15:41
Modifié par Malekal_morte- le 1/04/2011 à 15:41
Relance OTL.
o sous Personnalisation, copie_colle le contenu du cadre ci dessous et clic Correction, un rapport apparraitra suite à l'operation que tu conserveras sur clé usb par exemple afin d'en coller le resultat:
:OTL
[2010/01/31 14:11:51 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\ewogph.bat
[2010/01/29 14:11:15 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\ghoaij.bat
[2010/01/27 14:10:11 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\vfncm.bat
[2010/01/19 16:58:23 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\mtcipdd.bat
[2010/01/15 16:56:39 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\wgpfpiq.bat
[2010/01/08 06:21:09 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\gxickbnf.bat
[2009/12/14 20:04:34 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\azthasd.bat
[2009/12/10 11:32:34 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\mlbaf.bat
[2009/12/08 11:31:51 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\sqnlqva.bat
[2009/12/02 11:30:24 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\cwliu.bat
[2009/11/26 11:28:10 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\nhiiaz.bat
[2009/11/19 13:07:00 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\cqesob.bat
[2009/11/13 12:51:51 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\ajbohzl.bat
[2009/11/11 12:51:14 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\rfhlwce.bat
[2009/11/09 12:51:05 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\dtesjq.bat
[2009/10/25 10:55:14 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\ejhnkqnt.bat
[2009/10/21 10:54:28 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\jdbdau.bat
[2009/10/01 10:50:25 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\fyrkdv.bat
[2009/09/23 10:48:44 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\bbgbni.bat
[2009/09/20 08:44:16 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\qcdgq.bat
[2009/09/04 06:48:31 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\lbfusi.bat
[2009/08/30 14:29:07 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\bwdan.bat
[2009/08/22 14:27:18 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\ooppqq.bat
[2009/07/25 15:04:50 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\usaae.bat
[2009/07/17 12:14:28 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\usiiw.bat
[2009/06/27 12:08:42 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\wyiigoo.bat
[2009/06/21 12:07:03 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\cukca.bat
[2009/06/13 12:05:43 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\wamim.bat
[2009/06/05 12:03:24 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\ykmouoa.bat
[2009/05/20 11:59:06 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\smgeoyy.bat
[2009/05/14 11:57:54 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\uqcyu.bat
[2009/05/10 11:56:47 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\kimqsuu.bat
[2009/04/26 11:52:34 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\iywasqy.bat
[2009/04/04 11:47:07 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\wcuku.bat
[2009/03/27 11:45:26 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\iswwi.bat
[2009/03/13 11:42:04 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\emssgac.bat
[2009/01/25 12:43:17 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\gsegsii.bat
[2010/04/01 12:49:01 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\ysmfxs.bat
[2010/03/29 17:04:13 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\tahua.bat
[2010/03/27 17:03:24 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\earihwnd.bat
[2010/03/25 17:02:58 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\eqbufdp.bat
[2010/03/22 17:56:18 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\hhzzatug.bat
[2010/03/19 00:19:14 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\hhizabu.bat
[2010/03/18 04:06:47 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\trxvdbif.bat
[2010/03/16 04:06:38 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\uudcrqh.bat
[2010/03/12 04:04:50 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\yeejnpte.bat
[2010/03/08 11:42:54 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\fyrju.bat
[2010/03/06 11:42:16 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\cdcbqg.bat
[2010/03/05 18:48:01 | 000,032,680 | ---- | C] () -- C:\Users\boul\AppData\Local\slot1.mm1
[2010/03/04 11:42:03 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\sqddyeco.bat
[2010/02/28 11:40:26 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\owggp.bat
[2010/02/20 11:03:40 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\vdlzii.bat
[2010/02/18 10:11:40 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\xhybsct.bat
[2010/02/16 10:11:04 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\taanmza.bat
[2010/02/14 10:10:57 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\dyheb.bat
[2010/02/12 10:09:54 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\yefkvadh.bat
[2010/02/10 10:09:36 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\yjueqbm.bat
[2010/02/06 10:08:36 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\aauoicvo.bat
[2010/05/05 06:05:26 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\xpzseu.bat
[2010/05/05 06:05:19 | 000,471,040 | ---- | C] () -- C:\Users\boul\AppData\Local\xpzseu.exe
[2010/04/28 21:09:11 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\ntcaag.bat
[2010/04/27 11:52:18 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\ikdabdq.bat
[2010/04/21 00:45:54 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\tsqou.bat
[2010/04/17 00:44:25 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\asnhzuoa.bat
[2010/04/13 00:43:14 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\cfbeadf.bat
[2010/04/09 12:50:54 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\eephgqq.bat
[2004/11/16 07:52:41 | 000,110,592 | ---- | C] () -- C:\Windows\System32\8296e41e.dll
[2004/06/13 10:14:24 | 000,009,728 | ---- | C] () -- C:\Windows\System32\bcff980b.dll
[2004/06/13 10:03:53 | 000,000,031 | ---- | C] () -- C:\Windows\System32\fe435cdb.dll
[2010/11/24 17:30:45 | 000,000,000 | ---D | M] -- C:\Users\boul\AppData\Roaming\OfferBox
* redemarre le pc sous windows et poste le rapport ici
zip le dossier C:\OTL\_MoveIT
Envoie le zip sur http://upload.malekal.com
Yes, no, maybe
I don't know
Can you repeat the question?
You're not the boss of me now
o sous Personnalisation, copie_colle le contenu du cadre ci dessous et clic Correction, un rapport apparraitra suite à l'operation que tu conserveras sur clé usb par exemple afin d'en coller le resultat:
:OTL
[2010/01/31 14:11:51 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\ewogph.bat
[2010/01/29 14:11:15 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\ghoaij.bat
[2010/01/27 14:10:11 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\vfncm.bat
[2010/01/19 16:58:23 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\mtcipdd.bat
[2010/01/15 16:56:39 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\wgpfpiq.bat
[2010/01/08 06:21:09 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\gxickbnf.bat
[2009/12/14 20:04:34 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\azthasd.bat
[2009/12/10 11:32:34 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\mlbaf.bat
[2009/12/08 11:31:51 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\sqnlqva.bat
[2009/12/02 11:30:24 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\cwliu.bat
[2009/11/26 11:28:10 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\nhiiaz.bat
[2009/11/19 13:07:00 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\cqesob.bat
[2009/11/13 12:51:51 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\ajbohzl.bat
[2009/11/11 12:51:14 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\rfhlwce.bat
[2009/11/09 12:51:05 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\dtesjq.bat
[2009/10/25 10:55:14 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\ejhnkqnt.bat
[2009/10/21 10:54:28 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\jdbdau.bat
[2009/10/01 10:50:25 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\fyrkdv.bat
[2009/09/23 10:48:44 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\bbgbni.bat
[2009/09/20 08:44:16 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\qcdgq.bat
[2009/09/04 06:48:31 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\lbfusi.bat
[2009/08/30 14:29:07 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\bwdan.bat
[2009/08/22 14:27:18 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\ooppqq.bat
[2009/07/25 15:04:50 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\usaae.bat
[2009/07/17 12:14:28 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\usiiw.bat
[2009/06/27 12:08:42 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\wyiigoo.bat
[2009/06/21 12:07:03 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\cukca.bat
[2009/06/13 12:05:43 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\wamim.bat
[2009/06/05 12:03:24 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\ykmouoa.bat
[2009/05/20 11:59:06 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\smgeoyy.bat
[2009/05/14 11:57:54 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\uqcyu.bat
[2009/05/10 11:56:47 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\kimqsuu.bat
[2009/04/26 11:52:34 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\iywasqy.bat
[2009/04/04 11:47:07 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\wcuku.bat
[2009/03/27 11:45:26 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\iswwi.bat
[2009/03/13 11:42:04 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\emssgac.bat
[2009/01/25 12:43:17 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\gsegsii.bat
[2010/04/01 12:49:01 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\ysmfxs.bat
[2010/03/29 17:04:13 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\tahua.bat
[2010/03/27 17:03:24 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\earihwnd.bat
[2010/03/25 17:02:58 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\eqbufdp.bat
[2010/03/22 17:56:18 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\hhzzatug.bat
[2010/03/19 00:19:14 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\hhizabu.bat
[2010/03/18 04:06:47 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\trxvdbif.bat
[2010/03/16 04:06:38 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\uudcrqh.bat
[2010/03/12 04:04:50 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\yeejnpte.bat
[2010/03/08 11:42:54 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\fyrju.bat
[2010/03/06 11:42:16 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\cdcbqg.bat
[2010/03/05 18:48:01 | 000,032,680 | ---- | C] () -- C:\Users\boul\AppData\Local\slot1.mm1
[2010/03/04 11:42:03 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\sqddyeco.bat
[2010/02/28 11:40:26 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\owggp.bat
[2010/02/20 11:03:40 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\vdlzii.bat
[2010/02/18 10:11:40 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\xhybsct.bat
[2010/02/16 10:11:04 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\taanmza.bat
[2010/02/14 10:10:57 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\dyheb.bat
[2010/02/12 10:09:54 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\yefkvadh.bat
[2010/02/10 10:09:36 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\yjueqbm.bat
[2010/02/06 10:08:36 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\aauoicvo.bat
[2010/05/05 06:05:26 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\xpzseu.bat
[2010/05/05 06:05:19 | 000,471,040 | ---- | C] () -- C:\Users\boul\AppData\Local\xpzseu.exe
[2010/04/28 21:09:11 | 000,000,088 | ---- | C] () -- C:\Users\boul\AppData\Local\ntcaag.bat
[2010/04/27 11:52:18 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\ikdabdq.bat
[2010/04/21 00:45:54 | 000,000,087 | ---- | C] () -- C:\Users\boul\AppData\Local\tsqou.bat
[2010/04/17 00:44:25 | 000,000,090 | ---- | C] () -- C:\Users\boul\AppData\Local\asnhzuoa.bat
[2010/04/13 00:43:14 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\cfbeadf.bat
[2010/04/09 12:50:54 | 000,000,089 | ---- | C] () -- C:\Users\boul\AppData\Local\eephgqq.bat
[2004/11/16 07:52:41 | 000,110,592 | ---- | C] () -- C:\Windows\System32\8296e41e.dll
[2004/06/13 10:14:24 | 000,009,728 | ---- | C] () -- C:\Windows\System32\bcff980b.dll
[2004/06/13 10:03:53 | 000,000,031 | ---- | C] () -- C:\Windows\System32\fe435cdb.dll
[2010/11/24 17:30:45 | 000,000,000 | ---D | M] -- C:\Users\boul\AppData\Roaming\OfferBox
* redemarre le pc sous windows et poste le rapport ici
zip le dossier C:\OTL\_MoveIT
Envoie le zip sur http://upload.malekal.com
Yes, no, maybe
I don't know
Can you repeat the question?
You're not the boss of me now
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
2 avril 2011 à 02:30
2 avril 2011 à 02:30
voila,et maintenant,je fais koi?
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
2 avril 2011 à 10:21
2 avril 2011 à 10:21
Je pense que tu n'arrives pas à c/c le résultat.
Envoie le sur http://pjjoint.malekal.com
Envoie le sur http://pjjoint.malekal.com
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
2 avril 2011 à 11:25
2 avril 2011 à 11:25
je n arrive pas à acceder à http://pjjoint.malekal.com/ ca me marque "prob de connexion"
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
2 avril 2011 à 11:59
2 avril 2011 à 11:59
retente
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
2 avril 2011 à 14:09
2 avril 2011 à 14:09
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
3 avril 2011 à 23:40
3 avril 2011 à 23:40
Tu as un peu utilisé l'ordinateur ça donne quoi ?
Mets à jour Malwarebyte et fais un scan rapide avec, poste le rapport ici.
Mets à jour Malwarebyte et fais un scan rapide avec, poste le rapport ici.
bonikik
Messages postés
12
Date d'inscription
jeudi 31 mars 2011
Statut
Membre
Dernière intervention
5 avril 2011
5 avril 2011 à 17:29
5 avril 2011 à 17:29
ok
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Version de la base de données: 6276
Windows 6.0.6001 Service Pack 1
Internet Explorer 8.0.6001.19019
05/04/2011 14:42:38
mbam-log-2011-04-05 (14-42-38).txt
Type d'examen: Examen rapide
Elément(s) analysé(s): 157436
Temps écoulé: 7 minute(s), 29 seconde(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Version de la base de données: 6276
Windows 6.0.6001 Service Pack 1
Internet Explorer 8.0.6001.19019
05/04/2011 14:42:38
mbam-log-2011-04-05 (14-42-38).txt
Type d'examen: Examen rapide
Elément(s) analysé(s): 157436
Temps écoulé: 7 minute(s), 29 seconde(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)