Bonjour,
J'ai un fichier inconnu que
spyware terminator m'Avertie tentant de modifier un fichier window et que je bloque.
Fichier: kernel32.dll
Directoire: C:\Windows\System32\
Type de Fichier: DLL32
Fichier Créé: 2011-04-22 19:41:54
Fichier Modifié: 2010-11-20 12:08:56
Fichier
MD5 E80758CF485DB142FCA1EE03A34EAD05
Taille du Fichier: 837632 b
Signature Numérique du Fichier: Aucun
Fichier sur la Compagnie: Microsoft Corporation
Fichier Produit: Système d'exploitation Microsoft® Windows®
Description du Fichier: DLL du client API BASE Windows NT
Version du Fichier: 6.1.7600.16385 (win7_rtm.090713-1255)
Copyright Légal: © Microsoft Corporation. Tous droits réservés.
File Manifest: None
Evaluation de Spyware Terminator:
+ Fichier ayant la Description de la Compagnie
+ Fichier Contenant la Description du Produit
Et un trojan ou je ne sais pas quoi que je suis incapable de suprimer meme en
mode sans echec .
Logfile of Spyware Terminator v2.8.2.192 (db:5.004.022.000)
Scan Time: 2011-04-23 19:35:49 length: 3837 s
Platform: W7 (6.1.0.7601)
User: Admin
Boot Mode: Safe
Scan type: Full_Virus__Spyware_Scan
Scanned Objects: 87436 (Critical:6)
Filter: No System items, No Safe items, No Invalid items
Running Processes
smss.exe [Microsoft Corporation] : C:\Windows\sysnative\smss.exe
csrss.exe [Microsoft Corporation] : C:\Windows\sysnative\csrss.exe
csrss.exe [Microsoft Corporation] : C:\Windows\sysnative\csrss.exe
winlogon.exe [Microsoft Corporation] : C:\Windows\sysnative\winlogon.exe
services.exe [Microsoft Corporation] : C:\Windows\sysnative\services.exe
lsm.exe [Microsoft Corporation] : C:\Windows\sysnative\lsm.exe
Internet Settings
R - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page =
https://www.msn.com/fr-fr/?ocid=iehp
R - HKLM\Software\Microsoft\Internet Explorer\Search, SearchAssistant =
http://start.facemoods.com/?a=bf&s= {searchTerms}&f=4
R - HKLM\System\CurrentControlSet\Services\Tcpip\Parameters, Domain =
R - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page =
https://www.msn.com/fr-fr/?ocid=iehp (64-bit)
R - HKLM\System\CurrentControlSet\Services\Tcpip\Parameters, Domain = (64-bit)
R - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Telephony, DomainName = (64-bit)
BHO
02 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - [RealPlayer] : C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
02 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - [Microsoft Corporation] : C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
02 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - [Microsoft Corp.] : C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (64-bit)
StartUps
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ANIWZCS2Service : [Wireless Service] : C:\Program Files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, D-Link D-Link Xtreme N Dual Band DWA-160 : [D-Link Corp.] : C:\Program Files (x86)\D-Link\DWA-160\AirNCFG.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, TkBellExe : [RealNetworks, Inc.] : C:\Program Files (x86)\REAL\REALPLAYER\UPDATE\REALSCHED.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Launch LgDeviceAgent : [Logitech Inc.] : C:\PROGRAM FILES\LOGITECH\GAMEPANEL SOFTWARE\LGDEVAGT.EXE (64-bit)
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Launch LCDMon : [Logitech Inc.] : C:\PROGRAM FILES\LOGITECH\GAMEPANEL SOFTWARE\LCD MANAGER\LCDMON.EXE (64-bit)
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Launch LGDCore : [Logitech Inc.] : C:\PROGRAM FILES\LOGITECH\GAMEPANEL SOFTWARE\G-SERIES SOFTWARE\LGDCORE.EXE (64-bit)
Shell Extensions
- {06A2568A-CED6-4187-BB20-400B8C02BE5A} - [Microsoft Corporation] : C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe
Windows Live Photo Gallery Viewer Autoplay Shim - {00F33137-EE26-412F-8D71-F84E4C2C6625} - [Microsoft Corporation] : C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll
Windows Live Photo Gallery Autoplay Drop Target - {2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} - [Microsoft Corporation] : C:\Program Files (x86)\WINDOWS LIVE\PHOTO GALLERY\WLXPHOTOGALLERY.EXE
Windows Live Photo Gallery Editor Drop Target - {00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} - [Microsoft Corporation] : C:\Program Files (x86)\WINDOWS LIVE\PHOTO GALLERY\WLXPHOTOGALLERY.EXE
Windows Live Photo Gallery Viewer Drop Target - {00F374B7-B390-4884-B372-2FC349F2172B} - [Microsoft Corporation] : C:\Program Files (x86)\WINDOWS LIVE\PHOTO GALLERY\WLXPHOTOGALLERY.EXE
Windows Live Photo Gallery Viewer Shim - {00F346CB-35A4-465B-8B8F-65A29DBAB1F6} - [Microsoft Corporation] : C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll
Windows Live Photo Gallery Editor Shim - {00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} - [Microsoft Corporation] : C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll
Windows Live Photo Gallery Viewer Autoplay Shim - {00F30F90-3E96-453B-AFCD-D71989ECC2C7} - [Microsoft Corporation] : C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll
RealOne Player Context Menu Class - {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} - [RealNetworks, Inc.] : C:\Program Files (x86)\Real\RealPlayer\rpshell.dll
DivX Thumbnail Provider - {83238FAE-D346-4E12-8734-D42F7554B3E6} - [DivX, Inc.] : C:\Program Files (x86)\Win7codecs\filters\DivXThumbnailProvider.dll
DivX Property Handler - {D8D1CE8C-B1EB-4E95-B63B-1531BA60E992} - [DivX, Inc.] : C:\Program Files (x86)\Win7codecs\filters\DivXPropertyHandler.dll
DesktopContext Class - {A70C977A-BF00-412C-90B7-034C51DA2439} - [NVIDIA Corporation] : C:\Program Files\NVIDIA Corporation\Display\nvui.dll (64-bit)
NVIDIA CPL Context Menu Extension - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} - [NVIDIA Corporation] : C:\Windows\sysnative\nvshext.dll (64-bit)
WinRAR - {B41DB860-64E4-11D2-9906-E49FADC173CA} - [Alexander Roshal] : C:\Program Files\WinRAR\rarext.dll (64-bit)
Protocol Handler
- {828030A1-22C1-4009-854F-8E305202313F} - [Microsoft Corporation] : C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
- {828030A1-22C1-4009-854F-8E305202313F} - [Microsoft Corporation] : C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
Windows Live Mail HTML Asynchronous Pluggable Protocol Handler - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - [Microsoft Corporation] : C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
Album Download IE Asynchronous Pluggable Protocol Interface - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - [Microsoft Corporation] : C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
Services
23 - [Microsoft Corporation] : C:\Windows\sysnative\
drivers \ACPI.sys
23 - [Advanced Micro Devices] : C:\Windows\sysnative\drivers\amdxata.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\fltmgr.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\kbdclass.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\kbdhid.sys
23 - [Logitech Inc.] : C:\Windows\sysnative\drivers\LGBusEnum.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\mouclass.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\DRIVERS\mouhid.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\mountmgr.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\mssmbios.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\ndis.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\pci.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\tcpip.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\vdrvroot.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\volmgrx.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\volsnap.sys
23 - [Winbond Electronics Corporation] : C:\Windows\sysnative\DRIVERS\wbondir.sys
23 - [Microsoft Corporation] : C:\Windows\sysnative\drivers\Wdf01000.sys
Threat Files
<Trojan.Small.519168> : C:\Program Files (x86)\Microsoft Games\Age of Empires II\EMPIRES2.EXE
<Worm.Autorun-4448> : C:\Program Files (x86)\Win7codecs\Tools\conflict.exe
<Worm.Autorun-4448> : C:\Program Files (x86)\Win7codecs\Tools\conflict.exe
<VB-39965> : C:\Windows\winsxs\x86_microsoft-windows-ie-iexpress_31bf3856ad364e35_9.4.8112.16421_none_7cfb7f9f58f84355\wextract.exe
<Trojan.VB-39965> : C:\Windows\winsxs\x86_microsoft-windows-ie-iexpress_31bf3856ad364e35_9.4.8112.16421_none_7cfb7f9f58f84355\wextract.exe
<GenericFF-1> : C:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.21022.8_none_ecdf8c290e547f39\vcomp90.dll
<Trojan.GenericFF-1> : C:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.21022.8_none_ecdf8c290e547f39\vcomp90.dll
<GenericFF-1> : C:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.30729.4974_none_80bb23871e9ab973\vcomp90.dll
<Trojan.GenericFF-1> : C:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.30729.4974_none_80bb23871e9ab973\vcomp90.dll
<GenericFF-1> : C:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.30729.5570_none_80bb811d1e9a4ed2\vcomp90.dll
<Trojan.GenericFF-1> : C:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.30729.5570_none_80bb811d1e9a4ed2\vcomp90.dll
Advanced Files Report
%
WINDIR %\sysnative\smss.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=1911A3356FA3F77CCC825CCBAC038C2A SIZE=112640
%WINDIR%\sysnative\smss.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=1911A3356FA3F77CCC825CCBAC038C2A SIZE=112640
%WINDIR%\sysnative\csrss.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=60C2862B4BF0FD9F582EF344C2B1EC72 SIZE=7680
%WINDIR%\sysnative\csrss.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=60C2862B4BF0FD9F582EF344C2B1EC72 SIZE=7680
%WINDIR%\sysnative\csrss.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=60C2862B4BF0FD9F582EF344C2B1EC72 SIZE=7680
%WINDIR%\sysnative\csrss.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=60C2862B4BF0FD9F582EF344C2B1EC72 SIZE=7680
%WINDIR%\sysnative\winlogon.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=1151B1BAA6F350B1DB6598E0FEA7C457 SIZE=390656
%WINDIR%\sysnative\winlogon.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=1151B1BAA6F350B1DB6598E0FEA7C457 SIZE=390656
%WINDIR%\sysnative\services.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=24ACB7E5BE595468E3B9AA488B9B4FCB SIZE=328704
%WINDIR%\sysnative\services.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=24ACB7E5BE595468E3B9AA488B9B4FCB SIZE=328704
%WINDIR%\sysnative\lsass.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=0793F40B9B8A1BDD266296409DBD91EA SIZE=31232
%WINDIR%\sysnative\lsm.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=9662EE182644511439F1C53745DC1C88 SIZE=343040
%WINDIR%\sysnative\lsm.exe [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=9662EE182644511439F1C53745DC1C88 SIZE=343040
%PROGRAMFILES%\D-Link\DWA-160\WZCSLDR2.exe
%PROGRAMFILES%\XfireXO\prxtbXfir.dl
%PROGRAMFILES%\ConduitEngine\prxConduitEngine.dl
%PROGRAMFILES%\Ask.com\GenericAskToolbar.dll
%SystemDiskRoot%\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [Microsoft Corp.] [Microsoft® CoReXT] MD5=1FDF3D08ABDB54C9A0F14E31BA66EE0F SIZE=529280
%PROGRAMFILES%\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe [Microsoft Corporation] [Windows Live? Photo Gallery] MD5=7253E4B62820F944DF0BF59C6BD216A0 SIZE=246640
%PROGRAMFILES%\Windows Live\Photo Gallery\PhotoViewerShim.dll [Microsoft Corporation] [Windows Live? Photo Gallery] MD5=804B308D1E96A7305834AE2692010C6D SIZE=43376
%PROGRAMFILES%\WINDOWS LIVE\PHOTO GALLERY\WLXPHOTOGALLERY.EXE [Microsoft Corporation] [Windows Live? Photo Gallery] MD5=A00D5FBFABBF281FD059BB0CDA55B6E8 SIZE=131440
%PROGRAMFILES%\Real\RealPlayer\rpshell.dll [RealNetworks, Inc.] [RealPlayer] MD5=E8093BE4F33D4C4A895930DB219A0087 SIZE=62112
%PROGRAMFILES%\Win7codecs\filters\DivXThumbnailProvider.dll [DivX, Inc.] [DivX for Windows] MD5=85661B26FF8FE0FB034C1A5A4FEEC914 SIZE=65536
%PROGRAMFILES%\Win7codecs\filters\DivXPropertyHandler.dll [DivX, Inc.] [DivX for Windows] MD5=F74223DF80776ACE71C0293004E515B2 SIZE=831488
%SystemDiskRoot%\Program Files\NVIDIA Corporation\Display\nvui.dll [NVIDIA Corporation] [NVIDIA User Experience Driver Component] MD5=46F3D9B4C003354CAA35580979E46AAA SIZE=1871976
%WINDIR%\sysnative\nvshext.dll [NVIDIA Corporation] [NVIDIA Shell Extensions] MD5=E08E4C92AC39D0FEADBD9BB7E4715460 SIZE=61032
%WINDIR%\sysnative\nvshext.dll [NVIDIA Corporation] [NVIDIA Shell Extensions] MD5=E08E4C92AC39D0FEADBD9BB7E4715460 SIZE=61032
%SystemDiskRoot%\Program Files\WinRAR\rarext.dll [Alexander Roshal] [WinRAR] MD5=5E86DB3D3A3B8C935D71FA081A0BAEB4 SIZE=164352
%WINDIR%\sysnative\drivers\1394ohci.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=A87D604AEA360176311474C87A63BB88 SIZE=229888
%WINDIR%\sysnative\drivers\ACPI.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=D81D9E70B8A6DD14D42D7B4EFA65D5F2 SIZE=334208
%WINDIR%\sysnative\drivers\ACPI.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=D81D9E70B8A6DD14D42D7B4EFA65D5F2 SIZE=334208
%WINDIR%\sysnative\drivers\amdxata.sys [Advanced Micro Devices] [Storage Filter Driver] MD5=1142A21DB581A84EA5597B03A26EBAA0 SIZE=27008
%WINDIR%\sysnative\drivers\amdxata.sys [Advanced Micro Devices] [Storage Filter Driver] MD5=1142A21DB581A84EA5597B03A26EBAA0 SIZE=27008
%WINDIR%\sysnative\drivers\atapi.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=02062C0B390B7729EDC9E69C680A6F3C SIZE=24128
%WINDIR%\sysnative\DRIVERS\blbdrive.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=61583EE3C3A17003C4ACD0475646B4D3 SIZE=45056
%WINDIR%\sysnative\drivers\cdrom.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=F036CE71586E93D94DAB220D7BDF4416 SIZE=147456
%WINDIR%\sysnative\CLFS.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=FE1EC06F2253F691FE36217C592A0206 SIZE=367696
%WINDIR%\sysnative\Drivers\cng.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=D5FEA92400F12412B3922087C09DA6A5 SIZE=459248
%WINDIR%\sysnative\drivers\CompositeBus.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=03EDB043586CCEBA243D689BDDA370A8 SIZE=38912
%WINDIR%\sysnative\svchost.exe -k NetworkService
%WINDIR%\sysnative\svchost.exe -k NetworkService
%WINDIR%\sysnative\svchost.exe -k DcomLaunch
%WINDIR%\sysnative\svchost.exe -k DcomLaunch
%WINDIR%\sysnative\DRIVERS\disk.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=9819EEE8B5EA3784EC4AF3B137A5244C SIZE=73280
%WINDIR%\sysnative\lsass.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=0793F40B9B8A1BDD266296409DBD91EA SIZE=31232
%WINDIR%\sysnative\svchost.exe -k LocalServiceNetworkRestricted
%WINDIR%\sysnative\svchost.exe -k LocalServiceNetworkRestricted
%WINDIR%\sysnative\drivers\fileinfo.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=655661BE46B5F5F3FD454E2C3095B930 SIZE=70224
%WINDIR%\sysnative\drivers\fltmgr.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=DA6B67270FD9DB3697B20FCE94950741 SIZE=289664
%WINDIR%\sysnative\drivers\fltmgr.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=DA6B67270FD9DB3697B20FCE94950741 SIZE=289664
%WINDIR%\sysnative\DRIVERS\fvevol.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=1F7B25B858FA27015169FE95E54108ED SIZE=223248
%WINDIR%\sysnative\drivers\HDAudBus.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=97BFED39B6B79EB12CDDBFEED51F56BB SIZE=122368
%WINDIR%\sysnative\DRIVERS\hidusb.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=9592090A7E2B61CD582B612B6DF70536 SIZE=30208
%WINDIR%\sysnative\drivers\hwpolicy.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=A5462BD6884960C9DC85ED49D34FF392 SIZE=14720
%WINDIR%\sysnative\drivers\kbdclass.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=BC02336F1CBA7DCC7D1213BB588A68A5 SIZE=50768
%WINDIR%\sysnative\drivers\kbdclass.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=BC02336F1CBA7DCC7D1213BB588A68A5 SIZE=50768
%WINDIR%\sysnative\drivers\kbdhid.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=0705EFF5B42A9DB58548EEC3B26BB484 SIZE=33280
%WINDIR%\sysnative\drivers\kbdhid.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=0705EFF5B42A9DB58548EEC3B26BB484 SIZE=33280
%WINDIR%\sysnative\lsass.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=0793F40B9B8A1BDD266296409DBD91EA SIZE=31232
%WINDIR%\sysnative\Drivers\ksecdd.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=CCD53B5BD33CE0C889E830D839C8B66E SIZE=95616
%WINDIR%\sysnative\Drivers\ksecpkg.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=9FF918A261752C12639E8AD4208D2C2F SIZE=152960
%WINDIR%\sysnative\drivers\LGBusEnum.sys [Logitech Inc.] [Logitech GamePanel Software] MD5=FA529FB35694C24BF98A9EF67C1CD9D0 SIZE=22408
%WINDIR%\sysnative\drivers\LGBusEnum.sys [Logitech Inc.] [Logitech GamePanel Software] MD5=FA529FB35694C24BF98A9EF67C1CD9D0 SIZE=22408
%WINDIR%\sysnative\drivers\mouclass.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=7D27EA49F3C1F687D357E77A470AEA99 SIZE=49216
%WINDIR%\sysnative\drivers\mouclass.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=7D27EA49F3C1F687D357E77A470AEA99 SIZE=49216
%WINDIR%\sysnative\DRIVERS\mouhid.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=D3BF052C40B0C4166D9FD86A4288C1E6 SIZE=31232
%WINDIR%\sysnative\DRIVERS\mouhid.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=D3BF052C40B0C4166D9FD86A4288C1E6 SIZE=31232
%WINDIR%\sysnative\drivers\mountmgr.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=32E7A3D591D671A6DF2DB515A5CBE0FA SIZE=94592
%WINDIR%\sysnative\drivers\mountmgr.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=32E7A3D591D671A6DF2DB515A5CBE0FA SIZE=94592
%WINDIR%\sysnative\drivers\msisadrv.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=D916874BBD4F8B07BFB7FA9B3CCAE29D SIZE=15424
%WINDIR%\sysnative\drivers\mssmbios.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=0EED230E37515A0EAEE3C2E1BC97B288 SIZE=32320
%WINDIR%\sysnative\drivers\mssmbios.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=0EED230E37515A0EAEE3C2E1BC97B288 SIZE=32320
%WINDIR%\sysnative\Drivers\mup.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=F9A18612FD3526FE473C1BDA678D61C8 SIZE=60496
%WINDIR%\sysnative\drivers\ndis.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=79B47FD40D9A817E932F9D26FAC0A81C SIZE=951680
%WINDIR%\sysnative\drivers\ndis.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=79B47FD40D9A817E932F9D26FAC0A81C SIZE=951680
%WINDIR%\sysnative\drivers\partmgr.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=871EADAC56B0A4C6512BBE32753CCF79 SIZE=75136
%WINDIR%\sysnative\drivers\pci.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=94575C0571D1462A0F70BDE6BD6EE6B3 SIZE=184704
%WINDIR%\sysnative\drivers\pci.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=94575C0571D1462A0F70BDE6BD6EE6B3 SIZE=184704
%WINDIR%\sysnative\drivers\pciide.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=B5B8B5EF2E5CB34DF8DCF8831E3534FA SIZE=12352
%WINDIR%\sysnative\drivers\pcw.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=D6B9C2E1A11A3A4B26A182FFEF18F603 SIZE=50768
%WINDIR%\sysnative\svchost.exe -k DcomLaunch
%WINDIR%\sysnative\svchost.exe -k DcomLaunch
%WINDIR%\sysnative\svchost.exe -k DcomLaunch
%WINDIR%\sysnative\svchost.exe -k DcomLaunch
%WINDIR%\sysnative\svchost.exe -k netsvcs
%WINDIR%\sysnative\svchost.exe -k netsvcs
%WINDIR%\sysnative\DRIVERS\rdpbus.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=302DA2A0539F2CF54D7C6CC30C1F2D8D SIZE=24064
%WINDIR%\sysnative\drivers\rdyboost.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=34ED295FA0121C241BFEF24764FC4520 SIZE=213888
%WINDIR%\sysnative\svchost.exe -k RPCSS
%WINDIR%\sysnative\svchost.exe -k RPCSS
%WINDIR%\sysnative\svchost.exe -k rpcss
%WINDIR%\sysnative\svchost.exe -k rpcss
%WINDIR%\sysnative\drivers\vmstorfl.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=7785DC213270D2FC066538DAF94087E7 SIZE=46464
%WINDIR%\sysnative\drivers\swenum.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=D01EC09B6711A5F8E7E6564A4D0FBC90 SIZE=12496
%WINDIR%\sysnative\drivers\tcpip.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=509383E505C973ED7534A06B3D19688D SIZE=1924480
%WINDIR%\sysnative\drivers\tcpip.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=509383E505C973ED7534A06B3D19688D SIZE=1924480
%WINDIR%\sysnative\drivers\termdd.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=561E7E1F06895D78DE991E01DD0FB6E5 SIZE=63360
%WINDIR%\sysnative\DRIVERS\udfs.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=FF4232A1A64012BAA1FD97C7B67DF593 SIZE=328192
%WINDIR%\sysnative\drivers\umbus.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=DC54A574663A895C8763AF0FA1FF7561 SIZE=48640
%WINDIR%\sysnative\DRIVERS\usbccgp.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=481DFF26B4DCA8F4CBAC1F7DCE1D6829 SIZE=98816
%WINDIR%\sysnative\DRIVERS\usbehci.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=2EA4AFF7BE7EB4632E3AA8595B0803B5 SIZE=51200
%WINDIR%\sysnative\drivers\usbhub.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=DC96BD9CCB8403251BCF25047573558E SIZE=343040
%WINDIR%\sysnative\DRIVERS\usbuhci.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=81FB2216D3A60D1284455D511797DB3D SIZE=30720
%WINDIR%\sysnative\drivers\vdrvroot.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=C5C876CCFC083FF3B128F933823E87BD SIZE=36432
%WINDIR%\sysnative\drivers\vdrvroot.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=C5C876CCFC083FF3B128F933823E87BD SIZE=36432
%WINDIR%\sysnative\drivers\vga.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=53E92A310193CB3C03BEA963DE7D9CFC SIZE=29184
%WINDIR%\sysnative\drivers\vmbus.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=86EA3E79AE350FEA5331A1303054005F SIZE=199552
%WINDIR%\sysnative\drivers\volmgr.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=D2AAFD421940F640B407AEFAAEBD91B0 SIZE=71552
%WINDIR%\sysnative\drivers\volmgrx.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=A255814907C89BE58B79EF2F189B843B SIZE=363392
%WINDIR%\sysnative\drivers\volmgrx.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=A255814907C89BE58B79EF2F189B843B SIZE=363392
%WINDIR%\sysnative\drivers\volsnap.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=0D08D2F3B3FF84E433346669B5E0F639 SIZE=295808
%WINDIR%\sysnative\drivers\volsnap.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=0D08D2F3B3FF84E433346669B5E0F639 SIZE=295808
%WINDIR%\sysnative\DRIVERS\wbondir.sys [Winbond Electronics Corporation] [Winbond IR Transceiver] MD5=67C3FDE1C708AF63D84C6AAFCC462D93 SIZE=56320
%WINDIR%\sysnative\DRIVERS\wbondir.sys [Winbond Electronics Corporation] [Winbond IR Transceiver] MD5=67C3FDE1C708AF63D84C6AAFCC462D93 SIZE=56320
%WINDIR%\sysnative\drivers\Wdf01000.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=441BD2D7B4F98134C3A4F9FA570FD250 SIZE=654928
%WINDIR%\sysnative\drivers\Wdf01000.sys [Microsoft Corporation] [Système d'exploitation Microsoft® Windows®] MD5=441BD2D7B4F98134C3A4F9FA570FD250 SIZE=654928
%WINDIR%\sysnative\svchost.exe -k netsvcs
%WINDIR%\sysnative\svchost.exe -k netsvcs
%WINDIR%\sysnative\drivers\WudfPf.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=D3381DC54C34D79B22CEE0D65BA91B7C SIZE=112128
%WINDIR%\sysnative\svchost.exe -k LocalSystemNetworkRestricted
%WINDIR%\sysnative\svchost.exe -k LocalSystemNetworkRestricted
%PROGRAMFILES%\Windows Live\Messenger\msgrapp.dll [Microsoft Corporation] [Windows Live Messenger Protocol Handler Module] MD5=C91C67FEA06BD90AAF2AA00BFC74A035 SIZE=65912
%PROGRAMFILES%\Windows Live\Mail\mailcomm.dll [Microsoft Corporation] [Windows Live Mail] MD5=6D84295FAC747D51FA287BC17DA2C9EE SIZE=741240
%PROGRAMFILES%\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll [Microsoft Corporation] [Windows Live? Photo Gallery] MD5=DF07358FDA177F70DE329D627D838F95 SIZE=42864
End of Report
Suppression:
Préparation...
Création d'un point de restauration
Fonction de suppression de fichier solide désactivé
Supprimer VB-39965
La suppression du fichier a échoué. (User Access Denied) : c:\Windows\winsxs\x86_microsoft-windows-ie-iexpress_31bf3856ad364e35_9.4.8112.16421_none_7cfb7f9f58f84355\wextract.exe
La suppression du fichier a échoué.: c:\Windows\winsxs\x86_microsoft-windows-ie-iexpress_31bf3856ad364e35_9.4.8112.16421_none_7cfb7f9f58f84355\wextract.exe
Supprimer GenericFF-1
La suppression du fichier a échoué. (User Access Denied) : c:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.21022.8_none_ecdf8c290e547f39\vcomp90.dll
La suppression du fichier a échoué.: c:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.21022.8_none_ecdf8c290e547f39\vcomp90.dll
La suppression du fichier a échoué. (User Access Denied) : c:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.30729.4974_none_80bb23871e9ab973\vcomp90.dll
La suppression du fichier a échoué.: c:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.30729.4974_none_80bb23871e9ab973\vcomp90.dll
La suppression du fichier a échoué. (User Access Denied) : c:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.30729.5570_none_80bb811d1e9a4ed2\vcomp90.dll
La suppression du fichier a échoué.: c:\Windows\winsxs\x86_microsoft.vc90.openmp_1fc8b3b9a1e18e3b_9.0.30729.5570_none_80bb811d1e9a4ed2\vcomp90.dll
Supprimer Worm.Autorun-4448
Les fichiers sélectionnés ont été supprimés.: c:\Program Files (x86)\Win7codecs\Tools\conflict.exe
Fermeture du point de restauration système
Analyse(s) terminée(s)
Merci je suis sur window 7 64 bit
Afficher la suite