Alerte!! Aidez-moi s'il vous plait.

Résolu/Fermé
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011 - 3 mai 2011 à 01:54
 Utilisateur anonyme - 6 mai 2011 à 21:39
Bonjour,

J'ai un ordinateur portable windows vista et comme antivirus antivir.
J'étais tranquillement en train de regarder une série en streaming, lorsque mon pc m'a affiché plusieurs alertes d'un cheval de Troie auquel j'ai refusé l'accés. Dans ma grande bêtise, j'ai refusé l'accés les trois ou quatre fois que l'incident s'est produit par la suite.
Le problème c'est que lorsque j'ai voulu éteindre mon ordinateur, un écran bleu s'est affiché me disant qu'il ne pouvait être éteint. Puis écran noir, bruit bizarre (comme une pélicule de film qui se termine une sorte de Brouuuschh (hunhun)) et mon ordinateur redémarre, avec peine, à la limite de la surchauffe. J'ai ensuite une alerte windows qui me dit que je n'ai pas de protection contre les logiciels espions ou malveillants. J'essaie alors une mise à jour qui se révèle impossible.

Impossible de l'éteindre sans ce maudit écran bleu.

Il est clair qu'il y a un problème et de la même manière il est certain que je suis une bille en informatique. Je réclame donc votre aide, s'il vous plait.

Bien à vous.

44 réponses

Utilisateur anonyme
3 mai 2011 à 02:17
salut

▶ Télécharge : Gmer (by Przemyslaw Gmerek) et enregistre-le sur ton bureau

Desactive toutes tes protections le temps du scan de gMer

Pour XP => double clique sur gmer.exe
Pour Vista et 7 => clique droit "executer en tant que...."

▶ clique sur l'onglet rootkit,lances le scan,des lignes rouges vont apparaitre.

▶ Les lignes rouges indiquent la presence d'un rootkit.Postes moi le rapport gmer (cliques sur copy,puis vas dans demarrer ,puis ouvres le bloc note,vas dans edition et cliques sur coller,le rapport gmer va apparaitre,postes moi le)
0
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
3 mai 2011 à 11:57
J'ai fait comme tu me l'as dit. En premier lieu, ça m'a affiché ça :

GMER 1.0.15.15572 - http://www.gmer.net
Rootkit quick scan 2011-05-03 11:39:38
Windows 6.0.6002 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 Hitachi_HTS543225L9A300 rev.FBEOC40J
Running: gmer.exe; Driver: C:\Users\Teddy\AppData\Local\Temp\ugryafob.sys


---- Disk sectors - GMER 1.0.15 ----

Disk \Device\Harddisk0\DR0 TDL4@MBR code has been found <-- ROOTKIT !!!
Disk \Device\Harddisk0\DR0 sector 00: rootkit-like behavior

---- Devices - GMER 1.0.15 ----

AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Gestionnaire de filtres de système de fichiers Microsoft/Microsoft Corporation)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (WDF dynamique/Microsoft Corporation)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass1 Wdf01000.sys (WDF dynamique/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----


Puis avec le scan complet :


GMER 1.0.15.15572 - http://www.gmer.net
Rootkit scan 2011-05-03 11:35:04
Windows 6.0.6002 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdePort0 Hitachi_HTS543225L9A300 rev.FBEOC40J
Running: gmer.exe; Driver: C:\Users\Teddy\AppData\Local\Temp\ugryafob.sys


---- System - GMER 1.0.15 ----

SSDT 96BA486C ZwCreateThread
SSDT 96BA4858 ZwOpenProcess
SSDT 96BA485D ZwOpenThread
SSDT 96BA4867 ZwTerminateProcess

---- Kernel code sections - GMER 1.0.15 ----

.text ntkrnlpa.exe!KeSetEvent + 221 824BB9A4 4 Bytes [6C, 48, BA, 96]
.text ntkrnlpa.exe!KeSetEvent + 3F2 824BBB75 3 Bytes [48, BA, 96]
.text ntkrnlpa.exe!KeSetEvent + 40D 824BBB90 4 Bytes [5D, 48, BA, 96]
.text ntkrnlpa.exe!KeSetEvent + 621 824BBDA4 4 Bytes [67, 48, BA, 96]
.text C:\Windows\system32\DRIVERS\atikmdag.sys section is writeable [0x91A10000, 0x2311A4, 0xE8000020]
.text C:\Program Files\Hewlett-Packard\Media\DVD\000.fcl section is writeable [0xA0F5C000, 0x2892, 0xE8000020]
.vmp2 C:\Program Files\Hewlett-Packard\Media\DVD\000.fcl entry point in ".vmp2" section [0xA0F7F050]

---- User code sections - GMER 1.0.15 ----

.text C:\Windows\system32\svchost.exe[1216] ntdll.dll!NtProtectVirtualMemory 77AA4B84 5 Bytes JMP 0029000A
.text C:\Windows\system32\svchost.exe[1216] ntdll.dll!NtWriteVirtualMemory 77AA54C4 5 Bytes JMP 002A000A
.text C:\Windows\system32\svchost.exe[1216] ntdll.dll!KiUserExceptionDispatcher 77AA5BF8 5 Bytes JMP 0028000A
.text C:\Windows\system32\svchost.exe[1216] ole32.dll!CoCreateInstance 765D9F3E 5 Bytes JMP 0088000A
.text C:\Windows\system32\svchost.exe[1216] USER32.dll!GetCursorPos 76960B88 5 Bytes JMP 01AC000A
.text C:\Windows\Explorer.EXE[1712] ntdll.dll!NtProtectVirtualMemory 77AA4B84 5 Bytes JMP 0229000A
.text C:\Windows\Explorer.EXE[1712] ntdll.dll!NtWriteVirtualMemory 77AA54C4 5 Bytes JMP 022A000A
.text C:\Windows\Explorer.EXE[1712] ntdll.dll!KiUserExceptionDispatcher 77AA5BF8 5 Bytes JMP 0224000A
.text C:\Windows\system32\wuauclt.exe[3196] ntdll.dll!NtProtectVirtualMemory 77AA4B84 5 Bytes JMP 0091000A
.text C:\Windows\system32\wuauclt.exe[3196] ntdll.dll!NtWriteVirtualMemory 77AA54C4 5 Bytes JMP 0092000A
.text C:\Windows\system32\wuauclt.exe[3196] ntdll.dll!KiUserExceptionDispatcher 77AA5BF8 5 Bytes JMP 0090000A
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] ntdll.dll!NtProtectVirtualMemory 77AA4B84 5 Bytes JMP 00D0000A
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] ntdll.dll!NtWriteVirtualMemory 77AA54C4 5 Bytes JMP 00D1000A
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] ntdll.dll!KiUserExceptionDispatcher 77AA5BF8 3 Bytes JMP 00CF000A
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] ntdll.dll!KiUserExceptionDispatcher + 4 77AA5BFC 1 Byte [89]
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] USER32.dll!CreateWindowExW 76951305 5 Bytes JMP 6FDADB5C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] USER32.dll!DialogBoxParamW 769710B0 5 Bytes JMP 6FCD54BD C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] USER32.dll!DialogBoxIndirectParamW 76972EF5 5 Bytes JMP 6FEA5117 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] USER32.dll!DialogBoxParamA 76988152 5 Bytes JMP 6FEA50B4 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] USER32.dll!DialogBoxIndirectParamA 7698847D 5 Bytes JMP 6FEA517A C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] USER32.dll!MessageBoxIndirectA 7699D4D9 5 Bytes JMP 6FEA5049 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] USER32.dll!MessageBoxIndirectW 7699D5D3 5 Bytes JMP 6FEA4FDE C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] USER32.dll!MessageBoxExA 7699D639 5 Bytes JMP 6FEA4F7C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4424] USER32.dll!MessageBoxExW 7699D65D 5 Bytes JMP 6FEA4F1A C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] ntdll.dll!NtProtectVirtualMemory 77AA4B84 5 Bytes JMP 0242000A
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] ntdll.dll!NtWriteVirtualMemory 77AA54C4 5 Bytes JMP 0243000A
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] ntdll.dll!KiUserExceptionDispatcher 77AA5BF8 5 Bytes JMP 0241000A
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!CreateDialogParamW 769472A2 5 Bytes JMP 6FDADEE8 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!GetAsyncKeyState 7694863C 5 Bytes JMP 6FCC8EF7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!SetWindowsHookExW 769487AD 5 Bytes JMP 6FDA9B01 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!CallNextHookEx 76948E3B 5 Bytes JMP 6FD9D125 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!UnhookWindowsHookEx 769498DB 5 Bytes JMP 6FD14664 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!EnableWindow 7694CD8B 5 Bytes JMP 6FDADD75 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!CreateWindowExW 76951305 5 Bytes JMP 6FDADB5C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!GetKeyState 76958CB1 5 Bytes JMP 6FDAD323 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!IsDialogMessageW 76960745 5 Bytes JMP 6FCD59CF C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!CreateDialogParamA 769617AA 5 Bytes JMP 6FEA5D83 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!IsDialogMessage 76961847 5 Bytes JMP 6FEA561F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!CreateDialogIndirectParamA 769626F1 5 Bytes JMP 6FEA5DBA C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!CreateDialogIndirectParamW 76969A62 5 Bytes JMP 6FEA5DF1 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!SetKeyboardState 76970987 5 Bytes JMP 6FEA598E C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!DialogBoxParamW 769710B0 5 Bytes JMP 6FCD54BD C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!DialogBoxIndirectParamW 76972EF5 5 Bytes JMP 6FEA5117 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!SendInput 76972F75 5 Bytes JMP 6FEA654B C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!EndDialog 7697326E 5 Bytes JMP 6FCD7E76 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!SetCursorPos 76986FB2 5 Bytes JMP 6FEA659F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!DialogBoxParamA 76988152 5 Bytes JMP 6FEA50B4 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!DialogBoxIndirectParamA 7698847D 5 Bytes JMP 6FEA517A C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!MessageBoxIndirectA 7699D4D9 5 Bytes JMP 6FEA5049 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!MessageBoxIndirectW 7699D5D3 5 Bytes JMP 6FEA4FDE C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!MessageBoxExA 7699D639 5 Bytes JMP 6FEA4F7C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!MessageBoxExW 7699D65D 5 Bytes JMP 6FEA4F1A C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] USER32.dll!keybd_event 7699D972 5 Bytes JMP 6FEA68CF C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] SHELL32.dll!SHRestricted + D95 76A689A8 4 Bytes [4D, 30, 19, 74]
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] SHELL32.dll!SHRestricted + D9D 76A689B0 8 Bytes [57, 2F, 19, 74, 9C, 5B, 18, ...]
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] ole32.dll!OleLoadFromStream 765A1E80 5 Bytes JMP 6FEA547F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5804] ole32.dll!CoCreateInstance 765D9F3E 5 Bytes JMP 6FDADBB8 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)

---- User IAT/EAT - GMER 1.0.15 ----

IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!SearchPathW] [74181AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7418007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CopyFileW] [7417E1E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!MoveFileW] [74180994] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!DeleteFileW] [7417EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CreateProcessW] [7417A3FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!SetCurrentDirectoryW] [74181D56] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FindClose] [74183ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FindNextFileW] [74182999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FindFirstFileW] [74183035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7417FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CreateFileW] [7417E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!WritePrivateProfileStringW] [7417DC5C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7417FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetPrivateProfileStringW] [7417D4B8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegQueryInfoKeyW] [7418FBB3] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegEnumValueW] [7419051D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegOpenKeyExW] [7418EB3D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegQueryValueExW] [7418F817] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegDeleteKeyW] [7418EF31] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegCreateKeyExW] [7418E5C5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegCloseKey] [7418ED95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7418007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7417FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!CopyFileW] [7417E1E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7417FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!CreateFileW] [7417E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!SearchPathW] [74181AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!DeleteFileW] [7417EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindClose] [74183ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindFirstFileA] [74182CD2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindNextFileA] [74182926] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindFirstFileW] [74183035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindNextFileW] [74182999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetFileAttributesA] [7417BD77] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetCurrentDirectoryA] [7418173F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetFileAttributesA] [7417BFCD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateDirectoryA] [74180F0F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!RemoveDirectoryA] [741814E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!DeleteFileA] [7417ED1B] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetFileAttributesW] [7417BEA2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetCurrentDirectoryW] [74181D56] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetFileAttributesW] [7417C0FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateDirectoryW] [7418103D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!DeleteFileW] [7417EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!MoveFileW] [74180994] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!RemoveDirectoryW] [74181614] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!MoveFileA] [74180921] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!LoadLibraryA] [7417FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateProcessA] [7417A073] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateProcessW] [7417A3FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateFileA] [7417E717] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateFileW] [7417E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!LoadLibraryW] [7417FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7417FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!ReplaceFileW] [74180C95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!WritePrivateProfileStringW] [7417DC5C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetPrivateProfileStringW] [7417D4B8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetPrivateProfileStringA] [7417D361] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!DeleteFileW] [7417EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7418007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetFileAttributesW] [7417C0FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateFileW] [7417E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindFirstFileW] [74183035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindNextFileW] [74182999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SearchPathW] [74181AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetFileAttributesW] [7417BEA2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetFileAttributesA] [7417BFCD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateFileA] [7417E717] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindFirstFileA] [74182CD2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindNextFileA] [74182926] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindClose] [74183ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SearchPathA] [741823A5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetFileAttributesA] [7417BD77] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7417FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [USER32.dll!WinHelpW] [7417FAAA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [USER32.dll!WinHelpA] [7417F973] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegCloseKey] [7418ED95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegCreateKeyExA] [7418E43D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegDeleteKeyA] [7418EDE8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegQueryInfoKeyA] [7418F9B7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegOpenKeyExA] [7418E9C5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegCreateKeyExW] [7418E5C5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegOpenKeyExW] [7418EB3D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumKeyExW] [7419020D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegQueryValueW] [7418F4DB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegDeleteKeyW] [7418EF31] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegQueryInfoKeyW] [7418FBB3] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegQueryValueExW] [7418F817] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumValueW] [7419051D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumKeyW] [7418FF19] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumKeyExA] [74190085] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumValueA] [74190395] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumKeyA] [7418FDAF] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegQueryValueExA] [7418F677] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetPrivateProfileSectionW] [7417CFA8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!FindNextFileW] [74182999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!ReplaceFileW] [74180C95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetPrivateProfileSectionNamesW] [7417D22A] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!WritePrivateProfileSectionW] [7417D9DA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!WritePrivateProfileStringW] [7417DC5C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateHardLinkW] [7417EB68] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SetCurrentDirectoryW] [74181D56] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CopyFileW] [7417E1E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetBinaryTypeW] [7417CAA7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7418007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateProcessW] [7417A3FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!MoveFileW] [74180994] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!FindFirstFileW] [74183035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!FindClose] [74183ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetShortPathNameA] [7417C709] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetFileAttributesA] [7417BD77] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SearchPathW] [74181AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetPrivateProfileIntW] [7417CD20] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetPrivateProfileStringW] [7417D4B8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!RemoveDirectoryW] [74181614] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateDirectoryW] [7418103D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!DeleteFileW] [7417EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SetFileAttributesW] [7417C0FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetFileAttributesW] [7417BEA2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!MoveFileExW] [741809B9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetShortPathNameW] [7417C848] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7417FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateFileW] [7417E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetFileAttributesExW] [7417C368] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7417FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetLongPathNameW] [7417C5D8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [USER32.dll!LoadImageW] [7417F0D0] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [USER32.dll!WinHelpW] [7417FAAA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [USER32.dll!PrivateExtractIconsW] [7417F5C5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!AssocQueryStringByKeyW] [7418620B] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHCreateStreamOnFileW] [74187595] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!AssocQueryKeyW] [741860AE] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!AssocQueryStringW] [7418615B] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHDeleteKeyA] [741875E7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathCombineW] [74186533] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHOpenRegStream2W] [7418799A] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Micros
0
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
3 mai 2011 à 11:59
C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathStripToRootW] [74187281] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathFindOnPathW] [74186716] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathStripPathW] [741871ED] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathRemoveArgsW] [74187021] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHRegGetBoolUSValueW] [74187FBE] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathSkipRootW] [74187159] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathIsDirectoryEmptyW] [741868E7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathIsSystemFolderW] [74186BE2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathIsDirectoryA] [74186803] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathRelativePathToW] [74186F81] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathBuildRootA] [741863A5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHRegGetPathW] [741880BD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHRegSetPathW] [74188513] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHRegGetUSValueW] [74188176] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathCreateFromUrlW] [741865DA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHQueryValueExW] [74187BA4] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHRegGetValueW] [74188235] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathIsNetworkPathW] [7418697F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathIsUNCServerShareW] [74186DAD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathIsUNCServerW] [74186D15] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathUnExpandEnvStringsW] [7418731F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathMakeSystemFolderW] [74186EDD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathIsUNCW] [74186C7D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathIsRelativeW] [74186AAF] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHGetValueW] [741878EA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathBuildRootW] [741863F4] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHDeleteValueW] [741876D7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHSetValueW] [74188732] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHEnumKeyExW] [7418777E] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHEnumValueW] [74187831] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!PathFileExistsW] [7418667B] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [SHLWAPI.dll!SHDeleteKeyW] [74187636] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SHELL32.dll [ntdll.dll!NtQueryDirectoryFile] [7417BB38] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!FindClose] [74183ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!FindFirstFileW] [74183035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [7418007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!SearchPathW] [74181AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateProcessW] [7417A3FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!DeleteFileW] [7417EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetShortPathNameW] [7417C848] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetFileAttributesExW] [7417C368] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateFileW] [7417E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [7417FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetFileAttributesW] [7417BEA2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [7417FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\SAMLIB.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[5804] @ C:\Windows\system32\IPHLPAPI.DLL [KERNEL32.dll!GetProcAddress] [741782F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)

---- Devices - GMER 1.0.15 ----

AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (WDF dynamique/Microsoft Corporation)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass1 Wdf01000.sys (WDF dynamique/Microsoft Corporation)
AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Gestionnaire de filtres de système de fichiers Microsoft/Microsoft Corporation)

---- Registry - GMER 1.0.15 ----

Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs@C:\Program Files\LucasArts\LEGO\xae Indiana Jones\x2122 2\Audio\Audio.CFG 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs@C:\Program Files\LucasArts\LEGO\xae Indiana Jones\x2122 2\Audio\_CutScenes\AkatorHub_Intro.ogg 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs@C:\Program Files\LucasArts\LEGO\xae Indiana Jones\x2122 2\Audio\_Music\1_0_HUB_1Nepal_Qui.ogg 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs@C:\Program Files\LucasArts\LEGO\xae Indiana Jones\x2122 2\Movies\PC\attract.bik 1
Reg HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted@C:\Program Files\EA GAMES\Les Sims 2\xa0 La bonne affaire\eauninstall.exe 1

---- Disk sectors - GMER 1.0.15 ----

Disk \Device\Harddisk0\DR0 TDL4@MBR code has been found <-- ROOTKIT !!!
Disk \Device\Harddisk0\DR0 sector 00: rootkit-like behavior

---- Files - GMER 1.0.15 ----

File C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0599D.log 131072 bytes
File C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0599E.log 0 bytes
File C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0599F.log 131072 bytes
File C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS059A0.log 131072 bytes

---- EOF - GMER 1.0.15 ----


J'espère que c'est bien ce que tu m'as demandé (j'insiste sur ma bêtise quant à l'informatique ^^).
0
Utilisateur anonyme
3 mai 2011 à 12:00
▶ Télécharge Reload_TDSSKiller

▶ Lance le

choisis : télécharger la derniere version

▶ relance-le

choisis : lancer le nettoyage

TDSSKiller va s'ouvrir , clique sur "Start Scan"

une fois qu'il a terminé , redemarre s'il te le demande pour finir de nettoyer

sinon , ferme tdssKiller et le rapport s'affichera sur le bureau

▶ Copie/Colle son contenu dans ta prochaine réponse.
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
3 mai 2011 à 12:06
J'ai le choix entre "reboot now" et "later" qu'est-ce que je choisis?
0
Utilisateur anonyme
3 mai 2011 à 12:09
reboot now
0
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
3 mai 2011 à 12:22
Hum... ça m'a redémarrer mon pc (et la surprise que "reboot now" voulait dire "redémarrer maintenant ^^'), puis le fameux écran bleu est réapparu me disant que windows avait été coupé suite à des domages, blabla... Ça me l'a bien redémarré pourtant, mais je n'ai pas de scan à te proposer puisque... bah j'en ai pas ^^
0
Utilisateur anonyme
3 mai 2011 à 12:26
ni sur le bureau ni dans C:\ ?
0
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
3 mai 2011 à 12:26
Whoops, j'ai refait un scan, et ensuite, j'ai pu avoir un rapport (me disant qu'il n'y avait plus d'infection. Le voici :

2011/05/03 12:23:27.0485 3564 TDSS rootkit removing tool 2.5.0.0 May 1 2011 14:20:16
2011/05/03 12:23:28.0505 3564 ================================================================================
2011/05/03 12:23:28.0505 3564 SystemInfo:
2011/05/03 12:23:28.0505 3564
2011/05/03 12:23:28.0505 3564 OS Version: 6.0.6002 ServicePack: 2.0
2011/05/03 12:23:28.0505 3564 Product type: Workstation
2011/05/03 12:23:28.0505 3564 ComputerName: PC-DE-TEDDY
2011/05/03 12:23:28.0505 3564 UserName: Teddy
2011/05/03 12:23:28.0505 3564 Windows directory: C:\Windows
2011/05/03 12:23:28.0505 3564 System windows directory: C:\Windows
2011/05/03 12:23:28.0505 3564 Processor architecture: Intel x86
2011/05/03 12:23:28.0505 3564 Number of processors: 2
2011/05/03 12:23:28.0505 3564 Page size: 0x1000
2011/05/03 12:23:28.0505 3564 Boot type: Normal boot
2011/05/03 12:23:28.0505 3564 ================================================================================
2011/05/03 12:23:28.0844 3564 Initialize success
2011/05/03 12:23:50.0370 5408 ================================================================================
2011/05/03 12:23:50.0370 5408 Scan started
2011/05/03 12:23:50.0370 5408 Mode: Manual;
2011/05/03 12:23:50.0370 5408 ================================================================================
2011/05/03 12:23:51.0536 5408 Accelerometer (3b10711ad8656c097e0d16a41b29c54c) C:\Windows\system32\DRIVERS\Accelerometer.sys
2011/05/03 12:23:51.0642 5408 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
2011/05/03 12:23:51.0774 5408 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
2011/05/03 12:23:51.0813 5408 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
2011/05/03 12:23:51.0865 5408 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
2011/05/03 12:23:51.0931 5408 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
2011/05/03 12:23:52.0076 5408 AFD (a201207363aa900abf1a388468688570) C:\Windows\system32\drivers\afd.sys
2011/05/03 12:23:52.0188 5408 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
2011/05/03 12:23:52.0238 5408 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
2011/05/03 12:23:52.0531 5408 aliide (3d76fda1a10acc3dc84728f55c29b6d4) C:\Windows\system32\drivers\aliide.sys
2011/05/03 12:23:52.0666 5408 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
2011/05/03 12:23:52.0746 5408 amdide (5b92e7839f5a1fbc1b39de67758ad6f8) C:\Windows\system32\drivers\amdide.sys
2011/05/03 12:23:52.0825 5408 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
2011/05/03 12:23:52.0858 5408 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
2011/05/03 12:23:52.0967 5408 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
2011/05/03 12:23:53.0135 5408 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
2011/05/03 12:23:53.0311 5408 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
2011/05/03 12:23:53.0353 5408 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
2011/05/03 12:23:53.0666 5408 atikmdag (96f5eea88f9146f5f803ad20c4264565) C:\Windows\system32\DRIVERS\atikmdag.sys
2011/05/03 12:23:53.0830 5408 avgio (f1d43170fdd7399ee17ea32d4f868b0c) C:\Program Files\Avira\AntiVir Desktop\avgio.sys
2011/05/03 12:23:53.0948 5408 avgntflt (14fe36d8f2c6a2435275338d061a0b66) C:\Windows\system32\DRIVERS\avgntflt.sys
2011/05/03 12:23:54.0004 5408 avipbb (ad9bd66a862116e79cb45bb6be46055f) C:\Windows\system32\DRIVERS\avipbb.sys
2011/05/03 12:23:54.0165 5408 BCM43XX (b9dce12ea5d337975c444787b66bbfde) C:\Windows\system32\DRIVERS\bcmwl6.sys
2011/05/03 12:23:54.0283 5408 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
2011/05/03 12:23:54.0378 5408 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
2011/05/03 12:23:54.0439 5408 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
2011/05/03 12:23:54.0555 5408 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
2011/05/03 12:23:54.0600 5408 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
2011/05/03 12:23:54.0675 5408 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
2011/05/03 12:23:54.0718 5408 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
2011/05/03 12:23:54.0935 5408 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
2011/05/03 12:23:54.0976 5408 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
2011/05/03 12:23:55.0029 5408 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
2011/05/03 12:23:55.0062 5408 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
2011/05/03 12:23:55.0122 5408 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
2011/05/03 12:23:55.0224 5408 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\DRIVERS\circlass.sys
2011/05/03 12:23:55.0285 5408 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
2011/05/03 12:23:55.0415 5408 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys
2011/05/03 12:23:55.0450 5408 cmdide (d36372a6ea6805efbe8884d10772313f) C:\Windows\system32\drivers\cmdide.sys
2011/05/03 12:23:55.0509 5408 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys
2011/05/03 12:23:55.0560 5408 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
2011/05/03 12:23:55.0593 5408 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
2011/05/03 12:23:55.0914 5408 DfsC (218d8ae46c88e82014f5d73d0236d9b2) C:\Windows\system32\Drivers\dfsc.sys
2011/05/03 12:23:56.0027 5408 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
2011/05/03 12:23:56.0162 5408 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
2011/05/03 12:23:56.0333 5408 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
2011/05/03 12:23:56.0534 5408 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
2011/05/03 12:23:56.0677 5408 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
2011/05/03 12:23:56.0782 5408 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
2011/05/03 12:23:56.0905 5408 enecir (004b2ea6cc2598ec5f0552e43ce29cef) C:\Windows\system32\DRIVERS\enecir.sys
2011/05/03 12:23:56.0985 5408 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys
2011/05/03 12:23:57.0125 5408 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
2011/05/03 12:23:57.0191 5408 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
2011/05/03 12:23:57.0269 5408 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
2011/05/03 12:23:57.0370 5408 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
2011/05/03 12:23:57.0413 5408 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
2011/05/03 12:23:57.0439 5408 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
2011/05/03 12:23:57.0495 5408 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
2011/05/03 12:23:57.0631 5408 fssfltr (491e9d9a26a745f6ae7d570849f4bd87) C:\Windows\system32\DRIVERS\fssfltr.sys
2011/05/03 12:23:57.0756 5408 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
2011/05/03 12:23:57.0833 5408 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
2011/05/03 12:23:57.0927 5408 HdAudAddService (3f90e001369a07243763bd5a523d8722) C:\Windows\system32\drivers\HdAudio.sys
2011/05/03 12:23:58.0044 5408 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
2011/05/03 12:23:58.0081 5408 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
2011/05/03 12:23:58.0167 5408 HidIr (d8df3722d5e961baa1292aa2f12827e2) C:\Windows\system32\DRIVERS\hidir.sys
2011/05/03 12:23:58.0221 5408 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
2011/05/03 12:23:58.0270 5408 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys
2011/05/03 12:23:58.0337 5408 hpdskflt (24f3f496c18efc234777723a67a85f81) C:\Windows\system32\DRIVERS\hpdskflt.sys
2011/05/03 12:23:58.0407 5408 HpqKbFiltr (35956140e686d53bf676cf0c778880fc) C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
2011/05/03 12:23:58.0479 5408 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
2011/05/03 12:23:58.0513 5408 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
2011/05/03 12:23:58.0634 5408 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
2011/05/03 12:23:58.0677 5408 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
2011/05/03 12:23:58.0786 5408 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
2011/05/03 12:23:58.0919 5408 intelide (dd512a049bd7b4bce8a83554c5eff2c1) C:\Windows\system32\drivers\intelide.sys
2011/05/03 12:23:58.0981 5408 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
2011/05/03 12:23:59.0023 5408 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
2011/05/03 12:23:59.0068 5408 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys
2011/05/03 12:23:59.0103 5408 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
2011/05/03 12:23:59.0186 5408 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
2011/05/03 12:23:59.0234 5408 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
2011/05/03 12:23:59.0275 5408 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
2011/05/03 12:23:59.0295 5408 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
2011/05/03 12:23:59.0358 5408 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
2011/05/03 12:23:59.0471 5408 JMCR (ab772e9cc29c29f59cb4b75f9d6f3f96) C:\Windows\system32\DRIVERS\jmcr.sys
2011/05/03 12:23:59.0518 5408 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
2011/05/03 12:23:59.0590 5408 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
2011/05/03 12:23:59.0733 5408 KSecDD (86165728af9bf72d6442a894fdfb4f8b) C:\Windows\system32\Drivers\ksecdd.sys
2011/05/03 12:23:59.0876 5408 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
2011/05/03 12:23:59.0937 5408 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
2011/05/03 12:23:59.0958 5408 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
2011/05/03 12:23:59.0983 5408 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
2011/05/03 12:24:00.0009 5408 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
2011/05/03 12:24:00.0073 5408 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
2011/05/03 12:24:00.0172 5408 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
2011/05/03 12:24:00.0250 5408 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
2011/05/03 12:24:00.0279 5408 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
2011/05/03 12:24:00.0311 5408 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
2011/05/03 12:24:00.0333 5408 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
2011/05/03 12:24:00.0357 5408 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
2011/05/03 12:24:00.0380 5408 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys
2011/05/03 12:24:00.0410 5408 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
2011/05/03 12:24:00.0471 5408 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
2011/05/03 12:24:00.0523 5408 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
2011/05/03 12:24:00.0563 5408 mrxsmb (5fe5cf325f5b02ebc60832d3440cb414) C:\Windows\system32\DRIVERS\mrxsmb.sys
2011/05/03 12:24:00.0619 5408 mrxsmb10 (30b9c769446af379a2afb72b0392604d) C:\Windows\system32\DRIVERS\mrxsmb10.sys
2011/05/03 12:24:00.0702 5408 mrxsmb20 (fea239b3ec4877e2b7e23204af589ddf) C:\Windows\system32\DRIVERS\mrxsmb20.sys
2011/05/03 12:24:00.0877 5408 msahci (5457dcfa7c0da43522f4d9d4049c1472) C:\Windows\system32\drivers\msahci.sys
2011/05/03 12:24:00.0931 5408 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys
2011/05/03 12:24:01.0009 5408 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
2011/05/03 12:24:01.0076 5408 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
2011/05/03 12:24:01.0154 5408 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
2011/05/03 12:24:01.0209 5408 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
2011/05/03 12:24:01.0269 5408 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
2011/05/03 12:24:01.0334 5408 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
2011/05/03 12:24:01.0365 5408 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
2011/05/03 12:24:01.0400 5408 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
2011/05/03 12:24:01.0469 5408 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
2011/05/03 12:24:01.0567 5408 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
2011/05/03 12:24:02.0003 5408 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
2011/05/03 12:24:02.0063 5408 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
2011/05/03 12:24:02.0142 5408 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
2011/05/03 12:24:02.0252 5408 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
2011/05/03 12:24:02.0320 5408 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
2011/05/03 12:24:02.0402 5408 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
2011/05/03 12:24:02.0444 5408 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
2011/05/03 12:24:02.0614 5408 NETw3v32 (35d5458d9a1b26b2005abffbf4c1c5e7) C:\Windows\system32\DRIVERS\NETw3v32.sys
2011/05/03 12:24:02.0698 5408 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
2011/05/03 12:24:02.0906 5408 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
2011/05/03 12:24:03.0063 5408 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
2011/05/03 12:24:03.0142 5408 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
2011/05/03 12:24:03.0323 5408 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
2011/05/03 12:24:03.0368 5408 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
2011/05/03 12:24:03.0394 5408 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
2011/05/03 12:24:03.0425 5408 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
2011/05/03 12:24:03.0454 5408 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
2011/05/03 12:24:03.0610 5408 ohci1394 (6f310e890d46e246e0e261a63d9b36b4) C:\Windows\system32\DRIVERS\ohci1394.sys
2011/05/03 12:24:03.0773 5408 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
2011/05/03 12:24:03.0850 5408 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
2011/05/03 12:24:03.0909 5408 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
2011/05/03 12:24:03.0993 5408 PCAMp50 (1bf91f352d746ad7469fa71783b5fae8) C:\Windows\system32\Drivers\PCAMp50.sys
2011/05/03 12:24:04.0093 5408 PCASp50 (1961590aa191b6b7dcf18a6a693af7b8) C:\Windows\system32\Drivers\PCASp50.sys
2011/05/03 12:24:04.0216 5408 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
2011/05/03 12:24:04.0306 5408 pciide (1d8b3d8df8eb7fcf2f0ac02f9f947802) C:\Windows\system32\drivers\pciide.sys
2011/05/03 12:24:04.0359 5408 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
2011/05/03 12:24:04.0446 5408 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
2011/05/03 12:24:04.0576 5408 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
2011/05/03 12:24:04.0614 5408 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys
2011/05/03 12:24:04.0673 5408 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
2011/05/03 12:24:04.0757 5408 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
2011/05/03 12:24:04.0831 5408 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
2011/05/03 12:24:04.0875 5408 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
2011/05/03 12:24:04.0913 5408 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
2011/05/03 12:24:04.0952 5408 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
2011/05/03 12:24:05.0015 5408 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
2011/05/03 12:24:05.0080 5408 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
2011/05/03 12:24:05.0176 5408 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
2011/05/03 12:24:05.0231 5408 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
2011/05/03 12:24:05.0274 5408 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys
2011/05/03 12:24:05.0291 5408 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
2011/05/03 12:24:05.0353 5408 RDPWD (30bfbdfb7f95559ede971f9ddb9a00ba) C:\Windows\system32\drivers\RDPWD.sys
2011/05/03 12:24:05.0453 5408 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
2011/05/03 12:24:05.0538 5408 RTL8169 (174b9514cd1a0c33ce4bbc02a3c81a62) C:\Windows\system32\DRIVERS\Rtlh86.sys
2011/05/03 12:24:05.0566 5408 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
2011/05/03 12:24:05.0772 5408 sdbus (126ea89bcc413ee45e3004fb0764888f) C:\Windows\system32\DRIVERS\sdbus.sys
2011/05/03 12:24:05.0900 5408 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
2011/05/03 12:24:05.0940 5408 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
2011/05/03 12:24:05.0977 5408 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
2011/05/03 12:24:06.0011 5408 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
2011/05/03 12:24:06.0050 5408 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
2011/05/03 12:24:06.0072 5408 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys
2011/05/03 12:24:06.0152 5408 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys
2011/05/03 12:24:06.0197 5408 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
2011/05/03 12:24:06.0250 5408 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
2011/05/03 12:24:06.0284 5408 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
2011/05/03 12:24:06.0310 5408 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
2011/05/03 12:24:06.0394 5408 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
2011/05/03 12:24:06.0445 5408 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
2011/05/03 12:24:06.0535 5408 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
2011/05/03 12:24:06.0571 5408 srv2 (a5940ca32ed206f90be9fabdf6e92de4) C:\Windows\system32\DRIVERS\srv2.sys
2011/05/03 12:24:06.0652 5408 srvnet (37aa1d560d5fa486c4b11c2f276ada61) C:\Windows\system32\DRIVERS\srvnet.sys
2011/05/03 12:24:06.0754 5408 ssmdrv (3ad0362cf68de3ac500e981700242cca) C:\Windows\system32\DRIVERS\ssmdrv.sys
2011/05/03 12:24:06.0866 5408 STHDA (84c78b53838bdec2b0853adc782cd5de) C:\Windows\system32\DRIVERS\stwrt.sys
2011/05/03 12:24:06.0952 5408 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
2011/05/03 12:24:06.0987 5408 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
2011/05/03 12:24:07.0030 5408 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
2011/05/03 12:24:07.0066 5408 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
2011/05/03 12:24:07.0157 5408 SynTP (a94629c2c456a6d002556563d6b8ad1a) C:\Windows\system32\DRIVERS\SynTP.sys
2011/05/03 12:24:07.0317 5408 Tcpip (a474879afa4a596b3a531f3e69730dbf) C:\Windows\system32\drivers\tcpip.sys
2011/05/03 12:24:07.0439 5408 Tcpip6 (a474879afa4a596b3a531f3e69730dbf) C:\Windows\system32\DRIVERS\tcpip.sys
2011/05/03 12:24:07.0517 5408 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
2011/05/03 12:24:07.0562 5408 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
2011/05/03 12:24:07.0587 5408 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
2011/05/03 12:24:07.0625 5408 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
2011/05/03 12:24:07.0670 5408 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
2011/05/03 12:24:07.0809 5408 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
2011/05/03 12:24:07.0868 5408 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
2011/05/03 12:24:07.0918 5408 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
2011/05/03 12:24:07.0985 5408 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
2011/05/03 12:24:08.0105 5408 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
2011/05/03 12:24:08.0317 5408 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
2011/05/03 12:24:08.0348 5408 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
2011/05/03 12:24:08.0422 5408 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
2011/05/03 12:24:08.0451 5408 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
2011/05/03 12:24:08.0473 5408 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
2011/05/03 12:24:08.0561 5408 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
2011/05/03 12:24:08.0639 5408 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
2011/05/03 12:24:08.0679 5408 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
2011/05/03 12:24:08.0769 5408 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
2011/05/03 12:24:08.0891 5408 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
2011/05/03 12:24:08.0970 5408 usbprint (b51e52acf758be00ef3a58ea452fe360) C:\Windows\system32\drivers\usbprint.sys
2011/05/03 12:24:09.0046 5408 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
2011/05/03 12:24:09.0107 5408 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
2011/05/03 12:24:09.0236 5408 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys
2011/05/03 12:24:09.0330 5408 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
2011/05/03 12:24:09.0385 5408 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
2011/05/03 12:24:09.0468 5408 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
2011/05/03 12:24:09.0520 5408 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
2011/05/03 12:24:09.0555 5408 viaide (ea1aa6e3abb3c194feba12a46de8cf2c) C:\Windows\system32\drivers\viaide.sys
2011/05/03 12:24:09.0673 5408 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
2011/05/03 12:24:09.0827 5408 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
2011/05/03 12:24:09.0945 5408 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
2011/05/03 12:24:10.0115 5408 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
2011/05/03 12:24:10.0200 5408 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
2011/05/03 12:24:10.0363 5408 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
2011/05/03 12:24:10.0434 5408 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
2011/05/03 12:24:10.0466 5408 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
2011/05/03 12:24:10.0503 5408 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
2011/05/03 12:24:10.0712 5408 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
2011/05/03 12:24:10.0845 5408 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
2011/05/03 12:24:10.0931 5408 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
2011/05/03 12:24:11.0035 5408 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
2011/05/03 12:24:11.0124 5408 yukonwlh (7d1f3b131d503ef43ee594b5a2b9b427) C:\Windows\system32\DRIVERS\yk60x86.sys
2011/05/03 12:24:11.0229 5408 {55662437-DA8C-40c0-AADA-2C816A897A49} (556b5cfe8d21b256add7f87d7f4b4123) C:\Program Files\Hewlett-Packard\Media\DVD\000.fcl
2011/05/03 12:24:11.0268 5408 ================================================================================
2011/05/03 12:24:11.0268 5408 Scan finished
2011/05/03 12:24:11.0268 5408 ================================================================================
0
Utilisateur anonyme
3 mai 2011 à 12:29
▶ Télécharge ici : Ad-remover sur ton bureau :


▶ Déconnecte toi et ferme toutes applications en cours !

si tu as XP => double clique
si tu as Vista ou windows 7 => clic droit "executer en tant que...."


▶ sur "Ad-R.exe" pour lancer l'installation et laisse les paramètres d'installation par défaut .

▶ clique le raccourci Ad-remover qui est sur ton bureau pour lancer l'outil .

▶ Au menu principal choisis "option Nettoyer" et tape sur [entrée] .

▶ Laisse travailler l'outil et ne touche à rien ...

▶ Poste le rapport qui apparait à la fin , sur le forum ...

( Le rapport est sauvegardé aussi sous C:\Ad-report.log )
( CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller )
0
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
3 mai 2011 à 12:43
Alors premiers réjouïssments, lors du redémarrage il n'y a pas eu d'écran bleu! Et voici le rapport demandé :

======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 =======

Mis à jour par TeamXscript le 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
Site web: http://www.teamxscript.org

C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 12:33:44 le 03/05/2011, Mode normal

Microsoft® Windows Vista(TM) Édition Familiale Premium Service Pack 2 (X86)
Teddy@PC-DE-TEDDY (Hewlett-Packard HP Pavilion dv6 Notebook PC)

============== ACTION(S) ==============


Dossier supprimé: C:\Users\Teddy\AppData\Roaming\Mozilla\FireFox\Profiles\o89sztlu.default\conduit
Dossier supprimé: C:\Users\Teddy\AppData\LocalLow\Conduit
Dossier supprimé: C:\Program Files\Conduit
Dossier supprimé: C:\Users\Teddy\AppData\Roaming\CrazyLoader
Dossier supprimé: C:\Program Files\CrazyLoader
Dossier supprimé: C:\Program Files\GamesBar
Dossier supprimé: C:\Users\Teddy\AppData\Roaming\OpenCandy
Dossier supprimé: C:\ProgramData\PopCap Games
Dossier supprimé: C:\ProgramData\Trymedia

(!) -- Fichiers temporaires supprimés.


-- Fichier ouvert: C:\Users\Teddy\AppData\Roaming\Mozilla\FireFox\Profiles\o89sztlu.default\Prefs.js --
Ligne supprimée: user_pref("CT2124320.SearchEngine", "Search||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_TER...
Ligne supprimée: user_pref("CT2124320.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT212...
Ligne supprimée: user_pref("CT2124320.ct2467816.SearchEngine", "Recherche||hxxp://search.conduit.com/Results.aspx?q=U...
Ligne supprimée: user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://www.bing.com/search?mkt=fr-FR&for...
Ligne supprimée: user_pref("CommunityToolbar.ToolbarsList", "CT2124320");
Ligne supprimée: user_pref("CommunityToolbar.ToolbarsList2", "CT2124320");
Ligne supprimée: user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Fri Jan 07 2011 15:55:41 GMT+0100");
-- Fichier Fermé --


Clé supprimée: HKLM\Software\Classes\Interface\{115CCBAE-27B0-47C3-BA42-BAB708424393}
Clé supprimée: HKLM\Software\Classes\TypeLib\{937936AF-28CA-4973-B8AE-F250406149A2}
Clé supprimée: HKLM\Software\Classes\Toolbar.CT2124320
Clé supprimée: HKLM\Software\Classes\Toolbar.CT2365325
Clé supprimée: HKLM\Software\Classes\Toolbar.CT2653012
Clé supprimée: HKLM\Software\Conduit
Clé supprimée: HKLM\Software\GamesBarSetup
Clé supprimée: HKLM\Software\PopCap
Clé supprimée: HKLM\Software\Trymedia Systems
Clé supprimée: HKCU\Software\Conduit
Clé supprimée: HKCU\Software\PopCap
Clé supprimée: HKCU\Software\Spointer
Clé supprimée: HKCU\Software\AppDataLow\Toolbar
Clé supprimée: HKCU\Software\AppDataLow\Software\Conduit
Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}


============== SCAN ADDITIONNEL ==============

**** Mozilla Firefox Version [3.6 (fr)] ****

HKLM_MozillaPlugins\@oberon-media.com/ONCAdapter (x)
HKLM_MozillaPlugins\@pandonetworks.com/PandoWebPlugin (x)
HKCU_MozillaPlugins\pandonetworks.com/PandoWebPlugin (x)

-- C:\Users\Teddy\AppData\Roaming\Mozilla\FireFox\Profiles\o89sztlu.default --
Extensions\{9b339f6e-ddcd-401b-8764-230adbd01761} (Messenger Plus Live Toolbar)
Prefs.js - browser.search.selectedEngine, Bing
Prefs.js - browser.startup.homepage, hxxp://www.google.fr/
Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2
Prefs.js - keyword.URL, hxxp://www.bing.com/search?mkt=fr-FR&form=MIMWA5&q=

========================================

**** Internet Explorer Version [8.0.6001.19048] ****

HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
HKCU_Main|Start Page - hxxp://fr.msn.com/
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{08C06D61-F1F3-4799-86F8-BE1A89362C85} - "Search Class" (C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll)
HKCU_URLSearchHooks|{b89e4afa-3132-4c3d-a7f5-435b6e1952c0} - "Softonic VLC FR Toolbar" (C:\Program Files\Softonic_VLC_FR\tbSoft.dll)
HKCU_URLSearchHooks|{9b339f6e-ddcd-401b-8764-230adbd01761} - "Messenger Plus Live Toolbar" (C:\Program Files\Messenger_Plus_Live\tbMess.dll)
HKCU_URLSearchHooks|{cd90bf73-20f6-44ef-993d-bb920303bd2e} - "Veoh Web Player Toolbar" (C:\Program Files\Veoh_Web_Player\tbVeo1.dll)
HKLM_URLSearchHooks|{b89e4afa-3132-4c3d-a7f5-435b6e1952c0} - "Softonic VLC FR Toolbar" (C:\Program Files\Softonic_VLC_FR\tbSoft.dll)
HKLM_URLSearchHooks|{9b339f6e-ddcd-401b-8764-230adbd01761} - "Messenger Plus Live Toolbar" (C:\Program Files\Messenger_Plus_Live\tbMess.dll)
HKLM_URLSearchHooks|{cd90bf73-20f6-44ef-993d-bb920303bd2e} - "Veoh Web Player Toolbar" (C:\Program Files\Veoh_Web_Player\tbVeo1.dll)
HKCU_SearchScopes\{A98522C3-668D-4BE8-B360-73A17FF0B682} - "Kelkoo" (hxxp://fr.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromfor...)
HKLM_SearchScopes\{A98522C3-668D-4BE8-B360-73A17FF0B682} - "Kelkoo" (hxxp://fr.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromfor...)
HKCU_Toolbar\WebBrowser|{DE9C389F-3316-41A7-809B-AA305ED9D922} (C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll)
HKCU_Toolbar\WebBrowser|{B89E4AFA-3132-4C3D-A7F5-435B6E1952C0} (C:\Program Files\Softonic_VLC_FR\tbSoft.dll)
HKCU_Toolbar\WebBrowser|{9B339F6E-DDCD-401B-8764-230ADBD01761} (C:\Program Files\Messenger_Plus_Live\tbMess.dll)
HKCU_Toolbar\WebBrowser|{CD90BF73-20F6-44EF-993D-BB920303BD2E} (C:\Program Files\Veoh_Web_Player\tbVeo1.dll)
HKLM_Toolbar|{DE9C389F-3316-41A7-809B-AA305ED9D922} (C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll)
HKLM_Toolbar|{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} (C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll)
HKLM_Toolbar|{b89e4afa-3132-4c3d-a7f5-435b6e1952c0} (C:\Program Files\Softonic_VLC_FR\tbSoft.dll)
HKLM_Toolbar|{9b339f6e-ddcd-401b-8764-230adbd01761} (C:\Program Files\Messenger_Plus_Live\tbMess.dll)
HKLM_Toolbar|{52836EB0-631A-47B1-94A6-61F9D9112DAE} (C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll)
HKLM_Toolbar|{cd90bf73-20f6-44ef-993d-bb920303bd2e} (C:\Program Files\Veoh_Web_Player\tbVeo1.dll)
HKCU_ElevationPolicy\{4237353E-BBDC-4050-8DB9-5EC598CF17BC} - C:\Program Files\Orange\Launcher\Launcher.exe (France Telecom SA)
HKLM_ElevationPolicy\b68e4456-7324-430a-ac89-8eeeb98eeb4b - C:\Program Files\Veoh_Web_Player\Veoh_Web_PlayerToolbarHelper.exe (?)
HKLM_ElevationPolicy\b852ef5a-3778-4863-b930-5149fdf3110d - C:\Program Files\Veoh_Web_Player\Veoh_Web_PlayerToolbarHelper.exe (?)
HKLM_ElevationPolicy\dba403ae-b672-4034-be7e-2f8c1e8ca710 - C:\Program Files\Messenger_Plus_Live\Messenger_Plus_LiveToolbarHelper.exe (?)
HKLM_ElevationPolicy\fbc1be60-6afb-4474-ac9b-d0924f8a5db5 - C:\Program Files\Softonic_VLC_FR\Softonic_VLC_FRToolbarHelper.exe (?)
HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files\Internet Explorer\iedw.exe (x)
HKLM_ElevationPolicy\{ADADAEE2-457A-4984-A57C-E01C3A2BA612} - c:\program files\aol\aol toolbar 5.0\AolTbServer.exe (AOL LLC)
HKLM_Extensions\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - "?" (?)
BHO\{5C255C8A-E604-49b4-9D64-90988571CECB} (?)
BHO\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - "Search Helper" (C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll)
BHO\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - "SSVHelper Class" (C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll)
BHO\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - "AOL Toolbar BHO" (C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll)
BHO\{9b339f6e-ddcd-401b-8764-230adbd01761} - "Messenger Plus Live Toolbar" (C:\Program Files\Messenger_Plus_Live\tbMess.dll)
BHO\{b89e4afa-3132-4c3d-a7f5-435b6e1952c0} - "Softonic VLC FR Toolbar" (C:\Program Files\Softonic_VLC_FR\tbSoft.dll)
BHO\{cd90bf73-20f6-44ef-993d-bb920303bd2e} - "Veoh Web Player Toolbar" (C:\Program Files\Veoh_Web_Player\tbVeo1.dll)

========================================

C:\Program Files\Ad-Remover\Quarantine: 62 Fichier(s)
C:\Program Files\Ad-Remover\Backup: 16 Fichier(s)

C:\Ad-Report-CLEAN[1].txt - 03/05/2011 12:33:54 (8581 Octet(s))

Fin à: 12:34:55, 03/05/2011

============== E.O.F ==============
0
Utilisateur anonyme
3 mai 2011 à 12:49
désinstalle tout ce qui contient le mot "toolbar"

==================================

desactive tes protections puis enregistre ceci sur ton bureau

Pre_Scan

Avertissement: Il y aura une extinction courte du bureau --> pas de panique.

une fois telechargé lance-le , laisse faire le scan jusqu'à l'apparition de "Pre_scan.txt" sur le bureau.

si l'outil detecte un proxy et que tu n'en as pas installé clique sur "supprimer le proxy"

si l'outil semble ne pas avoir fonctionné clique plusieurs fois très rapidement dessus ou renomme-le winlogon , ou change son extension en .com ou .scr

▶▶▶ NE LE POSTE PAS SUR LE FORUM

Pour me le transmettre clique sur ce lien : http://www.cijoint.fr/

▶ Clique sur Parcourir et cherche le fichier ci-dessus(Pre_Scan.txt).

▶ Clique sur Ouvrir.

▶ Clique sur "Cliquez ici pour déposer le fichier".

juste au niveau du bouton , en fin de chargement du fichier , Un lien de cette forme apparaitra :

http://www.cijoint.fr/cjlink.php?file=cjge368/cijSKAP5fU.txt

▶ Copie ce lien dans ta réponse.

====================================

▶ Télécharge ici : USBFIX sur ton bureau

branche tous tes periphériques sans les ouvrir

/!\ Désactive provisoirement et seulement le temps de l'utilisation d'USBFIX, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.

si tu as XP => double clique
si tu as Vista ou windows 7 => clic droit "executer en tant que...."


sur l'icône Usbfix située sur ton Bureau.
Sur la page, clique sur le bouton :

▶ choisi l option Suppression

▶ UsbFix scannera ton pc , laisse travailler l outil.

▶ Ensuite post le rapport UsbFix.txt qui apparaitra avec le bureau .

▶ Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )

( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

================================

Télécharge ici :OTL

enregistre le sur ton Bureau.

si tu as XP => double clique
si tu as Vista ou windows 7 => clic droit "executer en tant que...."


sur OTL.exe pour le lancer.

=> Configuration

▶Clic sur Analyse.

A la fin du scan, le Bloc-Notes va s'ouvrir avec le rapport (OTL.txt).

Ce fichier est sur ton Bureau (en général C:\Documents and settings\le_nom_de_ta_session\OTL.txt)

▶▶▶ NE LE POSTE PAS SUR LE FORUM (il est trop long)

Pour me le transmettre clique sur ce lien : http://www.cijoint.fr/

▶ Clique sur Parcourir et cherche le fichier ci-dessus.

▶ Clique sur Ouvrir.

▶ Clique sur "Cliquez ici pour déposer le fichier".

juste au niveau du bouton , en fin de chargement du fichier , Un lien de cette forme apparaitra :

http://www.cijoint.fr/cjlink.php?file=cjge368/cijSKAP5fU.txt

▶ Copie ce lien dans ta réponse.

▶▶ Tu feras la meme chose avec le "Extra.txt" qui logiquement sera aussi sur ton bureau.
0
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
3 mai 2011 à 12:59
Euh... un ptit soucis, je n'ai encore qu'installer Pre-scan et rien d'autre mais je n'ai plus rien sur mon bureau (accés à rien du tout d'ailleurs)
0
Utilisateur anonyme
3 mai 2011 à 13:01
et à la fin du scan ca revient
0
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
3 mai 2011 à 13:03
Et bien le hic c'est que je n'ai pas encore lancé le scan. Je l'ai juste installé et lorsque j'ai voulu allé sur mon bureau pour le lancer... plus rien.
0
oui tu l'as lancé des documents au lieu de le lancer à partir du bureau donc il s'est auto-stoppé

explorer a pas redemarré puisque je le fais redémarrer à la fin du scan donc

fais ceci :

ctrl+Alt+supp , entrée

choisis Gestionnaire des taches

ensuite onglet fichier => nouvelle tache => executer

puis tape explorer puis entrée

ensuite retourne le chercher dans tes documents , coupe-colle sur le bureau et relance-le
G3?-?@¢??@?......Concepteur de List_Kill'em...Pre_Scan....MBR_Repair....
0
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
3 mai 2011 à 14:42
Désolé de l'attente.

Alors, voici ce que tu m'as demandé :

Pre_Scan :

http://www.cijoint.fr/cjlink.php?file=cj201105/cijseAggrk.txt


USBFIX :

############################## | UsbFix 7.044 | [Suppression]

Utilisateur: Teddy (Administrateur) # PC-DE-TEDDY [Hewlett-Packard HP Pavilion dv6 Notebook PC]
Mis à jour le 25/04/2011 par TeamXscript
Lancé à 14:22:03 | 03/05/2011
Site Web: http://www.teamxscript.org
Submit your sample: http://www.teamxscript.org/Upload.php
Contact: TeamXscript.ElDesaparecido@gmail.com

CPU: Intel(R) Core(TM)2 Duo CPU T6500 @ 2.10GHz
CPU 2: Intel(R) Core(TM)2 Duo CPU T6500 @ 2.10GHz
Microsoft® Windows Vista(TM) Édition Familiale Premium (6.0.6002 32-Bit) # Service Pack 2
Internet Explorer 8.0.6001.19048

Pare-feu Windows: Désactivé /!\
RAM -> 3068 Mo
C:\ (%systemdrive%) -> Disque fixe # 222 Go (75 Go libre(s) - 34%) [] # NTFS
D:\ -> Disque fixe # 11 Go (2 Go libre(s) - 17%) [RECOVERY] # NTFS
E:\ -> CD-ROM
F:\ -> Disque amovible # 7 Go (5 Go libre(s) - 61%) [ÔÔÔÔÔ MWAAA] # FAT32
G:\ -> Disque amovible # 4 Go (2 Go libre(s) - 43%) [] # FAT32
H:\ -> Disque amovible # 7 Go (5 Go libre(s) - 69%) [] # FAT32

################## | Éléments infectieux |


Supprimé! C:\Users\Teddy\AppData\Local\Temp\AutoRun.exe
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD27B1.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD3057.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD344F.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD3663.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD374F.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD39DC.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD3D69.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD3F4F.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD41D0.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD43F4.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD49E0.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD5081.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD5257.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD52E6.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD53FE.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD5642.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD5920.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD61E8.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD6213.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD6237.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD68C9.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD7671.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD7BD5.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD7BD6.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD7DFA.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD7E8E.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD7F05.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD832C.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD845A.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD858F.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD85A6.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD8605.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD8810.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD8C56.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD8F16.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD987A.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCD9A02.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCDB274.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCDBAEE.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCDC3C6.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCDC7DD.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCDCDC9.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCDCF7F.tmp
Supprimé! C:\Users\Teddy\AppData\Local\Temp\TCDDBD1.tmp
Supprimé! C:\$RECYCLE.BIN\S-1-5-20
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-171504635-1210285563-2315927762-500
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-4069425666-1705006218-393556107-1000
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-4069425666-1705006218-393556107-1001
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-4069425666-1705006218-393556107-500
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-4069425666-1705006218-393556107-1000
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-4069425666-1705006218-393556107-1001
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-4069425666-1705006218-393556107-500
Supprimé! H:\autorun.inf

################## | Registre |


################## | Mountpoints2 |


################## | Listing |

[03/05/2011 - 14:23:26 | SHD ] C:\$RECYCLE.BIN
[28/06/2010 - 23:30:57 | D ] C:\5d09e501c88e95e3a031e374e3c6
[17/12/2010 - 03:15:53 | D ] C:\8dcd8005f209bc9e3740fddbb41d
[03/05/2011 - 12:34:56 | N | 8720] C:\Ad-Report-CLEAN[1].txt
[18/09/2006 - 23:43:36 | N | 24] C:\autoexec.bat
[28/04/2011 - 13:13:39 | D ] C:\BigFishGamesCache
[26/01/2011 - 15:07:40 | SHD ] C:\boot
[11/04/2009 - 08:36:36 | RASH | 333257] C:\bootmgr
[03/05/2011 - 12:13:04 | SHD ] C:\Config.Msi
[18/09/2006 - 23:43:37 | N | 10] C:\config.sys
[02/11/2006 - 15:02:03 | SHD ] C:\Documents and Settings
[26/06/2010 - 00:14:01 | D ] C:\f2652ce40d0af1079ebf70
[24/11/2010 - 15:09:19 | D ] C:\f6857d0c568ae0834b07d1ab771add
[03/05/2011 - 12:36:17 | ASH | 3216211968] C:\hiberfil.sys
[26/09/2009 - 17:12:47 | D ] C:\HP
[03/05/2011 - 14:13:42 | D ] C:\Kill'em
[25/11/2010 - 22:32:40 | RHD ] C:\MSOCache
[27/03/2010 - 00:39:59 | D ] C:\MyHeritage
[21/02/2010 - 01:00:25 | D ] C:\Netts
[03/05/2011 - 12:36:14 | ASH | 3532058624] C:\pagefile.sys
[03/11/2010 - 22:51:32 | D ] C:\Perfect World Entertainment
[21/01/2008 - 04:32:31 | D ] C:\PerfLogs
[03/05/2011 - 12:56:38 | D ] C:\Program Files
[03/05/2011 - 12:54:56 | HD ] C:\ProgramData
[24/10/2009 - 22:38:25 | N | 159] C:\Setup.log
[26/09/2009 - 17:13:16 | D ] C:\SWSetup
[03/05/2011 - 14:01:14 | SHD ] C:\System Volume Information
[26/09/2009 - 17:13:16 | D ] C:\System.sav
[03/05/2011 - 12:11:50 | N | 60922] C:\TDSSKiller.2.5.0.0_03.05.2011_12.03.44_log.txt
[03/05/2011 - 12:33:38 | N | 60170] C:\TDSSKiller.2.5.0.0_03.05.2011_12.23.27_log.txt
[03/05/2011 - 10:52:46 | N | 220] C:\updatedatfix.log
[03/05/2011 - 14:23:26 | D ] C:\UsbFix
[03/05/2011 - 14:22:04 | A | 6033] C:\UsbFix.txt
[31/01/2010 - 11:08:53 | D ] C:\Users
[03/05/2011 - 12:13:04 | D ] C:\Windows
[02/04/2011 - 17:51:46 | D ] C:\Zylom Games
[03/05/2011 - 14:23:26 | SHD ] D:\$RECYCLE.BIN
[26/09/2009 - 17:12:00 | N | 13] D:\BLOCK.RIN
[29/06/2009 - 03:17:18 | RSHD ] D:\boot
[03/10/2006 - 23:02:44 | SH | 438328] D:\bootmgr
[04/11/2008 - 17:37:42 | SH | 1199] D:\Desktop.ini
[10/09/2002 - 16:14:28 | N | 8134] D:\Folder.htt
[29/06/2009 - 03:18:12 | D ] D:\HP
[03/05/2011 - 12:36:42 | N | 196] D:\MASTER.LOG
[29/06/2009 - 03:17:27 | D ] D:\PRELOAD
[12/09/2008 - 17:17:38 | N | 381873] D:\protect.arabic
[15/09/2008 - 15:57:58 | N | 182624] D:\protect.bulgarian
[16/09/2002 - 14:37:48 | N | 181898] D:\protect.chinese hong kong
[16/09/2002 - 14:37:40 | N | 181916] D:\protect.chinese simplified
[16/09/2002 - 14:37:48 | N | 181898] D:\protect.chinese traditional
[27/04/2006 - 16:19:40 | N | 181865] D:\protect.czech
[03/11/2005 - 15:21:26 | N | 181726] D:\protect.danish
[10/09/2002 - 13:56:12 | N | 181605] D:\protect.dutch
[10/09/2002 - 13:50:18 | N | 181651] D:\protect.ed
[22/11/2004 - 15:28:30 | N | 181648] D:\protect.english
[03/11/2005 - 15:20:20 | N | 181673] D:\protect.finnish
[03/11/2005 - 15:19:52 | N | 181736] D:\protect.french
[03/11/2005 - 15:18:10 | N | 181669] D:\protect.german
[23/11/2005 - 15:56:46 | N | 182689] D:\protect.greek
[23/01/2006 - 09:18:00 | N | 182605] D:\protect.hebrew
[28/08/2007 - 14:58:08 | N | 181696] D:\protect.hungarian
[03/11/2005 - 15:17:00 | N | 181554] D:\protect.italian
[19/06/2007 - 15:22:10 | N | 182351] D:\protect.japanese
[24/11/2005 - 11:24:44 | N | 218295] D:\protect.korean
[03/11/2005 - 15:15:12 | N | 181578] D:\protect.norwegian
[25/04/2006 - 14:44:10 | N | 181789] D:\protect.polish
[03/11/2005 - 15:13:12 | N | 181624] D:\protect.portuguese
[27/10/2005 - 19:24:10 | N | 181882] D:\protect.portuguese brazilian
[15/09/2008 - 15:57:54 | N | 181735] D:\protect.romanian
[28/06/2004 - 08:52:46 | N | 211936] D:\protect.russian
[04/07/2007 - 11:46:44 | N | 181954] D:\protect.slovak
[03/11/2005 - 15:11:46 | N | 181586] D:\protect.spanish
[10/09/2002 - 14:15:06 | N | 181602] D:\protect.swedish
[12/08/2003 - 10:37:30 | N | 181783] D:\protect.turkish
[29/06/2009 - 03:17:16 | RD ] D:\RECOVERY
[29/06/2009 - 03:17:26 | D ] D:\SOURCES
[29/06/2009 - 03:20:05 | SHD ] D:\System Volume Information
[29/06/2009 - 03:18:10 | D ] D:\Tools
[29/06/2009 - 03:17:26 | D ] D:\WINDOWS
[18/06/2009 - 13:01:56 | D ] F:\Mes documents
[22/08/2010 - 13:40:04 | D ] F:\Portugal
[25/08/2010 - 13:44:52 | N | 2161664] F:\CV MIGUEL Cédric.doc
[25/08/2010 - 19:54:04 | N | 1304] F:\Lettre de motivation MIGUEL Cédric+.rtf
[25/08/2010 - 13:55:34 | N | 20992] F:\Lettre de motiv'.doc
[25/08/2010 - 16:17:00 | N | 55130009] F:\CV PAD.rtf
[25/08/2010 - 12:35:00 | N | 2120350] F:\DSC03953.JPG
[16/11/2010 - 10:15:10 | N | 46621] F:\Air france.pdf
[25/08/2010 - 19:33:28 | N | 1447] F:\Lettre de motivation MIGUEL Cédric.rtf
[10/12/2010 - 19:46:48 | D ] F:\Lady Gaga Fame monster
[14/11/2010 - 19:59:58 | D ] F:\Sauvegarde PC
[18/11/2010 - 11:07:56 | D ] F:\Music
[18/12/2010 - 17:29:08 | N | 14305] F:\Avion.docx
[15/01/2011 - 22:06:34 | N | 9216] F:\Bibliography e.wps
[28/11/2010 - 23:29:48 | D ] F:\History
[29/11/2009 - 23:28:40 | N | 17214] F:\Flaubert (commentaire).rtf
[22/05/2010 - 09:53:14 | D ] F:\Trinity College
[30/05/2010 - 18:20:36 | N | 296] F:\WMPInfo.xml
[30/05/2010 - 18:20:40 | D ] F:\Video
[24/08/2010 - 12:07:08 | D ] F:\Ancien téléphone
[01/03/2011 - 10:18:02 | D ] G:\DCIM
[01/03/2011 - 12:49:18 | D ] G:\MISC
[01/03/2011 - 21:22:52 | N | 60] G:\syncguid.dat
[28/01/2010 - 14:58:30 | D ] H:\cities
[09/10/2009 - 08:17:46 | D ] H:\Videos
[09/10/2009 - 08:17:48 | D ] H:\Sounds
[09/10/2009 - 08:17:50 | D ] H:\System
[01/11/2009 - 20:36:44 | N | 1066304] H:\Install_Nokia_Ovi_Suite.exe
[28/01/2010 - 13:49:40 | D ] H:\Nokia_Ovi_Suite_install_files
[28/01/2010 - 15:03:46 | D ] H:\Others
[28/01/2010 - 15:03:46 | N | 168] H:\card_content.xml
[28/01/2010 - 15:03:46 | D ] H:\Resource
[01/01/2010 - 12:00:02 | D ] H:\Data
[01/01/2010 - 12:00:06 | D ] H:\Images
[01/01/2010 - 12:00:10 | D ] H:\Games
[01/01/2010 - 12:00:10 | D ] H:\Installs
[01/01/2010 - 12:01:08 | D ] H:\Private
[15/06/2010 - 16:01:28 | D ] H:\Attachments
[01/02/2010 - 10:10:00 | N | 77452] H:\DevIcon.fil
[01/02/2010 - 10:10:00 | N | 326] H:\DevLogo.fil
[03/02/2011 - 23:20:54 | N | 239] H:\qf
[17/06/2010 - 18:01:22 | D ] H:\download
[22/08/2010 - 09:51:46 | D ] H:\Activenotes

################## | Vaccin |

C:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
D:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
F:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
G:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
H:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)

################## | Upload |

Veuillez envoyer le fichier: C:\UsbFix_Upload_Me_PC-DE-TEDDY.zip
http://www.teamxscript.org/Upload.php
Merci de votre contribution.

################## | E.O.F |


OTL :

http://www.cijoint.fr/cjlink.php?file=cj201105/cijxOzBsl7.txt

http://www.cijoint.fr/cjlink.php?file=cj201105/cijAVVd1BN.txt
0
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
Modifié par Hachigusha le 3/05/2011 à 23:56
Ai-je oublié de faire quelque chose (tout en prenant en considération que tu sois penché sur d'autres problèmes et que tu aies aussi une vie à côté)? Merci en tout cas pour ce qui a déjà été fait.
0
Utilisateur anonyme
4 mai 2011 à 00:25
re


fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.


▶ Télécharge ici :

Malwarebytes

▶ Installe le ( choisis bien "francais" ; ne modifie pas les paramètres d'installe ) et mets le à jour .

(NB : Si tu as un message d'erreur t'indiquant qu'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharge le ici : COMCTL32.OCX

▶ Potasses le Tuto pour te familiariser avec le prg :


( cela dit, il est très simple d'utilisation ).

relance malwarebytes en suivant scrupuleusement ces consignes :

! Déconnecte toi et ferme toutes applications en cours !

▶ Lance Malwarebyte's .

Fais un examen dit "Complet" .

▶ Laisse le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
▶ à la fin tu cliques sur "résultat" .
Vérifie que tous les objets infectés soient validés, puis clique sur " suppression " .

Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !


Poste le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date)

0
Hachigusha Messages postés 34 Date d'inscription samedi 22 janvier 2011 Statut Membre Dernière intervention 6 août 2011
4 mai 2011 à 22:21
Voici ce que ça m'a donné. Il n'y avait pas d'objets infectés.
Une question, dois-je faire ce genre de scan régulièrement ou pas?


Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Version de la base de données: 6507

Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.19048

04/05/2011 22:18:24
mbam-log-2011-05-04 (22-18-24).txt

Type d'examen: Examen complet (C:\|D:\|)
Elément(s) analysé(s): 344789
Temps écoulé: 1 heure(s), 28 minute(s), 30 seconde(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
0