Infection sur mon ordi, j'ai besoin d'aide

Résolu
Perrentine Messages postés 27 Statut Membre -  
 gen-hackman -
Bonjour,

Voilà, depuis maintenant plusieurs jours, mon ordinateur va très mal :(
Je ne l'ai que depuis quelques mois et j'ai sélectionné moi-même chacun de ses composants que j'ai fait montés par un professionnel, c'est une très bonne machine !

Mais voilà qu'il se met à avoir des freezes, sous windows aussi bien que sur internet, les programmes, souvent, "ne répondent pas", il est long à ouvrir ne serait-ce qu'un dossier, il reboot parfois intempestivement avec un écran bleu et mes logiciels de sécurité ne fonctionnent pas bien du tout. Mon anti virus ne détecte rien mais les analyses sont étrangement rapides et mon anti-spyware ne fonctionne plus. Il s'active et se désactive sans cesse à 10s d'intervalle, aucun analyse n'est possible.

J'ai regardé un peu sur le net, j'ai détecté des dossiers suspects (Reference Assemblies par exemple) que je n'arrive pas à supprimer. J'ai essayer de suivre les conseils que j'ai pu lire, j'ai DL Hijack This etc mais je ne comprend rien aux rapports alors ça ne m'avance pas bcp :/ J'ai désinstallé tous les programmes inutiles, supprimé tous les dossiers inconnus etc mais le problème persiste et empire de jours en jours...

Quelqu'un peut-il m'aider s'il vous plait ?

37 réponses

  • 1
  • 2
Résumé de la discussion

Plusieurs symptômes indiquent des freezes, des redémarrages avec écran bleu et des programmes qui ne répondent pas, sur une configuration Windows 7 où l’antivirus ne détecte rien mais les analyses restent étrangement rapides. Des dossiers suspects tels que Reference Assemblies ont été repérés et des outils antimalware ont été proposés, notamment HijackThis, Combofix, TDSSKiller et Malwarebytes, pour nettoyer le système malgré des explications techniques. Des recommandations insistent sur l’exécution des outils en mode sans échec, la fermeture des applications et la sauvegarde des rapports pour assurer le suivi du nettoyage et l’analyse des résultats. Enfin, l’échange montre qu’un redémarrage est parfois nécessaire pour finaliser le nettoyage et que le diagnostic peut nécessiter plusieurs passes et vérifications croisées des rapports.

Bobot (l'IA à votre service)
  1. gen-hackman
     
    salut selon les symptômes :

    ▶ Télécharge ici : USBFIX sur ton bureau

    branche tous tes periphériques sans les ouvrir

    /!\ Désactive provisoirement et seulement le temps de l'utilisation d'USBFIX, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.

    si tu as XP => double clique
    si tu as Vista ou windows 7 => clic droit "executer en tant que...."


    sur l'icône Usbfix située sur ton Bureau.
    Sur la page, clique sur le bouton :

    ▶ choisi l option Suppression

    ▶ UsbFix scannera ton pc , laisse travailler l outil.

    ▶ Ensuite post le rapport UsbFix.txt qui apparaitra avec le bureau .

    ▶ Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )

    ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

    0
  2. Perrentine Messages postés 27 Statut Membre
     
    Voici le rapport :

    ############################## | UsbFix 7.045 | [Suppression]

    Utilisateur: Utilisateur (Administrateur) # UTILISATEUR-PC [System manufacturer System Product Name]
    Mis à jour le 15/05/2011 par TeamXscript
    Lancé à 14:27:05 | 21/05/2011
    Site Web: http://www.teamxscript.org
    Submit your sample: http://www.teamxscript.org/Upload.php
    Contact: TeamXscript.ElDesaparecido@gmail.com

    CPU: Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz
    CPU 2: Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz
    Microsoft Windows 7 Édition Familiale Premium (6.1.7600 64-Bit) #
    Internet Explorer 8.0.7600.16385

    Pare-feu Windows: Désactivé /!\
    RAM -> 4094 Mo
    C:\ (%systemdrive%) -> Disque fixe # 298 Go (165 Go libre(s) - 55%) [] # NTFS
    D:\ -> CD-ROM
    E:\ -> Disque amovible # 7 Go (4 Go libre(s) - 60%) [KINGSTON] # FAT32
    I:\ -> Disque amovible # 4 Go (3 Go libre(s) - 75%) [] # FAT32
    Q:\ -> Disque fixe # 932 Go (701 Go libre(s) - 75%) [Disque local] # NTFS

    ################## | Éléments infectieux |

    Supprimé! C:\$RECYCLE.BIN\S-1-5-21-1345438845-2414255660-4181072361-1000
    Supprimé! Q:\$RECYCLE.BIN\S-1-5-21-1345438845-2414255660-4181072361-1000

    ################## | Registre |

    Supprimé! HKLM\software\microsoft\windows nt\currentversion\winlogon|Taskman

    ################## | Mountpoints2 |

    ################## | Listing |

    [21/05/2011 - 14:28:19 | SHD ] C:\$Recycle.Bin
    [19/02/2011 - 12:46:51 | D ] C:\ASUS.000
    [06/12/2010 - 13:46:39 | D ] C:\ASUS.SYS
    [06/12/2010 - 14:38:55 | D ] C:\ATI
    [20/05/2011 - 11:56:50 | SHD ] C:\Config.Msi
    [14/07/2009 - 07:08:56 | SHD ] C:\Documents and Settings
    [06/12/2010 - 13:57:29 | D ] C:\dvmexp
    [21/05/2011 - 13:46:28 | N | 342] C:\dvmexp.idx
    [21/05/2011 - 13:36:15 | ASH | 3219693568] C:\hiberfil.sys
    [01/12/2010 - 17:10:09 | D ] C:\Intel
    [06/12/2010 - 12:00:34 | RHD ] C:\MSOCache
    [21/05/2011 - 13:36:13 | ASH | 4292927488] C:\pagefile.sys
    [14/07/2009 - 05:20:08 | D ] C:\PerfLogs
    [28/12/2010 - 15:28:34 | D ] C:\Philips
    [06/02/2011 - 14:37:06 | D ] C:\Program Files
    [21/05/2011 - 13:48:30 | D ] C:\Program Files (x86)
    [21/05/2011 - 13:22:42 | HD ] C:\ProgramData
    [01/12/2010 - 17:13:47 | D ] C:\RaidTool
    [01/12/2010 - 16:25:24 | SHD ] C:\Recovery
    [06/12/2010 - 13:47:08 | N | 57] C:\splash.idx
    [20/05/2011 - 11:55:12 | SHD ] C:\System Volume Information
    [28/12/2010 - 15:38:57 | D ] C:\temp
    [21/05/2011 - 14:28:19 | D ] C:\UsbFix
    [21/05/2011 - 14:27:06 | A | 2418] C:\UsbFix.txt
    [13/03/2011 - 15:17:30 | D ] C:\Users
    [05/10/2009 - 14:21:04 | N | 9472] C:\version
    [21/05/2011 - 13:36:13 | D ] C:\Windows
    [15/11/2010 - 22:04:02 | N | 6369826] E:\Vanessa Paradis-Divine Idylle.mp3
    [15/11/2010 - 22:28:58 | N | 9528552] E:\Gérald De Palmas-Mon Coeur Ne Bat Plus.mp3
    [15/11/2010 - 22:07:20 | N | 11780308] E:\Lady Gaga-Bad Romance.mp3
    [15/11/2010 - 22:06:54 | N | 9489891] E:\Lady Gaga-Poker Face.mp3
    [15/11/2010 - 22:27:10 | N | 8284079] E:\Calogero-C'Est Dit.mp3
    [21/05/2009 - 15:27:28 | N | 4667068] E:\Amy_Macdonald - This_is_the_life.mp3
    [02/12/2010 - 19:00:32 | N | 4510424] E:\DSC00773.JPG
    [30/06/2010 - 14:40:28 | SH | 23552] E:\Thumbs.db
    [21/05/2009 - 15:27:28 | N | 6421376] E:\10_keny_arkana-cueille_ta_vie.mp3
    [06/09/2010 - 12:22:54 | N | 10981096] E:\11 Je Te Promets.mp3
    [06/09/2010 - 13:39:32 | D ] E:\Vrac
    [02/12/2010 - 19:00:04 | N | 4183059] E:\DSC00770.JPG
    [02/12/2010 - 19:00:18 | N | 4440254] E:\DSC00771.JPG
    [02/12/2010 - 19:12:28 | D ] E:\Photo gabriel de matthieu
    [02/12/2010 - 19:15:52 | D ] E:\Vidéo gabriel de matthieu
    [28/12/2010 - 19:51:18 | D ] E:\Décembre 2010
    [28/12/2010 - 19:22:10 | D ] E:\Novembre 2010
    [21/12/2010 - 21:22:16 | D ] E:\WoW
    [06/02/2011 - 14:48:02 | N | 0] E:\multi.iso
    [06/02/2011 - 14:50:22 | N | 0] E:\multi (2).iso
    [26/02/2011 - 22:40:56 | N | 734644224] E:\Easy A.avi
    [27/02/2011 - 20:46:02 | N | 733927424] E:\The Social Network.avi
    [01/01/1601 - 02:00:00 | N | 0] I:\MEMSTICK.IND
    [01/01/1601 - 02:00:00 | N | 0] I:\MSTK_PRO.IND
    [10/01/2011 - 18:41:48 | D ] I:\DCIM
    [21/05/2011 - 14:28:19 | SHD ] Q:\$RECYCLE.BIN
    [10/03/2011 - 01:40:12 | D ] Q:\391d657c1d9645e1bdf4
    [19/03/2011 - 01:44:11 | D ] Q:\44a42b5fccdd57129113836ec8
    [16/04/2011 - 03:07:13 | D ] Q:\c2794fde3cc5dcaaf1972a
    [14/03/2011 - 17:36:34 | D ] Q:\Ma musique
    [29/12/2010 - 01:35:15 | D ] Q:\Mes documents
    [20/05/2011 - 18:32:12 | D ] Q:\Mes images
    [16/05/2011 - 20:51:22 | D ] Q:\Mes vidéos
    [03/03/2011 - 17:55:49 | SHD ] Q:\System Volume Information

    ################## | Vaccin |

    C:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
    E:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
    I:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
    Q:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)

    ################## | Upload |

    Veuillez envoyer le fichier: C:\UsbFix_Upload_Me_UTILISATEUR-PC.zip
    http://www.teamxscript.org/Upload.php
    Merci de votre contribution.

    ################## | E.O.F |
    0
  3. Perrentine Messages postés 27 Statut Membre
     
    Si ça peut aider, quand je lance une recherche avec un autre logiciel, il bloque sur smss.exe puis le programme se ferme sans terminer l'analyse...

    Mais ce fichier se trouve dans System 32...
    0
  4. gen-hackman
     
    ca te dit quelque chose ? :

    C:\dvmexp.idx
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. Perrentine Messages postés 27 Statut Membre
     
    Non pas du tout...
    0
  7. gen-hackman
     
    ▶ Télécharge Reload_TDSSKiller

    ▶ Lance le

    choisis : télécharger la derniere version

    ▶ relance-le

    choisis : lancer le nettoyage

    TDSSKiller va s'ouvrir , clique sur "Start Scan"

    une fois qu'il a terminé , redemarre s'il te le demande pour finir de nettoyer

    sinon , ferme tdssKiller et le rapport s'affichera sur le bureau

    ▶ Copie/Colle son contenu dans ta prochaine réponse.
    0
  8. Perrentine Messages postés 27 Statut Membre
     
    2011/05/22 14:34:09.0843 4956 TDSS rootkit removing tool 2.5.1.0 May 13 2011 13:20:29
    2011/05/22 14:34:10.0060 4956 ================================================================================
    2011/05/22 14:34:10.0060 4956 SystemInfo:
    2011/05/22 14:34:10.0060 4956
    2011/05/22 14:34:10.0060 4956 OS Version: 6.1.7600 ServicePack: 0.0
    2011/05/22 14:34:10.0060 4956 Product type: Workstation
    2011/05/22 14:34:10.0060 4956 ComputerName: UTILISATEUR-PC
    2011/05/22 14:34:10.0060 4956 UserName: Utilisateur
    2011/05/22 14:34:10.0060 4956 Windows directory: C:\Windows
    2011/05/22 14:34:10.0060 4956 System windows directory: C:\Windows
    2011/05/22 14:34:10.0060 4956 Running under WOW64
    2011/05/22 14:34:10.0060 4956 Processor architecture: Intel x64
    2011/05/22 14:34:10.0060 4956 Number of processors: 8
    2011/05/22 14:34:10.0060 4956 Page size: 0x1000
    2011/05/22 14:34:10.0060 4956 Boot type: Normal boot
    2011/05/22 14:34:10.0060 4956 ================================================================================
    2011/05/22 14:34:17.0100 4956 Initialize success
    2011/05/22 14:34:25.0435 7124 ================================================================================
    2011/05/22 14:34:25.0435 7124 Scan started
    2011/05/22 14:34:25.0435 7124 Mode: Manual;
    2011/05/22 14:34:25.0435 7124 ================================================================================
    2011/05/22 14:34:26.0920 7124 1394ohci (1b00662092f9f9568b995902f0cc40d5) C:\Windows\system32\DRIVERS\1394ohci.sys
    2011/05/22 14:34:26.0957 7124 ACPI (6f11e88748cdefd2f76aa215f97ddfe5) C:\Windows\system32\DRIVERS\ACPI.sys
    2011/05/22 14:34:26.0980 7124 AcpiPmi (63b05a0420ce4bf0e4af6dcc7cada254) C:\Windows\system32\DRIVERS\acpipmi.sys
    2011/05/22 14:34:27.0022 7124 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
    2011/05/22 14:34:27.0057 7124 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
    2011/05/22 14:34:27.0087 7124 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
    2011/05/22 14:34:27.0128 7124 AFD (b9384e03479d2506bc924c16a3db87bc) C:\Windows\system32\drivers\afd.sys
    2011/05/22 14:34:27.0156 7124 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\DRIVERS\agp440.sys
    2011/05/22 14:34:27.0198 7124 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\DRIVERS\aliide.sys
    2011/05/22 14:34:27.0232 7124 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\DRIVERS\amdide.sys
    2011/05/22 14:34:27.0269 7124 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
    2011/05/22 14:34:27.0427 7124 amdkmdag (bbab5b28253fe0fc7255d8775ba05c1d) C:\Windows\system32\DRIVERS\atikmdag.sys
    2011/05/22 14:34:27.0578 7124 amdkmdap (cba35ff4092b91e105d93ed11a0250b6) C:\Windows\system32\DRIVERS\atikmpag.sys
    2011/05/22 14:34:27.0604 7124 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
    2011/05/22 14:34:27.0646 7124 amdsata (7a4b413614c055935567cf88a9734d38) C:\Windows\system32\DRIVERS\amdsata.sys
    2011/05/22 14:34:27.0686 7124 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
    2011/05/22 14:34:27.0709 7124 amdxata (b4ad0cacbab298671dd6f6ef7e20679d) C:\Windows\system32\DRIVERS\amdxata.sys
    2011/05/22 14:34:27.0742 7124 AppID (42fd751b27fa0e9c69bb39f39e409594) C:\Windows\system32\drivers\appid.sys
    2011/05/22 14:34:27.0801 7124 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
    2011/05/22 14:34:27.0822 7124 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
    2011/05/22 14:34:27.0889 7124 aswFsBlk (f810e3ea3d1f3c3ba26f2f4719bdca4f) C:\Windows\system32\drivers\aswFsBlk.sys
    2011/05/22 14:34:27.0927 7124 aswMonFlt (3687fd9cedf56d3b9f18923f4e14f3f9) C:\Windows\system32\drivers\aswMonFlt.sys
    2011/05/22 14:34:27.0967 7124 aswRdr (e99e48596b35e5d5240104bcd61b3471) C:\Windows\system32\drivers\aswRdr.sys
    2011/05/22 14:34:28.0008 7124 aswSnx (84ad8fb3fd2efa52d8599a0028bbb6fe) C:\Windows\system32\drivers\aswSnx.sys
    2011/05/22 14:34:28.0035 7124 aswSP (8cba6cc5dca9e3829f1792bf98f06901) C:\Windows\system32\drivers\aswSP.sys
    2011/05/22 14:34:28.0062 7124 aswTdi (184248f2ded7b1641c7f3b30381baa2a) C:\Windows\system32\drivers\aswTdi.sys
    2011/05/22 14:34:28.0100 7124 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
    2011/05/22 14:34:28.0199 7124 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\DRIVERS\atapi.sys
    2011/05/22 14:34:28.0253 7124 AtiHDAudioService (fda1e117a7e880bff5540d180c06ea87) C:\Windows\system32\drivers\AtihdW76.sys
    2011/05/22 14:34:28.0344 7124 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
    2011/05/22 14:34:28.0374 7124 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
    2011/05/22 14:34:28.0405 7124 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
    2011/05/22 14:34:28.0428 7124 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
    2011/05/22 14:34:28.0469 7124 bowser (19d20159708e152267e53b66677a4995) C:\Windows\system32\DRIVERS\bowser.sys
    2011/05/22 14:34:28.0524 7124 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
    2011/05/22 14:34:28.0551 7124 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
    2011/05/22 14:34:28.0590 7124 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
    2011/05/22 14:34:28.0613 7124 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
    2011/05/22 14:34:28.0630 7124 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
    2011/05/22 14:34:28.0651 7124 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
    2011/05/22 14:34:28.0676 7124 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
    2011/05/22 14:34:28.0704 7124 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
    2011/05/22 14:34:28.0747 7124 cdrom (83d2d75e1efb81b3450c18131443f7db) C:\Windows\system32\DRIVERS\cdrom.sys
    2011/05/22 14:34:28.0775 7124 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
    2011/05/22 14:34:28.0812 7124 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
    2011/05/22 14:34:28.0886 7124 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
    2011/05/22 14:34:28.0951 7124 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\DRIVERS\cmdide.sys
    2011/05/22 14:34:28.0994 7124 CNG (f95fd4cb7da00ba2a63ce9f6b5c053e1) C:\Windows\system32\Drivers\cng.sys
    2011/05/22 14:34:29.0022 7124 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
    2011/05/22 14:34:29.0056 7124 CompositeBus (f26b3a86f6fa87ca360b879581ab4123) C:\Windows\system32\DRIVERS\CompositeBus.sys
    2011/05/22 14:34:29.0116 7124 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
    2011/05/22 14:34:29.0168 7124 DfsC (3f1dc527070acb87e40afe46ef6da749) C:\Windows\system32\Drivers\dfsc.sys
    2011/05/22 14:34:29.0227 7124 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
    2011/05/22 14:34:29.0263 7124 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
    2011/05/22 14:34:29.0340 7124 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
    2011/05/22 14:34:29.0415 7124 DXGKrnl (1633b9abf52784a1331476397a48cbef) C:\Windows\System32\drivers\dxgkrnl.sys
    2011/05/22 14:34:29.0512 7124 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
    2011/05/22 14:34:29.0627 7124 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
    2011/05/22 14:34:29.0650 7124 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\DRIVERS\errdev.sys
    2011/05/22 14:34:29.0706 7124 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
    2011/05/22 14:34:29.0733 7124 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
    2011/05/22 14:34:29.0763 7124 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
    2011/05/22 14:34:29.0796 7124 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
    2011/05/22 14:34:29.0848 7124 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
    2011/05/22 14:34:29.0884 7124 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
    2011/05/22 14:34:29.0912 7124 FltMgr (f7866af72abbaf84b1fa5aa195378c59) C:\Windows\system32\drivers\fltmgr.sys
    2011/05/22 14:34:29.0954 7124 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
    2011/05/22 14:34:29.0976 7124 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
    2011/05/22 14:34:30.0028 7124 fvevol (ae87ba80d0ec3b57126ed2cdc15b24ed) C:\Windows\system32\DRIVERS\fvevol.sys
    2011/05/22 14:34:30.0055 7124 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
    2011/05/22 14:34:30.0127 7124 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
    2011/05/22 14:34:30.0184 7124 HdAudAddService (6410f6f415b2a5a9037224c41da8bf12) C:\Windows\system32\drivers\HdAudio.sys
    2011/05/22 14:34:30.0227 7124 HDAudBus (0a49913402747a0b67de940fb42cbdbb) C:\Windows\system32\DRIVERS\HDAudBus.sys
    2011/05/22 14:34:30.0283 7124 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
    2011/05/22 14:34:30.0311 7124 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
    2011/05/22 14:34:30.0345 7124 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
    2011/05/22 14:34:30.0393 7124 HidUsb (b3bf6b5b50006def50b66306d99fcf6f) C:\Windows\system32\DRIVERS\hidusb.sys
    2011/05/22 14:34:30.0443 7124 HpSAMD (0886d440058f203eba0e1825e4355914) C:\Windows\system32\DRIVERS\HpSAMD.sys
    2011/05/22 14:34:30.0480 7124 HTTP (cee049cac4efa7f4e1e4ad014414a5d4) C:\Windows\system32\drivers\HTTP.sys
    2011/05/22 14:34:30.0502 7124 hwpolicy (f17766a19145f111856378df337a5d79) C:\Windows\system32\drivers\hwpolicy.sys
    2011/05/22 14:34:30.0521 7124 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
    2011/05/22 14:34:30.0545 7124 iaStorV (d83efb6fd45df9d55e9a1afc63640d50) C:\Windows\system32\DRIVERS\iaStorV.sys
    2011/05/22 14:34:30.0590 7124 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
    2011/05/22 14:34:30.0639 7124 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\DRIVERS\intelide.sys
    2011/05/22 14:34:30.0684 7124 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
    2011/05/22 14:34:30.0718 7124 IpFilterDriver (722dd294df62483cecaae6e094b4d695) C:\Windows\system32\DRIVERS\ipfltdrv.sys
    2011/05/22 14:34:30.0756 7124 IPMIDRV (e2b4a4494db7cb9b89b55ca268c337c5) C:\Windows\system32\DRIVERS\IPMIDrv.sys
    2011/05/22 14:34:30.0787 7124 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
    2011/05/22 14:34:30.0824 7124 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
    2011/05/22 14:34:30.0849 7124 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\DRIVERS\isapnp.sys
    2011/05/22 14:34:30.0892 7124 iScsiPrt (fa4d2557de56d45b0a346f93564be6e1) C:\Windows\system32\DRIVERS\msiscsi.sys
    2011/05/22 14:34:30.0940 7124 JRAID (6ebe4832b1a7c063fdf87035afc1e3dc) C:\Windows\system32\DRIVERS\jraid.sys
    2011/05/22 14:34:30.0993 7124 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
    2011/05/22 14:34:31.0025 7124 kbdhid (6def98f8541e1b5dceb2c822a11f7323) C:\Windows\system32\DRIVERS\kbdhid.sys
    2011/05/22 14:34:31.0055 7124 KSecDD (e8b6fcc9c83535c67f835d407620bd27) C:\Windows\system32\Drivers\ksecdd.sys
    2011/05/22 14:34:31.0125 7124 KSecPkg (a8c63880ef6f4d3fec7b616b9c060215) C:\Windows\system32\Drivers\ksecpkg.sys
    2011/05/22 14:34:31.0154 7124 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
    2011/05/22 14:34:31.0223 7124 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
    2011/05/22 14:34:31.0287 7124 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
    2011/05/22 14:34:31.0316 7124 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
    2011/05/22 14:34:31.0343 7124 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
    2011/05/22 14:34:31.0370 7124 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
    2011/05/22 14:34:31.0392 7124 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
    2011/05/22 14:34:31.0460 7124 lvpopf64 (a014e25d95f7091000b60ff8a1c2e988) C:\Windows\system32\DRIVERS\lvpopf64.sys
    2011/05/22 14:34:31.0498 7124 LVRS64 (ef586b959f747e74c76603ff16ae417b) C:\Windows\system32\DRIVERS\lvrs64.sys
    2011/05/22 14:34:31.0610 7124 LVUVC64 (edf73bfa1bd24d74d1d64dc0ed28a7cd) C:\Windows\system32\DRIVERS\lvuvc64.sys
    2011/05/22 14:34:31.0701 7124 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
    2011/05/22 14:34:31.0740 7124 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
    2011/05/22 14:34:31.0788 7124 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
    2011/05/22 14:34:31.0824 7124 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
    2011/05/22 14:34:31.0844 7124 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
    2011/05/22 14:34:31.0880 7124 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
    2011/05/22 14:34:31.0900 7124 mountmgr (791af66c4d0e7c90a3646066386fb571) C:\Windows\system32\drivers\mountmgr.sys
    2011/05/22 14:34:31.0925 7124 mpio (609d1d87649ecc19796f4d76d4c15cea) C:\Windows\system32\DRIVERS\mpio.sys
    2011/05/22 14:34:31.0945 7124 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
    2011/05/22 14:34:31.0986 7124 MRxDAV (30524261bb51d96d6fcbac20c810183c) C:\Windows\system32\drivers\mrxdav.sys
    2011/05/22 14:34:32.0019 7124 mrxsmb (b7f3d2c40bdf8ffb73ebfb19c77734e2) C:\Windows\system32\DRIVERS\mrxsmb.sys
    2011/05/22 14:34:32.0042 7124 mrxsmb10 (86c6f88b5168ce21cf8d69d0b3ff5d19) C:\Windows\system32\DRIVERS\mrxsmb10.sys
    2011/05/22 14:34:32.0067 7124 mrxsmb20 (b081069251c8e9f42cb8769d07148f9c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
    2011/05/22 14:34:32.0117 7124 msahci (5c37497276e3b3a5488b23a326a754b7) C:\Windows\system32\DRIVERS\msahci.sys
    2011/05/22 14:34:32.0149 7124 msdsm (8d27b597229aed79430fb9db3bcbfbd0) C:\Windows\system32\DRIVERS\msdsm.sys
    2011/05/22 14:34:32.0194 7124 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
    2011/05/22 14:34:32.0225 7124 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
    2011/05/22 14:34:32.0240 7124 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\DRIVERS\msisadrv.sys
    2011/05/22 14:34:32.0275 7124 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
    2011/05/22 14:34:32.0298 7124 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
    2011/05/22 14:34:32.0317 7124 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
    2011/05/22 14:34:32.0340 7124 MsRPC (89cb141aa8616d8c6a4610fa26c60964) C:\Windows\system32\drivers\MsRPC.sys
    2011/05/22 14:34:32.0359 7124 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys
    2011/05/22 14:34:32.0378 7124 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
    2011/05/22 14:34:32.0394 7124 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
    2011/05/22 14:34:32.0432 7124 MTsensor (19b006b181e3875fd254f7b67acf1e7c) C:\Windows\system32\DRIVERS\ASACPI.sys
    2011/05/22 14:34:32.0486 7124 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
    2011/05/22 14:34:32.0549 7124 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
    2011/05/22 14:34:32.0599 7124 NDIS (cad515dbd07d082bb317d9928ce8962c) C:\Windows\system32\drivers\ndis.sys
    2011/05/22 14:34:32.0633 7124 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
    2011/05/22 14:34:32.0665 7124 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
    2011/05/22 14:34:32.0702 7124 Ndisuio (f105ba1e22bf1f2ee8f005d4305e4bec) C:\Windows\system32\DRIVERS\ndisuio.sys
    2011/05/22 14:34:32.0729 7124 NdisWan (557dfab9ca1fcb036ac77564c010dad3) C:\Windows\system32\DRIVERS\ndiswan.sys
    2011/05/22 14:34:32.0755 7124 NDProxy (659b74fb74b86228d6338d643cd3e3cf) C:\Windows\system32\drivers\NDProxy.sys
    2011/05/22 14:34:32.0772 7124 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
    2011/05/22 14:34:32.0794 7124 NetBT (9162b273a44ab9dce5b44362731d062a) C:\Windows\system32\DRIVERS\netbt.sys
    2011/05/22 14:34:32.0873 7124 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
    2011/05/22 14:34:32.0928 7124 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
    2011/05/22 14:34:32.0950 7124 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
    2011/05/22 14:34:32.0992 7124 Ntfs (356698a13c4630d5b31c37378d469196) C:\Windows\system32\drivers\Ntfs.sys
    2011/05/22 14:34:33.0036 7124 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
    2011/05/22 14:34:33.0064 7124 nvraid (3e38712941e9bb4ddbee00affe3fed3d) C:\Windows\system32\DRIVERS\nvraid.sys
    2011/05/22 14:34:33.0085 7124 nvstor (477dc4d6deb99be37084c9ac6d013da1) C:\Windows\system32\DRIVERS\nvstor.sys
    2011/05/22 14:34:33.0120 7124 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\DRIVERS\nv_agp.sys
    2011/05/22 14:34:33.0157 7124 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\DRIVERS\ohci1394.sys
    2011/05/22 14:34:33.0210 7124 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
    2011/05/22 14:34:33.0287 7124 partmgr (7daa117143316c4a1537e074a5a9eaf0) C:\Windows\system32\drivers\partmgr.sys
    2011/05/22 14:34:33.0365 7124 pci (f36f6504009f2fb0dfd1b17a116ad74b) C:\Windows\system32\DRIVERS\pci.sys
    2011/05/22 14:34:33.0382 7124 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\DRIVERS\pciide.sys
    2011/05/22 14:34:33.0411 7124 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
    2011/05/22 14:34:33.0461 7124 PCTCore (54e013b6d55b81c0aa1ebea80ff42383) C:\Windows\system32\drivers\PCTCore64.sys
    2011/05/22 14:34:33.0486 7124 pctDS (ff43e3b1687e4e2140de6349ea5c7372) C:\Windows\system32\drivers\pctDS64.sys
    2011/05/22 14:34:33.0520 7124 pctEFA (60e9a05852af7e9cb11237c00aee4ccf) C:\Windows\system32\drivers\pctEFA64.sys
    2011/05/22 14:34:33.0564 7124 pctgntdi (24b8461b247824e0a8af9671e81a5553) C:\Windows\System32\drivers\pctgntdi64.sys
    2011/05/22 14:34:33.0608 7124 pctplsg (db7a3311c4ede70f3115308533ae9fb9) C:\Windows\System32\drivers\pctplsg64.sys
    2011/05/22 14:34:33.0662 7124 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
    2011/05/22 14:34:33.0725 7124 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
    2011/05/22 14:34:33.0808 7124 PptpMiniport (27cc19e81ba5e3403c48302127bda717) C:\Windows\system32\DRIVERS\raspptp.sys
    2011/05/22 14:34:33.0829 7124 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
    2011/05/22 14:34:33.0904 7124 Psched (ee992183bd8eaefd9973f352e587a299) C:\Windows\system32\DRIVERS\pacer.sys
    2011/05/22 14:34:33.0947 7124 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
    2011/05/22 14:34:34.0003 7124 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
    2011/05/22 14:34:34.0027 7124 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
    2011/05/22 14:34:34.0047 7124 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
    2011/05/22 14:34:34.0079 7124 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
    2011/05/22 14:34:34.0100 7124 Rasl2tp (87a6e852a22991580d6d39adc4790463) C:\Windows\system32\DRIVERS\rasl2tp.sys
    2011/05/22 14:34:34.0148 7124 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
    2011/05/22 14:34:34.0179 7124 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
    2011/05/22 14:34:34.0203 7124 rdbss (3bac8142102c15d59a87757c1d41dce5) C:\Windows\system32\DRIVERS\rdbss.sys
    2011/05/22 14:34:34.0231 7124 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
    2011/05/22 14:34:34.0264 7124 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
    2011/05/22 14:34:34.0285 7124 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
    2011/05/22 14:34:34.0338 7124 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
    2011/05/22 14:34:34.0363 7124 RDPWD (8a3e6bea1c53ea6177fe2b6eba2c80d7) C:\Windows\system32\drivers\RDPWD.sys
    2011/05/22 14:34:34.0388 7124 rdyboost (634b9a2181d98f15941236886164ec8b) C:\Windows\system32\drivers\rdyboost.sys
    2011/05/22 14:34:34.0434 7124 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
    2011/05/22 14:34:34.0480 7124 RTL8167 (b49dc435ae3695bac5623dd94b05732d) C:\Windows\system32\DRIVERS\Rt64win7.sys
    2011/05/22 14:34:34.0502 7124 sbp2port (e3bbb89983daf5622c1d50cf49f28227) C:\Windows\system32\DRIVERS\sbp2port.sys
    2011/05/22 14:34:34.0525 7124 scfilter (c94da20c7e3ba1dca269bc8460d98387) C:\Windows\system32\DRIVERS\scfilter.sys
    2011/05/22 14:34:34.0562 7124 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
    2011/05/22 14:34:34.0650 7124 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
    2011/05/22 14:34:34.0676 7124 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
    2011/05/22 14:34:34.0703 7124 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
    2011/05/22 14:34:34.0734 7124 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\DRIVERS\sffdisk.sys
    2011/05/22 14:34:34.0766 7124 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\DRIVERS\sffp_mmc.sys
    2011/05/22 14:34:34.0781 7124 sffp_sd (5588b8c6193eb1522490c122eb94dffa) C:\Windows\system32\DRIVERS\sffp_sd.sys
    2011/05/22 14:34:34.0809 7124 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
    2011/05/22 14:34:34.0875 7124 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
    2011/05/22 14:34:34.0903 7124 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
    2011/05/22 14:34:34.0929 7124 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
    2011/05/22 14:34:34.0961 7124 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
    2011/05/22 14:34:35.0015 7124 srv (148d50904d2a0df29a19778715eb35bb) C:\Windows\system32\DRIVERS\srv.sys
    2011/05/22 14:34:35.0060 7124 srv2 (ce2189fe31d36678ac9eb7ddee08ec96) C:\Windows\system32\DRIVERS\srv2.sys
    2011/05/22 14:34:35.0100 7124 srvnet (cb69edeb069a49577592835659cd0e46) C:\Windows\system32\DRIVERS\srvnet.sys
    2011/05/22 14:34:35.0143 7124 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
    2011/05/22 14:34:35.0174 7124 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys
    2011/05/22 14:34:35.0284 7124 Tcpip (90a2d722cf64d911879d6c4a4f802a4d) C:\Windows\system32\drivers\tcpip.sys
    2011/05/22 14:34:35.0384 7124 TCPIP6 (90a2d722cf64d911879d6c4a4f802a4d) C:\Windows\system32\DRIVERS\tcpip.sys
    2011/05/22 14:34:35.0433 7124 tcpipreg (76d078af6f587b162d50210f761eb9ed) C:\Windows\system32\drivers\tcpipreg.sys
    2011/05/22 14:34:35.0458 7124 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
    2011/05/22 14:34:35.0484 7124 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys
    2011/05/22 14:34:35.0509 7124 tdx (079125c4b17b01fcaeebce0bcb290c0f) C:\Windows\system32\DRIVERS\tdx.sys
    2011/05/22 14:34:35.0530 7124 TermDD (c448651339196c0e869a355171875522) C:\Windows\system32\DRIVERS\termdd.sys
    2011/05/22 14:34:35.0581 7124 TfFsMon (a0e9ff68460a30517283e75fdd3576d8) C:\Windows\system32\drivers\TfFsMon.sys
    2011/05/22 14:34:35.0655 7124 TfNetMon (974285b8fa8cf2f70ae868422ba05218) C:\Windows\system32\drivers\TfNetMon.sys
    2011/05/22 14:34:35.0700 7124 TFSysMon (f9a30737390516f4448682bd1888a038) C:\Windows\system32\drivers\TfSysMon.sys
    2011/05/22 14:34:35.0765 7124 tssecsrv (61b96c26131e37b24e93327a0bd1fb95) C:\Windows\system32\DRIVERS\tssecsrv.sys
    2011/05/22 14:34:35.0805 7124 tunnel (3836171a2cdf3af8ef10856db9835a70) C:\Windows\system32\DRIVERS\tunnel.sys
    2011/05/22 14:34:35.0824 7124 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
    2011/05/22 14:34:35.0850 7124 udfs (d47baead86c65d4f4069d7ce0a4edceb) C:\Windows\system32\DRIVERS\udfs.sys
    2011/05/22 14:34:35.0891 7124 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\DRIVERS\uliagpkx.sys
    2011/05/22 14:34:35.0926 7124 umbus (eab6c35e62b1b0db0d1b48b671d3a117) C:\Windows\system32\DRIVERS\umbus.sys
    2011/05/22 14:34:35.0947 7124 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
    2011/05/22 14:34:36.0015 7124 usbaudio (77b01bc848298223a95d4ec23e1785a1) C:\Windows\system32\drivers\usbaudio.sys
    2011/05/22 14:34:36.0040 7124 usbccgp (b26afb54a534d634523c4fb66765b026) C:\Windows\system32\DRIVERS\usbccgp.sys
    2011/05/22 14:34:36.0069 7124 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\DRIVERS\usbcir.sys
    2011/05/22 14:34:36.0093 7124 usbehci (2ea4aff7be7eb4632e3aa8595b0803b5) C:\Windows\system32\DRIVERS\usbehci.sys
    2011/05/22 14:34:36.0129 7124 usbhub (4c9042b8df86c1e8e6240c218b99b39b) C:\Windows\system32\DRIVERS\usbhub.sys
    2011/05/22 14:34:36.0152 7124 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\DRIVERS\usbohci.sys
    2011/05/22 14:34:36.0174 7124 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
    2011/05/22 14:34:36.0195 7124 USBSTOR (080d3820da6c046be82fc8b45a893e83) C:\Windows\system32\DRIVERS\USBSTOR.SYS
    2011/05/22 14:34:36.0215 7124 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\DRIVERS\usbuhci.sys
    2011/05/22 14:34:36.0267 7124 usbvideo (7cb8c573c6e4a2714402cc0a36eab4fe) C:\Windows\system32\Drivers\usbvideo.sys
    2011/05/22 14:34:36.0313 7124 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\DRIVERS\vdrvroot.sys
    2011/05/22 14:34:36.0381 7124 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
    2011/05/22 14:34:36.0409 7124 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
    2011/05/22 14:34:36.0439 7124 vhdmp (c82e748660f62a242b2dfac1442f22a4) C:\Windows\system32\DRIVERS\vhdmp.sys
    2011/05/22 14:34:36.0524 7124 VIAHdAudAddService (8f69c38a8ba725f891f26aac8888696e) C:\Windows\system32\drivers\viahduaa.sys
    2011/05/22 14:34:36.0555 7124 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\DRIVERS\viaide.sys
    2011/05/22 14:34:36.0578 7124 volmgr (2b1a3dae2b4e70dbba822b7a03fbd4a3) C:\Windows\system32\DRIVERS\volmgr.sys
    2011/05/22 14:34:36.0636 7124 volmgrx (99b0cbb569ca79acaed8c91461d765fb) C:\Windows\system32\drivers\volmgrx.sys
    2011/05/22 14:34:36.0671 7124 volsnap (58f82eed8ca24b461441f9c3e4f0bf5c) C:\Windows\system32\DRIVERS\volsnap.sys
    2011/05/22 14:34:36.0708 7124 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
    2011/05/22 14:34:36.0781 7124 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
    2011/05/22 14:34:36.0882 7124 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
    2011/05/22 14:34:36.0919 7124 WANARP (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys
    2011/05/22 14:34:36.0934 7124 Wanarpv6 (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys
    2011/05/22 14:34:37.0004 7124 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
    2011/05/22 14:34:37.0036 7124 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
    2011/05/22 14:34:37.0084 7124 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
    2011/05/22 14:34:37.0106 7124 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
    2011/05/22 14:34:37.0169 7124 WinUsb (817eaff5d38674edd7713b9dfb8e9791) C:\Windows\system32\DRIVERS\WinUsb.sys
    2011/05/22 14:34:37.0215 7124 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys
    2011/05/22 14:34:37.0247 7124 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
    2011/05/22 14:34:37.0280 7124 WudfPf (7cadc74271dd6461c452c271b30bd378) C:\Windows\system32\drivers\WudfPf.sys
    2011/05/22 14:34:37.0317 7124 WUDFRd (3b197af0fff08aa66b6b2241ca538d64) C:\Windows\system32\DRIVERS\WUDFRd.sys
    2011/05/22 14:34:37.0398 7124 ================================================================================
    2011/05/22 14:34:37.0398 7124 Scan finished
    2011/05/22 14:34:37.0398 7124 ================================================================================
    2011/05/22 14:35:56.0072 2336 Deinitialize success

    Ca m'a écrit "aucune infection" :( Qu'est-ce que ça veut dire ?
    0
  9. gen-hackman
     
    ca veut dire qu'il va falloir chercher un peu plus loin :)

    desactive tes protections puis enregistre ceci sur ton bureau

    Pre_Scan

    s'il n'est pas sur ton bureau coupe-le de ton dossier telechargements et colle-le sur ton bureau

    Avertissement: Il y aura une extinction courte du bureau --> pas de panique.

    une fois telechargé lance-le , laisse faire le scan jusqu'à l'apparition de "Pre_scan.txt" sur le bureau.

    si l'outil detecte un proxy et que tu n'en as pas installé clique sur "supprimer le proxy"

    si l'outil semble ne pas avoir fonctionné clique plusieurs fois très rapidement dessus ou renomme-le winlogon , ou change son extension en .com ou .scr

    Il se peut que l'outil soit un peu long sur la reattribution des fichiers tout depend combien tu en as , laisse-le travailler

    Poste Pre_Scan.txt qui apparaitra sur le bureau en fin de scan
    0
  10. Perrentine Messages postés 27 Statut Membre
     
    ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Scan 1.0.1.10 ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

    ¤¤¤¤¤ XP | Vista | Seven - 32/64 bits ¤¤¤¤¤

    Mis à jour le 21/05/2011 | 12.45 par g3n-h@ckm@n
    Utilisateur : Utilisateur (Administrateurs)
    Ordinateur : UTILISATEUR-PC

    Système d'exploitation : Windows 7 Home Premium (64 bits)
    Internet Explorer : 8.0.7600.16385
    Mozilla Firefox : 4.0.1 (fr)

    Scan : 15:58:58 | 22/05/2011

    ¤¤¤¤¤¤¤¤¤¤¤ Processus en cours

    1068 | C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe - Système - Normal - "C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe" - 616
    1436 | C:\Program Files\Alwil Software\Avast5\AvastSvc.exe - Système - Normal - "C:\Program Files\Alwil Software\Avast5\AvastSvc.exe" - 616
    2012 | C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe - Système - Normal - "C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe" - 616
    2184 | C:\Program Files (x86)\PC Tools Security\BDT\BDTUpdateService.exe - Système - Normal - "C:\Program Files (x86)\PC Tools Security\BDT\BDTUpdateService.exe" - 616
    2256 | C:\ASUS.SYS\config\DVMExportService.exe - Système - Normal - "C:\ASUS.SYS\config\DVMExportService.exe" - 616
    2320 | C:\Program Files (x86)\PC Tools Security\pctsAuxs.exe - Système - Normal - "C:\Program Files (x86)\PC Tools Security\pctsAuxs.exe" - 616
    3824 | C:\Program Files (x86)\PC Tools Security\pctsGui.exe - Utilisateur - Normal - "C:\Program Files (x86)\PC Tools Security\pctsGui.exe" /hideGUI - 2900
    4236 | C:\Program Files (x86)\Logitech\Vid HD\Vid.exe - Utilisateur - Normal - "C:\Program Files (x86)\Logitech\Vid HD\Vid.exe" -bootmode - 3852
    4496 | C:\Program Files\Alwil Software\Avast5\AvastUI.exe - Utilisateur - Normal - "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui - 4328
    4552 | C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe - Utilisateur - Normal - "C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" - 4328
    4568 | C:\Program Files (x86)\PC Tools Security\BDT\FGuard.exe - Utilisateur - Normal - "C:\Program Files (x86)\PC Tools Security\BDT\FGuard.exe" - 4328
    4664 | C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe - Utilisateur - Normal - "C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe" -hide - 4328
    4676 | C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe - Utilisateur - Normal - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" - 4328
    4820 | C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac - Utilisateur - Normal - ArcCon.ac 66544 0 - 4552
    4620 | C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe - Utilisateur - Normal - "C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe" /hide - 4664
    684 | C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe - Utilisateur - Normal - "C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe" -Embedding - 800
    2460 | C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe - Utilisateur - Normal - "C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe" -Embedding - 800
    2560 | C:\Program Files (x86)\PC Tools Security\pctsSvc.exe - Système - Normal - "C:\Program Files (x86)\PC Tools Security\pctsSvc.exe" - 616
    4488 | C:\Program Files (x86)\PC Tools Security\TFEngine\TFService.exe - Système - Normal - "C:\Program Files (x86)\PC Tools Security\TFEngine\TFService.exe" service - 616
    5896 | C:\Users\Utilisateur\Desktop\Pre_scan.exe - Utilisateur - High - "C:\Users\Utilisateur\Desktop\Pre_scan.exe" - 3852
    6660 | C:\Windows\SysWOW64\cmd.exe - Utilisateur - Normal - cmd /c ""C:\Kill'em\Pv.bat" " - 5896
    2132 | C:\Kill'em\Pv.exe - Utilisateur - Normal - C:\Kill'em\pv.exe -o"%i | %f - %u - %p - %l - %r" - 6660

    ¤¤¤¤¤¤¤¤¤¤ Winlogon

    [HKLM | Winlogon] | Shell : Explorer.exe
    [HKLM | Winlogon] | AutoRestartShell : 1
    [HKLM | Winlogon] | userinit : C:\Windows\SysWOW64\Userinit.exe,
    [HKLM | Winlogon] | PowerDownAfterShutdown : -> 1
    [HKLM | Winlogon] | System :

    ¤¤¤¤¤¤¤¤¤¤ Associations

    [.exe] : exefile
    [exefile | command] : "%1" %*
    [.com] : comfile
    [comfile | command] : "%1" %*
    [.reg] : regfile
    [regfile | command] : regedit.exe "%1"
    [.scr] : scrfile
    [scrfile | command] : "%1" /S
    [.bat] : batfile
    [batfile | command] : "%1" %*
    [.cmd] : cmdfile
    [cmdfile | command] : "%1" %*
    [.pif] : piffile
    [piffile | command] : "%1" %*
    [.url] : InternetShortcut
    [InternetShortcut | command] : "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l -> "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l
    [Application.Manifest | command] : rundll32.exe dfshim.dll,ShOpenVerbApplication %1
    [Application.Reference | command] : rundll32.exe dfshim.dll,ShOpenVerbShortcut %1|%2
    [Folder | command] : %SystemRoot%\Explorer.exe -> C:\Windows\explorer.exe

    ¤

    [Firefox | Command] | @ : C:\Program Files (x86)\Mozilla Firefox\firefox.exe -> "C:\Program Files (x86)\Mozilla Firefox\Firefox.exe"
    [Firefox - Safemode | Command] | @ : "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -safe-mode
    [IE | Command] | @ : C:\Program Files (x86)\Internet Explorer\iexplore.exe -> "C:\Program Files (x86)\Internet Explorer\iexplore.exe"
    [Applications | IE | Command] | @ : "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1
    [Assoc | Applications] | @ : http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s -> http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s

    ¤¤¤¤¤¤¤¤¤¤ Divers

    [HKLM | HideDesktopIcons\ClassicStartMenu] | {9343812e-1c37-4a49-a12e-4b2d810d956b} : 1 -> 0
    [HKLM | HideDesktopIcons\NewStartPanel] | {F02C1A0D-BE21-4350-88B0-7367FC96EF3C} : 1 -> 0
    [HKLM | HideDesktopIcons\NewStartPanel] | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> 0
    [HKLM | HideDesktopIcons\NewStartPanel] | {208D2C60-3AEA-1069-A2D7-08002B30309D} : 1 -> 0
    [HKLM | HideDesktopIcons\NewStartPanel] | {871C5380-42A0-1069-A2EA-08002B30309D} : 1 -> 0
    [HKLM | HideDesktopIcons\NewStartPanel] | {5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0} : 1 -> 0
    [HKLM | HideDesktopIcons\NewStartPanel] | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> 0
    [HKLM | HideDesktopIcons\NewStartPanel] | {9343812e-1c37-4a49-a12e-4b2d810d956b} : 1 -> 0
    [HKCU | Desktop] | Wallpaper : C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
    [HKCU | policies\Explorer] | NoDriveTypeAutoRun : 0 -> 145
    [HKLM | policies\Explorer] | NoDriveTypeAutoRun : 0 -> 145
    [HKLM | policies\Explorer] | NoActiveDesktop : 1 -> 0
    [HKLM | policies\Explorer] | NoActiveDesktopChanges : 1 -> 0

    ¤¤¤¤¤¤¤¤¤¤ Services

    [Ndisuio] | Start : 3
    [lmhosts] | Start : 2 : Actif
    [LanmanWorkstation] | Start : 2 : Actif
    [LanmanServer] | Start : 2 : Actif
    [agp440] | Start : 3 -> 2 : Redémarré
    [AudioEndpointBuilder] | Start : 2 : Actif
    [Audiosrv] | Start : 2 : Actif
    [BFE] | Start : 2 : Actif
    [Bits] | Start : 3 -> 2 : Actif
    [CryptSvc] | Start : 2 : Actif
    [EapHost] | Start : 3 -> 2 : Redémarré
    [Wlansvc] | Start : 3 -> 2 : Redémarré
    [SharedAccess] | Start : 4 -> 2 : Redémarré
    [windefend] | Start : 3 -> 2 : Redémarré
    [wuauserv] | Start : 2 : Actif
    [WerSvc] | Start : 3 -> 2 : Actif
    [wscsvc] | Start : 2 : Actif

    ¤¤¤¤¤¤¤¤¤¤ Internet Explorer

    [HKCU | Main] | Start Page : https://www.msn.com/fr-fr -> https://www.google.com/?gws_rd=ssl
    [HKCU | Main] | Local Page : C:\Windows\system32\blank.htm -> C:\Windows\SysWOW64\blank.htm
    [HKCU | Main] | Search Page : https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

    [HKLM | Main] | Start Page : https://www.msn.com/fr-fr -> https://www.msn.com/fr-fr/?ocid=iehp
    [HKLM | Main] | Local Page : C:\Windows\SysWOW64\blank.htm
    [HKLM | Main] | Default_Search_URL : http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch -> https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    [HKLM | Main] | Default_Page_URL : http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome -> https://www.msn.com/fr-fr/?ocid=iehp
    [HKLM | Main] | Search Page : https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF

    ¤¤¤¤¤¤¤¤¤¤ Hosts ¤¤¤¤¤¤¤¤¤¤

    ¤¤¤¤¤¤¤¤¤¤ Processus

    ¤¤¤¤¤¤¤¤¤¤ Traitement Fichiers | Dossiers | Registre

    Mise en quarantaine : C:\Windows\Temp\DMI3C7.tmp
    Mise en quarantaine : C:\Windows\Temp\DMIE61.tmp
    Mise en quarantaine : C:\Windows\Temp\GUR84A9.tmp
    Mise en quarantaine : C:\Windows\Temp\RGI841.tmp
    Mise en quarantaine : C:\Windows\Temp\RGI841.tmp-tmp
    Mise en quarantaine : C:\Windows\Temp\TarB809.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_117F.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_1872.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_1AD4.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_1C6A.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_26C2.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_2966.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_2CFF.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_2D08.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_34AE.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_5C32.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_A9B6.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_D88.tmp
    Mise en quarantaine : C:\Windows\Temp\TS_F4F8.tmp
    Mise en quarantaine : C:\Windows\Temp\UDD1C28.tmp
    Mise en quarantaine : C:\Windows\Temp\UDD32F1.tmp
    Mise en quarantaine : C:\Windows\Temp\UDD8317.tmp
    Mise en quarantaine : C:\Windows\Temp\UDDB0CA.tmp
    Mise en quarantaine : C:\Windows\Temp\UDDD01A.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\ose00000.exe
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\SkypeSetup.exe
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\14D8.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\Cab9180.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\IECCA44.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\is-TOJGO.tmp
    Erreur de suppression : C:\Users\UTILIS~1\AppData\Local\Temp\is-TOJGO.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF17FE.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF1BA9.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF2AAC.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF456D.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF4828.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF4A5A.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF4F54.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF5A33.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF5D3C.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF64CF.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDF93CC.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDFAAC0.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDFAB1B.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDFB074.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDFB135.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDFB2EE.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDFC2A5.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDFC9E4.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\PDFD2C4.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\setD097.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\setF5D3.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\sluFD70.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\sluFE2D.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\sluFE2E.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR1529.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR1ED6.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR1F0E.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR2072.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR2699.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR2963.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR2A44.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR2D8D.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR2DD3.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR342C.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR3E9.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR5202.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR5E2D.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR6A78.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR7052.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR782A.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR7DA7.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR899C.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR8A3A.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR9013.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR902D.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR9170.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR9197.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR9723.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR9AD2.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR9B38.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR9F1E.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFR9FEE.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRA656.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRAA68.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRBA94.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRBCEF.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRC7C4.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRCED5.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRCFDF.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRD28D.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRDD0F.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRDD27.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRE58E.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRF652.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\TFRF9AB.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\~DF52F1AF99B6796AE4.TMP
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp100047968.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp110431926.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp115254222.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp123324191.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp129438130.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp131229380.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp134833226.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp135497539.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp141677924.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp142941378.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp144297053.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp144985702.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp145087653.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp149634475.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp15792821.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp1673954.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp179233591.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp190532881.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp192870055.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp194457609.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp195977453.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp199248647.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp201785425.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp204478702.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp211038312.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp211907815.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp213525260.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp230074119.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp230363060.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp230384707.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp232487372.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp241389070.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp247063943.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp258250556.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp265402314.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp265423641.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp266081470.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp267063486.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp267962955.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp27971621.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp29936080.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp44964103.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp60139400.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp61044281.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp62243444.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp68794684.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp90334956.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp92219914.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp96186169.tmp
    Mise en quarantaine : C:\Windows\Temp\_avast_\unp97374576.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\14D8.dir\InstallFlashPlayer.exe
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\CDBurnerXP-updates\cdbxp_setup_4.3.8.2560.exe
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\lu\lws_1000_logi_bcast.exe
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\lu\lws_17_getmoreinstaller_logitech_32.exe
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\lu\lws_921_lws_driver_installer_logitech_64.exe
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\lu\lws_923_lws_sharedbin_installer_32.exe
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\{EDC219AA-19AA-4DF0-B069-C7574D22F3A4}\setup.exe
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\_avast_\unp115373516.tmp
    Mise en quarantaine : C:\Users\UTILIS~1\AppData\Local\Temp\_avast_\unp41240421.tmp

    ¤¤¤¤¤¤¤¤¤¤ IFEO

    ¤¤¤¤¤¤¤¤¤¤ Mountpoints2

    ¤¤¤¤¤¤¤¤¤¤ Listing %AppData%

    [01/12/2010 | 21:54:28] | C:\Users\Utilisateur\AppData\Roaming\Adobe
    [28/12/2010 | 15:38:48] | C:\Users\Utilisateur\AppData\Roaming\ArcSoft
    [02/12/2010 | 03:13:08] | C:\Users\Utilisateur\AppData\Roaming\ATI
    [01/12/2010 | 21:35:23] | C:\Users\Utilisateur\AppData\Roaming\Canneverbe Limited
    [13/03/2011 | 15:17:30] | C:\Users\Utilisateur\AppData\Roaming\FOG Downloader
    [01/12/2010 | 16:26:00] | C:\Users\Utilisateur\AppData\Roaming\Identities
    [28/12/2010 | 15:27:41] | C:\Users\Utilisateur\AppData\Roaming\InstallShield
    [16/04/2011 | 16:01:38] | C:\Users\Utilisateur\AppData\Roaming\Leadertech
    [27/04/2011 | 23:07:59] | C:\Users\Utilisateur\AppData\Roaming\LolClient
    [01/12/2010 | 21:54:28] | C:\Users\Utilisateur\AppData\Roaming\Macromedia
    [01/12/2010 | 22:44:31] | C:\Users\Utilisateur\AppData\Roaming\Malwarebytes
    [01/12/2010 | 16:25:34] | C:\Users\Utilisateur\AppData\Roaming\Media Center Programs
    [01/12/2010 | 16:25:34] | C:\Users\Utilisateur\AppData\Roaming\Microsoft
    [01/12/2010 | 20:39:51] | C:\Users\Utilisateur\AppData\Roaming\Mozilla
    [05/12/2010 | 21:57:21] | C:\Users\Utilisateur\AppData\Roaming\Mumble
    [03/03/2011 | 17:55:25] | C:\Users\Utilisateur\AppData\Roaming\PC Tools
    [19/05/2011 | 16:28:33] | C:\Users\Utilisateur\AppData\Roaming\PCTools
    [28/12/2010 | 15:29:08] | C:\Users\Utilisateur\AppData\Roaming\Philips
    [09/01/2011 | 18:53:54] | C:\Users\Utilisateur\AppData\Roaming\PhotoFiltre
    [05/05/2011 | 22:57:59] | C:\Users\Utilisateur\AppData\Roaming\Samsung
    [21/05/2011 | 13:22:42] | C:\Users\Utilisateur\AppData\Roaming\Simply Super Software
    [03/12/2010 | 01:27:33] | C:\Users\Utilisateur\AppData\Roaming\Skype
    [14/02/2011 | 18:40:17] | C:\Users\Utilisateur\AppData\Roaming\skypePM
    [05/12/2010 | 23:43:31] | C:\Users\Utilisateur\AppData\Roaming\WinRAR

    ¤¤¤¤¤¤¤¤¤¤ Listing %CommonAppData%

    [01/12/2010 | 21:52:16] | C:\ProgramData\Adobe
    [01/12/2010 | 21:19:59] | C:\ProgramData\Alwil Software
    [04/12/2010 | 19:27:33] | C:\ProgramData\Apple
    [15/12/2010 | 11:54:39] | C:\ProgramData\Apple Computer
    [14/07/2009 | 07:08:56] | C:\ProgramData\Application Data
    [28/12/2010 | 15:35:01] | C:\ProgramData\ArcSoft
    [02/12/2010 | 03:13:08] | C:\ProgramData\ATI
    [02/12/2010 | 22:10:10] | C:\ProgramData\Blizzard
    [02/12/2010 | 21:20:26] | C:\ProgramData\Blizzard Entertainment
    [01/12/2010 | 16:25:23] | C:\ProgramData\Bureau
    [01/12/2010 | 21:35:22] | C:\ProgramData\Canneverbe Limited
    [14/07/2009 | 07:08:56] | C:\ProgramData\Desktop
    [14/07/2009 | 07:08:56] | C:\ProgramData\Documents
    [01/12/2010 | 16:25:23] | C:\ProgramData\Favoris
    [14/07/2009 | 07:08:56] | C:\ProgramData\Favorites
    [01/12/2010 | 21:31:06] | C:\ProgramData\Google
    [01/12/2010 | 22:14:13] | C:\ProgramData\Google Updater
    [16/04/2011 | 16:09:42] | C:\ProgramData\LogiShrd
    [16/04/2011 | 16:00:37] | C:\ProgramData\Logitech
    [01/12/2010 | 22:44:25] | C:\ProgramData\Malwarebytes
    [01/12/2010 | 16:25:23] | C:\ProgramData\Menu Démarrer
    [14/07/2009 | 05:20:08] | C:\ProgramData\Microsoft
    [06/12/2010 | 12:03:03] | C:\ProgramData\Microsoft Help
    [01/12/2010 | 16:25:23] | C:\ProgramData\Modèles
    [01/12/2010 | 22:20:42] | C:\ProgramData\PC Tools
    [05/05/2011 | 22:57:58] | C:\ProgramData\Samsung
    [21/05/2011 | 13:22:42] | C:\ProgramData\Simply Super Software
    [01/12/2010 | 22:15:08] | C:\ProgramData\Skype
    [14/07/2009 | 07:08:56] | C:\ProgramData\Start Menu
    [30/04/2011 | 13:52:41] | C:\ProgramData\Sun
    [01/12/2010 | 22:24:45] | C:\ProgramData\TEMP
    [14/07/2009 | 07:08:56] | C:\ProgramData\Templates

    ¤¤¤¤¤¤¤¤¤¤ Listing Tasks

    [01/12/2010 | 22:14:12] | C:\Windows\Tasks\Google Software Updater.job
    [01/12/2010 | 22:14:50] | C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    [01/12/2010 | 22:14:50] | C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

    ¤¤¤¤¤¤¤¤¤¤ Security

    ¤¤¤

    explorer.exe -> Processus redémarré

    Fin : 15:59:42

    ¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤
    0
  11. gen-hackman
     
    desinstalle PC-TOOLS

    ======================================

    Télécharge ici :OTL

    enregistre le sur ton Bureau.

    si tu as XP => double clique
    si tu as Vista ou windows 7 => clic droit "executer en tant que...."


    sur OTL.exe pour le lancer.

    => Configuration

    ▶Clic sur Analyse.

    A la fin du scan, le Bloc-Notes va s'ouvrir avec le rapport (OTL.txt).

    Ce fichier est sur ton Bureau (en général C:\Documents and settings\le_nom_de_ta_session\OTL.txt)

    ▶▶▶ NE LE POSTE PAS SUR LE FORUM (il est trop long)

    Pour me le transmettre clique sur ce lien : http://www.cijoint.fr/

    ▶ Clique sur Parcourir et cherche le fichier ci-dessus.

    ▶ Clique sur Ouvrir.

    ▶ Clique sur "Cliquez ici pour déposer le fichier".

    juste au niveau du bouton , en fin de chargement du fichier , Un lien de cette forme apparaitra :

    http://www.cijoint.fr/cjlink.php?file=cjge368/cijSKAP5fU.txt

    ▶ Copie ce lien dans ta réponse.

    ▶▶ Tu feras la meme chose avec le "Extra.txt" qui logiquement sera aussi sur ton bureau.
    0
  12. Perrentine Messages postés 27 Statut Membre
     
    Fichier OTL :

    http://www.cijoint.fr/cjlink.php?file=cj201105/cijmOHeM7x.txt

    Fichier Extras :

    http://www.cijoint.fr/cjlink.php?file=cj201105/cij6Q9QBit.txt
    0
  13. gen-hackman
     
    Fais analyser le(s) fichier(s) suivants sur Virustotal :

    Virus Total

    clique sur "Parcourir" et trouve puis selectionne ce(s) fichier(s) :

    C:\ASUS.SYS\config\DVMExportService.exe

    * Clique maintenant sur Envoyer le fichier. et laisse travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
    * Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. En ce cas, il te faudra patienter sans actualiser la page.
    * Lorsque l'analyse est terminée colle le lien de(s)( la) page(s) dans ta prochaine réponse.
    0
  14. Perrentine Messages postés 27 Statut Membre
     
    Quand je clique sur Parcourir, il n'y a rien dans "ASUS.SYS", sur mon ordinateur non plus.

    Je suis totalement larguée !
    0
  15. gen-hackman
     
    fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.

    ▶ Télécharge ici :

    Malwarebytes

    ▶ Installe le ( choisis bien "francais" ; ne modifie pas les paramètres d'installe ) et mets le à jour .

    (NB : Si tu as un message d'erreur t'indiquant qu'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharge le ici : COMCTL32.OCX

    ▶ Potasses le Tuto pour te familiariser avec le prg :

    ( cela dit, il est très simple d'utilisation ).

    relance malwarebytes en suivant scrupuleusement ces consignes :

    ! Déconnecte toi et ferme toutes applications en cours !

    ▶ Lance Malwarebyte's .

    Fais un examen dit "Complet" .

    ▶ Laisse le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
    ▶ à la fin tu cliques sur "résultat" .
    Vérifie que tous les objets infectés soient validés, puis clique sur " suppression " .

    Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !

    Poste le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date)

    0
  16. Perrentine Messages postés 27 Statut Membre
     
    Malwarebytes' Anti-Malware 1.50.1.1100
    www.malwarebytes.org

    Version de la base de données: 6641

    Windows 6.1.7600
    Internet Explorer 8.0.7600.16385

    22/05/2011 19:20:13
    mbam-log-2011-05-22 (19-20-13).txt

    Type d'examen: Examen complet (C:\|D:\|E:\|G:\|H:\|I:\|J:\|Q:\|)
    Elément(s) analysé(s): 274605
    Temps écoulé: 23 minute(s), 49 seconde(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 0
    Valeur(s) du Registre infectée(s): 0
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 0

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Valeur(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    (Aucun élément nuisible détecté)

    A en croire les rapports, mon ordinateur n'a aucun problème !
    Ceci dit, je tiens à signaler que les freezes ont quasiment disparus, il rame encore mais pas constamment... C'est bon signe.
    0
  17. Perrentine Messages postés 27 Statut Membre
     
    Fichier OTL :

    http://www.cijoint.fr/cjlink.php?file=cj201105/cijuynWdL2.txt

    Fichier Extras :

    http://www.cijoint.fr/cjlink.php?file=cj201105/cijLcKhnTk.txt
    0
  18. gen-hackman
     
    telecharge ici : Load_SalityKiller

    Desactive tes protections

    lance-le , clique sur lancer le nettoyage

    à la fin SalityKiller.txt se mettra sur ton bureau

    ▶▶▶ NE LE POSTE PAS SUR LE FORUM (il est trop long)

    clic droit dessus , envoyer vers , dossiers compressés

    ensuite :

    tu m'envoies l'archive comme ceci :

    clique sur ce lien : http://www.cijoint.fr/

    ▶ Clique sur Parcourir et cherche le fichier ci-dessus.

    ▶ Clique sur Ouvrir.

    ▶ Clique sur "Cliquez ici pour déposer le fichier".

    Un lien de cette forme :

    http://www.cijoint.fr/cjlink.php?file=cjge368/cijSKAP5fU.txt

    est ajouté dans la page.

    ▶ Copie ce lien dans ta réponse.
    0
  19. Perrentine Messages postés 27 Statut Membre
     
    Je poste le rapport sans passer par la compression et cijoint.fr car il est très court :

    21:46:43:048 5668 scanning threads ...
    21:46:46:215 5668
    21:46:46:215 5668 scanning processes ...
    21:46:46:434 5668
    21:46:46:435 5668 Restoring show hidden and system files
    21:46:46:435 5128
    Monitoring thread started
    21:46:46:436 5668
    21:46:46:437 5668 restoring SafeBoot registry node
    21:46:46:437 5668
    21:46:46:438 5668 fixing registry ...
    21:46:46:439 5668 SalityRegCure: Restoring general registry keys
    21:46:46:472 5668 SalityRegCure: Fixing system.ini
    21:46:46:473 5668
    21:46:46:473 5668 scanning drives ...
    21:46:46:474 5668 scanning C:\ ...
    22:04:13:660 5668 scanning I:\ ...
    22:04:22:650 5668 scanning Q:\ ...
    22:06:10:205 5668
    22:06:10:205 5128
    Monitoring thread stopped
    22:06:10:206 5668
    completed
    22:06:10:206 5668 Infected files: 0
    22:06:10:207 5668 Infected processes: 0
    22:06:10:207 5668 Infected threads: 0
    22:06:10:207 5668 Cured files: 0
    22:06:10:207 5668 Will be cured on reboot: 0
    22:06:10:208 5668 Executed registry scripts: 1
    0
  20. gen-hackman
     
    c'est quoi ton lecteur "Q:\ actuel ?"
    0
  • 1
  • 2