Infecté par personal pro shield...help
mapuce13
Messages postés
8
Statut
Membre
-
Utilisateur anonyme -
Utilisateur anonyme -
Bonjour,
depuis qq jours je suis infecté par pers pro shield version 2.0,et com tous ceux qui le sont,bloquage de programme,beug......je veux pas faire de sauvegarde pour ne pas infecter usb,disk dur ext....comment faire pas a pas car suis plus ou moins debutant dans la desinfection de virus,sachant que je peux travailler en parallele sur un autre pc pas infecté.
Ps.Nous sommes un cpl du 13 et si qqun du 13 pres de fos peut meme venir chez nous,c avec plaisir car en plus,le pc n'est pas a mettre entre toutes les mains...lol.
merci par avance
depuis qq jours je suis infecté par pers pro shield version 2.0,et com tous ceux qui le sont,bloquage de programme,beug......je veux pas faire de sauvegarde pour ne pas infecter usb,disk dur ext....comment faire pas a pas car suis plus ou moins debutant dans la desinfection de virus,sachant que je peux travailler en parallele sur un autre pc pas infecté.
Ps.Nous sommes un cpl du 13 et si qqun du 13 pres de fos peut meme venir chez nous,c avec plaisir car en plus,le pc n'est pas a mettre entre toutes les mains...lol.
merci par avance
A voir également:
- Infecté par personal pro shield...help
- Clé windows 10 pro 64 bits gratuit - Guide
- Ccleaner pro gratuit - Télécharger - Optimisation
- Cool edit pro - Télécharger - Édition & Montage
- Realme 14 pro test - Guide
- Redmagic 10 pro test - Accueil - Téléphones
52 réponses
bah, ça ressemble à tout sauf un rapport de zhpdiag !
tuto zhpdiag :
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
tuto zhpdiag :
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
desolé,j'etais telecharg zhpdiag mais il se lance pas apres la fin du telechargement ,ya pas non plus de raccourci bureau,j'ai donc cherché dans les programmes et un programm de zhp etait catch,je pensais que c'etait ca
non,je telecharg et quand le telechargement fini et que je met executer,tout se ferme et plus rien,et pas de raccourci non plus sur le bureau
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
je fais toutes les manips,je telecharg zhpdiag2,sur le bureau,je le lance et suis les instructions juska la fin"executer",il y a bien le raccourci de la seringue mais rien,le lancement du scan ne se fait pas
et tjrs cette fenetre de blocage qui revient de malwarebyte qui bloque l'acces a un site.....le zhpdiag est bien sur le pc,il y a pas un fichier exe ou je peux dans window lancer le scan?quand je clik sur la seringue de raccourci du bureau,il me redemande a chaque fois d'installer.
Autre question ,quand le pc a deux untilisateurs,fo t'il faire pareil sur l'autre session?
Autre question ,quand le pc a deux untilisateurs,fo t'il faire pareil sur l'autre session?
quand le pc a deux utilisateurs, il faut le redemrrer sous le session administrateur !
ça se trouve que MBAM limite l'accès de zhpdiag à internet, c'est pour ça qu'il ne se lance pas !
arrête sa protection en temps réel, puis lance Zhpdiag :D
ça se trouve que MBAM limite l'accès de zhpdiag à internet, c'est pour ça qu'il ne se lance pas !
arrête sa protection en temps réel, puis lance Zhpdiag :D
mbam c bien malewyre?Jariv pas a desactiver ,c marqué tjrs activé malgré le decochage de blocage site,et activer la protection....je commence a devenir fou et toi,quelle patiente mon pote...merci
MBAM est bien malawarybit antimalawares :D
pour le désactiver, fais un clique droit dessus dans la barre de lancement rapide, puis quitter :d
pour le désactiver, fais un clique droit dessus dans la barre de lancement rapide, puis quitter :d
je ferme avira,desactive mbam et rien a faire,des que je clik sur la seringue du bureau zhpdiag2,il me relance le processus dinstallation et kan c terminé,il se lance pas
pas cool !
est ce que tu as une version enregistrée et valide de windows ?
certains outils ne fonctionnent pas si tu n'as pas une version officielle !
relance MBAM, vide sa quarataine, refais une mise à jour et relance un scan complet, poste son rapport :D
est ce que tu as une version enregistrée et valide de windows ?
certains outils ne fonctionnent pas si tu n'as pas une version officielle !
relance MBAM, vide sa quarataine, refais une mise à jour et relance un scan complet, poste son rapport :D
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Héberge le rapport ZHPDiag.txt sur Cijoint, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum :
http://www.cijoint.fr/
ou :
http://dl.free.fr
ou :
http://ww38.toofiles.com/fr/documents-upload.html
ou :
https://www.terafiles.net/
* Héberge le rapport ZHPDiag.txt sur Cijoint, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum :
http://www.cijoint.fr/
ou :
http://dl.free.fr
ou :
http://ww38.toofiles.com/fr/documents-upload.html
ou :
https://www.terafiles.net/
pas cool, lis et suis ceci :
* Télécharge TDSSKiller sur ton bureau :
https://support.kaspersky.com/downloads/utils/tdsskiller.exe
* Lance le ( Utilisateurs de vista/Seven -> Clic droit puis " Exécuter en tant qu'administrateur " )
* Clique sur [Start Scan] pour démarrer l'analyse.
* Si des élements sont trouvés, cliques sur [Continue] puis sur [Reboot Now]
* Un rapport s'ouvrira au redémarrage du PC.
* Copie/Colle son contenu dans ta prochaine réponse.
Note : Le rapport se trouve également sous C:\TDSSKiller.N°deversion_Date_Heure_log.txt.
Télécharge navilog1 sur ton bureau :
http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
= Sélectionne la langue désirée dans le menu puis valide le choix par la touche « entrer »
= Petit message d'avertissement, appuie sur une touche pour passe à la suite
= un nouveau avertissement, appuie sur une touche pour suivre
= Vérification de l'installation de Navilo1 : si tout est bon, appuie sur une touche pour continuer
= Choisir option 1 : recherche/désinfection automatique
= La recherche va se lancer automatiquement et peut durée quelques minutes, patiente
= Une fois l'analyse terminé, ferme et enregistre ton travail en cours, puis appuie sur une touche pour que ton pc puisse démarrer
= au redémarrage du pc, Navilog va supprimer ce qu'il a trouvé, patiente quelques instants
= Le rapport cleannavi.txt s'ouvre, poste le rapport en copier coller sur ton prochain message.
Le rapport se trouve ici :
XP : demarrer/poste de travail/cleannavi.txt
Vista : logo « demarrer »/ordinateur/ cleannavi.txt
Note : tu peux désinstaller Navilog via ajout/surpression de programme de windows.
Tuto en image :
https://www.donnemoilinfo.com/tuto/Navilog/
* Télécharge TDSSKiller sur ton bureau :
https://support.kaspersky.com/downloads/utils/tdsskiller.exe
* Lance le ( Utilisateurs de vista/Seven -> Clic droit puis " Exécuter en tant qu'administrateur " )
* Clique sur [Start Scan] pour démarrer l'analyse.
* Si des élements sont trouvés, cliques sur [Continue] puis sur [Reboot Now]
* Un rapport s'ouvrira au redémarrage du PC.
* Copie/Colle son contenu dans ta prochaine réponse.
Note : Le rapport se trouve également sous C:\TDSSKiller.N°deversion_Date_Heure_log.txt.
Télécharge navilog1 sur ton bureau :
http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
= Sélectionne la langue désirée dans le menu puis valide le choix par la touche « entrer »
= Petit message d'avertissement, appuie sur une touche pour passe à la suite
= un nouveau avertissement, appuie sur une touche pour suivre
= Vérification de l'installation de Navilo1 : si tout est bon, appuie sur une touche pour continuer
= Choisir option 1 : recherche/désinfection automatique
= La recherche va se lancer automatiquement et peut durée quelques minutes, patiente
= Une fois l'analyse terminé, ferme et enregistre ton travail en cours, puis appuie sur une touche pour que ton pc puisse démarrer
= au redémarrage du pc, Navilog va supprimer ce qu'il a trouvé, patiente quelques instants
= Le rapport cleannavi.txt s'ouvre, poste le rapport en copier coller sur ton prochain message.
Le rapport se trouve ici :
XP : demarrer/poste de travail/cleannavi.txt
Vista : logo « demarrer »/ordinateur/ cleannavi.txt
Note : tu peux désinstaller Navilog via ajout/surpression de programme de windows.
Tuto en image :
https://www.donnemoilinfo.com/tuto/Navilog/
17:27:29.0437 3572 TDSS rootkit removing tool 2.6.9.0 Oct 14 2011 11:33:24
17:27:29.0734 3572 ============================================================
17:27:29.0734 3572 Current date / time: 2011/10/14 17:27:29.0734
17:27:29.0734 3572 SystemInfo:
17:27:29.0734 3572
17:27:29.0734 3572 OS Version: 5.1.2600 ServicePack: 3.0
17:27:29.0734 3572 Product type: Workstation
17:27:29.0734 3572 ComputerName: ACER-73356C3771
17:27:29.0734 3572 UserName: DE FREITAS
17:27:29.0734 3572 Windows directory: C:\WINDOWS
17:27:29.0734 3572 System windows directory: C:\WINDOWS
17:27:29.0734 3572 Processor architecture: Intel x86
17:27:29.0734 3572 Number of processors: 1
17:27:29.0734 3572 Page size: 0x1000
17:27:29.0734 3572 Boot type: Normal boot
17:27:29.0734 3572 ============================================================
17:27:31.0187 3572 Initialize success
17:27:36.0937 3664 ============================================================
17:27:36.0937 3664 Scan started
17:27:36.0937 3664 Mode: Manual;
17:27:36.0937 3664 ============================================================
17:27:38.0000 3664 781ac869-b57e-44e9-83dd-65aef5f4820d - ok
17:27:38.0078 3664 Abiosdsk - ok
17:27:38.0109 3664 abp480n5 - ok
17:27:38.0187 3664 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) C:\WINDOWS\system32\DRIVERS\ACPI.sys
17:27:38.0203 3664 ACPI - ok
17:27:38.0281 3664 ACPIEC (e4abc1212b70bb03d35e60681c447210) C:\WINDOWS\system32\drivers\ACPIEC.sys
17:27:38.0281 3664 ACPIEC - ok
17:27:38.0375 3664 ADILOADER (2b3b8c0a2c979dd77ba6dc9376074854) C:\WINDOWS\system32\Drivers\adildr.sys
17:27:38.0375 3664 ADILOADER - ok
17:27:38.0468 3664 adiusbaw (d478c566318803a7063b120f026dc0b7) C:\WINDOWS\system32\DRIVERS\adiusbaw.sys
17:27:38.0484 3664 adiusbaw - ok
17:27:38.0546 3664 adpu160m - ok
17:27:38.0625 3664 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
17:27:38.0640 3664 aec - ok
17:27:38.0750 3664 Afc (fe3ea6e9afc1a78e6edca121e006afb7) C:\WINDOWS\system32\drivers\Afc.sys
17:27:38.0750 3664 Afc - ok
17:27:38.0859 3664 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
17:27:38.0859 3664 AFD - ok
17:27:39.0000 3664 AgereSoftModem (f1beed4f73b9a37e6d30885a0851a1c1) C:\WINDOWS\system32\DRIVERS\AGRSM.sys
17:27:39.0078 3664 AgereSoftModem - ok
17:27:39.0156 3664 Aha154x - ok
17:27:39.0187 3664 aic78u2 - ok
17:27:39.0234 3664 aic78xx - ok
17:27:39.0312 3664 ALCXSENS (a9355a51698f6901b362ef738b15631d) C:\WINDOWS\system32\drivers\ALCXSENS.SYS
17:27:39.0328 3664 ALCXSENS - ok
17:27:39.0437 3664 ALCXWDM (cd86a348fc4016842dbd5ac7398fb48d) C:\WINDOWS\system32\drivers\ALCXWDM.SYS
17:27:39.0453 3664 ALCXWDM - ok
17:27:39.0531 3664 AliIde - ok
17:27:39.0578 3664 amsint - ok
17:27:39.0640 3664 asc - ok
17:27:39.0671 3664 asc3350p - ok
17:27:39.0734 3664 asc3550 - ok
17:27:39.0828 3664 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
17:27:39.0828 3664 AsyncMac - ok
17:27:39.0937 3664 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
17:27:39.0937 3664 atapi - ok
17:27:40.0000 3664 Atdisk - ok
17:27:40.0078 3664 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
17:27:40.0078 3664 Atmarpc - ok
17:27:40.0484 3664 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
17:27:40.0484 3664 audstub - ok
17:27:40.0546 3664 avgio (0b497c79824f8e1bf22fa6aacd3de3a0) C:\Program Files\Avira\AntiVir Desktop\avgio.sys
17:27:40.0546 3664 avgio - ok
17:27:40.0656 3664 avgntflt (1e4114685de1ffa9675e09c6a1fb3f4b) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
17:27:40.0656 3664 avgntflt - ok
17:27:40.0765 3664 avipbb (0f78d3dae6dedd99ae54c9491c62adf2) C:\WINDOWS\system32\DRIVERS\avipbb.sys
17:27:40.0781 3664 avipbb - ok
17:27:40.0875 3664 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
17:27:40.0875 3664 Beep - ok
17:27:40.0984 3664 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
17:27:40.0984 3664 cbidf2k - ok
17:27:41.0078 3664 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
17:27:41.0093 3664 CCDECODE - ok
17:27:41.0156 3664 cd20xrnt - ok
17:27:41.0218 3664 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
17:27:41.0234 3664 Cdaudio - ok
17:27:41.0328 3664 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
17:27:41.0328 3664 Cdfs - ok
17:27:41.0406 3664 cdrbsvsd (7fc46240546c16c0448c29c9d233b915) C:\WINDOWS\system32\drivers\cdrbsvsd.sys
17:27:41.0406 3664 cdrbsvsd - ok
17:27:41.0500 3664 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
17:27:41.0515 3664 Cdrom - ok
17:27:41.0578 3664 Changer - ok
17:27:41.0640 3664 CmdIde - ok
17:27:41.0671 3664 cmuda - ok
17:27:41.0750 3664 Cpqarray - ok
17:27:41.0796 3664 dac2w2k - ok
17:27:41.0828 3664 dac960nt - ok
17:27:41.0937 3664 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
17:27:41.0953 3664 Disk - ok
17:27:42.0078 3664 dmboot (f5deadd42335fb33edca74ecb2f36cba) C:\WINDOWS\system32\drivers\dmboot.sys
17:27:42.0109 3664 dmboot - ok
17:27:42.0218 3664 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) C:\WINDOWS\system32\drivers\dmio.sys
17:27:42.0234 3664 dmio - ok
17:27:42.0328 3664 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
17:27:42.0328 3664 dmload - ok
17:27:42.0437 3664 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
17:27:42.0437 3664 DMusic - ok
17:27:42.0515 3664 dpti2o - ok
17:27:42.0578 3664 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
17:27:42.0578 3664 drmkaud - ok
17:27:42.0703 3664 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
17:27:42.0703 3664 Fastfat - ok
17:27:42.0843 3664 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
17:27:42.0859 3664 Fdc - ok
17:27:42.0937 3664 Fips (31f923eb2170fc172c81abda0045d18c) C:\WINDOWS\system32\drivers\Fips.sys
17:27:42.0953 3664 Fips - ok
17:27:43.0046 3664 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
17:27:43.0046 3664 Flpydisk - ok
17:27:43.0140 3664 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
17:27:43.0156 3664 FltMgr - ok
17:27:43.0250 3664 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:27:43.0250 3664 Fs_Rec - ok
17:27:43.0328 3664 Ftdisk (a86859b77b908c18c2657f284aa29fe3) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
17:27:43.0343 3664 Ftdisk - ok
17:27:43.0437 3664 gagp30kx (3a74c423cf6bcca6982715878f450a3b) C:\WINDOWS\system32\DRIVERS\gagp30kx.sys
17:27:43.0453 3664 gagp30kx - ok
17:27:43.0531 3664 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
17:27:43.0546 3664 Gpc - ok
17:27:43.0640 3664 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
17:27:43.0656 3664 hidusb - ok
17:27:43.0765 3664 hpn - ok
17:27:43.0843 3664 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
17:27:43.0843 3664 HTTP - ok
17:27:43.0921 3664 i2omgmt - ok
17:27:43.0968 3664 i2omp - ok
17:27:44.0031 3664 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
17:27:44.0046 3664 i8042prt - ok
17:27:44.0140 3664 IKFileSec (ff9f262494fc23d77a6148d49d87d2de) C:\WINDOWS\system32\drivers\ikfilesec.sys
17:27:44.0140 3664 IKFileSec - ok
17:27:44.0218 3664 IKSysFlt (7e359671fd9595ecb1b0a33fb4184b19) C:\WINDOWS\system32\drivers\iksysflt.sys
17:27:44.0234 3664 IKSysFlt - ok
17:27:44.0312 3664 IKSysSec (a44cb3cf3af266665261a6e6c9cac27c) C:\WINDOWS\system32\drivers\iksyssec.sys
17:27:44.0328 3664 IKSysSec - ok
17:27:44.0421 3664 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
17:27:44.0421 3664 Imapi - ok
17:27:44.0531 3664 ini910u - ok
17:27:44.0609 3664 int15.sys (4d8d5b1c895ea0f2a721b98a7ce198f1) C:\Program Files\acer\eRecovery\int15.sys
17:27:44.0609 3664 int15.sys - ok
17:27:44.0687 3664 IntelIde - ok
17:27:44.0765 3664 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
17:27:44.0765 3664 Ip6Fw - ok
17:27:44.0843 3664 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:27:44.0843 3664 IpFilterDriver - ok
17:27:44.0953 3664 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
17:27:44.0953 3664 IpInIp - ok
17:27:45.0046 3664 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
17:27:45.0046 3664 IpNat - ok
17:27:45.0140 3664 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
17:27:45.0140 3664 IPSec - ok
17:27:45.0234 3664 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
17:27:45.0250 3664 IRENUM - ok
17:27:45.0343 3664 isapnp (355836975a67b6554bca60328cd6cb74) C:\WINDOWS\system32\DRIVERS\isapnp.sys
17:27:45.0343 3664 isapnp - ok
17:27:45.0437 3664 Kbdclass (16813155807c6881f4bfbf6657424659) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
17:27:45.0453 3664 Kbdclass - ok
17:27:45.0546 3664 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
17:27:45.0546 3664 kmixer - ok
17:27:45.0625 3664 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
17:27:45.0625 3664 KSecDD - ok
17:27:45.0718 3664 lbrtfdc - ok
17:27:45.0796 3664 LVUSBSta - ok
17:27:45.0875 3664 MBAMProtector (69a6268d7f81e53d568ab4e7e991caf3) C:\WINDOWS\system32\drivers\mbam.sys
17:27:45.0875 3664 MBAMProtector - ok
17:27:45.0953 3664 MBAMSwissArmy - ok
17:27:46.0015 3664 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
17:27:46.0015 3664 mnmdd - ok
17:27:46.0109 3664 Modem (510ade9327fe84c10254e1902697e25f) C:\WINDOWS\system32\drivers\Modem.sys
17:27:46.0109 3664 Modem - ok
17:27:46.0203 3664 MODEMCSA (1992e0d143b09653ab0f9c5e04b0fd65) C:\WINDOWS\system32\drivers\MODEMCSA.sys
17:27:46.0203 3664 MODEMCSA - ok
17:27:46.0296 3664 Mouclass (027c01bd7ef3349aaebc883d8a799efb) C:\WINDOWS\system32\DRIVERS\mouclass.sys
17:27:46.0296 3664 Mouclass - ok
17:27:46.0375 3664 mouhid (124d6846040c79b9c997f78ef4b2a4e5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
17:27:46.0375 3664 mouhid - ok
17:27:46.0468 3664 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
17:27:46.0484 3664 MountMgr - ok
17:27:46.0546 3664 mraid35x - ok
17:27:46.0609 3664 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
17:27:46.0625 3664 MRxDAV - ok
17:27:46.0734 3664 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
17:27:46.0765 3664 MRxSmb - ok
17:27:46.0890 3664 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
17:27:46.0890 3664 Msfs - ok
17:27:47.0000 3664 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
17:27:47.0000 3664 MSKSSRV - ok
17:27:47.0078 3664 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
17:27:47.0078 3664 MSPCLOCK - ok
17:27:47.0171 3664 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
17:27:47.0171 3664 MSPQM - ok
17:27:47.0265 3664 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
17:27:47.0265 3664 mssmbios - ok
17:27:47.0343 3664 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
17:27:47.0359 3664 MSTEE - ok
17:27:47.0453 3664 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
17:27:47.0453 3664 Mup - ok
17:27:47.0546 3664 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
17:27:47.0562 3664 NABTSFEC - ok
17:27:47.0656 3664 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
17:27:47.0687 3664 NDIS - ok
17:27:47.0796 3664 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
17:27:47.0812 3664 NdisIP - ok
17:27:47.0937 3664 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
17:27:47.0937 3664 NdisTapi - ok
17:27:48.0046 3664 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
17:27:48.0046 3664 Ndisuio - ok
17:27:48.0156 3664 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:27:48.0171 3664 NdisWan - ok
17:27:48.0296 3664 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
17:27:48.0296 3664 NDProxy - ok
17:27:48.0437 3664 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
17:27:48.0437 3664 NetBIOS - ok
17:27:48.0546 3664 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
17:27:48.0578 3664 NetBT - ok
17:27:48.0734 3664 NPF (b9730495e0cf674680121e34bd95a73b) C:\WINDOWS\system32\drivers\NPF.sys
17:27:48.0750 3664 NPF - ok
17:27:48.0890 3664 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
17:27:48.0890 3664 Npfs - ok
17:27:49.0031 3664 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
17:27:49.0062 3664 Ntfs - ok
17:27:49.0156 3664 NTIDrvr (7f1c1f78d709c4a54cbb46ede7e0b48d) C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys
17:27:49.0156 3664 NTIDrvr - ok
17:27:49.0250 3664 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
17:27:49.0250 3664 Null - ok
17:27:49.0375 3664 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
17:27:49.0375 3664 NwlnkFlt - ok
17:27:49.0468 3664 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
17:27:49.0484 3664 NwlnkFwd - ok
17:27:49.0609 3664 PAC207 (3f24eaeb165328e00d687bf3b60a448a) C:\WINDOWS\system32\DRIVERS\pfc027.sys
17:27:49.0625 3664 PAC207 - ok
17:27:49.0750 3664 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) C:\WINDOWS\system32\DRIVERS\parport.sys
17:27:49.0765 3664 Parport - ok
17:27:49.0875 3664 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
17:27:49.0890 3664 PartMgr - ok
17:27:49.0968 3664 ParVdm (9575c5630db8fb804649a6959737154c) C:\WINDOWS\system32\drivers\ParVdm.sys
17:27:49.0984 3664 ParVdm - ok
17:27:50.0046 3664 PCAMPR5 - ok
17:27:50.0078 3664 PCANDIS5 - ok
17:27:50.0140 3664 PCI (043410877bda580c528f45165f7125bc) C:\WINDOWS\system32\DRIVERS\pci.sys
17:27:50.0156 3664 PCI - ok
17:27:50.0234 3664 PCIDump - ok
17:27:50.0328 3664 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) C:\WINDOWS\system32\DRIVERS\pciide.sys
17:27:50.0328 3664 PCIIde - ok
17:27:50.0453 3664 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) C:\WINDOWS\system32\drivers\Pcmcia.sys
17:27:50.0609 3664 Pcmcia - ok
17:27:50.0796 3664 PDCOMP - ok
17:27:50.0875 3664 PDFRAME - ok
17:27:50.0953 3664 PDRELI - ok
17:27:50.0984 3664 PDRFRAME - ok
17:27:51.0031 3664 pepifilter - ok
17:27:51.0078 3664 perc2 - ok
17:27:51.0109 3664 perc2hib - ok
17:27:51.0203 3664 PID_08A0 - ok
17:27:51.0281 3664 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
17:27:51.0296 3664 PptpMiniport - ok
17:27:51.0390 3664 Processor (e19c9632ac828f6f214391e2bdda11cb) C:\WINDOWS\system32\DRIVERS\processr.sys
17:27:51.0390 3664 Processor - ok
17:27:51.0500 3664 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
17:27:51.0500 3664 PSched - ok
17:27:51.0578 3664 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
17:27:51.0593 3664 Ptilink - ok
17:27:51.0671 3664 PxHelp20 (49452bfcec22f36a7a9b9c2181bc3042) C:\WINDOWS\system32\Drivers\PxHelp20.sys
17:27:51.0687 3664 PxHelp20 - ok
17:27:51.0750 3664 ql1080 - ok
17:27:51.0796 3664 Ql10wnt - ok
17:27:51.0843 3664 ql12160 - ok
17:27:51.0890 3664 ql1240 - ok
17:27:51.0921 3664 ql1280 - ok
17:27:51.0968 3664 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
17:27:51.0984 3664 RasAcd - ok
17:27:52.0078 3664 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
17:27:52.0078 3664 Rasl2tp - ok
17:27:52.0171 3664 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
17:27:52.0187 3664 RasPppoe - ok
17:27:52.0265 3664 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
17:27:52.0265 3664 Raspti - ok
17:27:52.0359 3664 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
17:27:52.0375 3664 Rdbss - ok
17:27:52.0453 3664 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
17:27:52.0453 3664 RDPCDD - ok
17:27:52.0546 3664 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
17:27:52.0562 3664 RDPWD - ok
17:27:52.0656 3664 redbook (d8eb2a7904db6c916eb5361878ddcbae) C:\WINDOWS\system32\DRIVERS\redbook.sys
17:27:52.0656 3664 redbook - ok
17:27:52.0781 3664 RimUsb (f17713d108aca124a139fde877eef68a) C:\WINDOWS\system32\Drivers\RimUsb.sys
17:27:52.0796 3664 RimUsb - ok
17:27:52.0906 3664 ROOTMODEM (d8b0b4ade32574b2d9c5cc34dc0dbbe7) C:\WINDOWS\system32\Drivers\RootMdm.sys
17:27:52.0906 3664 ROOTMODEM - ok
17:27:53.0000 3664 RTL8023xp (7f0413bdd7d53eb4c7a371e7f6f84df1) C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
17:27:53.0015 3664 RTL8023xp - ok
17:27:53.0109 3664 rtl8139 (d507c1400284176573224903819ffda3) C:\WINDOWS\system32\DRIVERS\RTL8139.SYS
17:27:53.0109 3664 rtl8139 - ok
17:27:53.0234 3664 sdcplh (dac1594437cd44ff57fafc71256fe7f3) C:\WINDOWS\system32\drivers\sdcplh.sys
17:27:53.0250 3664 sdcplh - ok
17:27:53.0328 3664 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
17:27:53.0343 3664 Secdrv - ok
17:27:53.0453 3664 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
17:27:53.0453 3664 serenum - ok
17:27:53.0546 3664 Serial (93d313c31f7ad9ea2b75f26075413c7c) C:\WINDOWS\system32\DRIVERS\serial.sys
17:27:53.0562 3664 Serial - ok
17:27:53.0656 3664 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
17:27:53.0671 3664 Sfloppy - ok
17:27:53.0750 3664 Simbad - ok
17:27:53.0812 3664 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
17:27:53.0828 3664 SLIP - ok
17:27:53.0937 3664 sonypvs1 (dfadfc2c86662f40759bf02add27d569) C:\WINDOWS\system32\DRIVERS\sonypvs1.sys
17:27:53.0953 3664 sonypvs1 - ok
17:27:54.0015 3664 Sparrow - ok
17:27:54.0062 3664 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
17:27:54.0078 3664 splitter - ok
17:27:54.0156 3664 sr (39626e6dc1fb39434ec40c42722b660a) C:\WINDOWS\system32\DRIVERS\sr.sys
17:27:54.0171 3664 sr - ok
17:27:54.0281 3664 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
17:27:54.0296 3664 Srv - ok
17:27:54.0390 3664 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
17:27:54.0390 3664 ssmdrv - ok
17:27:54.0468 3664 StarOpen (306521935042fc0a6988d528643619b3) C:\WINDOWS\system32\drivers\StarOpen.sys
17:27:54.0468 3664 StarOpen - ok
17:27:54.0593 3664 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
17:27:54.0593 3664 streamip - ok
17:27:54.0734 3664 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
17:27:54.0734 3664 swenum - ok
17:27:54.0828 3664 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
17:27:54.0828 3664 swmidi - ok
17:27:54.0921 3664 symc810 - ok
17:27:54.0953 3664 symc8xx - ok
17:27:55.0031 3664 sym_hi - ok
17:27:55.0078 3664 sym_u3 - ok
17:27:55.0140 3664 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
17:27:55.0156 3664 sysaudio - ok
17:27:55.0281 3664 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
17:27:55.0281 3664 Tcpip - ok
17:27:55.0375 3664 Tcpip6 (4e53bbcc4be37d7a4bd6ef1098c89ff7) C:\WINDOWS\system32\DRIVERS\tcpip6.sys
17:27:55.0375 3664 Tcpip6 - ok
17:27:55.0468 3664 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
17:27:55.0468 3664 TDPIPE - ok
17:27:55.0562 3664 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
17:27:55.0578 3664 TDTCP - ok
17:27:55.0656 3664 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
17:27:55.0671 3664 TermDD - ok
17:27:55.0750 3664 TosIde - ok
17:27:55.0828 3664 TrueSight (4bfab463e1d1f20dfa83a04a9698934d) c:\windows\system32\drivers\TrueSight.sys
17:27:55.0828 3664 TrueSight - ok
17:27:55.0921 3664 tunmp (8f861eda21c05857eb8197300a92501c) C:\WINDOWS\system32\DRIVERS\tunmp.sys
17:27:55.0921 3664 tunmp - ok
17:27:56.0015 3664 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
17:27:56.0031 3664 Udfs - ok
17:27:56.0093 3664 ultra - ok
17:27:56.0171 3664 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
17:27:56.0203 3664 Update - ok
17:27:56.0281 3664 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
17:27:56.0296 3664 usbaudio - ok
17:27:56.0375 3664 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
17:27:56.0375 3664 usbccgp - ok
17:27:56.0453 3664 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
17:27:56.0468 3664 usbehci - ok
17:27:56.0546 3664 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
17:27:56.0562 3664 usbhub - ok
17:27:56.0640 3664 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
17:27:56.0640 3664 usbprint - ok
17:27:56.0734 3664 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
17:27:56.0750 3664 usbscan - ok
17:27:56.0828 3664 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
17:27:56.0828 3664 USBSTOR - ok
17:27:56.0937 3664 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
17:27:56.0937 3664 usbuhci - ok
17:27:57.0031 3664 usb_rndisx (b6cc50279d6cd28e090a5d33244adc9a) C:\WINDOWS\system32\DRIVERS\usb8023x.sys
17:27:57.0031 3664 usb_rndisx - ok
17:27:57.0109 3664 USB_RNDIS_51 (bee793d4a059caea55d6ac20e19b3a8f) C:\WINDOWS\system32\DRIVERS\usb8023.sys
17:27:57.0125 3664 USB_RNDIS_51 - ok
17:27:57.0203 3664 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
17:27:57.0218 3664 VgaSave - ok
17:27:57.0296 3664 viaagp1 (4b039bbd037b01f5db5a144c837f283a) C:\WINDOWS\system32\DRIVERS\viaagp1.sys
17:27:57.0296 3664 viaagp1 - ok
17:27:57.0390 3664 viagfx (949f86f5a8e493574bbb830c3d18e4a9) C:\WINDOWS\system32\DRIVERS\vtmini.sys
17:27:57.0406 3664 viagfx - ok
17:27:57.0484 3664 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
17:27:57.0500 3664 ViaIde - ok
17:27:57.0578 3664 VIAudio (819bf44085104be6527b86a88acf856b) C:\WINDOWS\system32\drivers\ac97via.sys
17:27:57.0593 3664 VIAudio - ok
17:27:57.0687 3664 VolSnap (46de1126684369bace4849e4fc8c43ca) C:\WINDOWS\system32\drivers\VolSnap.sys
17:27:57.0703 3664 VolSnap - ok
17:27:57.0843 3664 VX1000 (21a4ce7973727f84338a0137571b9937) C:\WINDOWS\system32\DRIVERS\VX1000.sys
17:27:57.0875 3664 VX1000 - ok
17:27:57.0984 3664 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:27:58.0000 3664 Wanarp - ok
17:27:58.0078 3664 wceusbsh (46a247f6617526afe38b6f12f5512120) C:\WINDOWS\system32\DRIVERS\wceusbsh.sys
17:27:58.0078 3664 wceusbsh - ok
17:27:58.0140 3664 WDICA - ok
17:27:58.0203 3664 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
17:27:58.0218 3664 wdmaud - ok
17:27:58.0375 3664 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
17:27:58.0390 3664 WpdUsb - ok
17:27:58.0484 3664 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
17:27:58.0500 3664 WSTCODEC - ok
17:27:58.0593 3664 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
17:27:58.0593 3664 WudfPf - ok
17:27:58.0687 3664 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
17:27:58.0703 3664 WudfRd - ok
17:27:58.0796 3664 ZD1211U(ZyDAS) - ok
17:27:58.0843 3664 MBR (0x1B8) (47a3ca4d37530beb25c1adb85edc8c37) \Device\Harddisk0\DR0
17:27:58.0843 3664 \Device\Harddisk0\DR0 ( Rootkit.Win32.TDSS.tdl4 ) - infected
17:27:58.0843 3664 \Device\Harddisk0\DR0 - detected Rootkit.Win32.TDSS.tdl4 (0)
17:27:58.0875 3664 Boot (0x1200) (7c0535194e425326cc551b25975f6578) \Device\Harddisk0\DR0\Partition0
17:27:58.0875 3664 \Device\Harddisk0\DR0\Partition0 - ok
17:27:58.0890 3664 Boot (0x1200) (e01a2abf66fe228a785cbd3d9dfe84f0) \Device\Harddisk0\DR0\Partition1
17:27:58.0890 3664 \Device\Harddisk0\DR0\Partition1 - ok
17:27:58.0890 3664 ============================================================
17:27:58.0890 3664 Scan finished
17:27:58.0890 3664 ============================================================
17:27:58.0921 1084 Detected object count: 1
17:27:58.0921 1084 Actual detected object count: 1
17:28:07.0875 1084 \Device\Harddisk0\DR0 ( Rootkit.Win32.TDSS.tdl4 ) - will be cured on reboot
17:28:07.0875 1084 \Device\Harddisk0\DR0 - ok
17:28:07.0875 1084 \Device\Harddisk0\DR0 ( Rootkit.Win32.TDSS.tdl4 ) - User select action: Cure
17:28:22.0125 3096 Deinitialize success
17:27:29.0734 3572 ============================================================
17:27:29.0734 3572 Current date / time: 2011/10/14 17:27:29.0734
17:27:29.0734 3572 SystemInfo:
17:27:29.0734 3572
17:27:29.0734 3572 OS Version: 5.1.2600 ServicePack: 3.0
17:27:29.0734 3572 Product type: Workstation
17:27:29.0734 3572 ComputerName: ACER-73356C3771
17:27:29.0734 3572 UserName: DE FREITAS
17:27:29.0734 3572 Windows directory: C:\WINDOWS
17:27:29.0734 3572 System windows directory: C:\WINDOWS
17:27:29.0734 3572 Processor architecture: Intel x86
17:27:29.0734 3572 Number of processors: 1
17:27:29.0734 3572 Page size: 0x1000
17:27:29.0734 3572 Boot type: Normal boot
17:27:29.0734 3572 ============================================================
17:27:31.0187 3572 Initialize success
17:27:36.0937 3664 ============================================================
17:27:36.0937 3664 Scan started
17:27:36.0937 3664 Mode: Manual;
17:27:36.0937 3664 ============================================================
17:27:38.0000 3664 781ac869-b57e-44e9-83dd-65aef5f4820d - ok
17:27:38.0078 3664 Abiosdsk - ok
17:27:38.0109 3664 abp480n5 - ok
17:27:38.0187 3664 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) C:\WINDOWS\system32\DRIVERS\ACPI.sys
17:27:38.0203 3664 ACPI - ok
17:27:38.0281 3664 ACPIEC (e4abc1212b70bb03d35e60681c447210) C:\WINDOWS\system32\drivers\ACPIEC.sys
17:27:38.0281 3664 ACPIEC - ok
17:27:38.0375 3664 ADILOADER (2b3b8c0a2c979dd77ba6dc9376074854) C:\WINDOWS\system32\Drivers\adildr.sys
17:27:38.0375 3664 ADILOADER - ok
17:27:38.0468 3664 adiusbaw (d478c566318803a7063b120f026dc0b7) C:\WINDOWS\system32\DRIVERS\adiusbaw.sys
17:27:38.0484 3664 adiusbaw - ok
17:27:38.0546 3664 adpu160m - ok
17:27:38.0625 3664 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
17:27:38.0640 3664 aec - ok
17:27:38.0750 3664 Afc (fe3ea6e9afc1a78e6edca121e006afb7) C:\WINDOWS\system32\drivers\Afc.sys
17:27:38.0750 3664 Afc - ok
17:27:38.0859 3664 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
17:27:38.0859 3664 AFD - ok
17:27:39.0000 3664 AgereSoftModem (f1beed4f73b9a37e6d30885a0851a1c1) C:\WINDOWS\system32\DRIVERS\AGRSM.sys
17:27:39.0078 3664 AgereSoftModem - ok
17:27:39.0156 3664 Aha154x - ok
17:27:39.0187 3664 aic78u2 - ok
17:27:39.0234 3664 aic78xx - ok
17:27:39.0312 3664 ALCXSENS (a9355a51698f6901b362ef738b15631d) C:\WINDOWS\system32\drivers\ALCXSENS.SYS
17:27:39.0328 3664 ALCXSENS - ok
17:27:39.0437 3664 ALCXWDM (cd86a348fc4016842dbd5ac7398fb48d) C:\WINDOWS\system32\drivers\ALCXWDM.SYS
17:27:39.0453 3664 ALCXWDM - ok
17:27:39.0531 3664 AliIde - ok
17:27:39.0578 3664 amsint - ok
17:27:39.0640 3664 asc - ok
17:27:39.0671 3664 asc3350p - ok
17:27:39.0734 3664 asc3550 - ok
17:27:39.0828 3664 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
17:27:39.0828 3664 AsyncMac - ok
17:27:39.0937 3664 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
17:27:39.0937 3664 atapi - ok
17:27:40.0000 3664 Atdisk - ok
17:27:40.0078 3664 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
17:27:40.0078 3664 Atmarpc - ok
17:27:40.0484 3664 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
17:27:40.0484 3664 audstub - ok
17:27:40.0546 3664 avgio (0b497c79824f8e1bf22fa6aacd3de3a0) C:\Program Files\Avira\AntiVir Desktop\avgio.sys
17:27:40.0546 3664 avgio - ok
17:27:40.0656 3664 avgntflt (1e4114685de1ffa9675e09c6a1fb3f4b) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
17:27:40.0656 3664 avgntflt - ok
17:27:40.0765 3664 avipbb (0f78d3dae6dedd99ae54c9491c62adf2) C:\WINDOWS\system32\DRIVERS\avipbb.sys
17:27:40.0781 3664 avipbb - ok
17:27:40.0875 3664 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
17:27:40.0875 3664 Beep - ok
17:27:40.0984 3664 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
17:27:40.0984 3664 cbidf2k - ok
17:27:41.0078 3664 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
17:27:41.0093 3664 CCDECODE - ok
17:27:41.0156 3664 cd20xrnt - ok
17:27:41.0218 3664 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
17:27:41.0234 3664 Cdaudio - ok
17:27:41.0328 3664 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
17:27:41.0328 3664 Cdfs - ok
17:27:41.0406 3664 cdrbsvsd (7fc46240546c16c0448c29c9d233b915) C:\WINDOWS\system32\drivers\cdrbsvsd.sys
17:27:41.0406 3664 cdrbsvsd - ok
17:27:41.0500 3664 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
17:27:41.0515 3664 Cdrom - ok
17:27:41.0578 3664 Changer - ok
17:27:41.0640 3664 CmdIde - ok
17:27:41.0671 3664 cmuda - ok
17:27:41.0750 3664 Cpqarray - ok
17:27:41.0796 3664 dac2w2k - ok
17:27:41.0828 3664 dac960nt - ok
17:27:41.0937 3664 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
17:27:41.0953 3664 Disk - ok
17:27:42.0078 3664 dmboot (f5deadd42335fb33edca74ecb2f36cba) C:\WINDOWS\system32\drivers\dmboot.sys
17:27:42.0109 3664 dmboot - ok
17:27:42.0218 3664 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) C:\WINDOWS\system32\drivers\dmio.sys
17:27:42.0234 3664 dmio - ok
17:27:42.0328 3664 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
17:27:42.0328 3664 dmload - ok
17:27:42.0437 3664 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
17:27:42.0437 3664 DMusic - ok
17:27:42.0515 3664 dpti2o - ok
17:27:42.0578 3664 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
17:27:42.0578 3664 drmkaud - ok
17:27:42.0703 3664 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
17:27:42.0703 3664 Fastfat - ok
17:27:42.0843 3664 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
17:27:42.0859 3664 Fdc - ok
17:27:42.0937 3664 Fips (31f923eb2170fc172c81abda0045d18c) C:\WINDOWS\system32\drivers\Fips.sys
17:27:42.0953 3664 Fips - ok
17:27:43.0046 3664 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
17:27:43.0046 3664 Flpydisk - ok
17:27:43.0140 3664 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
17:27:43.0156 3664 FltMgr - ok
17:27:43.0250 3664 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:27:43.0250 3664 Fs_Rec - ok
17:27:43.0328 3664 Ftdisk (a86859b77b908c18c2657f284aa29fe3) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
17:27:43.0343 3664 Ftdisk - ok
17:27:43.0437 3664 gagp30kx (3a74c423cf6bcca6982715878f450a3b) C:\WINDOWS\system32\DRIVERS\gagp30kx.sys
17:27:43.0453 3664 gagp30kx - ok
17:27:43.0531 3664 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
17:27:43.0546 3664 Gpc - ok
17:27:43.0640 3664 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
17:27:43.0656 3664 hidusb - ok
17:27:43.0765 3664 hpn - ok
17:27:43.0843 3664 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
17:27:43.0843 3664 HTTP - ok
17:27:43.0921 3664 i2omgmt - ok
17:27:43.0968 3664 i2omp - ok
17:27:44.0031 3664 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
17:27:44.0046 3664 i8042prt - ok
17:27:44.0140 3664 IKFileSec (ff9f262494fc23d77a6148d49d87d2de) C:\WINDOWS\system32\drivers\ikfilesec.sys
17:27:44.0140 3664 IKFileSec - ok
17:27:44.0218 3664 IKSysFlt (7e359671fd9595ecb1b0a33fb4184b19) C:\WINDOWS\system32\drivers\iksysflt.sys
17:27:44.0234 3664 IKSysFlt - ok
17:27:44.0312 3664 IKSysSec (a44cb3cf3af266665261a6e6c9cac27c) C:\WINDOWS\system32\drivers\iksyssec.sys
17:27:44.0328 3664 IKSysSec - ok
17:27:44.0421 3664 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
17:27:44.0421 3664 Imapi - ok
17:27:44.0531 3664 ini910u - ok
17:27:44.0609 3664 int15.sys (4d8d5b1c895ea0f2a721b98a7ce198f1) C:\Program Files\acer\eRecovery\int15.sys
17:27:44.0609 3664 int15.sys - ok
17:27:44.0687 3664 IntelIde - ok
17:27:44.0765 3664 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
17:27:44.0765 3664 Ip6Fw - ok
17:27:44.0843 3664 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:27:44.0843 3664 IpFilterDriver - ok
17:27:44.0953 3664 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
17:27:44.0953 3664 IpInIp - ok
17:27:45.0046 3664 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
17:27:45.0046 3664 IpNat - ok
17:27:45.0140 3664 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
17:27:45.0140 3664 IPSec - ok
17:27:45.0234 3664 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
17:27:45.0250 3664 IRENUM - ok
17:27:45.0343 3664 isapnp (355836975a67b6554bca60328cd6cb74) C:\WINDOWS\system32\DRIVERS\isapnp.sys
17:27:45.0343 3664 isapnp - ok
17:27:45.0437 3664 Kbdclass (16813155807c6881f4bfbf6657424659) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
17:27:45.0453 3664 Kbdclass - ok
17:27:45.0546 3664 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
17:27:45.0546 3664 kmixer - ok
17:27:45.0625 3664 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
17:27:45.0625 3664 KSecDD - ok
17:27:45.0718 3664 lbrtfdc - ok
17:27:45.0796 3664 LVUSBSta - ok
17:27:45.0875 3664 MBAMProtector (69a6268d7f81e53d568ab4e7e991caf3) C:\WINDOWS\system32\drivers\mbam.sys
17:27:45.0875 3664 MBAMProtector - ok
17:27:45.0953 3664 MBAMSwissArmy - ok
17:27:46.0015 3664 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
17:27:46.0015 3664 mnmdd - ok
17:27:46.0109 3664 Modem (510ade9327fe84c10254e1902697e25f) C:\WINDOWS\system32\drivers\Modem.sys
17:27:46.0109 3664 Modem - ok
17:27:46.0203 3664 MODEMCSA (1992e0d143b09653ab0f9c5e04b0fd65) C:\WINDOWS\system32\drivers\MODEMCSA.sys
17:27:46.0203 3664 MODEMCSA - ok
17:27:46.0296 3664 Mouclass (027c01bd7ef3349aaebc883d8a799efb) C:\WINDOWS\system32\DRIVERS\mouclass.sys
17:27:46.0296 3664 Mouclass - ok
17:27:46.0375 3664 mouhid (124d6846040c79b9c997f78ef4b2a4e5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
17:27:46.0375 3664 mouhid - ok
17:27:46.0468 3664 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
17:27:46.0484 3664 MountMgr - ok
17:27:46.0546 3664 mraid35x - ok
17:27:46.0609 3664 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
17:27:46.0625 3664 MRxDAV - ok
17:27:46.0734 3664 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
17:27:46.0765 3664 MRxSmb - ok
17:27:46.0890 3664 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
17:27:46.0890 3664 Msfs - ok
17:27:47.0000 3664 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
17:27:47.0000 3664 MSKSSRV - ok
17:27:47.0078 3664 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
17:27:47.0078 3664 MSPCLOCK - ok
17:27:47.0171 3664 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
17:27:47.0171 3664 MSPQM - ok
17:27:47.0265 3664 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
17:27:47.0265 3664 mssmbios - ok
17:27:47.0343 3664 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
17:27:47.0359 3664 MSTEE - ok
17:27:47.0453 3664 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
17:27:47.0453 3664 Mup - ok
17:27:47.0546 3664 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
17:27:47.0562 3664 NABTSFEC - ok
17:27:47.0656 3664 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
17:27:47.0687 3664 NDIS - ok
17:27:47.0796 3664 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
17:27:47.0812 3664 NdisIP - ok
17:27:47.0937 3664 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
17:27:47.0937 3664 NdisTapi - ok
17:27:48.0046 3664 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
17:27:48.0046 3664 Ndisuio - ok
17:27:48.0156 3664 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:27:48.0171 3664 NdisWan - ok
17:27:48.0296 3664 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
17:27:48.0296 3664 NDProxy - ok
17:27:48.0437 3664 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
17:27:48.0437 3664 NetBIOS - ok
17:27:48.0546 3664 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
17:27:48.0578 3664 NetBT - ok
17:27:48.0734 3664 NPF (b9730495e0cf674680121e34bd95a73b) C:\WINDOWS\system32\drivers\NPF.sys
17:27:48.0750 3664 NPF - ok
17:27:48.0890 3664 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
17:27:48.0890 3664 Npfs - ok
17:27:49.0031 3664 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
17:27:49.0062 3664 Ntfs - ok
17:27:49.0156 3664 NTIDrvr (7f1c1f78d709c4a54cbb46ede7e0b48d) C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys
17:27:49.0156 3664 NTIDrvr - ok
17:27:49.0250 3664 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
17:27:49.0250 3664 Null - ok
17:27:49.0375 3664 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
17:27:49.0375 3664 NwlnkFlt - ok
17:27:49.0468 3664 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
17:27:49.0484 3664 NwlnkFwd - ok
17:27:49.0609 3664 PAC207 (3f24eaeb165328e00d687bf3b60a448a) C:\WINDOWS\system32\DRIVERS\pfc027.sys
17:27:49.0625 3664 PAC207 - ok
17:27:49.0750 3664 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) C:\WINDOWS\system32\DRIVERS\parport.sys
17:27:49.0765 3664 Parport - ok
17:27:49.0875 3664 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
17:27:49.0890 3664 PartMgr - ok
17:27:49.0968 3664 ParVdm (9575c5630db8fb804649a6959737154c) C:\WINDOWS\system32\drivers\ParVdm.sys
17:27:49.0984 3664 ParVdm - ok
17:27:50.0046 3664 PCAMPR5 - ok
17:27:50.0078 3664 PCANDIS5 - ok
17:27:50.0140 3664 PCI (043410877bda580c528f45165f7125bc) C:\WINDOWS\system32\DRIVERS\pci.sys
17:27:50.0156 3664 PCI - ok
17:27:50.0234 3664 PCIDump - ok
17:27:50.0328 3664 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) C:\WINDOWS\system32\DRIVERS\pciide.sys
17:27:50.0328 3664 PCIIde - ok
17:27:50.0453 3664 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) C:\WINDOWS\system32\drivers\Pcmcia.sys
17:27:50.0609 3664 Pcmcia - ok
17:27:50.0796 3664 PDCOMP - ok
17:27:50.0875 3664 PDFRAME - ok
17:27:50.0953 3664 PDRELI - ok
17:27:50.0984 3664 PDRFRAME - ok
17:27:51.0031 3664 pepifilter - ok
17:27:51.0078 3664 perc2 - ok
17:27:51.0109 3664 perc2hib - ok
17:27:51.0203 3664 PID_08A0 - ok
17:27:51.0281 3664 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
17:27:51.0296 3664 PptpMiniport - ok
17:27:51.0390 3664 Processor (e19c9632ac828f6f214391e2bdda11cb) C:\WINDOWS\system32\DRIVERS\processr.sys
17:27:51.0390 3664 Processor - ok
17:27:51.0500 3664 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
17:27:51.0500 3664 PSched - ok
17:27:51.0578 3664 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
17:27:51.0593 3664 Ptilink - ok
17:27:51.0671 3664 PxHelp20 (49452bfcec22f36a7a9b9c2181bc3042) C:\WINDOWS\system32\Drivers\PxHelp20.sys
17:27:51.0687 3664 PxHelp20 - ok
17:27:51.0750 3664 ql1080 - ok
17:27:51.0796 3664 Ql10wnt - ok
17:27:51.0843 3664 ql12160 - ok
17:27:51.0890 3664 ql1240 - ok
17:27:51.0921 3664 ql1280 - ok
17:27:51.0968 3664 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
17:27:51.0984 3664 RasAcd - ok
17:27:52.0078 3664 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
17:27:52.0078 3664 Rasl2tp - ok
17:27:52.0171 3664 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
17:27:52.0187 3664 RasPppoe - ok
17:27:52.0265 3664 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
17:27:52.0265 3664 Raspti - ok
17:27:52.0359 3664 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
17:27:52.0375 3664 Rdbss - ok
17:27:52.0453 3664 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
17:27:52.0453 3664 RDPCDD - ok
17:27:52.0546 3664 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
17:27:52.0562 3664 RDPWD - ok
17:27:52.0656 3664 redbook (d8eb2a7904db6c916eb5361878ddcbae) C:\WINDOWS\system32\DRIVERS\redbook.sys
17:27:52.0656 3664 redbook - ok
17:27:52.0781 3664 RimUsb (f17713d108aca124a139fde877eef68a) C:\WINDOWS\system32\Drivers\RimUsb.sys
17:27:52.0796 3664 RimUsb - ok
17:27:52.0906 3664 ROOTMODEM (d8b0b4ade32574b2d9c5cc34dc0dbbe7) C:\WINDOWS\system32\Drivers\RootMdm.sys
17:27:52.0906 3664 ROOTMODEM - ok
17:27:53.0000 3664 RTL8023xp (7f0413bdd7d53eb4c7a371e7f6f84df1) C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
17:27:53.0015 3664 RTL8023xp - ok
17:27:53.0109 3664 rtl8139 (d507c1400284176573224903819ffda3) C:\WINDOWS\system32\DRIVERS\RTL8139.SYS
17:27:53.0109 3664 rtl8139 - ok
17:27:53.0234 3664 sdcplh (dac1594437cd44ff57fafc71256fe7f3) C:\WINDOWS\system32\drivers\sdcplh.sys
17:27:53.0250 3664 sdcplh - ok
17:27:53.0328 3664 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
17:27:53.0343 3664 Secdrv - ok
17:27:53.0453 3664 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
17:27:53.0453 3664 serenum - ok
17:27:53.0546 3664 Serial (93d313c31f7ad9ea2b75f26075413c7c) C:\WINDOWS\system32\DRIVERS\serial.sys
17:27:53.0562 3664 Serial - ok
17:27:53.0656 3664 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
17:27:53.0671 3664 Sfloppy - ok
17:27:53.0750 3664 Simbad - ok
17:27:53.0812 3664 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
17:27:53.0828 3664 SLIP - ok
17:27:53.0937 3664 sonypvs1 (dfadfc2c86662f40759bf02add27d569) C:\WINDOWS\system32\DRIVERS\sonypvs1.sys
17:27:53.0953 3664 sonypvs1 - ok
17:27:54.0015 3664 Sparrow - ok
17:27:54.0062 3664 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
17:27:54.0078 3664 splitter - ok
17:27:54.0156 3664 sr (39626e6dc1fb39434ec40c42722b660a) C:\WINDOWS\system32\DRIVERS\sr.sys
17:27:54.0171 3664 sr - ok
17:27:54.0281 3664 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
17:27:54.0296 3664 Srv - ok
17:27:54.0390 3664 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
17:27:54.0390 3664 ssmdrv - ok
17:27:54.0468 3664 StarOpen (306521935042fc0a6988d528643619b3) C:\WINDOWS\system32\drivers\StarOpen.sys
17:27:54.0468 3664 StarOpen - ok
17:27:54.0593 3664 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
17:27:54.0593 3664 streamip - ok
17:27:54.0734 3664 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
17:27:54.0734 3664 swenum - ok
17:27:54.0828 3664 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
17:27:54.0828 3664 swmidi - ok
17:27:54.0921 3664 symc810 - ok
17:27:54.0953 3664 symc8xx - ok
17:27:55.0031 3664 sym_hi - ok
17:27:55.0078 3664 sym_u3 - ok
17:27:55.0140 3664 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
17:27:55.0156 3664 sysaudio - ok
17:27:55.0281 3664 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
17:27:55.0281 3664 Tcpip - ok
17:27:55.0375 3664 Tcpip6 (4e53bbcc4be37d7a4bd6ef1098c89ff7) C:\WINDOWS\system32\DRIVERS\tcpip6.sys
17:27:55.0375 3664 Tcpip6 - ok
17:27:55.0468 3664 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
17:27:55.0468 3664 TDPIPE - ok
17:27:55.0562 3664 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
17:27:55.0578 3664 TDTCP - ok
17:27:55.0656 3664 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
17:27:55.0671 3664 TermDD - ok
17:27:55.0750 3664 TosIde - ok
17:27:55.0828 3664 TrueSight (4bfab463e1d1f20dfa83a04a9698934d) c:\windows\system32\drivers\TrueSight.sys
17:27:55.0828 3664 TrueSight - ok
17:27:55.0921 3664 tunmp (8f861eda21c05857eb8197300a92501c) C:\WINDOWS\system32\DRIVERS\tunmp.sys
17:27:55.0921 3664 tunmp - ok
17:27:56.0015 3664 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
17:27:56.0031 3664 Udfs - ok
17:27:56.0093 3664 ultra - ok
17:27:56.0171 3664 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
17:27:56.0203 3664 Update - ok
17:27:56.0281 3664 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
17:27:56.0296 3664 usbaudio - ok
17:27:56.0375 3664 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
17:27:56.0375 3664 usbccgp - ok
17:27:56.0453 3664 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
17:27:56.0468 3664 usbehci - ok
17:27:56.0546 3664 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
17:27:56.0562 3664 usbhub - ok
17:27:56.0640 3664 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
17:27:56.0640 3664 usbprint - ok
17:27:56.0734 3664 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
17:27:56.0750 3664 usbscan - ok
17:27:56.0828 3664 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
17:27:56.0828 3664 USBSTOR - ok
17:27:56.0937 3664 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
17:27:56.0937 3664 usbuhci - ok
17:27:57.0031 3664 usb_rndisx (b6cc50279d6cd28e090a5d33244adc9a) C:\WINDOWS\system32\DRIVERS\usb8023x.sys
17:27:57.0031 3664 usb_rndisx - ok
17:27:57.0109 3664 USB_RNDIS_51 (bee793d4a059caea55d6ac20e19b3a8f) C:\WINDOWS\system32\DRIVERS\usb8023.sys
17:27:57.0125 3664 USB_RNDIS_51 - ok
17:27:57.0203 3664 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
17:27:57.0218 3664 VgaSave - ok
17:27:57.0296 3664 viaagp1 (4b039bbd037b01f5db5a144c837f283a) C:\WINDOWS\system32\DRIVERS\viaagp1.sys
17:27:57.0296 3664 viaagp1 - ok
17:27:57.0390 3664 viagfx (949f86f5a8e493574bbb830c3d18e4a9) C:\WINDOWS\system32\DRIVERS\vtmini.sys
17:27:57.0406 3664 viagfx - ok
17:27:57.0484 3664 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
17:27:57.0500 3664 ViaIde - ok
17:27:57.0578 3664 VIAudio (819bf44085104be6527b86a88acf856b) C:\WINDOWS\system32\drivers\ac97via.sys
17:27:57.0593 3664 VIAudio - ok
17:27:57.0687 3664 VolSnap (46de1126684369bace4849e4fc8c43ca) C:\WINDOWS\system32\drivers\VolSnap.sys
17:27:57.0703 3664 VolSnap - ok
17:27:57.0843 3664 VX1000 (21a4ce7973727f84338a0137571b9937) C:\WINDOWS\system32\DRIVERS\VX1000.sys
17:27:57.0875 3664 VX1000 - ok
17:27:57.0984 3664 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:27:58.0000 3664 Wanarp - ok
17:27:58.0078 3664 wceusbsh (46a247f6617526afe38b6f12f5512120) C:\WINDOWS\system32\DRIVERS\wceusbsh.sys
17:27:58.0078 3664 wceusbsh - ok
17:27:58.0140 3664 WDICA - ok
17:27:58.0203 3664 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
17:27:58.0218 3664 wdmaud - ok
17:27:58.0375 3664 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
17:27:58.0390 3664 WpdUsb - ok
17:27:58.0484 3664 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
17:27:58.0500 3664 WSTCODEC - ok
17:27:58.0593 3664 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
17:27:58.0593 3664 WudfPf - ok
17:27:58.0687 3664 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
17:27:58.0703 3664 WudfRd - ok
17:27:58.0796 3664 ZD1211U(ZyDAS) - ok
17:27:58.0843 3664 MBR (0x1B8) (47a3ca4d37530beb25c1adb85edc8c37) \Device\Harddisk0\DR0
17:27:58.0843 3664 \Device\Harddisk0\DR0 ( Rootkit.Win32.TDSS.tdl4 ) - infected
17:27:58.0843 3664 \Device\Harddisk0\DR0 - detected Rootkit.Win32.TDSS.tdl4 (0)
17:27:58.0875 3664 Boot (0x1200) (7c0535194e425326cc551b25975f6578) \Device\Harddisk0\DR0\Partition0
17:27:58.0875 3664 \Device\Harddisk0\DR0\Partition0 - ok
17:27:58.0890 3664 Boot (0x1200) (e01a2abf66fe228a785cbd3d9dfe84f0) \Device\Harddisk0\DR0\Partition1
17:27:58.0890 3664 \Device\Harddisk0\DR0\Partition1 - ok
17:27:58.0890 3664 ============================================================
17:27:58.0890 3664 Scan finished
17:27:58.0890 3664 ============================================================
17:27:58.0921 1084 Detected object count: 1
17:27:58.0921 1084 Actual detected object count: 1
17:28:07.0875 1084 \Device\Harddisk0\DR0 ( Rootkit.Win32.TDSS.tdl4 ) - will be cured on reboot
17:28:07.0875 1084 \Device\Harddisk0\DR0 - ok
17:28:07.0875 1084 \Device\Harddisk0\DR0 ( Rootkit.Win32.TDSS.tdl4 ) - User select action: Cure
17:28:22.0125 3096 Deinitialize success
Fix Navipromo version 4.1.0 commencé le 14/10/2011 17:36:29,15
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
Outil exécuté depuis C:\navilog1
Mise à jour le 20.04.2011 à 09h00 par IL-MAFIOSO
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) Processor 3000+ )
BIOS : Award Modular BIOS v6.00PG
USER : DE FREITAS ( Administrator )
BOOT : Normal boot
Antivirus : AntiVir Desktop 10.0.1.59 (Activated)
C:\ (Local Disk) - NTFS - Total:72 Go (Free:18 Go)
D:\ (Local Disk) - FAT32 - Total:73 Go (Free:44 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
Recherche executée en mode normal
Nettoyage exécuté au redémarrage de l'ordinateur
C:\WINDOWS\prefetch\GACUTIL.EXE-053ECDA4.pf supprimé !
c:\docume~1\defrei~1\locals~1\applic~1\umwywey.dat supprimé !
c:\docume~1\defrei~1\locals~1\applic~1\umwywey_nav.dat supprimé !
c:\docume~1\defrei~1\locals~1\applic~1\weuwwei.dat supprimé !
c:\docume~1\defrei~1\locals~1\applic~1\weuwwei_nav.dat supprimé !
c:\docume~1\defrei~1\locals~1\applic~1\weuwwei_navps.dat supprimé !
Nettoyage contenu C:\WINDOWS\Temp effectué !
Nettoyage contenu C:\Documents and Settings\DE FREITAS\locals~1\Temp effectué !
*** Sauvegarde du Registre vers dossier Safebackup ***
sauvegarde du Registre réalisée avec succès !
*** Nettoyage Registre ***
Nettoyage Registre Ok
Certificat Egroup supprimé !
Certificat Electronic-Group supprimé !
Certificat OOO-Favorit supprimé !
*** Scan terminé 14/10/2011 17:41:51,25 ***
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
Outil exécuté depuis C:\navilog1
Mise à jour le 20.04.2011 à 09h00 par IL-MAFIOSO
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) Processor 3000+ )
BIOS : Award Modular BIOS v6.00PG
USER : DE FREITAS ( Administrator )
BOOT : Normal boot
Antivirus : AntiVir Desktop 10.0.1.59 (Activated)
C:\ (Local Disk) - NTFS - Total:72 Go (Free:18 Go)
D:\ (Local Disk) - FAT32 - Total:73 Go (Free:44 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
Recherche executée en mode normal
Nettoyage exécuté au redémarrage de l'ordinateur
C:\WINDOWS\prefetch\GACUTIL.EXE-053ECDA4.pf supprimé !
c:\docume~1\defrei~1\locals~1\applic~1\umwywey.dat supprimé !
c:\docume~1\defrei~1\locals~1\applic~1\umwywey_nav.dat supprimé !
c:\docume~1\defrei~1\locals~1\applic~1\weuwwei.dat supprimé !
c:\docume~1\defrei~1\locals~1\applic~1\weuwwei_nav.dat supprimé !
c:\docume~1\defrei~1\locals~1\applic~1\weuwwei_navps.dat supprimé !
Nettoyage contenu C:\WINDOWS\Temp effectué !
Nettoyage contenu C:\Documents and Settings\DE FREITAS\locals~1\Temp effectué !
*** Sauvegarde du Registre vers dossier Safebackup ***
sauvegarde du Registre réalisée avec succès !
*** Nettoyage Registre ***
Nettoyage Registre Ok
Certificat Egroup supprimé !
Certificat Electronic-Group supprimé !
Certificat OOO-Favorit supprimé !
*** Scan terminé 14/10/2011 17:41:51,25 ***