Erreur "Generic Host Process for win 32"

manux95 Messages postés 311 Date d'inscription   Statut Membre Dernière intervention   -  
Malekal_morte- Messages postés 184347 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   -
Bonjour,

J'ai un message 3 minutes après avoir allumer mon pc.

"Generic Host Process for win 32"

Le PC beug, n'arrive plus à ouvrir les applications, a du mal a s'éteindre, et plein d'autres trucs bien désagréables.

J'ai fais

- ANtivir
- Malwarebytes
- désactiver le client DNS
- CC cleaner
- Rapport HIJACKTHIS (ci joint)

Le probleme persiste toujours. Je suis sur XP service Pack 3.

Merci de votre aide.

HIJACKTHIS

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:25:34, on 08/10/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17099)
Boot mode: Safe mode with network support

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
c:\program files\avira\antivir desktop\avscan.exe
C:\Documents and Settings\Manu\Mes documents\Téléchargements\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local;*.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files\uTorrentBar_FR\tbuTor.dll
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files\uTorrentBar_FR\tbuTor.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files\uTorrentBar_FR\tbuTor.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Lycosa] "C:\Program Files\Razer\Lycosa\razerhid.exe"
O4 - HKLM\..\Run: [CPU Power Monitor] "C:\Program Files\ASUS\AI Suite\AiGear3\CpuPowerMonitor.exe"
O4 - HKLM\..\Run: [Cpu Level Up help] C:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [ASUS Energy Saving] "C:\Program Files\ASUS\AI Suite\EnergySaving\PwSave.exe"
O4 - HKLM\..\Run: [DeathAdder] C:\Program Files\Razer\DeathAdder\razerhid.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "G:\iTunesHelper.exe"
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service Google Update (gupdate1c9c75c1c83e2b6) (gupdate1c9c75c1c83e2b6) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Service Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
A voir également:

12 réponses

Malekal_morte- Messages postés 184347 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 689
 
Salut,

CCleaner sert à rien en cas d'infection.

Passe un coup de TDSSKiller : https://forum.malekal.com/viewtopic.php?t=28637&start=
Lire ce qui est écrit au niveau des suppressions/réparation (delete et cure), ne pas supprimer n'importe quoi.
Poste le rapport ici.
1
Malekal_morte- Messages postés 184347 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 689
 
ok.
Laisse tomber pour Conduit, c'est pas urgent.

vas y essaye de faire le scan en ligne NOD32.
1
manux95 Messages postés 311 Date d'inscription   Statut Membre Dernière intervention   8
 
Salut!

Voici le rapport :

8:06:12.0546 1836 TDSS rootkit removing tool 2.6.6.0 Oct 7 2011 12:45:24
18:06:12.0843 1836 ============================================================
18:06:12.0843 1836 Current date / time: 2011/10/08 18:06:12.0843
18:06:12.0843 1836 SystemInfo:
18:06:12.0843 1836
18:06:12.0843 1836 OS Version: 5.1.2600 ServicePack: 3.0
18:06:12.0843 1836 Product type: Workstation
18:06:12.0843 1836 ComputerName: JAN-61DFC01B093
18:06:12.0859 1836 UserName: Manu
18:06:12.0859 1836 Windows directory: C:\WINDOWS
18:06:12.0859 1836 System windows directory: C:\WINDOWS
18:06:12.0859 1836 Processor architecture: Intel x86
18:06:12.0859 1836 Number of processors: 2
18:06:12.0859 1836 Page size: 0x1000
18:06:12.0859 1836 Boot type: Normal boot
18:06:12.0859 1836 ============================================================
18:06:16.0578 1836 Initialize success
18:06:20.0546 3004 ============================================================
18:06:20.0546 3004 Scan started
18:06:20.0546 3004 Mode: Manual;
18:06:20.0546 3004 ============================================================
18:06:24.0234 3004 Aavmker4 (95d1de2a6613494e853a9738d5d9acd4) C:\WINDOWS\system32\drivers\Aavmker4.sys
18:06:24.0234 3004 Aavmker4 - ok
18:06:31.0390 3004 Abiosdsk - ok
18:06:40.0906 3004 abp480n5 - ok
18:06:43.0656 3004 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) C:\WINDOWS\system32\DRIVERS\ACPI.sys
18:06:43.0718 3004 ACPI - ok
18:06:45.0515 3004 ACPIEC (e4abc1212b70bb03d35e60681c447210) C:\WINDOWS\system32\drivers\ACPIEC.sys
18:06:45.0515 3004 ACPIEC - ok
18:06:49.0765 3004 adpu160m - ok
18:06:50.0328 3004 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
18:06:50.0343 3004 aec - ok
18:06:51.0000 3004 AFD (355556d9e580915118cd7ef736653a89) C:\WINDOWS\System32\drivers\afd.sys
18:06:51.0000 3004 AFD - ok
18:06:51.0578 3004 Aha154x - ok
18:06:52.0093 3004 aic78u2 - ok
18:06:52.0843 3004 aic78xx - ok
18:06:53.0312 3004 AliIde - ok
18:06:54.0484 3004 Ambfilt (f6af59d6eee5e1c304f7f73706ad11d8) C:\WINDOWS\system32\drivers\Ambfilt.sys
18:06:54.0781 3004 Ambfilt - ok
18:06:55.0406 3004 amsint - ok
18:06:55.0765 3004 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
18:06:55.0765 3004 Arp1394 - ok
18:06:56.0468 3004 asc - ok
18:06:57.0031 3004 asc3350p - ok
18:06:57.0578 3004 asc3550 - ok
18:06:57.0906 3004 AsIO (2b4e66fac6503494a2c6f32bb6ab3826) C:\WINDOWS\system32\drivers\AsIO.sys
18:06:57.0906 3004 AsIO - ok
18:06:58.0468 3004 aswFsBlk (c47623ffd181a1e7d63574dde2a0a711) C:\WINDOWS\system32\drivers\aswFsBlk.sys
18:06:58.0468 3004 aswFsBlk - ok
18:06:58.0765 3004 aswMon2 (fff2dbb17a3c89f87f78d5fa72ca47fd) C:\WINDOWS\system32\drivers\aswMon2.sys
18:06:58.0781 3004 aswMon2 - ok
18:06:59.0296 3004 aswRdr (36239e24470a3dd81fae37510953cc6c) C:\WINDOWS\system32\drivers\aswRdr.sys
18:06:59.0296 3004 aswRdr - ok
18:06:59.0875 3004 aswSnx (caa846e9c83836bdc3d2d700c678db65) C:\WINDOWS\system32\drivers\aswSnx.sys
18:06:59.0953 3004 aswSnx - ok
18:07:00.0687 3004 aswSP (748ae7f2d7da33adb063fe05704a9969) C:\WINDOWS\system32\drivers\aswSP.sys
18:07:00.0765 3004 aswSP - ok
18:07:01.0531 3004 aswTdi (ca9925ce1dbd07ffe1eb357752cf5577) C:\WINDOWS\system32\drivers\aswTdi.sys
18:07:01.0531 3004 aswTdi - ok
18:07:01.0796 3004 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
18:07:01.0796 3004 AsyncMac - ok
18:07:02.0203 3004 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
18:07:02.0203 3004 atapi - ok
18:07:02.0421 3004 AtcL001 (19f277bc4ce5689f20f347a6b8aa8c42) C:\WINDOWS\system32\DRIVERS\atl01_xp.sys
18:07:02.0421 3004 AtcL001 - ok
18:07:02.0968 3004 Atdisk - ok
18:07:03.0640 3004 AtiHdmiService (591a9eabb5ef5168e435c2f18b05dd76) C:\WINDOWS\system32\drivers\AtiHdmi.sys
18:07:03.0640 3004 AtiHdmiService - ok
18:07:04.0281 3004 ATITool (0e4bb35c5305099ac82053ac992e3e0e) C:\WINDOWS\system32\DRIVERS\ATITool.sys
18:07:04.0281 3004 ATITool - ok
18:07:04.0593 3004 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
18:07:04.0593 3004 Atmarpc - ok
18:07:04.0843 3004 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
18:07:04.0843 3004 audstub - ok
18:07:04.0968 3004 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
18:07:04.0968 3004 Beep - ok
18:07:05.0468 3004 catchme - ok
18:07:05.0609 3004 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
18:07:05.0609 3004 cbidf2k - ok
18:07:05.0921 3004 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
18:07:05.0921 3004 CCDECODE - ok
18:07:06.0640 3004 cd20xrnt - ok
18:07:06.0890 3004 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
18:07:06.0890 3004 Cdaudio - ok
18:07:07.0062 3004 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
18:07:07.0062 3004 Cdfs - ok
18:07:07.0500 3004 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
18:07:07.0500 3004 Cdrom - ok
18:07:07.0765 3004 cercsr6 (84853b3fd012251690570e9e7e43343f) C:\WINDOWS\system32\drivers\cercsr6.sys
18:07:07.0781 3004 cercsr6 - ok
18:07:08.0890 3004 Changer - ok
18:07:09.0968 3004 CmdIde - ok
18:07:10.0703 3004 cmpci - ok
18:07:11.0500 3004 Cpqarray - ok
18:07:11.0937 3004 cpuz130 - ok
18:07:13.0703 3004 dac2w2k - ok
18:07:16.0125 3004 dac960nt - ok
18:07:16.0546 3004 danewFltr (c512b618d0e19339572ad125e26b9cb5) C:\WINDOWS\system32\drivers\danew.sys
18:07:16.0546 3004 danewFltr - ok
18:07:16.0968 3004 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
18:07:16.0968 3004 Disk - ok
18:07:18.0046 3004 dmboot (f5deadd42335fb33edca74ecb2f36cba) C:\WINDOWS\system32\drivers\dmboot.sys
18:07:18.0234 3004 dmboot - ok
18:07:19.0921 3004 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) C:\WINDOWS\system32\drivers\dmio.sys
18:07:19.0953 3004 dmio - ok
18:07:20.0109 3004 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
18:07:20.0109 3004 dmload - ok
18:07:20.0718 3004 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
18:07:20.0718 3004 DMusic - ok
18:07:22.0328 3004 dpti2o - ok
18:07:22.0671 3004 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
18:07:22.0671 3004 drmkaud - ok
18:07:23.0609 3004 dtsoftbus01 (555e54ac2f601a8821cef58961653991) C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys
18:07:23.0609 3004 dtsoftbus01 - ok
18:07:23.0953 3004 ENTECH (16ebd8bf1d5090923694cc972c7ce1b4) C:\WINDOWS\system32\DRIVERS\ENTECH.sys
18:07:23.0953 3004 ENTECH - ok
18:07:24.0171 3004 esgiguard - ok
18:07:24.0484 3004 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
18:07:24.0484 3004 Fastfat - ok
18:07:24.0750 3004 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
18:07:24.0750 3004 Fdc - ok
18:07:25.0046 3004 Fips (31f923eb2170fc172c81abda0045d18c) C:\WINDOWS\system32\drivers\Fips.sys
18:07:25.0046 3004 Fips - ok
18:07:25.0687 3004 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
18:07:25.0687 3004 Flpydisk - ok
18:07:26.0062 3004 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
18:07:26.0062 3004 FltMgr - ok
18:07:26.0234 3004 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
18:07:26.0234 3004 Fs_Rec - ok
18:07:26.0281 3004 Ftdisk (a86859b77b908c18c2657f284aa29fe3) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
18:07:26.0281 3004 Ftdisk - ok
18:07:26.0562 3004 gameenum (065639773d8b03f33577f6cdaea21063) C:\WINDOWS\system32\DRIVERS\gameenum.sys
18:07:26.0562 3004 gameenum - ok
18:07:26.0890 3004 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
18:07:26.0890 3004 GEARAspiWDM - ok
18:07:27.0093 3004 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
18:07:27.0093 3004 Gpc - ok
18:07:27.0750 3004 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
18:07:27.0750 3004 HDAudBus - ok
18:07:28.0468 3004 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
18:07:28.0468 3004 hidusb - ok
18:07:29.0046 3004 hpn - ok
18:07:29.0453 3004 HPZid412 (863cc3a82c63c9f60acf2e85d5310620) C:\WINDOWS\system32\DRIVERS\HPZid412.sys
18:07:29.0453 3004 HPZid412 - ok
18:07:29.0890 3004 HPZipr12 (08cb72e95dd75b61f2966b311d0e4366) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
18:07:29.0890 3004 HPZipr12 - ok
18:07:30.0406 3004 HPZius12 (ca990306ed4ef732af9695bff24fc96f) C:\WINDOWS\system32\DRIVERS\HPZius12.sys
18:07:30.0406 3004 HPZius12 - ok
18:07:31.0156 3004 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
18:07:31.0187 3004 HTTP - ok
18:07:32.0046 3004 i2omgmt - ok
18:07:32.0734 3004 i2omp - ok
18:07:33.0093 3004 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
18:07:33.0093 3004 i8042prt - ok
18:07:33.0531 3004 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
18:07:33.0546 3004 Imapi - ok
18:07:34.0343 3004 ini910u - ok
18:07:37.0875 3004 IntcAzAudAddService (512cc914475348d774d1bb9f866396a5) C:\WINDOWS\system32\drivers\RtkHDAud.sys
18:07:38.0515 3004 IntcAzAudAddService - ok
18:07:39.0687 3004 IntelIde - ok
18:07:40.0250 3004 intelppm (ad340800c35a42d4de1641a37feea34c) C:\WINDOWS\system32\DRIVERS\intelppm.sys
18:07:40.0250 3004 intelppm - ok
18:07:41.0031 3004 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
18:07:41.0031 3004 Ip6Fw - ok
18:07:41.0328 3004 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
18:07:41.0328 3004 IpFilterDriver - ok
18:07:41.0750 3004 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
18:07:41.0750 3004 IpInIp - ok
18:07:42.0421 3004 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
18:07:42.0453 3004 IpNat - ok
18:07:42.0718 3004 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
18:07:42.0718 3004 IPSec - ok
18:07:43.0296 3004 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
18:07:43.0296 3004 IRENUM - ok
18:07:43.0796 3004 isapnp (355836975a67b6554bca60328cd6cb74) C:\WINDOWS\system32\DRIVERS\isapnp.sys
18:07:43.0796 3004 isapnp - ok
18:07:44.0359 3004 Kbdclass (16813155807c6881f4bfbf6657424659) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
18:07:44.0359 3004 Kbdclass - ok
18:07:44.0781 3004 kbdhid (94c59cb884ba010c063687c3a50dce8e) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
18:07:44.0781 3004 kbdhid - ok
18:07:46.0000 3004 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
18:07:46.0015 3004 kmixer - ok
18:07:46.0890 3004 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
18:07:46.0906 3004 KSecDD - ok
18:07:48.0093 3004 lbrtfdc - ok
18:07:48.0890 3004 LVPr2Mon (1a7db7a00a4b0d8da24cd691a4547291) C:\WINDOWS\system32\DRIVERS\LVPr2Mon.sys
18:07:48.0921 3004 LVPr2Mon - ok
18:07:50.0218 3004 LVUSBSta (c5efbd05a5195402121711a6ebbb271f) C:\WINDOWS\system32\drivers\lvusbsta.sys
18:07:50.0218 3004 LVUSBSta - ok
18:07:50.0703 3004 LycoFltr (40b844cbe235b1a20557eec28c38f3da) C:\WINDOWS\system32\Drivers\Lycosa.sys
18:07:50.0718 3004 LycoFltr - ok
18:07:51.0734 3004 MBAMSwissArmy - ok
18:07:52.0406 3004 mcdbus - ok
18:07:52.0687 3004 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
18:07:52.0703 3004 mnmdd - ok
18:07:52.0890 3004 Modem (510ade9327fe84c10254e1902697e25f) C:\WINDOWS\system32\drivers\Modem.sys
18:07:52.0906 3004 Modem - ok
18:07:54.0187 3004 Monfilt (9fa7207d1b1adead88ae8eed9cdbbaa5) C:\WINDOWS\system32\drivers\Monfilt.sys
18:07:54.0421 3004 Monfilt - ok
18:07:55.0000 3004 Mouclass (027c01bd7ef3349aaebc883d8a799efb) C:\WINDOWS\system32\DRIVERS\mouclass.sys
18:07:55.0000 3004 Mouclass - ok
18:07:55.0187 3004 mouhid (124d6846040c79b9c997f78ef4b2a4e5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
18:07:55.0187 3004 mouhid - ok
18:07:55.0437 3004 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
18:07:55.0437 3004 MountMgr - ok
18:07:56.0203 3004 mraid35x - ok
18:07:56.0500 3004 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
18:07:56.0500 3004 MRxDAV - ok
18:07:56.0953 3004 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
18:07:57.0031 3004 MRxSmb - ok
18:07:57.0671 3004 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
18:07:57.0687 3004 Msfs - ok
18:07:57.0687 3004 MSICDSetup - ok
18:07:58.0265 3004 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
18:07:58.0281 3004 MSKSSRV - ok
18:07:58.0484 3004 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
18:07:58.0500 3004 MSPCLOCK - ok
18:07:59.0203 3004 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
18:07:59.0218 3004 MSPQM - ok
18:07:59.0890 3004 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
18:07:59.0890 3004 mssmbios - ok
18:08:00.0093 3004 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
18:08:00.0109 3004 MSTEE - ok
18:08:00.0687 3004 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys
18:08:00.0703 3004 MTsensor - ok
18:08:01.0453 3004 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
18:08:01.0453 3004 Mup - ok
18:08:01.0656 3004 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
18:08:01.0656 3004 NABTSFEC - ok
18:08:02.0062 3004 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
18:08:02.0062 3004 NDIS - ok
18:08:02.0890 3004 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
18:08:02.0906 3004 NdisIP - ok
18:08:03.0328 3004 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
18:08:03.0328 3004 NdisTapi - ok
18:08:03.0390 3004 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
18:08:03.0390 3004 Ndisuio - ok
18:08:03.0718 3004 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
18:08:03.0734 3004 NdisWan - ok
18:08:03.0984 3004 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
18:08:04.0031 3004 NDProxy - ok
18:08:04.0250 3004 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
18:08:04.0265 3004 NetBIOS - ok
18:08:04.0625 3004 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
18:08:04.0640 3004 NetBT - ok
18:08:04.0906 3004 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
18:08:04.0921 3004 NIC1394 - ok
18:08:05.0265 3004 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
18:08:05.0312 3004 Npfs - ok
18:08:05.0765 3004 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
18:08:05.0890 3004 Ntfs - ok
18:08:06.0046 3004 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
18:08:06.0062 3004 Null - ok
18:08:09.0500 3004 nv (18c9b152da7bea76b2f9e4b6412e0aaf) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
18:08:10.0718 3004 nv - ok
18:08:11.0171 3004 NVHDA (50acb7253d1104e5917e15a0670d63d5) C:\WINDOWS\system32\drivers\nvhda32.sys
18:08:11.0171 3004 NVHDA - ok
18:08:11.0312 3004 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
18:08:11.0312 3004 NwlnkFlt - ok
18:08:11.0484 3004 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
18:08:11.0484 3004 NwlnkFwd - ok
18:08:11.0718 3004 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
18:08:11.0718 3004 ohci1394 - ok
18:08:11.0953 3004 papycpu2 (f5cf06754ae54d9d3353fc9c59bc4e04) C:\WINDOWS\System32\DRIVERS\papycpu2.sys
18:08:11.0953 3004 papycpu2 - ok
18:08:12.0187 3004 papyjoy (b09a71e8e1e127455f3a2fe83d38851f) C:\WINDOWS\System32\DRIVERS\papyjoy.sys
18:08:12.0187 3004 papyjoy - ok
18:08:12.0906 3004 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) C:\WINDOWS\system32\drivers\Parport.sys
18:08:12.0921 3004 Parport - ok
18:08:13.0406 3004 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
18:08:13.0406 3004 PartMgr - ok
18:08:13.0578 3004 ParVdm (9575c5630db8fb804649a6959737154c) C:\WINDOWS\system32\drivers\ParVdm.sys
18:08:13.0593 3004 ParVdm - ok
18:08:14.0234 3004 PCI (043410877bda580c528f45165f7125bc) C:\WINDOWS\system32\DRIVERS\pci.sys
18:08:14.0250 3004 PCI - ok
18:08:15.0062 3004 PCIDump - ok
18:08:15.0625 3004 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) C:\WINDOWS\system32\DRIVERS\pciide.sys
18:08:15.0640 3004 PCIIde - ok
18:08:16.0109 3004 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) C:\WINDOWS\system32\drivers\Pcmcia.sys
18:08:16.0156 3004 Pcmcia - ok
18:08:17.0750 3004 PDCOMP - ok
18:08:18.0625 3004 PDFRAME - ok
18:08:19.0656 3004 PDRELI - ok
18:08:20.0703 3004 PDRFRAME - ok
18:08:20.0812 3004 perc2 - ok
18:08:21.0265 3004 perc2hib - ok
18:08:21.0906 3004 PID_0928 (5bd2c6d982481d548107c602e7ccfbbc) C:\WINDOWS\system32\DRIVERS\LV561AV.SYS
18:08:21.0968 3004 PID_0928 - ok
18:08:22.0437 3004 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
18:08:22.0437 3004 PptpMiniport - ok
18:08:23.0203 3004 PQNTDrv (87d211ba1e9759e26b6296e625a31ce8) C:\WINDOWS\system32\drivers\PQNTDrv.sys
18:08:23.0218 3004 PQNTDrv - ok
18:08:23.0687 3004 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
18:08:23.0718 3004 PSched - ok
18:08:23.0859 3004 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
18:08:23.0859 3004 Ptilink - ok
18:08:24.0906 3004 ql1080 - ok
18:08:25.0593 3004 Ql10wnt - ok
18:08:26.0703 3004 ql12160 - ok
18:08:27.0500 3004 ql1240 - ok
18:08:28.0171 3004 ql1280 - ok
18:08:28.0281 3004 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
18:08:28.0281 3004 RasAcd - ok
18:08:28.0500 3004 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
18:08:28.0515 3004 Rasl2tp - ok
18:08:28.0765 3004 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
18:08:28.0765 3004 RasPppoe - ok
18:08:28.0953 3004 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
18:08:28.0953 3004 Raspti - ok
18:08:29.0203 3004 Razerlow (116c340acf37602d12cac6de6b8107cd) C:\WINDOWS\system32\Drivers\DB3G.sys
18:08:29.0203 3004 Razerlow - ok
18:08:29.0609 3004 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
18:08:29.0625 3004 Rdbss - ok
18:08:29.0781 3004 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
18:08:29.0796 3004 RDPCDD - ok
18:08:30.0250 3004 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
18:08:30.0250 3004 rdpdr - ok
18:08:30.0671 3004 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
18:08:30.0687 3004 RDPWD - ok
18:08:31.0312 3004 redbook (d8eb2a7904db6c916eb5361878ddcbae) C:\WINDOWS\system32\DRIVERS\redbook.sys
18:08:31.0328 3004 redbook - ok
18:08:32.0421 3004 RTL8192su (b29eeb1ea7971bd83069eb2e2258d224) C:\WINDOWS\system32\DRIVERS\RTL8192su.sys
18:08:32.0562 3004 RTL8192su - ok
18:08:32.0718 3004 SANDRA - ok
18:08:33.0421 3004 se59bus (7c38fc284136981ebe002252fa0900d3) C:\WINDOWS\system32\DRIVERS\se59bus.sys
18:08:33.0421 3004 se59bus - ok
18:08:33.0906 3004 se59mdfl (3ced539f4373ccf8d3fe71ae51053d5d) C:\WINDOWS\system32\DRIVERS\se59mdfl.sys
18:08:33.0906 3004 se59mdfl - ok
18:08:34.0281 3004 se59mdm (c6a6aa039d14f2ea1998e5f922014067) C:\WINDOWS\system32\DRIVERS\se59mdm.sys
18:08:34.0312 3004 se59mdm - ok
18:08:34.0546 3004 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
18:08:34.0562 3004 Secdrv - ok
18:08:34.0687 3004 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
18:08:34.0687 3004 serenum - ok
18:08:34.0953 3004 Serial (93d313c31f7ad9ea2b75f26075413c7c) C:\WINDOWS\system32\DRIVERS\serial.sys
18:08:34.0953 3004 Serial - ok
18:08:35.0484 3004 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
18:08:35.0484 3004 Sfloppy - ok
18:08:36.0078 3004 Simbad - ok
18:08:36.0453 3004 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
18:08:36.0453 3004 SLIP - ok
18:08:37.0203 3004 Sparrow - ok
18:08:37.0500 3004 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
18:08:37.0500 3004 splitter - ok
18:08:37.0828 3004 sptd (d15da1ba189770d93eea2d7e18f95af9) C:\WINDOWS\system32\Drivers\sptd.sys
18:08:37.0843 3004 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: d15da1ba189770d93eea2d7e18f95af9
18:08:37.0843 3004 sptd ( LockedFile.Multi.Generic ) - warning
18:08:37.0843 3004 sptd - detected LockedFile.Multi.Generic (1)
18:08:38.0171 3004 sr (39626e6dc1fb39434ec40c42722b660a) C:\WINDOWS\system32\DRIVERS\sr.sys
18:08:38.0187 3004 sr - ok
18:08:38.0718 3004 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
18:08:38.0812 3004 Srv - ok
18:08:39.0062 3004 ssmdrv (3ad0362cf68de3ac500e981700242cca) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
18:08:39.0078 3004 ssmdrv - ok
18:08:39.0234 3004 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
18:08:39.0234 3004 streamip - ok
18:08:39.0328 3004 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
18:08:39.0328 3004 swenum - ok
18:08:39.0421 3004 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
18:08:39.0421 3004 swmidi - ok
18:08:39.0578 3004 symc810 - ok
18:08:39.0765 3004 symc8xx - ok
18:08:40.0796 3004 sym_hi - ok
18:08:41.0781 3004 sym_u3 - ok
18:08:42.0203 3004 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
18:08:42.0203 3004 sysaudio - ok
18:08:42.0890 3004 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
18:08:42.0906 3004 Tcpip - ok
18:08:43.0375 3004 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
18:08:43.0390 3004 TDPIPE - ok
18:08:43.0765 3004 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
18:08:43.0781 3004 TDTCP - ok
18:08:44.0171 3004 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
18:08:44.0203 3004 TermDD - ok
18:08:45.0125 3004 TosIde - ok
18:08:45.0406 3004 TrueSight - ok
18:08:45.0937 3004 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
18:08:45.0937 3004 Udfs - ok
18:08:46.0843 3004 ultra - ok
18:08:47.0546 3004 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
18:08:47.0593 3004 Update - ok
18:08:47.0953 3004 USBAAPL (83cafcb53201bbac04d822f32438e244) C:\WINDOWS\system32\Drivers\usbaapl.sys
18:08:47.0953 3004 USBAAPL - ok
18:08:48.0203 3004 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
18:08:48.0234 3004 usbaudio - ok
18:08:48.0640 3004 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
18:08:48.0656 3004 usbccgp - ok
18:08:49.0015 3004 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
18:08:49.0015 3004 usbehci - ok
18:08:49.0203 3004 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
18:08:49.0203 3004 usbhub - ok
18:08:49.0562 3004 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
18:08:49.0578 3004 usbprint - ok
18:08:49.0734 3004 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
18:08:49.0734 3004 usbscan - ok
18:08:50.0000 3004 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
18:08:50.0000 3004 USBSTOR - ok
18:08:50.0171 3004 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
18:08:50.0171 3004 usbuhci - ok
18:08:50.0390 3004 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
18:08:50.0390 3004 VgaSave - ok
18:08:51.0093 3004 ViaIde - ok
18:08:51.0421 3004 VolSnap (46de1126684369bace4849e4fc8c43ca) C:\WINDOWS\system32\drivers\VolSnap.sys
18:08:51.0421 3004 VolSnap - ok
18:08:51.0796 3004 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
18:08:51.0796 3004 Wanarp - ok
18:08:52.0562 3004 Wdf01000 (bbcfeab7e871cddac2d397ee7fa91fdc) C:\WINDOWS\system32\Drivers\wdf01000.sys
18:08:52.0671 3004 Wdf01000 - ok
18:08:53.0328 3004 WDICA - ok
18:08:53.0640 3004 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
18:08:53.0640 3004 wdmaud - ok
18:08:53.0953 3004 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
18:08:53.0953 3004 WSTCODEC - ok
18:08:54.0531 3004 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
18:08:54.0531 3004 WudfPf - ok
18:08:54.0968 3004 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
18:08:54.0984 3004 WudfRd - ok
18:08:55.0328 3004 xusb21 (a640c90b007762939507c28a021be3b3) C:\WINDOWS\system32\DRIVERS\xusb21.sys
18:08:55.0328 3004 xusb21 - ok
18:08:55.0343 3004 MBR (0x1B8) (c99c3199cfaa4cbdcd91493f6d113a50) \Device\Harddisk0\DR0
18:08:55.0781 3004 \Device\Harddisk0\DR0 - ok
18:08:55.0796 3004 Boot (0x1200) (29498756b5bac3acb4d79a95da27533b) \Device\Harddisk0\DR0\Partition0
18:08:55.0796 3004 \Device\Harddisk0\DR0\Partition0 - ok
18:08:55.0812 3004 Boot (0x1200) (b977607d16108725e73e34d71638acb1) \Device\Harddisk0\DR0\Partition1
18:08:55.0828 3004 \Device\Harddisk0\DR0\Partition1 - ok
18:08:55.0859 3004 Boot (0x1200) (3f8958c720b04b05c0824ff8ed0a6dc3) \Device\Harddisk0\DR0\Partition2
18:08:55.0859 3004 \Device\Harddisk0\DR0\Partition2 - ok
18:08:55.0859 3004 ============================================================
18:08:55.0859 3004 Scan finished
18:08:55.0859 3004 ============================================================
18:08:55.0859 2508 Detected object count: 1
18:08:55.0859 2508 Actual detected object count: 1
18:09:19.0546 2508 C:\WINDOWS\system32\Drivers\sptd.sys - copied to quarantine
18:09:19.0546 2508 sptd ( LockedFile.Multi.Generic ) - User select action: Quarantine
0
Malekal_morte- Messages postés 184347 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 689
 
ho
assez étonnant que rien ne soit présent.


fais ça :

Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/

* Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
(Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)

* Lance OTL
* Sur OTL, sous Personnalisation, copie-colle le script ci-dessous :
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%temp%\.exe /s
%SYSTEMDRIVE%\*.exe
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
/md5start
consrv.dll
explorer.exe
winlogon.exe
wininit.exe
/md5stop
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems /s
CREATERESTOREPOINT
nslookup www.google.fr /c
SAVEMBR:0
hklm\software\clients\startmenuinternet|command /rs
hklm\software\clients\startmenuinternet|command /64 /rs

* Clique sur le bouton Analyse.
* Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport OTL.txt (et Extra.txt), donne le ou les liens pjjoint qui pointent vers ces rapports ici dans un nouveau message.

0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
manux95 Messages postés 311 Date d'inscription   Statut Membre Dernière intervention   8
 
Merci de ton aide,

Je te transmet ca vite fais.

Cordialement
0
manux95 Messages postés 311 Date d'inscription   Statut Membre Dernière intervention   8
 
Salut !

Parfois quand j'allume le pc, il n'y a pas de bureau et ses icones. Je peux rien faire a part 'Gestionnaires des taches....

Arf... c'est virus...

Tchus
0
Malekal_morte- Messages postés 184347 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 689
 
et le mode sans échec ça passe ?

Désinstalle :
uTorrentBar_FR Toolbar
Conduit Engine

Tu peux aller en mode sans échec avec prise en charge du réseau et faire un scan NOD32 ?

https://www.malekal.com/scan-antivirus-ligne-nod32/#NOD32

0
manux95 Messages postés 311 Date d'inscription   Statut Membre Dernière intervention   8
 
Bonjour,

En mode sans echec ça passe niquel.

J'ai du mal a à désinstaller Conduit engine.
0
manux95 Messages postés 311 Date d'inscription   Statut Membre Dernière intervention   8
 
Salut !!

l'analyse n'a rien donner.

Arf fenek de virus.
0
Malekal_morte- Messages postés 184347 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 689
 
hummm commence à me demander si ton prb relève d'un prb de malwares.


Sauvegarde tes documents importants.


Désactive les logiciels de protection (Antivirus, Antispywares) ensuite :

Télécharge Combofix sUBs : http://download.bleepingcomputer.com/sUBs/ComboFix.exe et sauvegarde le sur ton bureau et pas ailleurs!

Double-clic sur combofix, accepte la licence d'utilisation et laisse toi guider.

Eventuellement, installe la console de récupération comme cela est conseillé

Attends que combofix ait terminé, un rapport sera créé. Poste le rapport.
Si le rapport ne passe pas, envoie le sur ce site : http://pjjoint.malekal.com/
et donne le lien ici :)

Tu as le tutorial sur ce lien pour t'aider : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix

PS : si Combofix ne se lance pas, renomme le fichier Combofix et retente.

Si pas mieux, tente en mode sans échec sans prise en charge du réseau : Redémarre en mode sans échec, pour cela, redémarre l'ordinateur, avant le logo Windows, tapote sur la touche F8, un menu va apparaître, choisis Mode sans échec et appuye sur la touche entrée du clavier.
0