Rapport virus goméo

Fermé
artnow31 Messages postés 7 Date d'inscription dimanche 16 octobre 2011 Statut Membre Dernière intervention 20 octobre 2011 - 16 oct. 2011 à 17:55
 Utilisateur anonyme - 20 oct. 2011 à 09:01
Bonjour, mon père a un virus nomm goméo depuis 1 mois qui lui a supprimé l'accès de tos les sites internet ainsi que ses logicels

Voici le rapport zhpdiag https://www.cjoint.com/?AJqrKhrvCa3

Merci de l'aider



A voir également:

16 réponses

Utilisateur anonyme
16 oct. 2011 à 18:03
salut retransmets le rapport dans son format d'origine stp via cijoint.fr
0
artnow31 Messages postés 7 Date d'inscription dimanche 16 octobre 2011 Statut Membre Dernière intervention 20 octobre 2011
16 oct. 2011 à 18:56
merci de ta rapidité je vais essayer car comme je te di internet bloque

http://www.cijoint.fr/cjlink.php?file=cj201110/cijaLB6kFH.doc

c bon comme sa?
0
Utilisateur anonyme
16 oct. 2011 à 19:32
le rapport t'est fourni au format txt pourquoi le mets-tu en .doc ?
0
artnow31 Messages postés 7 Date d'inscription dimanche 16 octobre 2011 Statut Membre Dernière intervention 20 octobre 2011
16 oct. 2011 à 19:36
je n'ai pas réussi a le mettre en txt, alors j'ai fais un copier coller sous word,

Ce format ne te convient pas?
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
artnow31 Messages postés 7 Date d'inscription dimanche 16 octobre 2011 Statut Membre Dernière intervention 20 octobre 2011
16 oct. 2011 à 19:56
et comme cela? http://www.cijoint.fr/cjlink.php?file=cj201110/cijXR5WyPY.txt

Par contre j'ai essayer de faire une nouvelle recherche via ZHPdiag et je n'ai plus l'acces meme en administrateur :(

Jcroi qu'il est vraiment dead son pc
0
Utilisateur anonyme
16 oct. 2011 à 20:39
le rapport n'est pas le bon

il est meme pas complet
0
artnow31 Messages postés 7 Date d'inscription dimanche 16 octobre 2011 Statut Membre Dernière intervention 20 octobre 2011
16 oct. 2011 à 20:44
En fet dès que l'analyse se termine, zhp s'éteint, et lorsque je clique sur mbr check, je n'ai plus la possibilité de refaire une analyse : windows ne parvient pas à accéder au périphérique.... vous ne disposez pas des droits d'entrée

La toute première analyse je peut y entrer mais un message du genre "la connexion internet n'est pas reconnue" s'affiche

Je ne sais plus quoi faire... :(

En tout cas merci de tes réponses et ta patience
0
Utilisateur anonyme
16 oct. 2011 à 21:19
▶ Télécharge Reload_TDSSKiller

▶ Lance le

choisis : lancer le nettoyage

l'outil va automatiquement télécharger la derniere version puis

TDSSKiller va s'ouvrir , clique sur "Start Scan"

Si TDSS.tdl2 est détecté l''option delete sera cochée par défaut.
Si TDSS.tdl3 est détecté assure toi que Cure est bien cochée.
Si TDSS.tdl4(\HardDisk0\MBR) est détecté assure toi que Cure est bien cochée.
Si Suspicious file est indiqué, laisse l''option cochée sur Skip
Si Rootkit.Win32.ZAccess.* est détecté règle sur "cure" en haut , et "delete" en bas

une fois qu'il a terminé , redemarre s'il te le demande pour finir de nettoyer

sinon , ferme tdssKiller et le rapport s'affichera sur le bureau

▶ Copie/Colle son contenu dans ta prochaine réponse.
0
artnow31 Messages postés 7 Date d'inscription dimanche 16 octobre 2011 Statut Membre Dernière intervention 20 octobre 2011
17 oct. 2011 à 10:48
Bonjour, voici le rapport de TDSS killer


10:33:08.0234 0364 TDSS rootkit removing tool 2.6.9.0 Oct 14 2011 11:33:24
10:33:08.0421 0364 ============================================================
10:33:08.0421 0364 Current date / time: 2011/10/17 10:33:08.0421
10:33:08.0421 0364 SystemInfo:
10:33:08.0421 0364
10:33:08.0421 0364 OS Version: 5.1.2600 ServicePack: 3.0
10:33:08.0421 0364 Product type: Workstation
10:33:08.0421 0364 ComputerName: NOM-69YPOL3RYHI
10:33:08.0421 0364 UserName: Propriétaire
10:33:08.0421 0364 Windows directory: C:\WINDOWS
10:33:08.0421 0364 System windows directory: C:\WINDOWS
10:33:08.0421 0364 Processor architecture: Intel x86
10:33:08.0421 0364 Number of processors: 2
10:33:08.0421 0364 Page size: 0x1000
10:33:08.0421 0364 Boot type: Normal boot
10:33:08.0421 0364 ============================================================
10:33:10.0000 0364 Initialize success
10:33:36.0296 1712 ============================================================
10:33:36.0296 1712 Scan started
10:33:36.0296 1712 Mode: Manual;
10:33:36.0296 1712 ============================================================
10:33:36.0812 1712 Abiosdsk - ok
10:33:36.0828 1712 abp480n5 - ok
10:33:36.0890 1712 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) C:\WINDOWS\system32\DRIVERS\ACPI.sys
10:33:36.0890 1712 ACPI - ok
10:33:36.0921 1712 ACPIEC (e4abc1212b70bb03d35e60681c447210) C:\WINDOWS\system32\drivers\ACPIEC.sys
10:33:36.0937 1712 ACPIEC - ok
10:33:36.0953 1712 adpu160m - ok
10:33:37.0000 1712 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
10:33:37.0000 1712 aec - ok
10:33:37.0046 1712 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
10:33:37.0046 1712 AFD - ok
10:33:37.0078 1712 AFS2K (c685cc27a2e637f0dcb5a45e67cc6f74) C:\WINDOWS\system32\drivers\AFS2K.sys
10:33:37.0078 1712 AFS2K - ok
10:33:37.0187 1712 AgereSoftModem (593aefc67283d409f34cc1245d00a509) C:\WINDOWS\system32\DRIVERS\AGRSM.sys
10:33:37.0250 1712 AgereSoftModem - ok
10:33:37.0296 1712 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
10:33:37.0296 1712 agp440 - ok
10:33:37.0312 1712 Aha154x - ok
10:33:37.0328 1712 aic78u2 - ok
10:33:37.0359 1712 aic78xx - ok
10:33:37.0375 1712 AliIde - ok
10:33:37.0390 1712 amsint - ok
10:33:37.0453 1712 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
10:33:37.0468 1712 Arp1394 - ok
10:33:37.0468 1712 asc - ok
10:33:37.0484 1712 asc3350p - ok
10:33:37.0515 1712 asc3550 - ok
10:33:37.0546 1712 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
10:33:37.0562 1712 AsyncMac - ok
10:33:37.0578 1712 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
10:33:37.0578 1712 atapi - ok
10:33:37.0593 1712 Atdisk - ok
10:33:37.0671 1712 ati2mtag (a1ca2df0036bca846b687336aa6db3b9) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
10:33:37.0734 1712 ati2mtag - ok
10:33:37.0781 1712 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
10:33:37.0796 1712 Atmarpc - ok
10:33:37.0843 1712 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
10:33:37.0859 1712 audstub - ok
10:33:37.0921 1712 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
10:33:37.0921 1712 Beep - ok
10:33:37.0968 1712 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
10:33:37.0968 1712 cbidf2k - ok
10:33:38.0046 1712 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
10:33:38.0046 1712 CCDECODE - ok
10:33:38.0078 1712 cd20xrnt - ok
10:33:38.0125 1712 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
10:33:38.0140 1712 Cdaudio - ok
10:33:38.0156 1712 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
10:33:38.0156 1712 Cdfs - ok
10:33:38.0187 1712 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
10:33:38.0203 1712 Cdrom - ok
10:33:38.0218 1712 Changer - ok
10:33:38.0250 1712 CmdIde - ok
10:33:38.0265 1712 Cpqarray - ok
10:33:38.0296 1712 dac2w2k - ok
10:33:38.0312 1712 dac960nt - ok
10:33:38.0343 1712 db6a1e26 (8f2bb1827cac01aee6a16e30a1260199) C:\WINDOWS\639527643:613802457.exe
10:33:39.0375 1712 Suspicious file (Hidden): C:\WINDOWS\639527643:613802457.exe. md5: 8f2bb1827cac01aee6a16e30a1260199
10:33:39.0375 1712 db6a1e26 ( HiddenFile.Multi.Generic ) - warning
10:33:39.0375 1712 db6a1e26 - detected HiddenFile.Multi.Generic (1)
10:33:39.0578 1712 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
10:33:39.0578 1712 Disk - ok
10:33:39.0640 1712 dmboot (f5deadd42335fb33edca74ecb2f36cba) C:\WINDOWS\system32\drivers\dmboot.sys
10:33:39.0671 1712 dmboot - ok
10:33:39.0703 1712 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) C:\WINDOWS\system32\drivers\dmio.sys
10:33:39.0718 1712 dmio - ok
10:33:39.0750 1712 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
10:33:39.0750 1712 dmload - ok
10:33:39.0796 1712 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
10:33:39.0796 1712 DMusic - ok
10:33:39.0812 1712 dpti2o - ok
10:33:39.0843 1712 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
10:33:39.0843 1712 drmkaud - ok
10:33:39.0906 1712 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
10:33:39.0953 1712 Fastfat - ok
10:33:39.0984 1712 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
10:33:40.0000 1712 Fdc - ok
10:33:40.0046 1712 Fips (31f923eb2170fc172c81abda0045d18c) C:\WINDOWS\system32\drivers\Fips.sys
10:33:40.0046 1712 Fips - ok
10:33:40.0078 1712 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
10:33:40.0093 1712 Flpydisk - ok
10:33:40.0140 1712 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
10:33:40.0140 1712 FltMgr - ok
10:33:40.0187 1712 FsUsbExDisk (790a4ca68f44be35967b3df61f3e4675) C:\WINDOWS\system32\FsUsbExDisk.SYS
10:33:40.0218 1712 FsUsbExDisk - ok
10:33:40.0265 1712 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
10:33:40.0265 1712 Fs_Rec - ok
10:33:40.0281 1712 Ftdisk (a86859b77b908c18c2657f284aa29fe3) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
10:33:40.0296 1712 Ftdisk - ok
10:33:40.0343 1712 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
10:33:40.0359 1712 GEARAspiWDM - ok
10:33:40.0390 1712 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
10:33:40.0406 1712 Gpc - ok
10:33:40.0437 1712 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
10:33:40.0453 1712 HDAudBus - ok
10:33:40.0468 1712 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
10:33:40.0484 1712 HidUsb - ok
10:33:40.0500 1712 hpn - ok
10:33:40.0546 1712 HPZid412 (5faba4775d4c61e55ec669d643ffc71f) C:\WINDOWS\system32\DRIVERS\HPZid412.sys
10:33:40.0546 1712 HPZid412 - ok
10:33:40.0578 1712 HPZipr12 (a3c43980ee1f1beac778b44ea65dbdd4) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
10:33:40.0578 1712 HPZipr12 - ok
10:33:40.0609 1712 HPZius12 (2906949bd4e206f2bb0dd1896ce9f66f) C:\WINDOWS\system32\DRIVERS\HPZius12.sys
10:33:40.0625 1712 HPZius12 - ok
10:33:40.0656 1712 HSFHWBS2 (128ef741b2293c36810561092b566b1c) C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
10:33:40.0671 1712 HSFHWBS2 - ok
10:33:40.0718 1712 HSF_DP (9a0d0c461ef2b3d80cb7875b4b995e47) C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
10:33:40.0765 1712 HSF_DP - ok
10:33:40.0812 1712 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
10:33:40.0812 1712 HTTP - ok
10:33:40.0843 1712 hwdatacard (8adf5ef39e896a65beded878494ee2b6) C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys
10:33:40.0859 1712 hwdatacard - ok
10:33:40.0890 1712 hwusbfake (9be5caeabc6b2eb98b3a4839a55d47a0) C:\WINDOWS\system32\DRIVERS\ewusbfake.sys
10:33:40.0906 1712 hwusbfake - ok
10:33:40.0921 1712 i2omgmt - ok
10:33:40.0937 1712 i2omp - ok
10:33:40.0984 1712 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
10:33:40.0984 1712 i8042prt - ok
10:33:41.0046 1712 ialm (31cfdc6d8f9d396fe2f6c20150c764aa) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
10:33:41.0078 1712 ialm - ok
10:33:41.0125 1712 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
10:33:41.0140 1712 Imapi - ok
10:33:41.0156 1712 ini910u - ok
10:33:41.0312 1712 IntcAzAudAddService (d383cef6c0ef6dcac644e2b954f2c202) C:\WINDOWS\system32\drivers\RtkHDAud.sys
10:33:41.0406 1712 IntcAzAudAddService - ok
10:33:41.0421 1712 IntelIde (4b6da2f0a4095857a9e3f3697399d575) C:\WINDOWS\system32\DRIVERS\intelide.sys
10:33:41.0421 1712 IntelIde - ok
10:33:41.0468 1712 intelppm (ad340800c35a42d4de1641a37feea34c) C:\WINDOWS\system32\DRIVERS\intelppm.sys
10:33:41.0484 1712 intelppm - ok
10:33:41.0515 1712 ip6fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
10:33:41.0515 1712 ip6fw - ok
10:33:41.0562 1712 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:33:41.0562 1712 IpFilterDriver - ok
10:33:41.0593 1712 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
10:33:41.0593 1712 IpInIp - ok
10:33:41.0640 1712 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
10:33:41.0640 1712 IpNat - ok
10:33:41.0671 1712 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
10:33:41.0671 1712 IPSec - ok
10:33:41.0703 1712 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
10:33:41.0718 1712 IRENUM - ok
10:33:41.0765 1712 isapnp (355836975a67b6554bca60328cd6cb74) C:\WINDOWS\system32\DRIVERS\isapnp.sys
10:33:41.0765 1712 isapnp - ok
10:33:41.0828 1712 Iviaspi (f59c3569a2f2c464bb78cb1bdcdca55e) C:\WINDOWS\system32\drivers\iviaspi.sys
10:33:41.0843 1712 Iviaspi - ok
10:33:41.0859 1712 Kbdclass (16813155807c6881f4bfbf6657424659) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
10:33:41.0875 1712 Kbdclass - ok
10:33:41.0921 1712 kbdhid (94c59cb884ba010c063687c3a50dce8e) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
10:33:41.0937 1712 kbdhid - ok
10:33:41.0968 1712 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
10:33:41.0968 1712 kmixer - ok
10:33:42.0015 1712 KMWDFilter (72c55c745d804d62162144ebfd6390b8) C:\WINDOWS\System32\Drivers\KMWDFilter.SYS
10:33:42.0031 1712 KMWDFilter - ok
10:33:42.0093 1712 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
10:33:42.0093 1712 KSecDD - ok
10:33:42.0109 1712 lbrtfdc - ok
10:33:42.0171 1712 MagicTune (66497e522b5591c160e980f7bfa4b5c5) C:\WINDOWS\system32\drivers\MTiCtwl.sys
10:33:42.0171 1712 MagicTune - ok
10:33:42.0234 1712 mdmxsdk (195741aee20369980796b557358cd774) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
10:33:42.0234 1712 mdmxsdk - ok
10:33:42.0265 1712 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
10:33:42.0265 1712 mnmdd - ok
10:33:42.0328 1712 Modem (510ade9327fe84c10254e1902697e25f) C:\WINDOWS\system32\drivers\Modem.sys
10:33:42.0328 1712 Modem - ok
10:33:42.0375 1712 Mouclass (027c01bd7ef3349aaebc883d8a799efb) C:\WINDOWS\system32\DRIVERS\mouclass.sys
10:33:42.0390 1712 Mouclass - ok
10:33:42.0437 1712 moufiltr (74c0b4178f4f07ad8c8778f9ab83f3ef) C:\WINDOWS\system32\drivers\moufiltr.sys
10:33:42.0437 1712 moufiltr - ok
10:33:42.0500 1712 mouhid (124d6846040c79b9c997f78ef4b2a4e5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
10:33:42.0500 1712 mouhid - ok
10:33:42.0515 1712 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
10:33:42.0515 1712 MountMgr - ok
10:33:42.0531 1712 mraid35x - ok
10:33:42.0562 1712 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
10:33:42.0562 1712 MRxDAV - ok
10:33:42.0609 1712 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:33:42.0640 1712 MRxSmb - ok
10:33:42.0671 1712 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
10:33:42.0671 1712 Msfs - ok
10:33:42.0703 1712 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
10:33:42.0718 1712 MSKSSRV - ok
10:33:42.0734 1712 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
10:33:42.0750 1712 MSPCLOCK - ok
10:33:42.0750 1712 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
10:33:42.0765 1712 MSPQM - ok
10:33:42.0796 1712 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
10:33:42.0796 1712 mssmbios - ok
10:33:42.0843 1712 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
10:33:42.0843 1712 MSTEE - ok
10:33:42.0875 1712 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
10:33:42.0875 1712 Mup - ok
10:33:42.0921 1712 MUsbFltr (81dcbf820d3f0e0be790fad3c9db61a8) C:\WINDOWS\system32\drivers\MUsbFltr.sys
10:33:42.0921 1712 MUsbFltr - ok
10:33:42.0953 1712 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
10:33:42.0968 1712 NABTSFEC - ok
10:33:43.0156 1712 NAVENG (c34e2a884ccca8b5567d0c2752527073) C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20110502.002\naveng.sys
10:33:43.0171 1712 NAVENG - ok
10:33:43.0234 1712 NAVEX15 (b3916eeec738dd4178f4fd6a44a32e36) C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20110502.002\navex15.sys
10:33:43.0359 1712 NAVEX15 - ok
10:33:43.0546 1712 NCPro (66497e522b5591c160e980f7bfa4b5c5) C:\WINDOWS\system32\drivers\MTictwl.sys
10:33:43.0546 1712 NCPro - ok
10:33:43.0609 1712 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
10:33:43.0625 1712 NDIS - ok
10:33:43.0656 1712 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
10:33:43.0656 1712 NdisIP - ok
10:33:43.0703 1712 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:33:43.0703 1712 NdisTapi - ok
10:33:43.0718 1712 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
10:33:43.0718 1712 Ndisuio - ok
10:33:43.0734 1712 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:33:43.0750 1712 NdisWan - ok
10:33:43.0796 1712 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
10:33:43.0796 1712 NDProxy - ok
10:33:43.0812 1712 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
10:33:43.0812 1712 NetBIOS - ok
10:33:43.0843 1712 NetBT (4ed248a6f7c6da7d456a6946f94604ce) C:\WINDOWS\system32\DRIVERS\netbt.sys
10:33:43.0843 1712 NetBT ( Rootkit.Win32.ZAccess.e ) - infected
10:33:43.0843 1712 NetBT - detected Rootkit.Win32.ZAccess.e (0)
10:33:43.0890 1712 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
10:33:43.0906 1712 NIC1394 - ok
10:33:43.0921 1712 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
10:33:43.0921 1712 Npfs - ok
10:33:43.0984 1712 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
10:33:44.0000 1712 Ntfs - ok
10:33:44.0062 1712 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
10:33:44.0078 1712 Null - ok
10:33:44.0109 1712 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
10:33:44.0109 1712 NwlnkFlt - ok
10:33:44.0140 1712 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
10:33:44.0140 1712 NwlnkFwd - ok
10:33:44.0156 1712 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
10:33:44.0171 1712 ohci1394 - ok
10:33:44.0203 1712 P0250BUK (a216328408f9baa0b421cc967dde12f0) C:\WINDOWS\system32\Drivers\p0250Buk.sys
10:33:44.0203 1712 P0250BUK - ok
10:33:44.0265 1712 P0250VID (96e6479a024ee0b0a99b50bee815cb2f) C:\WINDOWS\system32\DRIVERS\p0250v2k.sys
10:33:44.0281 1712 P0250VID - ok
10:33:44.0312 1712 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) C:\WINDOWS\system32\DRIVERS\parport.sys
10:33:44.0328 1712 Parport - ok
10:33:44.0343 1712 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
10:33:44.0343 1712 PartMgr - ok
10:33:44.0406 1712 ParVdm (9575c5630db8fb804649a6959737154c) C:\WINDOWS\system32\drivers\ParVdm.sys
10:33:44.0406 1712 ParVdm - ok
10:33:44.0437 1712 PCAMPR5 (b670c5d89f0726b7a2a7dfb4e968cdf8) C:\WINDOWS\system32\PCAMPR5.SYS
10:33:44.0468 1712 PCAMPR5 - ok
10:33:44.0500 1712 PCANDIS5 (ecd2f9d67b06606064daf6961a6d5efe) C:\WINDOWS\system32\PCANDIS5.SYS
10:33:44.0515 1712 PCANDIS5 - ok
10:33:44.0562 1712 PCI (043410877bda580c528f45165f7125bc) C:\WINDOWS\system32\DRIVERS\pci.sys
10:33:44.0562 1712 PCI - ok
10:33:44.0578 1712 PCIDump - ok
10:33:44.0593 1712 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) C:\WINDOWS\system32\DRIVERS\pciide.sys
10:33:44.0593 1712 PCIIde - ok
10:33:44.0625 1712 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) C:\WINDOWS\system32\drivers\Pcmcia.sys
10:33:44.0640 1712 Pcmcia - ok
10:33:44.0656 1712 PDCOMP - ok
10:33:44.0656 1712 PDFRAME - ok
10:33:44.0671 1712 PDRELI - ok
10:33:44.0687 1712 PDRFRAME - ok
10:33:44.0718 1712 perc2 - ok
10:33:44.0734 1712 perc2hib - ok
10:33:44.0796 1712 Pfc (444f122e68db44c0589227781f3c8b3f) C:\WINDOWS\system32\drivers\pfc.sys
10:33:44.0812 1712 Pfc - ok
10:33:44.0859 1712 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
10:33:44.0875 1712 PptpMiniport - ok
10:33:44.0953 1712 Processor (e19c9632ac828f6f214391e2bdda11cb) C:\WINDOWS\system32\DRIVERS\processr.sys
10:33:44.0984 1712 Processor - ok
10:33:45.0031 1712 Ps2 (bffdb363485501a38f0bca83aec810db) C:\WINDOWS\system32\DRIVERS\PS2.sys
10:33:45.0046 1712 Ps2 - ok
10:33:45.0062 1712 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
10:33:45.0078 1712 PSched - ok
10:33:45.0093 1712 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
10:33:45.0109 1712 Ptilink - ok
10:33:45.0156 1712 PxHelp20 (b5dfb86a6caeae9b2bf3dedb43be6393) C:\WINDOWS\system32\Drivers\PxHelp20.sys
10:33:45.0156 1712 PxHelp20 - ok
10:33:45.0171 1712 ql1080 - ok
10:33:45.0187 1712 Ql10wnt - ok
10:33:45.0203 1712 ql12160 - ok
10:33:45.0218 1712 ql1240 - ok
10:33:45.0234 1712 ql1280 - ok
10:33:45.0265 1712 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:33:45.0265 1712 RasAcd - ok
10:33:45.0312 1712 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
10:33:45.0328 1712 Rasl2tp - ok
10:33:45.0359 1712 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
10:33:45.0375 1712 RasPppoe - ok
10:33:45.0390 1712 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
10:33:45.0406 1712 Raspti - ok
10:33:45.0421 1712 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:33:45.0437 1712 Rdbss - ok
10:33:45.0453 1712 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
10:33:45.0453 1712 RDPCDD - ok
10:33:45.0500 1712 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
10:33:45.0500 1712 RDPWD - ok
10:33:45.0531 1712 redbook (d8eb2a7904db6c916eb5361878ddcbae) C:\WINDOWS\system32\DRIVERS\redbook.sys
10:33:45.0546 1712 redbook - ok
10:33:45.0609 1712 rtl8139 (2ef9c0dc26b30b2318b1fc3faa1f0ae7) C:\WINDOWS\system32\DRIVERS\R8139n51.SYS
10:33:45.0609 1712 rtl8139 - ok
10:33:45.0765 1712 SAVRT (c8023be4dda22a52cd2f60d9cb9b3985) C:\Program Files\Symantec AntiVirus\savrt.sys
10:33:45.0781 1712 SAVRT - ok
10:33:45.0796 1712 SAVRTPEL (30547fd7692dc799a0b397b2b918a158) C:\Program Files\Symantec AntiVirus\Savrtpel.sys
10:33:45.0812 1712 SAVRTPEL - ok
10:33:45.0859 1712 SBKUPNT (729248b54aff21e740054acebfdbcb1c) C:\WINDOWS\system32\Drivers\SBKUPNT.SYS
10:33:45.0859 1712 SBKUPNT - ok
10:33:45.0953 1712 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
10:33:45.0968 1712 Secdrv - ok
10:33:46.0015 1712 Sentinel (8627c992b8a80504fc477b2e8ff8ec4f) C:\WINDOWS\System32\Drivers\SENTINEL.SYS
10:33:46.0015 1712 Sentinel - ok
10:33:46.0062 1712 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
10:33:46.0062 1712 serenum - ok
10:33:46.0109 1712 Serial (93d313c31f7ad9ea2b75f26075413c7c) C:\WINDOWS\system32\DRIVERS\serial.sys
10:33:46.0109 1712 Serial - ok
10:33:46.0156 1712 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\DRIVERS\sfloppy.sys
10:33:46.0156 1712 Sfloppy - ok
10:33:46.0187 1712 Simbad - ok
10:33:46.0218 1712 SIS163u (7c36050a7b2ce88d2e3749d3714a06d2) C:\WINDOWS\system32\DRIVERS\sis163u.sys
10:33:46.0250 1712 SIS163u - ok
10:33:46.0281 1712 SiS315 (94f6eea8a688a37f71bf9c9aeaa42666) C:\WINDOWS\system32\DRIVERS\sisgrp.sys
10:33:46.0328 1712 SiS315 - ok
10:33:46.0375 1712 SISAGP (61ca562def09a782d26b3e7edec5369a) C:\WINDOWS\system32\DRIVERS\SISAGPX.sys
10:33:46.0375 1712 SISAGP - ok
10:33:46.0390 1712 SiSkp (837d26f79a1647066d75c5c811887475) C:\WINDOWS\system32\DRIVERS\srvkp.sys
10:33:46.0390 1712 SiSkp - ok
10:33:46.0437 1712 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
10:33:46.0453 1712 SLIP - ok
10:33:46.0500 1712 SONYPVU1 (a1eceeaa5c5e74b2499eb51d38185b84) C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
10:33:46.0500 1712 SONYPVU1 - ok
10:33:46.0515 1712 Sparrow - ok
10:33:46.0562 1712 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
10:33:46.0562 1712 splitter - ok
10:33:46.0593 1712 sr (39626e6dc1fb39434ec40c42722b660a) C:\WINDOWS\system32\DRIVERS\sr.sys
10:33:46.0609 1712 sr - ok
10:33:46.0640 1712 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
10:33:46.0656 1712 Srv - ok
10:33:46.0671 1712 StarOpen (306521935042fc0a6988d528643619b3) C:\WINDOWS\system32\drivers\StarOpen.sys
10:33:46.0687 1712 StarOpen - ok
10:33:46.0703 1712 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
10:33:46.0718 1712 streamip - ok
10:33:46.0750 1712 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
10:33:46.0750 1712 swenum - ok
10:33:46.0781 1712 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
10:33:46.0781 1712 swmidi - ok
10:33:46.0796 1712 symc810 - ok
10:33:46.0812 1712 symc8xx - ok
10:33:46.0859 1712 SYMDNS (b0715be7e6acfbb1f8d2a9dbb6fa7c0a) C:\WINDOWS\System32\Drivers\SYMDNS.SYS
10:33:46.0859 1712 SYMDNS - ok
10:33:46.0984 1712 SymEvent (42123611a49c33536ab29bdd852a9f5e) C:\Program Files\Symantec\SYMEVENT.SYS
10:33:47.0015 1712 SymEvent - ok
10:33:47.0062 1712 SYMFW (1625f724cab061f95a843a4102d65757) C:\WINDOWS\System32\Drivers\SYMFW.SYS
10:33:47.0078 1712 SYMFW - ok
10:33:47.0093 1712 SYMIDS (d7e576e98a4ef5d8393370511205c2aa) C:\WINDOWS\System32\Drivers\SYMIDS.SYS
10:33:47.0093 1712 SYMIDS - ok
10:33:47.0250 1712 SYMIDSCO (2133d1f879b280121b0e6a7d34b24a02) C:\PROGRA~1\FICHIE~1\SYMANT~1\SymcData\idsdefs\20101230.002\symidsco.sys
10:33:47.0265 1712 SYMIDSCO - ok
10:33:47.0437 1712 SYMNDIS (b4c16ae203fa815cae4005b0e7ff8b68) C:\WINDOWS\System32\Drivers\SYMNDIS.SYS
10:33:47.0437 1712 SYMNDIS - ok
10:33:47.0468 1712 SYMREDRV (f26e71125da173d57caba3457c5e48cf) C:\WINDOWS\System32\Drivers\SYMREDRV.SYS
10:33:47.0468 1712 SYMREDRV - ok
10:33:47.0500 1712 SYMTDI (23b6adbaa7026c53b5ef102e56750b13) C:\WINDOWS\System32\Drivers\SYMTDI.SYS
10:33:47.0500 1712 SYMTDI - ok
10:33:47.0515 1712 sym_hi - ok
10:33:47.0531 1712 sym_u3 - ok
10:33:47.0578 1712 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
10:33:47.0578 1712 sysaudio - ok
10:33:47.0656 1712 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
10:33:47.0656 1712 Tcpip - ok
10:33:47.0718 1712 Tcpip6 (4e53bbcc4be37d7a4bd6ef1098c89ff7) C:\WINDOWS\system32\DRIVERS\tcpip6.sys
10:33:47.0718 1712 Tcpip6 - ok
10:33:47.0765 1712 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
10:33:47.0765 1712 TDPIPE - ok
10:33:47.0796 1712 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
10:33:47.0812 1712 TDTCP - ok
10:33:47.0843 1712 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
10:33:47.0859 1712 TermDD - ok
10:33:47.0875 1712 TosIde - ok
10:33:47.0937 1712 tunmp (8f861eda21c05857eb8197300a92501c) C:\WINDOWS\system32\DRIVERS\tunmp.sys
10:33:47.0953 1712 tunmp - ok
10:33:47.0984 1712 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
10:33:48.0015 1712 Udfs - ok
10:33:48.0031 1712 ultra - ok
10:33:48.0062 1712 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
10:33:48.0078 1712 Update - ok
10:33:48.0125 1712 USBAAPL (e8c1b9ebac65288e1b51e8a987d98af6) C:\WINDOWS\system32\Drivers\usbaapl.sys
10:33:48.0140 1712 USBAAPL - ok
10:33:48.0187 1712 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
10:33:48.0187 1712 usbccgp - ok
10:33:48.0218 1712 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
10:33:48.0234 1712 usbehci - ok
10:33:48.0296 1712 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
10:33:48.0312 1712 usbhub - ok
10:33:48.0359 1712 usbohci (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
10:33:48.0359 1712 usbohci - ok
10:33:48.0406 1712 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
10:33:48.0406 1712 usbprint - ok
10:33:48.0437 1712 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
10:33:48.0453 1712 usbscan - ok
10:33:48.0468 1712 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
10:33:48.0468 1712 USBSTOR - ok
10:33:48.0500 1712 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
10:33:48.0515 1712 usbuhci - ok
10:33:48.0546 1712 usb_rndisx (b6cc50279d6cd28e090a5d33244adc9a) C:\WINDOWS\system32\DRIVERS\usb8023x.sys
10:33:48.0546 1712 usb_rndisx - ok
10:33:48.0578 1712 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
10:33:48.0593 1712 VgaSave - ok
10:33:48.0640 1712 viaagp1 (4b039bbd037b01f5db5a144c837f283a) C:\WINDOWS\system32\DRIVERS\viaagp1.sys
10:33:48.0640 1712 viaagp1 - ok
10:33:48.0671 1712 viagfx (0cc705db634a3bc355887e3d478dd386) C:\WINDOWS\system32\DRIVERS\vtmini.sys
10:33:48.0687 1712 viagfx - ok
10:33:48.0703 1712 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
10:33:48.0703 1712 ViaIde - ok
10:33:48.0734 1712 VolSnap (46de1126684369bace4849e4fc8c43ca) C:\WINDOWS\system32\drivers\VolSnap.sys
10:33:48.0734 1712 VolSnap - ok
10:33:48.0765 1712 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:33:48.0765 1712 Wanarp - ok
10:33:48.0781 1712 WDICA - ok
10:33:48.0828 1712 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
10:33:48.0828 1712 wdmaud - ok
10:33:48.0875 1712 whfltr2k (97d0d27a87622154bc90b92d84fd91b5) C:\WINDOWS\system32\DRIVERS\whfltr2k.sys
10:33:48.0875 1712 whfltr2k - ok
10:33:48.0921 1712 winachsf (ce545a84bf3411e7516fa8da51ad9d93) C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
10:33:49.0000 1712 winachsf - ok
10:33:49.0078 1712 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
10:33:49.0093 1712 WpdUsb - ok
10:33:49.0125 1712 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
10:33:49.0140 1712 WSTCODEC - ok
10:33:49.0187 1712 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
10:33:49.0187 1712 WudfPf - ok
10:33:49.0218 1712 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
10:33:49.0234 1712 WudfRd - ok
10:33:49.0281 1712 MBR (0x1B8) (4f3a0ea76e7edbe2fc4a98f9de544751) \Device\Harddisk0\DR0
10:33:49.0296 1712 \Device\Harddisk0\DR0 - ok
10:33:49.0296 1712 Boot (0x1200) (875a6c9020a2baf5d1d16da1255717db) \Device\Harddisk0\DR0\Partition0
10:33:49.0296 1712 \Device\Harddisk0\DR0\Partition0 - ok
10:33:49.0312 1712 Boot (0x1200) (ff7c2d4507b12815dc7643dff6b0ffc0) \Device\Harddisk0\DR0\Partition1
10:33:49.0312 1712 \Device\Harddisk0\DR0\Partition1 - ok
10:33:49.0312 1712 ============================================================
10:33:49.0312 1712 Scan finished
10:33:49.0312 1712 ============================================================
10:33:49.0328 3692 Detected object count: 2
10:33:49.0328 3692 Actual detected object count: 2
10:36:09.0609 3692 db6a1e26 ( HiddenFile.Multi.Generic ) - skipped by user
10:36:09.0609 3692 db6a1e26 ( HiddenFile.Multi.Generic ) - User select action: Skip
10:36:09.0781 3692 VerifyFileNameVersionInfo: GetFileVersionInfoSizeW(C:\WINDOWS\system32\drivers\netbt.sys) error 1813
10:36:10.0640 3692 Backup copy found, using it..
10:36:10.0671 3692 C:\WINDOWS\system32\DRIVERS\netbt.sys - will be cured on reboot
10:36:10.0671 3692 NetBT ( Rootkit.Win32.ZAccess.e ) - User select action: Cure
10:36:15.0984 3968 Deinitialize success
0
Utilisateur anonyme
17 oct. 2011 à 16:57
depuis ce lien : http://anywhere.webrootcloudav.com/antizeroaccess.exe
Le télécharger et le lancer.
Répondre Yes (oui) à la question, en tapant sur Y puis Entrée
Le fix vous informe qu'un des fichiers systèmes a été patché et vous propose de le nettoyer.
Tapez Y (oui) et Entrée pour lancer le nettoyage.
Si l'opération a réussi, vous devez avoir le message Cleaned en vert.
Appuyez sur une touche et redémarrer l'ordinateur.
0
artnow82 Messages postés 2 Date d'inscription mercredi 19 octobre 2011 Statut Membre Dernière intervention 19 octobre 2011
19 oct. 2011 à 19:51
Problème résolu, malgrè quelques soucis pour utiliser ie et mozilla (mais sa doit etre symantec qui déconne) le virus lui a bel et bien disparu

Encore un grand merci a toi, si tu passe dans le 31, viens boire un verre ;)
0
Utilisateur anonyme
19 oct. 2011 à 19:57
tu peux poster le rapport correspondant qui se trouve sur ton bureau ?
0
artnow82 Messages postés 2 Date d'inscription mercredi 19 octobre 2011 Statut Membre Dernière intervention 19 octobre 2011
19 oct. 2011 à 20:00
Je ne suis plu chez lui mais jvé essayé, il doit refaire une analyse tdds?
0
Utilisateur anonyme
19 oct. 2011 à 20:07
non poster le contenu du rapport de cet outil que je t'ai fait passer :

https://forums.commentcamarche.net/forum/affich-23412609-rapport-virus-gomeo#10
0
artnow31 Messages postés 7 Date d'inscription dimanche 16 octobre 2011 Statut Membre Dernière intervention 20 octobre 2011
20 oct. 2011 à 08:51
Check file "ati1tuxx.sys"... Clean!
Check file "ati1xbxx.sys"... Clean!
Check file "ati1xsxx.sys"... Clean!
Check file "ati2mtaa.sys"... Clean!
Check file "ati2mtag.sys"... Clean!
Check file "atinbtxx.sys"... Clean!
Check file "atinmdxx.sys"... Clean!
Check file "atinpdxx.sys"... Clean!
Check file "atinraxx.sys"... Clean!
Check file "atinrvxx.sys"... Clean!
Check file "atinsnxx.sys"... Clean!
Check file "atinttxx.sys"... Clean!
Check file "atintuxx.sys"... Clean!
Check file "atinxbxx.sys"... Clean!
Check file "atinxsxx.sys"... Clean!
Check file "atmarpc.sys"... Clean!
Check file "atmepvc.sys"... Clean!
Check file "atmlane.sys"... Clean!
Check file "atmuni.sys"... Clean!
Check file "audstub.sys"... Clean!
Check file "avgntdd.sys"... Clean!
Check file "avgntflt.sys"... Clean!
Check file "avgntmgr.sys"... Clean!
Check file "avipbb.sys"... Clean!
Check file "bdasup.sys"... Clean!
Check file "beep.sys"... Clean!
Check file "bridge.sys"... Clean!
Check file "bthenum.sys"... Clean!
Check file "bthmodem.sys"... Clean!
Check file "bthpan.sys"... Clean!
Check file "bthport.sys"... Clean!
Check file "bthprint.sys"... Clean!
Check file "bthusb.sys"... Clean!
Check file "cbidf2k.sys"... Clean!
Check file "ccdecode.sys"... Clean!
Check file "cdaudio.sys"... Clean!
Check file "cdfs.sys"... Clean!
Check file "cdrom.sys"... Clean!
Check file "cinemst2.sys"... Clean!
Check file "classpnp.sys"... Clean!
Check file "cpqdap01.sys"... Clean!
Check file "crusoe.sys"... Clean!
Check file "disk.sys"... Clean!
Check file "diskdump.sys"... Clean!
Check file "dmboot.sys"... Clean!
Check file "dmio.sys"... Clean!
Check file "dmload.sys"... Clean!
Check file "dmusic.sys"... Clean!
Check file "drmk.sys"... Clean!
Check file "drmkaud.sys"... Clean!
Check file "dxapi.sys"... Clean!
Check file "dxg.sys"... Clean!
Check file "dxgthk.sys"... Clean!
Check file "enum1394.sys"... Clean!
Check file "ewusbfake.sys"... Clean!
Check file "ewusbmdm.sys"... Clean!
Check file "fastfat.sys"... Clean!
Check file "fdc.sys"... Clean!
Check file "fips.sys"... Clean!
Check file "flpydisk.sys"... Clean!
Check file "fltmgr.sys"... Clean!
Check file "fsvga.sys"... Clean!
Check file "fs_rec.sys"... Clean!
Check file "ftdisk.sys"... Clean!
Check file "gagp30kx.sys"... Clean!
Check file "GEARAspiWDM.sys"... Clean!
Check file "geneuide.sys"... Clean!
Check file "hdaudbus.sys"... Clean!
Check file "Hdaudio.sys"... Clean!
Check file "hidbth.sys"... Clean!
Check file "hidclass.sys"... Clean!
Check file "hidir.sys"... Clean!
Check file "hidparse.sys"... Clean!
Check file "hidusb.sys"... Clean!
Check file "HPZid412.sys"... Clean!
Check file "HPZipr12.sys"... Clean!
Check file "HPZius12.sys"... Clean!
Check file "hsfbs2s2.sys"... Clean!
Check file "hsfcxts2.sys"... Clean!
Check file "hsfdpsp2.sys"... Clean!
Check file "HSFHWBS2.sys"... Clean!
Check file "HSF_CNXT.sys"... Clean!
Check file "HSF_DP.sys"... Clean!
Check file "http.sys"... Clean!
Check file "i8042prt.sys"... Clean!
Check file "ialmnt5.sys"... Clean!
Check file "imapi.sys"... Clean!
Check file "intelide.sys"... Clean!
Check file "intelppm.sys"... Clean!
Check file "ip6fw.sys"... Clean!
Check file "ipfltdrv.sys"... Clean!
Check file "ipinip.sys"... Clean!
Check file "ipnat.sys"... Clean!
Check file "ipsec.sys"... Clean!
Check file "irenum.sys"... Clean!
Check file "isapnp.sys"... Clean!
Check file "iviaspi.sys"... Clean!
Check file "kbdclass.sys"... Clean!
Check file "kbdhid.sys"... Clean!
Check file "kmixer.sys"... Clean!
Check file "KMWDFilter.SYS"... Clean!
Check file "ks.sys"... Clean!
Check file "ksecdd.sys"... Clean!
Check file "mbam.sys"... Clean!
Check file "mbamswissarmy.sys"... Clean!
Check file "mcd.sys"... Clean!
Check file "mdmxsdk.sys"... Clean!
Check file "mf.sys"... Clean!
Check file "mnmdd.sys"... Clean!
Check file "modem.sys"... Clean!
Check file "mouclass.sys"... Clean!
Check file "moufiltr.sys"... Clean!
Check file "mouhid.sys"... Clean!
Check file "mountmgr.sys"... Clean!
Check file "mpe.sys"... Clean!
Check file "mrxdav.sys"... Clean!
Check file "mrxsmb.sys"... Clean!
Check file "msdv.sys"... Clean!
Check file "msfs.sys"... Clean!
Check file "msgpc.sys"... Clean!
Check file "mskssrv.sys"... Clean!
Check file "mspclock.sys"... Clean!
Check file "mspqm.sys"... Clean!
Check file "mssmbios.sys"... Clean!
Check file "mstee.sys"... Clean!
Check file "MTiCtwl.sys"... Clean!
Check file "mtlmnt5.sys"... Clean!
Check file "mtlstrm.sys"... Clean!
Check file "mtxparhm.sys"... Clean!
Check file "mup.sys"... Clean!
Check file "MUsbFltr.sys"... Clean!
Check file "mutohpen.sys"... Clean!
Check file "nabtsfec.sys"... Clean!
Check file "ndis.sys"... Clean!
Check file "ndisip.sys"... Clean!
Check file "ndistapi.sys"... Clean!
Check file "ndisuio.sys"... Clean!
Check file "ndiswan.sys"... Clean!
Check file "ndproxy.sys"... Clean!
Check file "netbios.sys"... Clean!
Check file "netbt.sys"... Clean!
Check file "nic1394.sys"... Clean!
Check file "nikedrv.sys"... Clean!
Check file "nmnt.sys"... Clean!
Check file "npfs.sys"... Clean!
Check file "ntfs.sys"... Clean!
Check file "ntmtlfax.sys"... Clean!
Check file "null.sys"... Clean!
Check file "nv4_mini.sys"... Clean!
Check file "nwlnkflt.sys"... Clean!
Check file "nwlnkfwd.sys"... Clean!
Check file "nwlnkipx.sys"... Clean!
Check file "nwlnknb.sys"... Clean!
Check file "nwlnkspx.sys"... Clean!
Check file "ohci1394.sys"... Clean!
Check file "oprghdlr.sys"... Clean!
Check file "p0250buk.sys"... Clean!
Check file "p0250v2k.sys"... Clean!
Check file "p3.sys"... Clean!
Check file "parport.sys"... Clean!
Check file "partmgr.sys"... Clean!
Check file "parvdm.sys"... Clean!
Check file "pci.sys"... Clean!
Check file "pciide.sys"... Clean!
Check file "pciidex.sys"... Clean!
Check file "pcmcia.sys"... Clean!
Check file "pfc.sys"... Clean!
Check file "portcls.sys"... Clean!
Check file "processr.sys"... Clean!
Check file "PS2.sys"... Clean!
Check file "psched.sys"... Clean!
Check file "ptilink.sys"... Clean!
Check file "pxhelp20.sys"... Clean!
Check file "R8139n51.sys"... Clean!
Check file "rasacd.sys"... Clean!
Check file "rasl2tp.sys"... Clean!
Check file "raspppoe.sys"... Clean!
Check file "raspptp.sys"... Clean!
Check file "raspti.sys"... Clean!
Check file "rawwan.sys"... Clean!
Check file "rdbss.sys"... Clean!
Check file "rdpcdd.sys"... Clean!
Check file "rdpdr.sys"... Clean!
Check file "rdpwd.sys"... Clean!
Check file "recagent.sys"... Clean!
Check file "redbook.sys"... Clean!
Check file "rfcomm.sys"... Clean!
Check file "rio8drv.sys"... Clean!
Check file "riodrv.sys"... Clean!
Check file "rmcast.sys"... Clean!
Check file "rndismp.sys"... Clean!
Check file "rndismpx.sys"... Clean!
Check file "rootmdm.sys"... Clean!
Check file "RtkHDAud.sys"... Clean!
Check file "rtl8139.sys"... Clean!
Check file "s3gnbm.sys"... Clean!
Check file "SBKUPNT.SYS"... Clean!
Check file "scsiport.sys"... Clean!
Check file "sdbus.sys"... Clean!
Check file "secdrv.sys"... Clean!
Check file "sentinel.sys"... Clean!
Check file "serenum.sys"... Clean!
Check file "serial.sys"... Clean!
Check file "sffdisk.sys"... Clean!
Check file "sffp_mmc.sys"... Clean!
Check file "sffp_sd.sys"... Clean!
Check file "sfloppy.sys"... Clean!
Check file "sis163u.sys"... Clean!
Check file "sisagp.sys"... Clean!
Check file "SISAGPX.SYS"... Clean!
Check file "sisgrp.sys"... Clean!
Check file "sisnpf.sys"... Clean!
Check file "slip.sys"... Clean!
Check file "slnt7554.sys"... Clean!
Check file "slntamr.sys"... Clean!
Check file "slnthal.sys"... Clean!
Check file "slwdmsup.sys"... Clean!
Check file "smbali.sys"... Clean!
Check file "smclib.sys"... Clean!
Check file "sonydcam.sys"... Clean!
Check file "SONYPVU1.SYS"... Clean!
Check file "splitter.sys"... Clean!
Check file "sr.sys"... Clean!
Check file "srv.sys"... Clean!
Check file "srvkp.sys"... Clean!
Check file "ssmdrv.sys"... Clean!
Check file "StarOpen.sys"... Clean!
Check file "stream.sys"... Clean!
Check file "streamip.sys"... Clean!
Check file "swenum.sys"... Clean!
Check file "swmidi.sys"... Clean!
Check file "symdns.sys"... Clean!
Check file "SYMEVENT.SYS"... Clean!
Check file "symfw.sys"... Clean!
Check file "symids.sys"... Clean!
Check file "SymIDSCo.sys"... Clean!
Check file "symndis.sys"... Clean!
Check file "symredrv.sys"... Clean!
Check file "symtdi.sys"... Clean!
Check file "sysaudio.sys"... Clean!
Check file "tape.sys"... Clean!
Check file "tcpip.sys"... Clean!
Check file "tcpip6.sys"... Clean!
Check file "tdi.sys"... Clean!
Check file "tdpipe.sys"... Clean!
Check file "tdtcp.sys"... Clean!
Check file "termdd.sys"... Clean!
Check file "tosdvd.sys"... Clean!
Check file "tsbvcap.sys"... Clean!
Check file "tunmp.sys"... Clean!
Check file "uagp35.sys"... Clean!
Check file "udfs.sys"... Clean!
Check file "update.sys"... Clean!
Check file "usb8023.sys"... Clean!
Check file "usb8023x.sys"... Clean!
Check file "usbaapl.sys"... Clean!
Check file "usbcamd.sys"... Clean!
Check file "usbcamd2.sys"... Clean!
Check file "usbccgp.sys"... Clean!
Check file "usbd.sys"... Clean!
Check file "usbehci.sys"... Clean!
Check file "usbhub.sys"... Clean!
Check file "usbintel.sys"... Clean!
Check file "usbohci.sys"... Clean!
Check file "usbport.sys"... Clean!
Check file "usbprint.sys"... Clean!
Check file "usbscan.sys"... Clean!
Check file "usbstor.sys"... Clean!
Check file "usbuhci.sys"... Clean!
Check file "usbvideo.sys"... Clean!
Check file "vdmindvd.sys"... Clean!
Check file "vga.sys"... Clean!
Check file "viaagp.sys"... Clean!
Check file "VIAAGP1.SYS"... Clean!
Check file "viaide.sys"... Clean!
Check file "videoprt.sys"... Clean!
Check file "volsnap.sys"... Clean!
Check file "vtmini.sys"... Clean!
Check file "wacompen.sys"... Clean!
Check file "wadv07nt.sys"... Clean!
Check file "wadv08nt.sys"... Clean!
Check file "wadv09nt.sys"... Clean!
Check file "wadv11nt.sys"... Clean!
Check file "wanarp.sys"... Clean!
Check file "watv06nt.sys"... Clean!
Check file "watv10nt.sys"... Clean!
Check file "wdmaud.sys"... Clean!
Check file "whfltr2k.sys"... Clean!
Check file "wmilib.sys"... Clean!
Check file "wpdusb.sys"... Clean!
Check file "ws2ifsl.sys"... Clean!
Check file "wstcodec.sys"... Clean!
Check file "WudfPf.sys"... Clean!
Check file "WudfRd.sys"... Clean!

Your system is not infected by ZeroAccess/Max++ Rootkit!

Execution ended.
Press any key to exit... Check file "ati1tuxx.sys"... Clean!
Check file "ati1xbxx.sys"... Clean!
Check file "ati1xsxx.sys"... Clean!
Check file "ati2mtaa.sys"... Clean!
Check file "ati2mtag.sys"... Clean!
Check file "atinbtxx.sys"... Clean!
Check file "atinmdxx.sys"... Clean!
Check file "atinpdxx.sys"... Clean!
Check file "atinraxx.sys"... Clean!
Check file "atinrvxx.sys"... Clean!
Check file "atinsnxx.sys"... Clean!
Check file "atinttxx.sys"... Clean!
Check file "atintuxx.sys"... Clean!
Check file "atinxbxx.sys"... Clean!
Check file "atinxsxx.sys"... Clean!
Check file "atmarpc.sys"... Clean!
Check file "atmepvc.sys"... Clean!
Check file "atmlane.sys"... Clean!
Check file "atmuni.sys"... Clean!
Check file "audstub.sys"... Clean!
Check file "avgntdd.sys"... Clean!
Check file "avgntflt.sys"... Clean!
Check file "avgntmgr.sys"... Clean!
Check file "avipbb.sys"... Clean!
Check file "bdasup.sys"... Clean!
Check file "beep.sys"... Clean!
Check file "bridge.sys"... Clean!
Check file "bthenum.sys"... Clean!
Check file "bthmodem.sys"... Clean!
Check file "bthpan.sys"... Clean!
Check file "bthport.sys"... Clean!
Check file "bthprint.sys"... Clean!
Check file "bthusb.sys"... Clean!
Check file "cbidf2k.sys"... Clean!
Check file "ccdecode.sys"... Clean!
Check file "cdaudio.sys"... Clean!
Check file "cdfs.sys"... Clean!
Check file "cdrom.sys"... Clean!
Check file "cinemst2.sys"... Clean!
Check file "classpnp.sys"... Clean!
Check file "cpqdap01.sys"... Clean!
Check file "crusoe.sys"... Clean!
Check file "disk.sys"... Clean!
Check file "diskdump.sys"... Clean!
Check file "dmboot.sys"... Clean!
Check file "dmio.sys"... Clean!
Check file "dmload.sys"... Clean!
Check file "dmusic.sys"... Clean!
Check file "drmk.sys"... Clean!
Check file "drmkaud.sys"... Clean!
Check file "dxapi.sys"... Clean!
Check file "dxg.sys"... Clean!
Check file "dxgthk.sys"... Clean!
Check file "enum1394.sys"... Clean!
Check file "ewusbfake.sys"... Clean!
Check file "ewusbmdm.sys"... Clean!
Check file "fastfat.sys"... Clean!
Check file "fdc.sys"... Clean!
Check file "fips.sys"... Clean!
Check file "flpydisk.sys"... Clean!
Check file "fltmgr.sys"... Clean!
Check file "fsvga.sys"... Clean!
Check file "fs_rec.sys"... Clean!
Check file "ftdisk.sys"... Clean!
Check file "gagp30kx.sys"... Clean!
Check file "GEARAspiWDM.sys"... Clean!
Check file "geneuide.sys"... Clean!
Check file "hdaudbus.sys"... Clean!
Check file "Hdaudio.sys"... Clean!
Check file "hidbth.sys"... Clean!
Check file "hidclass.sys"... Clean!
Check file "hidir.sys"... Clean!
Check file "hidparse.sys"... Clean!
Check file "hidusb.sys"... Clean!
Check file "HPZid412.sys"... Clean!
Check file "HPZipr12.sys"... Clean!
Check file "HPZius12.sys"... Clean!
Check file "hsfbs2s2.sys"... Clean!
Check file "hsfcxts2.sys"... Clean!
Check file "hsfdpsp2.sys"... Clean!
Check file "HSFHWBS2.sys"... Clean!
Check file "HSF_CNXT.sys"... Clean!
Check file "HSF_DP.sys"... Clean!
Check file "http.sys"... Clean!
Check file "i8042prt.sys"... Clean!
Check file "ialmnt5.sys"... Clean!
Check file "imapi.sys"... Clean!
Check file "intelide.sys"... Clean!
Check file "intelppm.sys"... Clean!
Check file "ip6fw.sys"... Clean!
Check file "ipfltdrv.sys"... Clean!
Check file "ipinip.sys"... Clean!
Check file "ipnat.sys"... Clean!
Check file "ipsec.sys"... Clean!
Check file "irenum.sys"... Clean!
Check file "isapnp.sys"... Clean!
Check file "iviaspi.sys"... Clean!
Check file "kbdclass.sys"... Clean!
Check file "kbdhid.sys"... Clean!
Check file "kmixer.sys"... Clean!
Check file "KMWDFilter.SYS"... Clean!
Check file "ks.sys"... Clean!
Check file "ksecdd.sys"... Clean!
Check file "mbam.sys"... Clean!
Check file "mbamswissarmy.sys"... Clean!
Check file "mcd.sys"... Clean!
Check file "mdmxsdk.sys"... Clean!
Check file "mf.sys"... Clean!
Check file "mnmdd.sys"... Clean!
Check file "modem.sys"... Clean!
Check file "mouclass.sys"... Clean!
Check file "moufiltr.sys"... Clean!
Check file "mouhid.sys"... Clean!
Check file "mountmgr.sys"... Clean!
Check file "mpe.sys"... Clean!
Check file "mrxdav.sys"... Clean!
Check file "mrxsmb.sys"... Clean!
Check file "msdv.sys"... Clean!
Check file "msfs.sys"... Clean!
Check file "msgpc.sys"... Clean!
Check file "mskssrv.sys"... Clean!
Check file "mspclock.sys"... Clean!
Check file "mspqm.sys"... Clean!
Check file "mssmbios.sys"... Clean!
Check file "mstee.sys"... Clean!
Check file "MTiCtwl.sys"... Clean!
Check file "mtlmnt5.sys"... Clean!
Check file "mtlstrm.sys"... Clean!
Check file "mtxparhm.sys"... Clean!
Check file "mup.sys"... Clean!
Check file "MUsbFltr.sys"... Clean!
Check file "mutohpen.sys"... Clean!
Check file "nabtsfec.sys"... Clean!
Check file "ndis.sys"... Clean!
Check file "ndisip.sys"... Clean!
Check file "ndistapi.sys"... Clean!
Check file "ndisuio.sys"... Clean!
Check file "ndiswan.sys"... Clean!
Check file "ndproxy.sys"... Clean!
Check file "netbios.sys"... Clean!
Check file "netbt.sys"... Clean!
Check file "nic1394.sys"... Clean!
Check file "nikedrv.sys"... Clean!
Check file "nmnt.sys"... Clean!
Check file "npfs.sys"... Clean!
Check file "ntfs.sys"... Clean!
Check file "ntmtlfax.sys"... Clean!
Check file "null.sys"... Clean!
Check file "nv4_mini.sys"... Clean!
Check file "nwlnkflt.sys"... Clean!
Check file "nwlnkfwd.sys"... Clean!
Check file "nwlnkipx.sys"... Clean!
Check file "nwlnknb.sys"... Clean!
Check file "nwlnkspx.sys"... Clean!
Check file "ohci1394.sys"... Clean!
Check file "oprghdlr.sys"... Clean!
Check file "p0250buk.sys"... Clean!
Check file "p0250v2k.sys"... Clean!
Check file "p3.sys"... Clean!
Check file "parport.sys"... Clean!
Check file "partmgr.sys"... Clean!
Check file "parvdm.sys"... Clean!
Check file "pci.sys"... Clean!
Check file "pciide.sys"... Clean!
Check file "pciidex.sys"... Clean!
Check file "pcmcia.sys"... Clean!
Check file "pfc.sys"... Clean!
Check file "portcls.sys"... Clean!
Check file "processr.sys"... Clean!
Check file "PS2.sys"... Clean!
Check file "psched.sys"... Clean!
Check file "ptilink.sys"... Clean!
Check file "pxhelp20.sys"... Clean!
Check file "R8139n51.sys"... Clean!
Check file "rasacd.sys"... Clean!
Check file "rasl2tp.sys"... Clean!
Check file "raspppoe.sys"... Clean!
Check file "raspptp.sys"... Clean!
Check file "raspti.sys"... Clean!
Check file "rawwan.sys"... Clean!
Check file "rdbss.sys"... Clean!
Check file "rdpcdd.sys"... Clean!
Check file "rdpdr.sys"... Clean!
Check file "rdpwd.sys"... Clean!
Check file "recagent.sys"... Clean!
Check file "redbook.sys"... Clean!
Check file "rfcomm.sys"... Clean!
Check file "rio8drv.sys"... Clean!
Check file "riodrv.sys"... Clean!
Check file "rmcast.sys"... Clean!
Check file "rndismp.sys"... Clean!
Check file "rndismpx.sys"... Clean!
Check file "rootmdm.sys"... Clean!
Check file "RtkHDAud.sys"... Clean!
Check file "rtl8139.sys"... Clean!
Check file "s3gnbm.sys"... Clean!
Check file "SBKUPNT.SYS"... Clean!
Check file "scsiport.sys"... Clean!
Check file "sdbus.sys"... Clean!
Check file "secdrv.sys"... Clean!
Check file "sentinel.sys"... Clean!
Check file "serenum.sys"... Clean!
Check file "serial.sys"... Clean!
Check file "sffdisk.sys"... Clean!
Check file "sffp_mmc.sys"... Clean!
Check file "sffp_sd.sys"... Clean!
Check file "sfloppy.sys"... Clean!
Check file "sis163u.sys"... Clean!
Check file "sisagp.sys"... Clean!
Check file "SISAGPX.SYS"... Clean!
Check file "sisgrp.sys"... Clean!
Check file "sisnpf.sys"... Clean!
Check file "slip.sys"... Clean!
Check file "slnt7554.sys"... Clean!
Check file "slntamr.sys"... Clean!
Check file "slnthal.sys"... Clean!
Check file "slwdmsup.sys"... Clean!
Check file "smbali.sys"... Clean!
Check file "smclib.sys"... Clean!
Check file "sonydcam.sys"... Clean!
Check file "SONYPVU1.SYS"... Clean!
Check file "splitter.sys"... Clean!
Check file "sr.sys"... Clean!
Check file "srv.sys"... Clean!
Check file "srvkp.sys"... Clean!
Check file "ssmdrv.sys"... Clean!
Check file "StarOpen.sys"... Clean!
Check file "stream.sys"... Clean!
Check file "streamip.sys"... Clean!
Check file "swenum.sys"... Clean!
Check file "swmidi.sys"... Clean!
Check file "symdns.sys"... Clean!
Check file "SYMEVENT.SYS"... Clean!
Check file "symfw.sys"... Clean!
Check file "symids.sys"... Clean!
Check file "SymIDSCo.sys"... Clean!
Check file "symndis.sys"... Clean!
Check file "symredrv.sys"... Clean!
Check file "symtdi.sys"... Clean!
Check file "sysaudio.sys"... Clean!
Check file "tape.sys"... Clean!
Check file "tcpip.sys"... Clean!
Check file "tcpip6.sys"... Clean!
Check file "tdi.sys"... Clean!
Check file "tdpipe.sys"... Clean!
Check file "tdtcp.sys"... Clean!
Check file "termdd.sys"... Clean!
Check file "tosdvd.sys"... Clean!
Check file "tsbvcap.sys"... Clean!
Check file "tunmp.sys"... Clean!
Check file "uagp35.sys"... Clean!
Check file "udfs.sys"... Clean!
Check file "update.sys"... Clean!
Check file "usb8023.sys"... Clean!
Check file "usb8023x.sys"... Clean!
Check file "usbaapl.sys"... Clean!
Check file "usbcamd.sys"... Clean!
Check file "usbcamd2.sys"... Clean!
Check file "usbccgp.sys"... Clean!
Check file "usbd.sys"... Clean!
Check file "usbehci.sys"... Clean!
Check file "usbhub.sys"... Clean!
Check file "usbintel.sys"... Clean!
Check file "usbohci.sys"... Clean!
Check file "usbport.sys"... Clean!
Check file "usbprint.sys"... Clean!
Check file "usbscan.sys"... Clean!
Check file "usbstor.sys"... Clean!
Check file "usbuhci.sys"... Clean!
Check file "usbvideo.sys"... Clean!
Check file "vdmindvd.sys"... Clean!
Check file "vga.sys"... Clean!
Check file "viaagp.sys"... Clean!
Check file "VIAAGP1.SYS"... Clean!
Check file "viaide.sys"... Clean!
Check file "videoprt.sys"... Clean!
Check file "volsnap.sys"... Clean!
Check file "vtmini.sys"... Clean!
Check file "wacompen.sys"... Clean!
Check file "wadv07nt.sys"... Clean!
Check file "wadv08nt.sys"... Clean!
Check file "wadv09nt.sys"... Clean!
Check file "wadv11nt.sys"... Clean!
Check file "wanarp.sys"... Clean!
Check file "watv06nt.sys"... Clean!
Check file "watv10nt.sys"... Clean!
Check file "wdmaud.sys"... Clean!
Check file "whfltr2k.sys"... Clean!
Check file "wmilib.sys"... Clean!
Check file "wpdusb.sys"... Clean!
Check file "ws2ifsl.sys"... Clean!
Check file "wstcodec.sys"... Clean!
Check file "WudfPf.sys"... Clean!
Check file "WudfRd.sys"... Clean!

Your system is not infected by ZeroAccess/Max++ Rootkit!

Execution ended.
Press any key to exit...
0
Utilisateur anonyme
20 oct. 2011 à 09:01
re

ok

desactive ton antivirus
desactive Windows defender si présent
desactive ton pare-feu

Ferme toutes tes appilications en cours

telecharge et enregistre ceci sur ton bureau :

Pre_Scan

si le lien ne fonctionne pas :

http://www.archive-host.com

s'il n'est pas sur ton bureau coupe-le de ton dossier telechargements et colle-le sur ton bureau

Avertissement: Il y aura une extinction du bureau pendant le scan --> pas de panique.

une fois telechargé lance-le , laisse faire le scan jusqu'à l'apparition de "Pre_scan.txt" sur le bureau.

si 'outil est bloqué par l'infection utilise cette version : Version .pif

si l'outil detecte un proxy et que tu n'en as pas installé clique sur "supprimer le proxy"

si l'outil semble ne pas avoir fonctionné renomme-le winlogon , ou change son extension en .com ou .scr

Il se peut qu'une multitude de fenêtres noires clignotent , laisse-le travailler

Poste Pre_Scan_la_date_et_l'heure.txt qui apparaitra sur le bureau en fin de scan

▶▶▶ NE LE POSTE PAS SUR LE FORUM (il est trop long)

clique sur ce lien : http://www.cijoint.fr/

▶ Clique sur Parcourir et cherche le fichier ci-dessus.

▶ Clique sur Ouvrir.

▶ Clique sur "Cliquez ici pour déposer le fichier".

Un lien de cette forme :

http://www.cijoint.fr/cjlink.php?file=cjge368/cijSKAP5fU.txt

est ajouté dans la page.

▶ Copie ce lien dans ta réponse.

si ton bureau ne reapparait pas => ctrl+alt+supp , gestionnaire des taches => onglet fichier => nouvelle tache puis tape explorer
0