Striking search system

Fermé
Jake00 - 8 nov. 2011 à 23:25
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 - 9 nov. 2011 à 18:38
Bonjour,

Je n'arrive pas à enlever ce virus est ce que quelqu'un peut m'aider svp.

Merci.

A voir également:

13 réponses

juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 796
9 nov. 2011 à 00:12
bonjour

▶ Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
(Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu''administrateur)

▶ Lance OTL
▶ Sous Personnalisation, copie-colle ce qu''il y a dans le cadre ci-dessous :
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%temp%\*.exe /s
%SYSTEMDRIVE%\*.exe
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
/md5start
explorer.exe
winlogon.exe
wininit.exe
/md5stop
CREATERESTOREPOINT
nslookup www.google.fr /c 

▶ Clique sur le bouton Analyse.
▶ Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer les rapports.
Donnes le liens pjjoint ici ensuite pour pouvoir être consultés.
0
ok merci juju, je suis en train de le faire.
0
voici le lien:

http://pjjoint.malekal.com/files.php?id=OTL_l5c10o5k11g8b6l5m10j12b5m14q7f13j107t14l10s13f15j9
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 796
9 nov. 2011 à 00:32
manque extras.txt
0
ok merci mais comment dois je faire stp car j'ai jeter un oeil à ton lien mais ou est ce que je dois regarder?
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 796
9 nov. 2011 à 00:38
bah pour l'instant envoie extras.txt sur pjjoint
0
le voici.

http://pjjoint.malekal.com/files.php?id=OTL_Extras_g15h11d13p7n15j5j14u13e5z14t9o9j5k14e12c11f13k10d8i8
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 796
9 nov. 2011 à 00:52
mouais bof ...

▶ Télécharge Reload_TDSSKiller

▶ Lance le

choisis : lancer le nettoyage

l'outil va automatiquement télécharger la derniere version puis

TDSSKiller va s'ouvrir , clique sur "Start Scan" Clique ici pour l'aide en image

Si TDSS.tdl2 est détecté: l'option delete sera cochée par défaut.
Si TDSS.tdl3 est détecté: assure toi que Cure est bien cochée.
Si TDSS.tdl4(\HardDisk0\MBR) est détecté: assure toi que Cure est bien cochée.
Si Rootkit.Win32.ZAccess.* est détecté : règle sur "cure" en haut , et "delete" en bas
Si Suspicious file est indiqué, laisse l''option cochée sur Skip
une fois qu'il a terminé , redémarre s'il te le demande pour finir de nettoyer

sinon , ferme TDSSKiller et le rapport s'affichera sur le bureau

▶ Copie/Colle son contenu dans ta prochaine réponse.
0
oui je m'y connais un tout petit peu et ça me fais rire que tu dise mouai bof :-) car j'ai jeter un oeil et je n'ai rien vu de flagrant. ok je vais lancer start scan merci.
0
et voilà :

00:58:36.0793 2928 TDSS rootkit removing tool 2.6.16.0 Nov 7 2011 16:26:51
00:58:37.0136 2928 ============================================================
00:58:37.0136 2928 Current date / time: 2011/11/09 00:58:37.0136
00:58:37.0136 2928 SystemInfo:
00:58:37.0136 2928
00:58:37.0136 2928 OS Version: 6.1.7600 ServicePack: 0.0
00:58:37.0136 2928 Product type: Workstation
00:58:37.0136 2928 ComputerName: URBANBREATHE-PC
00:58:37.0136 2928 UserName: Urban Breathe
00:58:37.0136 2928 Windows directory: C:\Windows
00:58:37.0136 2928 System windows directory: C:\Windows
00:58:37.0136 2928 Processor architecture: Intel x86
00:58:37.0136 2928 Number of processors: 2
00:58:37.0136 2928 Page size: 0x1000
00:58:37.0136 2928 Boot type: Normal boot
00:58:37.0136 2928 ============================================================
00:58:38.0306 2928 Initialize success
00:59:18.0616 0692 ============================================================
00:59:18.0616 0692 Scan started
00:59:18.0616 0692 Mode: Manual;
00:59:18.0616 0692 ============================================================
00:59:20.0707 0692 1394ohci (6d2aca41739bfe8cb86ee8e85f29697d) C:\Windows\system32\DRIVERS\1394ohci.sys
00:59:20.0707 0692 1394ohci - ok
00:59:20.0738 0692 ACPI (f0e07d144c8685b8774bc32fc8da4df0) C:\Windows\system32\DRIVERS\ACPI.sys
00:59:20.0738 0692 ACPI - ok
00:59:20.0769 0692 AcpiPmi (98d81ca942d19f7d9153b095162ac013) C:\Windows\system32\DRIVERS\acpipmi.sys
00:59:20.0769 0692 AcpiPmi - ok
00:59:20.0800 0692 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
00:59:20.0800 0692 adp94xx - ok
00:59:20.0816 0692 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
00:59:20.0832 0692 adpahci - ok
00:59:20.0847 0692 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
00:59:20.0847 0692 adpu320 - ok
00:59:20.0894 0692 AFD (ddc040fdb01ef1712a6b13e52afb104c) C:\Windows\system32\drivers\afd.sys
00:59:20.0894 0692 AFD - ok
00:59:20.0910 0692 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\DRIVERS\agp440.sys
00:59:20.0910 0692 agp440 - ok
00:59:20.0941 0692 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
00:59:20.0941 0692 aic78xx - ok
00:59:20.0988 0692 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\DRIVERS\aliide.sys
00:59:20.0988 0692 aliide - ok
00:59:21.0019 0692 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\DRIVERS\amdagp.sys
00:59:21.0019 0692 amdagp - ok
00:59:21.0034 0692 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\DRIVERS\amdide.sys
00:59:21.0034 0692 amdide - ok
00:59:21.0066 0692 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
00:59:21.0066 0692 AmdK8 - ok
00:59:21.0081 0692 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
00:59:21.0081 0692 AmdPPM - ok
00:59:21.0097 0692 amdsata (2101a86c25c154f8314b24ef49d7fbc2) C:\Windows\system32\DRIVERS\amdsata.sys
00:59:21.0097 0692 amdsata - ok
00:59:21.0112 0692 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
00:59:21.0112 0692 amdsbs - ok
00:59:21.0128 0692 amdxata (b81c2b5616f6420a9941ea093a92b150) C:\Windows\system32\DRIVERS\amdxata.sys
00:59:21.0128 0692 amdxata - ok
00:59:21.0159 0692 AppID (feb834c02ce1e84b6a38f953ca067706) C:\Windows\system32\drivers\appid.sys
00:59:21.0159 0692 AppID - ok
00:59:21.0190 0692 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
00:59:21.0190 0692 arc - ok
00:59:21.0206 0692 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
00:59:21.0206 0692 arcsas - ok
00:59:21.0222 0692 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
00:59:21.0222 0692 AsyncMac - ok
00:59:21.0237 0692 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\DRIVERS\atapi.sys
00:59:21.0237 0692 atapi - ok
00:59:21.0268 0692 AtcL001 (3d8880a2cf21dcc057c8d9a194c41f10) C:\Windows\system32\DRIVERS\l160x86.sys
00:59:21.0268 0692 AtcL001 - ok
00:59:21.0424 0692 atikmdag (04f09923a393e4e0e8453a8f78361e73) C:\Windows\system32\DRIVERS\atikmdag.sys
00:59:21.0502 0692 atikmdag - ok
00:59:21.0565 0692 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
00:59:21.0565 0692 b06bdrv - ok
00:59:21.0596 0692 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
00:59:21.0596 0692 b57nd60x - ok
00:59:21.0627 0692 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
00:59:21.0627 0692 Beep - ok
00:59:21.0643 0692 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
00:59:21.0643 0692 blbdrive - ok
00:59:21.0674 0692 bowser (fcafaef6798d7b51ff029f99a9898961) C:\Windows\system32\DRIVERS\bowser.sys
00:59:21.0674 0692 bowser - ok
00:59:21.0705 0692 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
00:59:21.0705 0692 BrFiltLo - ok
00:59:21.0705 0692 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
00:59:21.0721 0692 BrFiltUp - ok
00:59:21.0736 0692 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
00:59:21.0752 0692 Brserid - ok
00:59:21.0752 0692 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
00:59:21.0768 0692 BrSerWdm - ok
00:59:21.0768 0692 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
00:59:21.0768 0692 BrUsbMdm - ok
00:59:21.0799 0692 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
00:59:21.0799 0692 BrUsbSer - ok
00:59:21.0799 0692 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
00:59:21.0814 0692 BTHMODEM - ok
00:59:21.0830 0692 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
00:59:21.0830 0692 cdfs - ok
00:59:21.0861 0692 cdrom (ba6e70aa0e6091bc39de29477d866a77) C:\Windows\system32\DRIVERS\cdrom.sys
00:59:21.0861 0692 cdrom - ok
00:59:21.0877 0692 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
00:59:21.0892 0692 circlass - ok
00:59:21.0924 0692 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
00:59:21.0924 0692 CLFS - ok
00:59:21.0955 0692 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
00:59:21.0955 0692 CmBatt - ok
00:59:21.0970 0692 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\DRIVERS\cmdide.sys
00:59:21.0970 0692 cmdide - ok
00:59:22.0002 0692 CNG (1b675691ed940766149c93e8f4488d68) C:\Windows\system32\Drivers\cng.sys
00:59:22.0002 0692 CNG - ok
00:59:22.0017 0692 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
00:59:22.0017 0692 Compbatt - ok
00:59:22.0033 0692 CompositeBus (f1724ba27e97d627f808fb0ba77a28a6) C:\Windows\system32\DRIVERS\CompositeBus.sys
00:59:22.0033 0692 CompositeBus - ok
00:59:22.0064 0692 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
00:59:22.0064 0692 crcdisk - ok
00:59:22.0111 0692 CSC (27c9490bdd0ae48911ab8cf1932591ed) C:\Windows\system32\drivers\csc.sys
00:59:22.0126 0692 CSC - ok
00:59:22.0158 0692 DfsC (664b7d4c2a2f7548c373521aec754c66) C:\Windows\system32\Drivers\dfsc.sys
00:59:22.0158 0692 Suspicious file (Forged): C:\Windows\system32\Drivers\dfsc.sys. Real md5: 664b7d4c2a2f7548c373521aec754c66, Fake md5: 8e09e52ee2e3ceb199ef3dd99cf9e3fb
00:59:22.0158 0692 DfsC ( Rootkit.Win32.ZAccess.aml ) - infected
00:59:22.0158 0692 DfsC - detected Rootkit.Win32.ZAccess.aml (0)
00:59:22.0189 0692 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
00:59:22.0189 0692 discache - ok
00:59:22.0204 0692 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
00:59:22.0220 0692 Disk - ok
00:59:22.0267 0692 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
00:59:22.0267 0692 drmkaud - ok
00:59:22.0329 0692 dtsoftbus01 (c0c7ceccb6c85994c2bc92d58e52d3f2) C:\Windows\system32\DRIVERS\dtsoftbus01.sys
00:59:22.0329 0692 dtsoftbus01 - ok
00:59:22.0392 0692 DXGKrnl (c94b6c3cc628179cb9b9061c19888b99) C:\Windows\System32\drivers\dxgkrnl.sys
00:59:22.0392 0692 DXGKrnl - ok
00:59:22.0454 0692 eamonm (04238864710460c5682e260207d06192) C:\Windows\system32\DRIVERS\eamonm.sys
00:59:22.0470 0692 eamonm - ok
00:59:22.0579 0692 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
00:59:22.0626 0692 ebdrv - ok
00:59:22.0688 0692 ehdrv (deff87f04ab5f6dd5edf2b80853bbe10) C:\Windows\system32\DRIVERS\ehdrv.sys
00:59:22.0688 0692 ehdrv - ok
00:59:22.0719 0692 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
00:59:22.0735 0692 elxstor - ok
00:59:22.0782 0692 epfw (5ba193ca0ae31209aaa39939ce6736b2) C:\Windows\system32\DRIVERS\epfw.sys
00:59:22.0797 0692 epfw - ok
00:59:22.0797 0692 EpfwLWF (9cefd59c8e5ebfb48165aef54617f539) C:\Windows\system32\DRIVERS\EpfwLWF.sys
00:59:22.0813 0692 EpfwLWF - ok
00:59:22.0860 0692 epfwwfp (7144a06ac105a2a7302944602e415ec1) C:\Windows\system32\DRIVERS\epfwwfp.sys
00:59:22.0860 0692 epfwwfp - ok
00:59:22.0875 0692 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\DRIVERS\errdev.sys
00:59:22.0875 0692 ErrDev - ok
00:59:22.0906 0692 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
00:59:22.0906 0692 exfat - ok
00:59:22.0922 0692 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
00:59:22.0938 0692 fastfat - ok
00:59:22.0953 0692 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
00:59:22.0953 0692 fdc - ok
00:59:22.0984 0692 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
00:59:22.0984 0692 FileInfo - ok
00:59:23.0000 0692 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
00:59:23.0000 0692 Filetrace - ok
00:59:23.0016 0692 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
00:59:23.0016 0692 flpydisk - ok
00:59:23.0047 0692 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
00:59:23.0047 0692 FltMgr - ok
00:59:23.0078 0692 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
00:59:23.0078 0692 FsDepends - ok
00:59:23.0094 0692 Fs_Rec (a574b4360e438977038aae4bf60d79a2) C:\Windows\system32\drivers\Fs_Rec.sys
00:59:23.0109 0692 Fs_Rec - ok
00:59:23.0125 0692 fvevol (5592f5dba26282d24d2b080eb438a4d7) C:\Windows\system32\DRIVERS\fvevol.sys
00:59:23.0125 0692 fvevol - ok
00:59:23.0156 0692 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
00:59:23.0156 0692 gagp30kx - ok
00:59:23.0172 0692 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
00:59:23.0187 0692 hcw85cir - ok
00:59:23.0218 0692 HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
00:59:23.0218 0692 HdAudAddService - ok
00:59:23.0234 0692 HDAudBus (717a2207fd6f13ad3e664c7d5a43c7bf) C:\Windows\system32\DRIVERS\HDAudBus.sys
00:59:23.0234 0692 HDAudBus - ok
00:59:23.0250 0692 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
00:59:23.0250 0692 HidBatt - ok
00:59:23.0281 0692 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
00:59:23.0281 0692 HidBth - ok
00:59:23.0296 0692 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
00:59:23.0296 0692 HidIr - ok
00:59:23.0328 0692 HidUsb (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
00:59:23.0328 0692 HidUsb - ok
00:59:23.0359 0692 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\DRIVERS\HpSAMD.sys
00:59:23.0359 0692 HpSAMD - ok
00:59:23.0390 0692 HTTP (c531c7fd9e8b62021112787c4e2c5a5a) C:\Windows\system32\drivers\HTTP.sys
00:59:23.0390 0692 HTTP - ok
00:59:23.0421 0692 hwpolicy (8305f33cde89ad6c7a0763ed0b5a8d42) C:\Windows\system32\drivers\hwpolicy.sys
00:59:23.0421 0692 hwpolicy - ok
00:59:23.0437 0692 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys
00:59:23.0437 0692 i8042prt - ok
00:59:23.0452 0692 iaStorV (934af4d7c5f457b9f0743f4299b77b67) C:\Windows\system32\DRIVERS\iaStorV.sys
00:59:23.0468 0692 iaStorV - ok
00:59:23.0484 0692 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
00:59:23.0484 0692 iirsp - ok
00:59:23.0515 0692 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\DRIVERS\intelide.sys
00:59:23.0515 0692 intelide - ok
00:59:23.0530 0692 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
00:59:23.0530 0692 intelppm - ok
00:59:23.0562 0692 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
00:59:23.0562 0692 IpFilterDriver - ok
00:59:23.0593 0692 IPMIDRV (e4454b6c37d7ffd5649611f6496308a7) C:\Windows\system32\DRIVERS\IPMIDrv.sys
00:59:23.0593 0692 IPMIDRV - ok
00:59:23.0608 0692 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
00:59:23.0608 0692 IPNAT - ok
00:59:23.0640 0692 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
00:59:23.0640 0692 IRENUM - ok
00:59:23.0655 0692 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\DRIVERS\isapnp.sys
00:59:23.0655 0692 isapnp - ok
00:59:23.0671 0692 iScsiPrt (ed46c223ae46c6866ab77cdc41c404b7) C:\Windows\system32\DRIVERS\msiscsi.sys
00:59:23.0686 0692 iScsiPrt - ok
00:59:23.0702 0692 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
00:59:23.0702 0692 kbdclass - ok
00:59:23.0718 0692 kbdhid (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
00:59:23.0718 0692 kbdhid - ok
00:59:23.0733 0692 KSecDD (e36a061ec11b373826905b21be10948f) C:\Windows\system32\Drivers\ksecdd.sys
00:59:23.0749 0692 KSecDD - ok
00:59:23.0764 0692 KSecPkg (26c046977e85b95036453d7b88ba1820) C:\Windows\system32\Drivers\ksecpkg.sys
00:59:23.0764 0692 KSecPkg - ok
00:59:23.0796 0692 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
00:59:23.0811 0692 lltdio - ok
00:59:23.0842 0692 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
00:59:23.0842 0692 LSI_FC - ok
00:59:23.0858 0692 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
00:59:23.0858 0692 LSI_SAS - ok
00:59:23.0874 0692 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
00:59:23.0874 0692 LSI_SAS2 - ok
00:59:23.0889 0692 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
00:59:23.0889 0692 LSI_SCSI - ok
00:59:23.0905 0692 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
00:59:23.0920 0692 luafv - ok
00:59:23.0936 0692 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
00:59:23.0936 0692 megasas - ok
00:59:23.0952 0692 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
00:59:23.0967 0692 MegaSR - ok
00:59:24.0030 0692 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
00:59:24.0030 0692 Modem - ok
00:59:24.0061 0692 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
00:59:24.0061 0692 monitor - ok
00:59:24.0076 0692 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
00:59:24.0076 0692 mouclass - ok
00:59:24.0123 0692 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
00:59:24.0123 0692 mouhid - ok
00:59:24.0139 0692 mountmgr (921c18727c5920d6c0300736646931c2) C:\Windows\system32\drivers\mountmgr.sys
00:59:24.0139 0692 mountmgr - ok
00:59:24.0154 0692 mpio (2af5997438c55fb79d33d015c30e1974) C:\Windows\system32\DRIVERS\mpio.sys
00:59:24.0170 0692 mpio - ok
00:59:24.0201 0692 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
00:59:24.0201 0692 mpsdrv - ok
00:59:24.0232 0692 MRxDAV (b1be47008d20e43da3adc37c24cdb89d) C:\Windows\system32\drivers\mrxdav.sys
00:59:24.0232 0692 MRxDAV - ok
00:59:24.0248 0692 mrxsmb (f4a054be78af7f410129c4b64b07dc9b) C:\Windows\system32\DRIVERS\mrxsmb.sys
00:59:24.0248 0692 mrxsmb - ok
00:59:24.0264 0692 mrxsmb10 (deffa295bd1895c6ed8e3078412ac60b) C:\Windows\system32\DRIVERS\mrxsmb10.sys
00:59:24.0279 0692 mrxsmb10 - ok
00:59:24.0295 0692 mrxsmb20 (24d76abe5dcad22f19d105f76fdf0ce1) C:\Windows\system32\DRIVERS\mrxsmb20.sys
00:59:24.0295 0692 mrxsmb20 - ok
00:59:24.0310 0692 msahci (4326d168944123f38dd3b2d9c37a0b12) C:\Windows\system32\DRIVERS\msahci.sys
00:59:24.0310 0692 msahci - ok
00:59:24.0326 0692 msdsm (455029c7174a2dbb03dba8a0d8bddd9a) C:\Windows\system32\DRIVERS\msdsm.sys
00:59:24.0326 0692 msdsm - ok
00:59:24.0357 0692 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
00:59:24.0357 0692 Msfs - ok
00:59:24.0388 0692 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
00:59:24.0388 0692 mshidkmdf - ok
00:59:24.0404 0692 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\DRIVERS\msisadrv.sys
00:59:24.0404 0692 msisadrv - ok
00:59:24.0435 0692 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
00:59:24.0435 0692 MSKSSRV - ok
00:59:24.0466 0692 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
00:59:24.0466 0692 MSPCLOCK - ok
00:59:24.0482 0692 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
00:59:24.0482 0692 MSPQM - ok
00:59:24.0498 0692 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
00:59:24.0498 0692 MsRPC - ok
00:59:24.0529 0692 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\DRIVERS\mssmbios.sys
00:59:24.0529 0692 mssmbios - ok
00:59:24.0544 0692 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
00:59:24.0544 0692 MSTEE - ok
00:59:24.0560 0692 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
00:59:24.0560 0692 MTConfig - ok
00:59:24.0591 0692 MTsensor (97affa9d95ffe20eee6229bc6be166cf) C:\Windows\system32\DRIVERS\ATKACPI.sys
00:59:24.0591 0692 MTsensor - ok
00:59:24.0607 0692 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
00:59:24.0607 0692 Mup - ok
00:59:24.0654 0692 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
00:59:24.0654 0692 NativeWifiP - ok
00:59:24.0685 0692 NDIS (23759d175a0a9baaf04d05047bc135a8) C:\Windows\system32\drivers\ndis.sys
00:59:24.0685 0692 NDIS - ok
00:59:24.0716 0692 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
00:59:24.0732 0692 NdisCap - ok
00:59:24.0747 0692 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
00:59:24.0747 0692 NdisTapi - ok
00:59:24.0763 0692 Ndisuio (b30ae7f2b6d7e343b0df32e6c08fce75) C:\Windows\system32\DRIVERS\ndisuio.sys
00:59:24.0763 0692 Ndisuio - ok
00:59:24.0778 0692 NdisWan (267c415eadcbe53c9ca873dee39cf3a4) C:\Windows\system32\DRIVERS\ndiswan.sys
00:59:24.0794 0692 NdisWan - ok
00:59:24.0810 0692 NDProxy (af7e7c63dcef3f8772726f86039d6eb4) C:\Windows\system32\drivers\NDProxy.sys
00:59:24.0810 0692 NDProxy - ok
00:59:24.0825 0692 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
00:59:24.0825 0692 NetBIOS - ok
00:59:24.0841 0692 NetBT (dd52a733bf4ca5af84562a5e2f963b91) C:\Windows\system32\DRIVERS\netbt.sys
00:59:24.0841 0692 NetBT - ok
00:59:24.0981 0692 netw5v32 (58218ec6b61b1169cf54aab0d00f5fe2) C:\Windows\system32\DRIVERS\netw5v32.sys
00:59:25.0044 0692 netw5v32 - ok
00:59:25.0090 0692 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
00:59:25.0090 0692 nfrd960 - ok
00:59:25.0122 0692 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
00:59:25.0122 0692 Npfs - ok
00:59:25.0153 0692 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
00:59:25.0153 0692 nsiproxy - ok
00:59:25.0231 0692 Ntfs (3795dcd21f740ee799fb7223234215af) C:\Windows\system32\drivers\Ntfs.sys
00:59:25.0246 0692 Ntfs - ok
00:59:25.0278 0692 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
00:59:25.0278 0692 Null - ok
00:59:25.0309 0692 nvraid (3f3d04b1d08d43c16ea7963954ec768d) C:\Windows\system32\DRIVERS\nvraid.sys
00:59:25.0309 0692 nvraid - ok
00:59:25.0324 0692 nvstor (c99f251a5de63c6f129cf71933aced0f) C:\Windows\system32\DRIVERS\nvstor.sys
00:59:25.0340 0692 nvstor - ok
00:59:25.0356 0692 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\DRIVERS\nv_agp.sys
00:59:25.0356 0692 nv_agp - ok
00:59:25.0371 0692 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\DRIVERS\ohci1394.sys
00:59:25.0387 0692 ohci1394 - ok
00:59:25.0418 0692 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
00:59:25.0434 0692 Parport - ok
00:59:25.0465 0692 partmgr (ff4218952b51de44fe910953a3e686b9) C:\Windows\system32\drivers\partmgr.sys
00:59:25.0480 0692 partmgr - ok
00:59:25.0496 0692 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
00:59:25.0496 0692 Parvdm - ok
00:59:25.0512 0692 pci (c858cb77c577780ecc456a892e7e7d0f) C:\Windows\system32\DRIVERS\pci.sys
00:59:25.0527 0692 pci - ok
00:59:25.0543 0692 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\DRIVERS\pciide.sys
00:59:25.0543 0692 pciide - ok
00:59:25.0558 0692 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
00:59:25.0574 0692 pcmcia - ok
00:59:25.0574 0692 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
00:59:25.0590 0692 pcw - ok
00:59:25.0652 0692 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
00:59:25.0652 0692 PEAUTH - ok
00:59:25.0746 0692 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
00:59:25.0746 0692 PptpMiniport - ok
00:59:25.0761 0692 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
00:59:25.0761 0692 Processor - ok
00:59:25.0808 0692 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
00:59:25.0808 0692 Psched - ok
00:59:25.0855 0692 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
00:59:25.0886 0692 ql2300 - ok
00:59:25.0902 0692 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
00:59:25.0902 0692 ql40xx - ok
00:59:25.0917 0692 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
00:59:25.0917 0692 QWAVEdrv - ok
00:59:25.0948 0692 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
00:59:25.0948 0692 RasAcd - ok
00:59:25.0964 0692 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
00:59:25.0964 0692 RasAgileVpn - ok
00:59:25.0995 0692 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
00:59:25.0995 0692 Rasl2tp - ok
00:59:26.0011 0692 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
00:59:26.0011 0692 RasPppoe - ok
00:59:26.0026 0692 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
00:59:26.0026 0692 RasSstp - ok
00:59:26.0058 0692 rdbss (835d7e81bf517a3b72384bdcc85e1ce6) C:\Windows\system32\DRIVERS\rdbss.sys
00:59:26.0073 0692 rdbss - ok
00:59:26.0104 0692 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
00:59:26.0104 0692 rdpbus - ok
00:59:26.0120 0692 RDPCDD (1e016846895b15a99f9a176a05029075) C:\Windows\system32\DRIVERS\RDPCDD.sys
00:59:26.0120 0692 RDPCDD - ok
00:59:26.0167 0692 RDPDR (c5ff95883ffef704d50c40d21cfb3ab5) C:\Windows\system32\drivers\rdpdr.sys
00:59:26.0182 0692 RDPDR - ok
00:59:26.0198 0692 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
00:59:26.0198 0692 RDPENCDD - ok
00:59:26.0214 0692 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
00:59:26.0214 0692 RDPREFMP - ok
00:59:26.0245 0692 RDPWD (801371ba9782282892d00aadb08ee367) C:\Windows\system32\drivers\RDPWD.sys
00:59:26.0245 0692 RDPWD - ok
00:59:26.0260 0692 rdyboost (4ea225bf1cf05e158853f30a99ca29a7) C:\Windows\system32\drivers\rdyboost.sys
00:59:26.0276 0692 rdyboost - ok
00:59:26.0323 0692 rismxdp (6c1f93c0760c9f79a1869d07233df39d) C:\Windows\system32\DRIVERS\rixdptsk.sys
00:59:26.0323 0692 rismxdp - ok
00:59:26.0354 0692 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
00:59:26.0370 0692 rspndr - ok
00:59:26.0385 0692 s3cap (5423d8437051e89dd34749f242c98648) C:\Windows\system32\DRIVERS\vms3cap.sys
00:59:26.0385 0692 s3cap - ok
00:59:26.0416 0692 sbp2port (34ee0c44b724e3e4ce2eff29126de5b5) C:\Windows\system32\DRIVERS\sbp2port.sys
00:59:26.0416 0692 sbp2port - ok
00:59:26.0448 0692 scfilter (a95c54b2ac3cc9c73fcdf9e51a1d6b51) C:\Windows\system32\DRIVERS\scfilter.sys
00:59:26.0448 0692 scfilter - ok
00:59:26.0494 0692 sdbus (7b48cff3a475fe849dea65ec4d35c425) C:\Windows\system32\DRIVERS\sdbus.sys
00:59:26.0494 0692 sdbus - ok
00:59:26.0526 0692 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
00:59:26.0526 0692 secdrv - ok
00:59:26.0557 0692 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
00:59:26.0557 0692 Serenum - ok
00:59:26.0588 0692 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
00:59:26.0588 0692 Serial - ok
00:59:26.0604 0692 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
00:59:26.0604 0692 sermouse - ok
00:59:26.0650 0692 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\DRIVERS\sffdisk.sys
00:59:26.0650 0692 sffdisk - ok
00:59:26.0666 0692 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\DRIVERS\sffp_mmc.sys
00:59:26.0666 0692 sffp_mmc - ok
00:59:26.0682 0692 sffp_sd (4f1e5b0fe7c8050668dbfade8999aefb) C:\Windows\system32\DRIVERS\sffp_sd.sys
00:59:26.0682 0692 sffp_sd - ok
00:59:26.0697 0692 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
00:59:26.0697 0692 sfloppy - ok
00:59:26.0728 0692 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\DRIVERS\sisagp.sys
00:59:26.0728 0692 sisagp - ok
00:59:26.0744 0692 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
00:59:26.0744 0692 SiSRaid2 - ok
00:59:26.0775 0692 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
00:59:26.0775 0692 SiSRaid4 - ok
00:59:26.0806 0692 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
00:59:26.0806 0692 Smb - ok
00:59:26.0853 0692 smserial (19301c27f3425dc39f6c599f527e507d) C:\Windows\system32\DRIVERS\smserial.sys
00:59:26.0869 0692 smserial - ok
00:59:26.0900 0692 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
00:59:26.0900 0692 spldr - ok
00:59:26.0947 0692 srv (2ba4ebc7dfba845a1edbe1f75913be33) C:\Windows\system32\DRIVERS\srv.sys
00:59:26.0947 0692 srv - ok
00:59:26.0962 0692 srv2 (dce7e10feaabd4cae95948b3de5340bb) C:\Windows\system32\DRIVERS\srv2.sys
00:59:26.0978 0692 srv2 - ok
00:59:26.0994 0692 srvnet (b5665baa2120b8a54e22e9cd07c05106) C:\Windows\system32\DRIVERS\srvnet.sys
00:59:26.0994 0692 srvnet - ok
00:59:27.0025 0692 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
00:59:27.0025 0692 stexstor - ok
00:59:27.0056 0692 storflt (957e346ca948668f2496a6ccf6ff82cc) C:\Windows\system32\DRIVERS\vmstorfl.sys
00:59:27.0056 0692 storflt - ok
00:59:27.0072 0692 storvsc (d5751969dc3e4b88bf482ac8ec9fe019) C:\Windows\system32\DRIVERS\storvsc.sys
00:59:27.0072 0692 storvsc - ok
00:59:27.0087 0692 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\DRIVERS\swenum.sys
00:59:27.0087 0692 swenum - ok
00:59:27.0165 0692 Tcpip (2cc3d75488abd3ec628bbb9a4fc84efc) C:\Windows\system32\drivers\tcpip.sys
00:59:27.0196 0692 Tcpip - ok
00:59:27.0243 0692 TCPIP6 (2cc3d75488abd3ec628bbb9a4fc84efc) C:\Windows\system32\DRIVERS\tcpip.sys
00:59:27.0259 0692 TCPIP6 - ok
00:59:27.0290 0692 tcpipreg (e64444523add154f86567c469bc0b17f) C:\Windows\system32\drivers\tcpipreg.sys
00:59:27.0290 0692 tcpipreg - ok
00:59:27.0306 0692 TDPIPE (1875c1490d99e70e449e3afae9fcbadf) C:\Windows\system32\drivers\tdpipe.sys
00:59:27.0321 0692 TDPIPE - ok
00:59:27.0337 0692 TDTCP (7551e91ea999ee9a8e9c331d5a9c31f3) C:\Windows\system32\drivers\tdtcp.sys
00:59:27.0337 0692 TDTCP - ok
00:59:27.0352 0692 tdx (cb39e896a2a83702d1737bfd402b3542) C:\Windows\system32\DRIVERS\tdx.sys
00:59:27.0352 0692 tdx - ok
00:59:27.0368 0692 TermDD (c36f41ee20e6999dbf4b0425963268a5) C:\Windows\system32\DRIVERS\termdd.sys
00:59:27.0368 0692 TermDD - ok
00:59:27.0415 0692 tssecsrv (98ae6fa07d12cb4ec5cf4a9bfa5f4242) C:\Windows\system32\DRIVERS\tssecsrv.sys
00:59:27.0415 0692 tssecsrv - ok
00:59:27.0462 0692 tunnel (3e461d890a97f9d4c168f5fda36e1d00) C:\Windows\system32\DRIVERS\tunnel.sys
00:59:27.0462 0692 tunnel - ok
00:59:27.0477 0692 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
00:59:27.0477 0692 uagp35 - ok
00:59:27.0493 0692 udfs (09cc3e16f8e5ee7168e01cf8fcbe061a) C:\Windows\system32\DRIVERS\udfs.sys
00:59:27.0508 0692 udfs - ok
00:59:27.0540 0692 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\DRIVERS\uliagpkx.sys
00:59:27.0540 0692 uliagpkx - ok
00:59:27.0555 0692 umbus (049b3a50b3d646baeeee9eec9b0668dc) C:\Windows\system32\DRIVERS\umbus.sys
00:59:27.0555 0692 umbus - ok
00:59:27.0571 0692 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
00:59:27.0571 0692 UmPass - ok
00:59:27.0602 0692 usbccgp (8455c4ed038efd09e99327f9d2d48ffa) C:\Windows\system32\DRIVERS\usbccgp.sys
00:59:27.0602 0692 usbccgp - ok
00:59:27.0618 0692 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\DRIVERS\usbcir.sys
00:59:27.0633 0692 usbcir - ok
00:59:27.0649 0692 usbehci (1c333bfd60f2fed2c7ad5daf533cb742) C:\Windows\system32\DRIVERS\usbehci.sys
00:59:27.0649 0692 usbehci - ok
00:59:27.0664 0692 usbhub (ee6ef93ccfa94fae8c6ab298273d8ae2) C:\Windows\system32\DRIVERS\usbhub.sys
00:59:27.0680 0692 usbhub - ok
00:59:27.0696 0692 usbohci (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\DRIVERS\usbohci.sys
00:59:27.0696 0692 usbohci - ok
00:59:27.0711 0692 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
00:59:27.0711 0692 usbprint - ok
00:59:27.0742 0692 USBSTOR (d8889d56e0d27e57ed4591837fe71d27) C:\Windows\system32\DRIVERS\USBSTOR.SYS
00:59:27.0742 0692 USBSTOR - ok
00:59:27.0758 0692 usbuhci (78780c3ebce17405b1ccd07a3a8a7d72) C:\Windows\system32\DRIVERS\usbuhci.sys
00:59:27.0758 0692 usbuhci - ok
00:59:27.0789 0692 usbvideo (f642a7e4bf78cfa359cca0a3557c28d7) C:\Windows\system32\Drivers\usbvideo.sys
00:59:27.0805 0692 usbvideo - ok
00:59:27.0820 0692 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\DRIVERS\vdrvroot.sys
00:59:27.0820 0692 vdrvroot - ok
00:59:27.0852 0692 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
00:59:27.0867 0692 vga - ok
00:59:27.0867 0692 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
00:59:27.0883 0692 VgaSave - ok
00:59:27.0898 0692 vhdmp (3be6e1f3a4f1afec8cee0d7883f93583) C:\Windows\system32\DRIVERS\vhdmp.sys
00:59:27.0898 0692 vhdmp - ok
00:59:27.0914 0692 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\DRIVERS\viaagp.sys
00:59:27.0914 0692 viaagp - ok
00:59:27.0930 0692 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
00:59:27.0930 0692 ViaC7 - ok
00:59:27.0961 0692 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\DRIVERS\viaide.sys
00:59:27.0961 0692 viaide - ok
00:59:27.0992 0692 vmbus (379b349f65f453d2a6e75ea6b7448e49) C:\Windows\system32\DRIVERS\vmbus.sys
00:59:27.0992 0692 vmbus - ok
00:59:28.0008 0692 VMBusHID (ec2bbab4b84d0738c6c83d2234dc36fe) C:\Windows\system32\DRIVERS\VMBusHID.sys
00:59:28.0023 0692 VMBusHID - ok
00:59:28.0039 0692 volmgr (384e5a2aa49934295171e499f86ba6f3) C:\Windows\system32\DRIVERS\volmgr.sys
00:59:28.0039 0692 volmgr - ok
00:59:28.0054 0692 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
00:59:28.0070 0692 volmgrx - ok
00:59:28.0086 0692 volsnap (58df9d2481a56edde167e51b334d44fd) C:\Windows\system32\DRIVERS\volsnap.sys
00:59:28.0101 0692 volsnap - ok
00:59:28.0117 0692 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
00:59:28.0117 0692 vsmraid - ok
00:59:28.0148 0692 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\System32\drivers\vwifibus.sys
00:59:28.0148 0692 vwifibus - ok
00:59:28.0195 0692 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
00:59:28.0195 0692 WacomPen - ok
00:59:28.0210 0692 WANARP (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
00:59:28.0210 0692 WANARP - ok
00:59:28.0226 0692 Wanarpv6 (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
00:59:28.0226 0692 Wanarpv6 - ok
00:59:28.0273 0692 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
00:59:28.0273 0692 Wd - ok
00:59:28.0304 0692 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
00:59:28.0304 0692 Wdf01000 - ok
00:59:28.0351 0692 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
00:59:28.0366 0692 WfpLwf - ok
00:59:28.0366 0692 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
00:59:28.0382 0692 WIMMount - ok
00:59:28.0429 0692 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\DRIVERS\wmiacpi.sys
00:59:28.0429 0692 WmiAcpi - ok
00:59:28.0476 0692 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
00:59:28.0491 0692 ws2ifsl - ok
00:59:28.0538 0692 WudfPf (6f9b6c0c93232cff47d0f72d6db1d21e) C:\Windows\system32\drivers\WudfPf.sys
00:59:28.0538 0692 WudfPf - ok
00:59:28.0569 0692 WUDFRd (f91ff1e51fca30b3c3981db7d5924252) C:\Windows\system32\DRIVERS\WUDFRd.sys
00:59:28.0569 0692 WUDFRd - ok
00:59:28.0616 0692 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
00:59:28.0632 0692 \Device\Harddisk0\DR0 - ok
00:59:28.0647 0692 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk1\DR5
00:59:28.0663 0692 \Device\Harddisk1\DR5 - ok
00:59:28.0663 0692 Boot (0x1200) (a7821b84a1415de4036413e288c25fa0) \Device\Harddisk0\DR0\Partition0
00:59:28.0663 0692 \Device\Harddisk0\DR0\Partition0 - ok
00:59:28.0678 0692 Boot (0x1200) (d7a96506dedd8bba08fad4065c9f9ccd) \Device\Harddisk0\DR0\Partition1
00:59:28.0678 0692 \Device\Harddisk0\DR0\Partition1 - ok
00:59:28.0710 0692 Boot (0x1200) (c8b6ac1f4444ceff30bbe02426b66de6) \Device\Harddisk0\DR0\Partition2
00:59:28.0710 0692 \Device\Harddisk0\DR0\Partition2 - ok
00:59:28.0710 0692 Boot (0x1200) (4cc391a1e100b6524e746d01480f2b17) \Device\Harddisk1\DR5\Partition0
00:59:28.0710 0692 \Device\Harddisk1\DR5\Partition0 - ok
00:59:28.0710 0692 ============================================================
00:59:28.0710 0692 Scan finished
00:59:28.0710 0692 ============================================================
00:59:28.0741 3332 Detected object count: 1
00:59:28.0741 3332 Actual detected object count: 1
01:00:31.0281 3332 Backup copy not found, trying to cure infected file..
01:00:31.0297 3332 Cure success, using it..
01:00:31.0312 3332 C:\Windows\system32\Drivers\dfsc.sys - will be cured on reboot
01:00:31.0312 3332 DfsC ( Rootkit.Win32.ZAccess.aml ) - User select action: Cure
01:00:34.0776 3532 Deinitialize success
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 796
9 nov. 2011 à 01:05
ça confirme ma pensée, rootkit ZeroAccess

▶ Fais un clic droit sur le lien ci dessous, choisi "Enregistrer la cible du lien sous", comme destination : ton Bureau, change son nom (ton_pseudo.exe par exemple) :

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

▶ Double-clique sur ComboFix.exe
Un "pop-up" va apparaître qui dit que ComboFix est utilisé à vos risques et avec aucune garantie... Clique sur oui pour accepter

♦ Ne touche à rien (souris, clavier) tant que le scan n'est pas terminé, car tu risques de planter ton PC

▶ En fin de scan, il est possible que ComboFix ait besoin de redémarrer le PC pour finaliser la désinfection, laisse-le faire.</gras>
▶ Une fois le scan achevé, un rapport va s''afficher : Poste son contenu

Notes:
♦ Le rapport se trouve également là : C:\ComboFix.txt
tutoriel combofix
0
ok pas évident tous ça car je jongle avec 2 pc étant donner que je n'ai plus d'accès à internet sur celui infecté il me redirige des l'ouverture sur striking search ect... a la fin de l'exécution de combo fx le pc à redémarré mais ensuite je suis tomber sur une page avec réparation du démarrage et on me demande revenir à un point de restauration j'ai dis oui et le pc tente une reparation actuellement.
0
le pc à redemarré finalement mais je ne trouve pas le fichier txt de combo fix dans C:

Est ce normal?
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 796
9 nov. 2011 à 02:10
relance un coup de combofix :)
0
victorhman Messages postés 1 Date d'inscription mercredi 9 novembre 2011 Statut Membre Dernière intervention 9 novembre 2011
9 nov. 2011 à 18:16
bonsoir
j'ai le même problème de virus "strikingsearchsystème"
je n'ai plus accès au gestionnaire de tache; ainsi qu'a l'activation des fonctionnalité windows...
je n'arrive pas non plus à suprimer C:Windowssystem32DRIVERSmrxsmb.sys
et je ne trouve pas consrv.dll dans C:Windowssystem32
j'ai aussi éssayé TDSSKillers et OLTD ça n'a rien changé....
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 796
9 nov. 2011 à 18:31
bonjour ouvre ton sujet
0
voici le rapport combofix :

http://pjjoint.malekal.com/files.php?id=u7v8c10n11j11u1211q13l11o12s13b7r14s14y12h9i11j614q10
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 796
9 nov. 2011 à 18:38
j'ai dis ouvre ton sujet merci
0