A voir également:
- Aucun antivirus ne veulent s'installer
- Installer chromecast - Guide
- Installer windows 11 sur pc non compatible - Accueil - Windows
- Installer microsoft store - Guide
- Installer windows 10 sans compte microsoft - Guide
- Installer ccleaner - Télécharger - Nettoyage
13 réponses
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 658
18 juil. 2012 à 09:20
18 juil. 2012 à 09:20
Salut,
Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour, fais un scan rapide, supprime tout et poste le rapport ici.
!!! Malwarebyte doit être à jour avant de faire le scan !!!
Supprime bien ce qui est détecté : bouton supprimer sélection.
et :
Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/
* Télécharge https://www.malekal.com/download/OTL.exe sur ton bureau.
(Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)
Dans le cas d'Avast!, ne pas lancer le programme dans la Sandbox (voir lien d'aide ci-dessus).
* Lance OTL
* En haut à droite de Analyse rapide, coche "tous les utilisateurs"
* Sur OTL, sous Personnalisation, copie-colle le script ci-dessous :
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%temp%\.exe /s
%SYSTEMDRIVE%\*.exe
%systemroot%\*. /mp /s
%systemroot%\system32\consrv.dll
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
/md5start
explorer.exe
winlogon.exe
wininit.exe
/md5stop
HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32 /s
HKEY_LOCAL_MACHINE\SYSTEM\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters /s
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems /s
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls /s
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList /s
CREATERESTOREPOINT
nslookup www.google.fr /c
SAVEMBR:0
hklm\software\clients\startmenuinternet|command /rs
hklm\software\clients\startmenuinternet|command /64 /rs
* Clique sur le bouton Analyse.
* Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport OTL.txt (et Extra.txt si présent), donne le ou les liens pjjoint qui pointent vers ces rapports ici dans un nouveau message.
Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour, fais un scan rapide, supprime tout et poste le rapport ici.
!!! Malwarebyte doit être à jour avant de faire le scan !!!
Supprime bien ce qui est détecté : bouton supprimer sélection.
et :
Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/
* Télécharge https://www.malekal.com/download/OTL.exe sur ton bureau.
(Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)
Dans le cas d'Avast!, ne pas lancer le programme dans la Sandbox (voir lien d'aide ci-dessus).
* Lance OTL
* En haut à droite de Analyse rapide, coche "tous les utilisateurs"
* Sur OTL, sous Personnalisation, copie-colle le script ci-dessous :
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%temp%\.exe /s
%SYSTEMDRIVE%\*.exe
%systemroot%\*. /mp /s
%systemroot%\system32\consrv.dll
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
/md5start
explorer.exe
winlogon.exe
wininit.exe
/md5stop
HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32 /s
HKEY_LOCAL_MACHINE\SYSTEM\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters /s
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems /s
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls /s
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList /s
CREATERESTOREPOINT
nslookup www.google.fr /c
SAVEMBR:0
hklm\software\clients\startmenuinternet|command /rs
hklm\software\clients\startmenuinternet|command /64 /rs
* Clique sur le bouton Analyse.
* Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport OTL.txt (et Extra.txt si présent), donne le ou les liens pjjoint qui pointent vers ces rapports ici dans un nouveau message.
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 658
18 juil. 2012 à 12:25
18 juil. 2012 à 12:25
Désinstalle :
setuprog Toolbar
Google Toolbar.
~~
Les barres d'outils sont là pour t'affilier à un service (moteur de recherche de Yahoo! ou Google), ça rajoute des fonctionnalités mais en général les navigateurs les ont par défaut.
De plus, elles enregistrent les sites que tu visites pour les transmettre (tracking) à faire de la publicité ciblée, c'est pas super niveau protection de la vie privée.
Plusieurs toolbars ralentissent le PC et peuvent faire planter les navigateurs WEB.
Au final, il est pas conseillé d'en utiliser.
Lire :
Les toolbars c'est pas obligatoire!
Je ne pense pas que le PC soit infecté.
Les rapports sont correctes.
Je pense que c'est plus un prb d'installation d'Antivir qui déconne ou autres.
Histoire d'être sûr, tu peux faire un scan en ligne Kaspersky : https://forum.malekal.com/viewtopic.php?t=38450&start=
Juste scanner le disque C
setuprog Toolbar
Google Toolbar.
~~
Les barres d'outils sont là pour t'affilier à un service (moteur de recherche de Yahoo! ou Google), ça rajoute des fonctionnalités mais en général les navigateurs les ont par défaut.
De plus, elles enregistrent les sites que tu visites pour les transmettre (tracking) à faire de la publicité ciblée, c'est pas super niveau protection de la vie privée.
Plusieurs toolbars ralentissent le PC et peuvent faire planter les navigateurs WEB.
Au final, il est pas conseillé d'en utiliser.
Lire :
Les toolbars c'est pas obligatoire!
Je ne pense pas que le PC soit infecté.
Les rapports sont correctes.
Je pense que c'est plus un prb d'installation d'Antivir qui déconne ou autres.
Histoire d'être sûr, tu peux faire un scan en ligne Kaspersky : https://forum.malekal.com/viewtopic.php?t=38450&start=
Juste scanner le disque C
Dans "Ajouter ou supprimer des programmes" Je ne trouve pas google Toolbar de plus setuprog Toolbar ne veut pas se désinstaller
Enfin lorsque je veut installer Kaspersky, celui-ci me met :
"Erreur 1303, vous ne disposez pas de privilèges suffisants pour utiliser ce repertoire : C:\Program Files\Kespersky Lab.
Pourtant je suis bien l'administrateur du pc
Enfin lorsque je veut installer Kaspersky, celui-ci me met :
"Erreur 1303, vous ne disposez pas de privilèges suffisants pour utiliser ce repertoire : C:\Program Files\Kespersky Lab.
Pourtant je suis bien l'administrateur du pc
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 658
18 juil. 2012 à 14:04
18 juil. 2012 à 14:04
et tu peux créer un sous dossier dans le dossier Program Files ?
ou ça te dit "accès refusé" ?
ou ça te dit "accès refusé" ?
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 658
18 juil. 2012 à 14:23
18 juil. 2012 à 14:23
et si tu créés cette fois Kespersky Lab ?
ça passe ou ça dit refusé ?
ça passe ou ça dit refusé ?
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 658
18 juil. 2012 à 14:22
18 juil. 2012 à 14:22
Passe un coup de TDSSKiller : https://forum.malekal.com/viewtopic.php?t=28637&start=
Lire ce qui est écrit au niveau des suppressions/réparation (delete et cure), ne pas supprimer n'importe quoi.
Poste le rapport ici.
~~
Sauvegarde tes documents importants.
A lire en entier.
Désactive les logiciels de protection (Antivirus, Antispywares)
En Général, cela se fait par un clic droit sur l'icône de ton antivirus en bas à droite et désactiver protection/agent ou autres.
ensuite :
Télécharge Combofix sUBs : http://download.bleepingcomputer.com/sUBs/ComboFix.exe et sauvegarde le sur ton bureau et pas ailleurs!
Double-clic sur combofix, accepte la licence d'utilisation et laisse toi guider.
Eventuellement, installe la console de récupération comme cela est conseillé
Attends que combofix ait terminé, un rapport sera créé. Poste le rapport.
Si le rapport ne passe pas, envoie le sur ce site : http://pjjoint.malekal.com/
et donne le lien ici :)
Tu as le tutorial sur ce lien pour t'aider : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
PS : si Combofix ne se lance pas, renomme le fichier Combofix et retente.
Si pas mieux, tente en mode sans échec sans prise en charge du réseau : Redémarre en mode sans échec, pour cela, redémarre l'ordinateur, avant le logo Windows, tapote sur la touche F8, un menu va apparaître, choisis Mode sans échec et appuye sur la touche entrée du clavier.
Si Combofix émet toujours une alerte sur l'antivirus : Si tu es en mode sans échec continue, si tu es en mode normal et que l'antivirus est bien désactivé. Continue.
Hébergement du rapport : Utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport, donne le lien pjjoint qui pointent vers ce rapport dans un nouveau message.
Lire ce qui est écrit au niveau des suppressions/réparation (delete et cure), ne pas supprimer n'importe quoi.
Poste le rapport ici.
~~
Sauvegarde tes documents importants.
A lire en entier.
Désactive les logiciels de protection (Antivirus, Antispywares)
En Général, cela se fait par un clic droit sur l'icône de ton antivirus en bas à droite et désactiver protection/agent ou autres.
ensuite :
Télécharge Combofix sUBs : http://download.bleepingcomputer.com/sUBs/ComboFix.exe et sauvegarde le sur ton bureau et pas ailleurs!
Double-clic sur combofix, accepte la licence d'utilisation et laisse toi guider.
Eventuellement, installe la console de récupération comme cela est conseillé
Attends que combofix ait terminé, un rapport sera créé. Poste le rapport.
Si le rapport ne passe pas, envoie le sur ce site : http://pjjoint.malekal.com/
et donne le lien ici :)
Tu as le tutorial sur ce lien pour t'aider : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
PS : si Combofix ne se lance pas, renomme le fichier Combofix et retente.
Si pas mieux, tente en mode sans échec sans prise en charge du réseau : Redémarre en mode sans échec, pour cela, redémarre l'ordinateur, avant le logo Windows, tapote sur la touche F8, un menu va apparaître, choisis Mode sans échec et appuye sur la touche entrée du clavier.
Si Combofix émet toujours une alerte sur l'antivirus : Si tu es en mode sans échec continue, si tu es en mode normal et que l'antivirus est bien désactivé. Continue.
Hébergement du rapport : Utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport, donne le lien pjjoint qui pointent vers ce rapport dans un nouveau message.
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Le rapport de TDSSKILLER :
14:28:55.0140 5204 TDSS rootkit removing tool 2.7.46.0 Jul 16 2012 22:10:11
14:28:55.0484 5204 ============================================================
14:28:55.0484 5204 Current date / time: 2012/07/18 14:28:55.0484
14:28:55.0484 5204 SystemInfo:
14:28:55.0484 5204
14:28:55.0484 5204 OS Version: 5.1.2600 ServicePack: 3.0
14:28:55.0484 5204 Product type: Workstation
14:28:55.0484 5204 ComputerName: PORTABLE
14:28:55.0484 5204 UserName: Atelier
14:28:55.0484 5204 Windows directory: C:\WINDOWS
14:28:55.0484 5204 System windows directory: C:\WINDOWS
14:28:55.0484 5204 Processor architecture: Intel x86
14:28:55.0484 5204 Number of processors: 2
14:28:55.0484 5204 Page size: 0x1000
14:28:55.0484 5204 Boot type: Normal boot
14:28:55.0484 5204 ============================================================
14:28:57.0015 5204 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 (111.79 Gb), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
14:28:57.0031 5204 ============================================================
14:28:57.0031 5204 \Device\Harddisk0\DR0:
14:28:57.0046 5204 MBR partitions:
14:28:57.0046 5204 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x2F10C, BlocksNum 0x6FB817C
14:28:57.0062 5204 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x6FE72C7, BlocksNum 0x6FAC4FA
14:28:57.0062 5204 ============================================================
14:28:57.0125 5204 C: <-> \Device\Harddisk0\DR0\Partition0
14:28:57.0156 5204 D: <-> \Device\Harddisk0\DR0\Partition1
14:28:57.0156 5204 ============================================================
14:28:57.0156 5204 Initialize success
14:28:57.0156 5204 ============================================================
14:28:59.0062 4724 ============================================================
14:28:59.0062 4724 Scan started
14:28:59.0062 4724 Mode: Manual;
14:28:59.0062 4724 ============================================================
14:29:00.0062 4724 Abiosdsk - ok
14:29:00.0093 4724 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
14:29:00.0093 4724 abp480n5 - ok
14:29:00.0140 4724 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) C:\WINDOWS\system32\DRIVERS\ACPI.sys
14:29:00.0140 4724 ACPI - ok
14:29:00.0171 4724 ACPIEC (e4abc1212b70bb03d35e60681c447210) C:\WINDOWS\system32\drivers\ACPIEC.sys
14:29:00.0171 4724 ACPIEC - ok
14:29:00.0234 4724 AcrSch2Svc (4430593ef7915ec7fecb2fc33960704f) C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
14:29:00.0250 4724 AcrSch2Svc - ok
14:29:00.0328 4724 AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
14:29:00.0328 4724 AdobeFlashPlayerUpdateSvc - ok
14:29:00.0343 4724 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys
14:29:00.0343 4724 adpu160m - ok
14:29:00.0375 4724 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
14:29:00.0375 4724 aec - ok
14:29:00.0406 4724 AegisP (a1ad1a4a9f18d900ca9c93fa3efdcb56) C:\WINDOWS\system32\DRIVERS\AegisP.sys
14:29:00.0406 4724 AegisP - ok
14:29:00.0453 4724 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
14:29:00.0453 4724 AFD - ok
14:29:00.0515 4724 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
14:29:00.0515 4724 agp440 - ok
14:29:00.0546 4724 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
14:29:00.0546 4724 agpCPQ - ok
14:29:00.0593 4724 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys
14:29:00.0593 4724 Aha154x - ok
14:29:00.0609 4724 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys
14:29:00.0625 4724 aic78u2 - ok
14:29:00.0640 4724 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys
14:29:00.0640 4724 aic78xx - ok
14:29:00.0671 4724 Alerter (758fdc60d41716ef889d849989b4b1cd) C:\WINDOWS\system32\alrsvc.dll
14:29:00.0671 4724 Alerter - ok
14:29:00.0687 4724 ALG (5e9a6658a2a69ae7eb195113b7a2e7a9) C:\WINDOWS\System32\alg.exe
14:29:00.0703 4724 ALG - ok
14:29:00.0718 4724 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys
14:29:00.0734 4724 AliIde - ok
14:29:00.0765 4724 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys
14:29:00.0765 4724 alim1541 - ok
14:29:00.0781 4724 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys
14:29:00.0781 4724 amdagp - ok
14:29:00.0796 4724 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys
14:29:00.0796 4724 amsint - ok
14:29:01.0046 4724 AntiVirSchedulerService (27c9a4e1ef31c7a64de8fbc0aa568503) C:\Program Files\Avira\AntiVir Desktop\sched.exe
14:29:01.0046 4724 AntiVirSchedulerService - ok
14:29:01.0078 4724 AntiVirService (e491888d529410d7bd8fbbad825795c8) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
14:29:01.0093 4724 AntiVirService - ok
14:29:01.0140 4724 ApfiltrService (350f19eb5fe4ec37a2414df56cde1aa8) C:\WINDOWS\system32\DRIVERS\Apfiltr.sys
14:29:01.0140 4724 ApfiltrService - ok
14:29:01.0187 4724 APPDRV (ec94e05b76d033b74394e7b2175103cf) C:\WINDOWS\SYSTEM32\DRIVERS\APPDRV.SYS
14:29:01.0187 4724 APPDRV - ok
14:29:01.0234 4724 AppMgmt (f36c9f78fc902c8dce4d3b576bb0435a) C:\WINDOWS\System32\appmgmts.dll
14:29:01.0234 4724 AppMgmt - ok
14:29:01.0281 4724 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
14:29:01.0281 4724 Arp1394 - ok
14:29:01.0312 4724 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys
14:29:01.0312 4724 asc - ok
14:29:01.0328 4724 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys
14:29:01.0328 4724 asc3350p - ok
14:29:01.0343 4724 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys
14:29:01.0343 4724 asc3550 - ok
14:29:01.0375 4724 ASFIPmon (6295dd28d0ecbc4e6e450c279fef5ed9) C:\Program Files\Broadcom\ASFIPMon\AsfIpMon.exe
14:29:01.0375 4724 ASFIPmon - ok
14:29:01.0531 4724 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
14:29:01.0531 4724 aspnet_state - ok
14:29:01.0546 4724 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
14:29:01.0546 4724 AsyncMac - ok
14:29:01.0593 4724 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
14:29:01.0593 4724 atapi - ok
14:29:01.0593 4724 Atdisk - ok
14:29:01.0640 4724 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
14:29:01.0640 4724 Atmarpc - ok
14:29:01.0687 4724 AudioSrv (b4005aef7873144634765b570dac466e) C:\WINDOWS\System32\audiosrv.dll
14:29:01.0703 4724 AudioSrv - ok
14:29:01.0734 4724 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
14:29:01.0734 4724 audstub - ok
14:29:01.0765 4724 avgntflt (7713e4eb0276702faa08e52a6e23f2a6) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
14:29:01.0781 4724 avgntflt - ok
14:29:01.0906 4724 avipbb (475fbb85956534720858ae72010c0a43) C:\WINDOWS\system32\DRIVERS\avipbb.sys
14:29:01.0906 4724 avipbb - ok
14:29:01.0937 4724 avkmgr (271cfd1a989209b1964e24d969552bf7) C:\WINDOWS\system32\DRIVERS\avkmgr.sys
14:29:01.0937 4724 avkmgr - ok
14:29:02.0078 4724 b57w2k (71509c9db1a4b2c05141563fbe3e18a0) C:\WINDOWS\system32\DRIVERS\b57xp32.sys
14:29:02.0078 4724 b57w2k - ok
14:29:02.0203 4724 BASFND (5c68ac6f3e5b3e6d6a78e97d05e42c3a) C:\Program Files\Broadcom\ASFIPMon\BASFND.sys
14:29:02.0203 4724 BASFND - ok
14:29:02.0265 4724 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
14:29:02.0265 4724 Beep - ok
14:29:02.0312 4724 BITS (baa0b6e647c1ad593e9bae5cc31bcffb) C:\WINDOWS\system32\qmgr.dll
14:29:02.0312 4724 BITS - ok
14:29:02.0359 4724 Browser (06b54a7b1ef7cb16bfd0e208d343fa71) C:\WINDOWS\System32\browser.dll
14:29:02.0359 4724 Browser - ok
14:29:02.0375 4724 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
14:29:02.0375 4724 cbidf - ok
14:29:02.0375 4724 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
14:29:02.0390 4724 cbidf2k - ok
14:29:02.0406 4724 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
14:29:02.0406 4724 cd20xrnt - ok
14:29:02.0437 4724 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
14:29:02.0437 4724 Cdaudio - ok
14:29:02.0453 4724 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
14:29:02.0453 4724 Cdfs - ok
14:29:02.0468 4724 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
14:29:02.0468 4724 Cdrom - ok
14:29:02.0468 4724 Changer - ok
14:29:02.0500 4724 CiSvc (793ef38a5fd086c3c8e48a8a861562ed) C:\WINDOWS\system32\cisvc.exe
14:29:02.0500 4724 CiSvc - ok
14:29:02.0515 4724 ClipSrv (8b30cbb0c07d49b2658fb190946b0e7e) C:\WINDOWS\system32\clipsrv.exe
14:29:02.0515 4724 ClipSrv - ok
14:29:02.0625 4724 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:29:02.0625 4724 clr_optimization_v2.0.50727_32 - ok
14:29:02.0703 4724 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:29:02.0703 4724 clr_optimization_v4.0.30319_32 - ok
14:29:02.0703 4724 CmBatt (0f6c187d38d98f8df904589a5f94d411) C:\WINDOWS\system32\DRIVERS\CmBatt.sys
14:29:02.0703 4724 CmBatt - ok
14:29:02.0750 4724 CmdIde (e3726ad522d0bdae090671048c991ab3) C:\WINDOWS\system32\DRIVERS\cmdide.sys
14:29:02.0750 4724 CmdIde - ok
14:29:02.0781 4724 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
14:29:02.0796 4724 Compbatt - ok
14:29:02.0796 4724 COMSysApp - ok
14:29:02.0796 4724 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys
14:29:02.0796 4724 Cpqarray - ok
14:29:02.0843 4724 CryptSvc (7a6d0b71035e123fdda2156a25578ad3) C:\WINDOWS\System32\cryptsvc.dll
14:29:02.0843 4724 CryptSvc - ok
14:29:02.0875 4724 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
14:29:02.0875 4724 dac2w2k - ok
14:29:02.0875 4724 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys
14:29:02.0875 4724 dac960nt - ok
14:29:02.0937 4724 DcomLaunch (0203b1aad358f206cb0a3c1f93cce17a) C:\WINDOWS\system32\rpcss.dll
14:29:02.0937 4724 DcomLaunch - ok
14:29:02.0968 4724 Dhcp (318f535dc05551d96deeb90b6d6904de) C:\WINDOWS\System32\dhcpcsvc.dll
14:29:02.0968 4724 Dhcp - ok
14:29:02.0984 4724 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
14:29:02.0984 4724 Disk - ok
14:29:03.0015 4724 DLABMFSM (a0500678a33802d8954153839301d539) C:\WINDOWS\system32\Drivers\DLABMFSM.SYS
14:29:03.0015 4724 DLABMFSM - ok
14:29:03.0031 4724 DLABOIOM (b8d2f68cac54d46281399f9092644794) C:\WINDOWS\system32\Drivers\DLABOIOM.SYS
14:29:03.0046 4724 DLABOIOM - ok
14:29:03.0046 4724 DLACDBHM (0ee93ab799d1cb4ec90b36f3612fe907) C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
14:29:03.0046 4724 DLACDBHM - ok
14:29:03.0062 4724 DLADResM (86dfc5bae3878cfabde1430475bd52a7) C:\WINDOWS\system32\Drivers\DLADResM.SYS
14:29:03.0062 4724 DLADResM - ok
14:29:03.0078 4724 DLAIFS_M (766a148235be1c0039c974446e4c0edc) C:\WINDOWS\system32\Drivers\DLAIFS_M.SYS
14:29:03.0078 4724 DLAIFS_M - ok
14:29:03.0078 4724 DLAOPIOM (38267cca177354f1c64450a43a4f7627) C:\WINDOWS\system32\Drivers\DLAOPIOM.SYS
14:29:03.0078 4724 DLAOPIOM - ok
14:29:03.0093 4724 DLAPoolM (fd363369fd313b46b5aeab1a688b52e9) C:\WINDOWS\system32\Drivers\DLAPoolM.SYS
14:29:03.0093 4724 DLAPoolM - ok
14:29:03.0093 4724 DLARTL_M (336ae18f0912ef4fbe5518849e004d74) C:\WINDOWS\system32\Drivers\DLARTL_M.SYS
14:29:03.0093 4724 DLARTL_M - ok
14:29:03.0109 4724 DLAUDFAM (fd85f682c1cc2a7ca878c7a448e6d87e) C:\WINDOWS\system32\Drivers\DLAUDFAM.SYS
14:29:03.0109 4724 DLAUDFAM - ok
14:29:03.0125 4724 DLAUDF_M (af389ce587b6bf5bbdcd6f6abe5eabc0) C:\WINDOWS\system32\Drivers\DLAUDF_M.SYS
14:29:03.0125 4724 DLAUDF_M - ok
14:29:03.0171 4724 DLPortIO (7b481d27abff689de7ed6f556def4421) C:\WINDOWS\system32\drivers\DLPortIO.sys
14:29:03.0171 4724 DLPortIO - ok
14:29:03.0171 4724 dmadmin - ok
14:29:03.0281 4724 dmboot (f5deadd42335fb33edca74ecb2f36cba) C:\WINDOWS\system32\drivers\dmboot.sys
14:29:03.0296 4724 dmboot - ok
14:29:03.0343 4724 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) C:\WINDOWS\system32\drivers\dmio.sys
14:29:03.0343 4724 dmio - ok
14:29:03.0375 4724 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
14:29:03.0390 4724 dmload - ok
14:29:03.0421 4724 dmserver (6797c23d6b79935482d7f0e8ca5e5b67) C:\WINDOWS\System32\dmserver.dll
14:29:03.0421 4724 dmserver - ok
14:29:03.0437 4724 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
14:29:03.0453 4724 DMusic - ok
14:29:03.0500 4724 Dnscache (1a1e59377fb6cacd711cc5073c4a7d79) C:\WINDOWS\System32\dnsrslvr.dll
14:29:03.0500 4724 Dnscache - ok
14:29:03.0562 4724 Dot3svc (3fcf86f03d0302443c21ce6e5bbf7a25) C:\WINDOWS\System32\dot3svc.dll
14:29:03.0562 4724 Dot3svc - ok
14:29:03.0578 4724 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys
14:29:03.0578 4724 dpti2o - ok
14:29:03.0625 4724 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
14:29:03.0625 4724 drmkaud - ok
14:29:03.0687 4724 DRVMCDB (5d3b71bb2bb0009d65d290e2ef374bd3) C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
14:29:03.0687 4724 DRVMCDB - ok
14:29:03.0734 4724 DRVNDDM (c591ba9f96f40a1fd6494dafdcd17185) C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
14:29:03.0734 4724 DRVNDDM - ok
14:29:03.0765 4724 DXEC01 (549734664886d91222969845e4311d1b) C:\WINDOWS\system32\drivers\dxec01.sys
14:29:03.0765 4724 DXEC01 - ok
14:29:03.0781 4724 E100B (1961f8b618e3c20df54c146b294efd2a) C:\WINDOWS\system32\DRIVERS\e100b325.sys
14:29:03.0796 4724 E100B - ok
14:29:03.0828 4724 EapHost (8b5fc9087d2cab110bc2ed5cc5e7b8ac) C:\WINDOWS\System32\eapsvc.dll
14:29:03.0828 4724 EapHost - ok
14:29:03.0859 4724 ERSvc (94f948cb12c4d35483f1e815deb16c7b) C:\WINDOWS\System32\ersvc.dll
14:29:03.0859 4724 ERSvc - ok
14:29:03.0906 4724 Eventlog (c3fb1d70cb88722267949694ba51759e) C:\WINDOWS\system32\services.exe
14:29:03.0921 4724 Eventlog - ok
14:29:04.0000 4724 EventSystem (ec16ae9b37eacf871629227a3f3913fd) C:\WINDOWS\system32\es.dll
14:29:04.0000 4724 EventSystem - ok
14:29:04.0156 4724 EvtEng (e71b03ff6b819ae1a286aa27e956d523) C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
14:29:04.0171 4724 EvtEng - ok
14:29:04.0234 4724 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
14:29:04.0234 4724 Fastfat - ok
14:29:04.0296 4724 FastUserSwitchingCompatibility (1b8542f338cdd86929a084a455837158) C:\WINDOWS\System32\shsvcs.dll
14:29:04.0296 4724 FastUserSwitchingCompatibility - ok
14:29:04.0359 4724 Fax (305687eb8c8e0a12a0b2bae387b6e466) C:\WINDOWS\system32\fxssvc.exe
14:29:04.0375 4724 Fax - ok
14:29:04.0406 4724 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
14:29:04.0406 4724 Fdc - ok
14:29:04.0421 4724 Fips (31f923eb2170fc172c81abda0045d18c) C:\WINDOWS\system32\drivers\Fips.sys
14:29:04.0437 4724 Fips - ok
14:29:04.0453 4724 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
14:29:04.0453 4724 Flpydisk - ok
14:29:04.0515 4724 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
14:29:04.0515 4724 FltMgr - ok
14:29:04.0625 4724 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
14:29:04.0625 4724 FontCache3.0.0.0 - ok
14:29:04.0656 4724 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
14:29:04.0656 4724 Fs_Rec - ok
14:29:04.0703 4724 Ftdisk (a86859b77b908c18c2657f284aa29fe3) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
14:29:04.0703 4724 Ftdisk - ok
14:29:04.0812 4724 FTRTSVC (ca855bb5f571cca42fce3c9506314dc2) C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
14:29:04.0812 4724 FTRTSVC - ok
14:29:04.0843 4724 GoToAssist (d3316f6e3c011435f36e3d6e49b3196c) C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe
14:29:04.0859 4724 GoToAssist - ok
14:29:04.0890 4724 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
14:29:04.0890 4724 Gpc - ok
14:29:04.0921 4724 gupdate - ok
14:29:04.0937 4724 gupdatem - ok
14:29:04.0968 4724 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
14:29:04.0968 4724 gusvc - ok
14:29:05.0031 4724 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
14:29:05.0031 4724 HDAudBus - ok
14:29:05.0109 4724 helpsvc (1247f83b705af0e796330442f7967cf8) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
14:29:05.0109 4724 helpsvc - ok
14:29:05.0156 4724 HidServ (a3b9b4a68bc839ce5a264d5908092261) C:\WINDOWS\System32\hidserv.dll
14:29:05.0156 4724 HidServ - ok
14:29:05.0187 4724 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
14:29:05.0187 4724 HidUsb - ok
14:29:05.0218 4724 hkmsvc (17b3c3d40cdba40c2e331d28be4de27f) C:\WINDOWS\System32\kmsvc.dll
14:29:05.0234 4724 hkmsvc - ok
14:29:05.0250 4724 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys
14:29:05.0265 4724 hpn - ok
14:29:05.0343 4724 hpqcxs08 (a742e5d45f127b766695b925c0d9ac94) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
14:29:05.0343 4724 hpqcxs08 - ok
14:29:05.0406 4724 HSFHWAZL (290cdbb05903742ea06b7203c5a662f5) C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys
14:29:05.0406 4724 HSFHWAZL - ok
14:29:05.0562 4724 HSF_DPV (7ab812355f98858b9ecdd46e6fcc221f) C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys
14:29:05.0578 4724 HSF_DPV - ok
14:29:05.0656 4724 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
14:29:05.0656 4724 HTTP - ok
14:29:05.0703 4724 HTTPFilter (bd31cface38d1800abdb43f4260af0d5) C:\WINDOWS\System32\w3ssl.dll
14:29:05.0718 4724 HTTPFilter - ok
14:29:05.0750 4724 hwdatacard (8adf5ef39e896a65beded878494ee2b6) C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys
14:29:05.0750 4724 hwdatacard - ok
14:29:05.0781 4724 hwinterface (448bb2fe30f1dde9eaa4f0e87b52b687) C:\WINDOWS\system32\Drivers\hwinterface.sys
14:29:05.0781 4724 hwinterface - ok
14:29:05.0828 4724 hwusbfake (9be5caeabc6b2eb98b3a4839a55d47a0) C:\WINDOWS\system32\DRIVERS\ewusbfake.sys
14:29:05.0828 4724 hwusbfake - ok
14:29:05.0859 4724 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys
14:29:05.0859 4724 i2omgmt - ok
14:29:05.0890 4724 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys
14:29:05.0890 4724 i2omp - ok
14:29:05.0921 4724 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
14:29:05.0921 4724 i8042prt - ok
14:29:06.0453 4724 ialm (8b998e6c0aebbaecd6da33df947695d3) C:\WINDOWS\system32\DRIVERS\igxpmp32.sys
14:29:06.0546 4724 ialm - ok
14:29:06.0656 4724 IDriverT (daf66902f08796f9c694901660e5a64a) C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
14:29:06.0656 4724 IDriverT - ok
14:29:06.0843 4724 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
14:29:06.0859 4724 idsvc - ok
14:29:06.0937 4724 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
14:29:06.0937 4724 Imapi - ok
14:29:06.0984 4724 ImapiService (c4221678bbaa55239c23632875759961) C:\WINDOWS\system32\imapi.exe
14:29:07.0000 4724 ImapiService - ok
14:29:07.0031 4724 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys
14:29:07.0031 4724 ini910u - ok
14:29:07.0031 4724 IntelIde (4b6da2f0a4095857a9e3f3697399d575) C:\WINDOWS\system32\DRIVERS\intelide.sys
14:29:07.0031 4724 IntelIde - ok
14:29:07.0062 4724 intelppm (ad340800c35a42d4de1641a37feea34c) C:\WINDOWS\system32\DRIVERS\intelppm.sys
14:29:07.0062 4724 intelppm - ok
14:29:07.0078 4724 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
14:29:07.0093 4724 Ip6Fw - ok
14:29:07.0125 4724 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
14:29:07.0125 4724 IpFilterDriver - ok
14:29:07.0140 4724 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
14:29:07.0140 4724 IpInIp - ok
14:29:07.0187 4724 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
14:29:07.0187 4724 IpNat - ok
14:29:07.0250 4724 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
14:29:07.0250 4724 IPSec - ok
14:29:07.0281 4724 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
14:29:07.0281 4724 IRENUM - ok
14:29:07.0312 4724 isapnp (355836975a67b6554bca60328cd6cb74) C:\WINDOWS\system32\DRIVERS\isapnp.sys
14:29:07.0312 4724 isapnp - ok
14:29:07.0468 4724 JavaQuickStarterService (5e06a9d23727daf96faa796f1135fdcd) C:\Program Files\Java\jre6\bin\jqs.exe
14:29:07.0468 4724 JavaQuickStarterService - ok
14:29:07.0500 4724 Kbdclass (16813155807c6881f4bfbf6657424659) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
14:29:07.0500 4724 Kbdclass - ok
14:29:07.0609 4724 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
14:29:07.0609 4724 kmixer - ok
14:29:07.0640 4724 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
14:29:07.0640 4724 KSecDD - ok
14:29:07.0687 4724 lanmanserver (1db8078a32e03ac8f5eb5e6dcac2aa34) C:\WINDOWS\System32\srvsvc.dll
14:29:07.0687 4724 lanmanserver - ok
14:29:07.0734 4724 lanmanworkstation (ad54ead46d92f413be189aabc1c59490) C:\WINDOWS\System32\wkssvc.dll
14:29:07.0734 4724 lanmanworkstation - ok
14:29:07.0734 4724 lbrtfdc - ok
14:29:07.0750 4724 LmHosts (0f357c079ac529a844ab5b18e4eef881) C:\WINDOWS\System32\lmhsvc.dll
14:29:07.0750 4724 LmHosts - ok
14:29:07.0765 4724 MBAMProtector (6dfe7f2e8e8a337263aa5c92a215f161) C:\WINDOWS\system32\drivers\mbam.sys
14:29:07.0781 4724 MBAMProtector - ok
14:29:07.0843 4724 MBAMService (43683e970f008c93c9429ef428147a54) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
14:29:07.0859 4724 MBAMService - ok
14:29:07.0890 4724 mdmxsdk (0cea2d0d3fa284b85ed5b68365114f76) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
14:29:07.0890 4724 mdmxsdk - ok
14:29:07.0937 4724 Messenger (e67a66a3781c1a483f0f8992664cbe0d) C:\WINDOWS\System32\msgsvc.dll
14:29:07.0937 4724 Messenger - ok
14:29:07.0984 4724 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
14:29:07.0984 4724 mnmdd - ok
14:29:08.0296 4724 mnmsrvc (d3a2870cd96cda7bcff3dc54f64087ad) C:\WINDOWS\system32\mnmsrvc.exe
14:29:08.0296 4724 mnmsrvc - ok
14:29:08.0343 4724 Modem (510ade9327fe84c10254e1902697e25f) C:\WINDOWS\system32\drivers\Modem.sys
14:29:08.0343 4724 Modem - ok
14:29:08.0359 4724 Mouclass (027c01bd7ef3349aaebc883d8a799efb) C:\WINDOWS\system32\DRIVERS\mouclass.sys
14:29:08.0359 4724 Mouclass - ok
14:29:08.0406 4724 mouhid (124d6846040c79b9c997f78ef4b2a4e5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
14:29:08.0406 4724 mouhid - ok
14:29:08.0421 4724 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
14:29:08.0421 4724 MountMgr - ok
14:29:08.0468 4724 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys
14:29:08.0468 4724 mraid35x - ok
14:29:08.0484 4724 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
14:29:08.0484 4724 MRxDAV - ok
14:29:08.0578 4724 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
14:29:08.0578 4724 MRxSmb - ok
14:29:08.0625 4724 MSDTC (8648d670ae0d95c95e7bbb5b80661796) C:\WINDOWS\system32\msdtc.exe
14:29:08.0625 4724 MSDTC - ok
14:29:08.0656 4724 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
14:29:08.0656 4724 Msfs - ok
14:29:08.0671 4724 MSIServer - ok
14:29:08.0671 4724 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
14:29:08.0671 4724 MSKSSRV - ok
14:29:08.0671 4724 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
14:29:08.0671 4724 MSPCLOCK - ok
14:29:08.0671 4724 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
14:29:08.0671 4724 MSPQM - ok
14:29:08.0687 4724 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
14:29:08.0687 4724 mssmbios - ok
14:29:08.0781 4724 MSSQL$EBP - ok
14:29:08.0859 4724 MSSQLServerADHelper100 (8e8e74c953eb0c4f8828d99d6f27fd6f) C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE
14:29:08.0859 4724 MSSQLServerADHelper100 - ok
14:29:08.0875 4724 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
14:29:08.0875 4724 Mup - ok
14:29:08.0921 4724 napagent (69e4fbbabaeee1bff422e091da3171da) C:\WINDOWS\System32\qagentrt.dll
14:29:08.0937 4724 napagent - ok
14:29:08.0968 4724 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
14:29:08.0968 4724 NDIS - ok
14:29:09.0000 4724 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
14:29:09.0000 4724 NdisTapi - ok
14:29:09.0046 4724 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
14:29:09.0046 4724 Ndisuio - ok
14:29:09.0062 4724 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
14:29:09.0062 4724 NdisWan - ok
14:29:09.0093 4724 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
14:29:09.0093 4724 NDProxy - ok
14:29:09.0125 4724 Net Driver HPZ12 (51c6d8bfbd4ea5b62a1ba7f4469250d3) C:\WINDOWS\system32\HPZinw12.dll
14:29:09.0125 4724 Net Driver HPZ12 - ok
14:29:09.0156 4724 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
14:29:09.0156 4724 NetBIOS - ok
14:29:09.0171 4724 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
14:29:09.0171 4724 NetBT - ok
14:29:09.0234 4724 NetDDE (5c9b1d83755b36237b70f95df3d46a52) C:\WINDOWS\system32\netdde.exe
14:29:09.0234 4724 NetDDE - ok
14:29:09.0250 4724 NetDDEdsdm (5c9b1d83755b36237b70f95df3d46a52) C:\WINDOWS\system32\netdde.exe
14:29:09.0250 4724 NetDDEdsdm - ok
14:29:09.0281 4724 Netlogon (91e6024d6d4dcdecdb36c43ecf9bbecb) C:\WINDOWS\system32\lsass.exe
14:29:09.0281 4724 Netlogon - ok
14:29:09.0312 4724 Netman (be0cb143fa427d93440ded18db8c918b) C:\WINDOWS\System32\netman.dll
14:29:09.0312 4724 Netman - ok
14:29:09.0453 4724 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:29:09.0453 4724 NetTcpPortSharing - ok
14:29:09.0812 4724 NETw4x32 (b5ab1108b377b5f3d37409fabda01453) C:\WINDOWS\system32\DRIVERS\NETw4x32.sys
14:29:09.0843 4724 NETw4x32 - ok
14:29:09.0984 4724 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
14:29:09.0984 4724 NIC1394 - ok
14:29:10.0125 4724 NICCONFIGSVC (27d38b7d646283d98d65e3435b1e6197) C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
14:29:10.0140 4724 NICCONFIGSVC - ok
14:29:10.0203 4724 Nla (6f5f546a92c7b6ae45db1d6910781eb0) C:\WINDOWS\System32\mswsock.dll
14:29:10.0203 4724 Nla - ok
14:29:10.0218 4724 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
14:29:10.0218 4724 Npfs - ok
14:29:10.0281 4724 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
14:29:10.0296 4724 Ntfs - ok
14:29:10.0328 4724 NtLmSsp (91e6024d6d4dcdecdb36c43ecf9bbecb) C:\WINDOWS\system32\lsass.exe
14:29:10.0328 4724 NtLmSsp - ok
14:29:10.0406 4724 NtmsSvc (037d92b3a7853a183fcab77fb1d13d6c) C:\WINDOWS\system32\ntmssvc.dll
14:29:10.0421 4724 NtmsSvc - ok
14:29:10.0453 4724 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
14:29:10.0453 4724 Null - ok
14:29:10.0703 4724 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
14:29:10.0734 4724 nv - ok
14:29:10.0875 4724 NWCWorkstation (b0401126f3b7748ee795097024787534) C:\WINDOWS\System32\nwwks.dll
14:29:10.0875 4724 NWCWorkstation - ok
14:29:10.0921 4724 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
14:29:10.0921 4724 NwlnkFlt - ok
14:29:10.0921 4724 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
14:29:10.0921 4724 NwlnkFwd - ok
14:29:10.0984 4724 NwlnkIpx (8b8b1be2dba4025da6786c645f77f123) C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys
14:29:10.0984 4724 NwlnkIpx - ok
14:29:11.0000 4724 NwlnkNb (56d34a67c05e94e16377c60609741ff8) C:\WINDOWS\system32\DRIVERS\nwlnknb.sys
14:29:11.0000 4724 NwlnkNb - ok
14:29:11.0015 4724 NwlnkSpx (c0bb7d1615e1acbdc99757f6ceaf8cf0) C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys
14:29:11.0015 4724 NwlnkSpx - ok
14:29:11.0046 4724 NWRDR (36b9b950e3d2e100970a48d8bad86740) C:\WINDOWS\system32\DRIVERS\nwrdr.sys
14:29:11.0046 4724 NWRDR - ok
14:29:11.0187 4724 odserv (84de1dd996b48b05ace31ad015fa108a) C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE
14:29:11.0187 4724 odserv - ok
14:29:11.0218 4724 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
14:29:11.0218 4724 ohci1394 - ok
14:29:11.0250 4724 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE
14:29:11.0265 4724 ose - ok
14:29:11.0296 4724 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) C:\WINDOWS\system32\DRIVERS\parport.sys
14:29:11.0312 4724 Parport - ok
14:29:11.0328 4724 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
14:29:11.0328 4724 PartMgr - ok
14:29:11.0359 4724 ParVdm (9575c5630db8fb804649a6959737154c) C:\WINDOWS\system32\drivers\ParVdm.sys
14:29:11.0359 4724 ParVdm - ok
14:29:11.0390 4724 PBADRV (9ec004140e1b675acdeb07f66ee797a4) C:\WINDOWS\system32\DRIVERS\PBADRV.sys
14:29:11.0390 4724 PBADRV - ok
14:29:11.0421 4724 PCAMPR5 (b670c5d89f0726b7a2a7dfb4e968cdf8) C:\WINDOWS\system32\PCAMPR5.SYS
14:29:11.0437 4724 PCAMPR5 - ok
14:29:11.0453 4724 PCANDIS5 (ecd2f9d67b06606064daf6961a6d5efe) C:\WINDOWS\system32\PCANDIS5.SYS
14:29:11.0468 4724 PCANDIS5 - ok
14:29:11.0484 4724 PCI (043410877bda580c528f45165f7125bc) C:\WINDOWS\system32\DRIVERS\pci.sys
14:29:11.0500 4724 PCI - ok
14:29:11.0500 4724 PCIDump - ok
14:29:11.0515 4724 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) C:\WINDOWS\system32\DRIVERS\pciide.sys
14:29:11.0515 4724 PCIIde - ok
14:29:11.0546 4724 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) C:\WINDOWS\system32\DRIVERS\pcmcia.sys
14:29:11.0546 4724 Pcmcia - ok
14:29:11.0546 4724 PDCOMP - ok
14:29:11.0546 4724 PDFRAME - ok
14:29:11.0546 4724 PDRELI - ok
14:29:11.0562 4724 PDRFRAME - ok
14:29:11.0562 4724 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys
14:29:11.0562 4724 perc2 - ok
14:29:11.0562 4724 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys
14:29:11.0562 4724 perc2hib - ok
14:29:11.0609 4724 PlugPlay (c3fb1d70cb88722267949694ba51759e) C:\WINDOWS\system32\services.exe
14:29:11.0625 4724 PlugPlay - ok
14:29:11.0656 4724 Pml Driver HPZ12 (79834aa2fbf9fe81eebb229024f6f7fc) C:\WINDOWS\system32\HPZipm12.dll
14:29:11.0656 4724 Pml Driver HPZ12 - ok
14:29:11.0687 4724 PolicyAgent (91e6024d6d4dcdecdb36c43ecf9bbecb) C:\WINDOWS\system32\lsass.exe
14:29:11.0687 4724 PolicyAgent - ok
14:29:11.0703 4724 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
14:29:11.0703 4724 PptpMiniport - ok
14:29:11.0703 4724 ProtectedStorage (91e6024d6d4dcdecdb36c43ecf9bbecb) C:\WINDOWS\system32\lsass.exe
14:29:11.0703 4724 ProtectedStorage - ok
14:29:11.0718 4724 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
14:29:11.0718 4724 PSched - ok
14:29:11.0765 4724 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
14:29:11.0765 4724 Ptilink - ok
14:29:11.0812 4724 PxHelp20 (49452bfcec22f36a7a9b9c2181bc3042) C:\WINDOWS\system32\Drivers\PxHelp20.sys
14:29:11.0812 4724 PxHelp20 - ok
14:29:11.0953 4724 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys
14:29:11.0953 4724 ql1080 - ok
14:29:12.0000 4724 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
14:29:12.0000 4724 Ql10wnt - ok
14:29:12.0125 4724 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys
14:29:12.0125 4724 ql12160 - ok
14:29:12.0218 4724 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys
14:29:12.0218 4724 ql1240 - ok
14:29:12.0312 4724 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys
14:29:12.0328 4724 ql1280 - ok
14:29:12.0328 4724 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
14:29:12.0328 4724 RasAcd - ok
14:29:12.0375 4724 RasAuto (78da9ccdac683ef5aa87d1c919f6d221) C:\WINDOWS\System32\rasauto.dll
14:29:12.0375 4724 RasAuto - ok
14:29:12.0390 4724 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
14:29:12.0390 4724 Rasl2tp - ok
14:29:12.0437 4724 RasMan (0a48df90b4784f9b90a2671af992c914) C:\WINDOWS\System32\rasmans.dll
14:29:12.0437 4724 RasMan - ok
14:29:12.0437 4724 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
14:29:12.0437 4724 RasPppoe - ok
14:29:12.0453 4724 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
14:29:12.0453 4724 Raspti - ok
14:29:12.0500 4724 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
14:29:12.0500 4724 Rdbss - ok
14:29:12.0515 4724 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
14:29:12.0515 4724 RDPCDD - ok
14:29:12.0546 4724 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
14:29:12.0546 4724 rdpdr - ok
14:29:12.0593 4724 RDPWD (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys
14:29:12.0593 4724 RDPWD - ok
14:29:12.0625 4724 RDSessMgr (9f63d9c5b238ed1c375d417eff3d5be7) C:\WINDOWS\system32\sessmgr.exe
14:29:12.0625 4724 RDSessMgr - ok
14:29:12.0656 4724 redbook (d8eb2a7904db6c916eb5361878ddcbae) C:\WINDOWS\system32\DRIVERS\redbook.sys
14:29:12.0656 4724 redbook - ok
14:29:12.0781 4724 RegSrvc (2cf574d0965f58e514a2dc94114d7eca) C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
14:29:12.0796 4724 RegSrvc - ok
14:29:12.0843 4724 RemoteAccess (7da370c31673c99497bd07068ee6e354) C:\WINDOWS\System32\mprdim.dll
14:29:12.0843 4724 RemoteAccess - ok
14:29:12.0906 4724 RemoteRegistry (e598d81197e2e0ec42a0c55772bb00e8) C:\WINDOWS\system32\regsvc.dll
14:29:12.0906 4724 RemoteRegistry - ok
14:29:12.0937 4724 RpcLocator (499c59a2584f6d4ea41e944da571d993) C:\WINDOWS\system32\locator.exe
14:29:12.0953 4724 RpcLocator - ok
14:29:13.0015 4724 RpcSs (0203b1aad358f206cb0a3c1f93cce17a) C:\WINDOWS\system32\rpcss.dll
14:29:13.0031 4724 RpcSs - ok
14:29:13.0093 4724 RsFx0150 (a95840a95a9ff74b0009e5d848cddb39) C:\WINDOWS\system32\DRIVERS\RsFx0150.sys
14:29:13.0093 4724 RsFx0150 - ok
14:29:13.0140 4724 RSVP (414964844f4793acb868d057e8ed997e) C:\WINDOWS\system32\rsvp.exe
14:29:13.0156 4724 RSVP - ok
14:29:13.0328 4724 S24EventMonitor (874173edbd4f2fe711f245855a2ffa23) C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
14:29:13.0359 4724 S24EventMonitor - ok
14:29:13.0406 4724 s24trans (eadfb87f911a7a75d1b80617f92901e8) C:\WINDOWS\system32\DRIVERS\s24trans.sys
14:29:13.0406 4724 s24trans - ok
14:29:13.0437 4724 SamSs (91e6024d6d4dcdecdb36c43ecf9bbecb) C:\WINDOWS\system32\lsass.exe
14:29:13.0453 4724 SamSs - ok
14:29:13.0500 4724 SCardSvr (67949cc8a865296c1333c96a4e1a2d66) C:\WINDOWS\System32\SCardSvr.exe
14:29:13.0500 4724 SCardSvr - ok
14:29:13.0562 4724 Schedule (55f5c5c1be1a78e285033e432ba01597) C:\WINDOWS\system32\schedsvc.dll
14:29:13.0562 4724 Schedule - ok
14:29:13.0593 4724 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
14:29:13.0593 4724 Secdrv - ok
14:29:13.0625 4724 seclogon (5ac311c0af2af5ec221670bb8dc479d3) C:\WINDOWS\System32\seclogon.dll
14:29:13.0625 4724 seclogon - ok
14:29:13.0828 4724 SecureStorageService (472946edebf85c1f0b44b6eba01ac9b6) C:\Program Files\Wave Systems Corp\Secure Storage Manager\SecureStorageService.exe
14:29:13.0843 4724 SecureStorageService - ok
14:29:13.0859 4724 SENS (3531366f38f453d08fe72e7b32dfe786) C:\WINDOWS\system32\sens.dll
14:29:13.0859 4724 SENS - ok
14:29:13.0906 4724 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
14:29:13.0906 4724 serenum - ok
14:29:13.0921 4724 Serial (93d313c31f7ad9ea2b75f26075413c7c) C:\WINDOWS\system32\DRIVERS\serial.sys
14:29:13.0921 4724 Serial - ok
14:29:13.0984 4724 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
14:29:13.0984 4724 Sfloppy - ok
14:29:14.0062 4724 SharedAccess (f4ce708a7d17a625de6c0fd746d50e88) C:\WINDOWS\System32\ipnathlp.dll
14:29:14.0062 4724 SharedAccess - ok
14:29:14.0125 4724 ShellHWDetection (1b8542f338cdd86929a084a455837158) C:\WINDOWS\System32\shsvcs.dll
14:29:14.0125 4724 ShellHWDetection - ok
14:29:14.0187 4724 SIECA132Switcher.exe (ee4d1e0f5cfc6e153b9ba1b560ce06af) C:\Program Files\Sontheim\MT_Api\SIECA132Switcher.exe
14:29:14.0187 4724 SIECA132Switcher.exe - ok
14:29:14.0234 4724 SIECE132Svr_V7.00.0901 (f9b0cab1109ed1fbb799d922819e41d8) C:\Program Files\Sontheim\MT_Api\7.0.9.1\SIECE132Svr.exe
14:29:14.0234 4724 SIECE132Svr_V7.00.0901 - ok
14:29:14.0281 4724 SIECE132Svr_V7.04.1200 (8faf97ad2093ee29a6cc46ec315c3321) C:\Program Files\Sontheim\MT_Api\7.4.12.0\SIECE132Svr.exe
14:29:14.0281 4724 SIECE132Svr_V7.04.1200 - ok
14:29:14.0328 4724 SieUsb32 (c99990099fcffeed68bf84bf5aed88a7) C:\WINDOWS\system32\Drivers\SieUsb32.sys
14:29:14.0328 4724 SieUsb32 - ok
14:29:14.0343 4724 Simbad - ok
14:29:14.0359 4724 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys
14:29:14.0375 4724 sisagp - ok
14:29:14.0421 4724 snapman (e78c98378a071ce4d48a7c514fa98fa1) C:\WINDOWS\system32\DRIVERS\snapman.sys
14:29:14.0437 4724 snapman - ok
14:29:14.0484 4724 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys
14:29:14.0484 4724 Sparrow - ok
14:29:14.0515 4724 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
14:29:14.0515 4724 splitter - ok
14:29:14.0578 4724 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
14:29:14.0578 4724 Spooler - ok
14:29:14.0734 4724 SQLAgent$EBP (37761f6be2ebaed72cc0d43bd4c8c2a6) C:\Program Files\Microsoft SQL Server\MSSQL10_50.EBP\MSSQL\Binn\SQLAGENT.EXE
14:29:14.0750 4724 SQLAgent$EBP - ok
14:29:14.0796 4724 SQLBrowser (7d67c07c63796775cc5492bcfeaff125) C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
14:29:14.0812 4724 SQLBrowser - ok
14:29:14.0828 4724 SQLWriter (8e6e5cfa06769a417b03fd6faa29e010) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
14:29:14.0828 4724 SQLWriter - ok
14:29:14.0890 4724 sr (39626e6dc1fb39434ec40c42722b660a) C:\WINDOWS\system32\DRIVERS\sr.sys
14:29:14.0890 4724 sr - ok
14:29:14.0937 4724 srservice (6ed29124a1c83bd0cf6b26bd01ca6f6f) C:\WINDOWS\system32\srsvc.dll
14:29:14.0953 4724 srservice - ok
14:29:15.0031 4724 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
14:29:15.0031 4724 Srv - ok
14:29:15.0062 4724 SSDPSRV (ea9e0db8684cef2fd3badd671df5a112) C:\WINDOWS\System32\ssdpsrv.dll
14:29:15.0062 4724 SSDPSRV - ok
14:29:15.0109 4724 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
14:29:15.0109 4724 ssmdrv - ok
14:29:15.0156 4724 STacSV (b218068eba6f46f102b4218bdb81be0b) C:\WINDOWS\system32\StacSV.exe
14:29:15.0156 4724 STacSV - ok
14:29:15.0171 4724 StarOpen - ok
14:29:15.0265 4724 STHDA (58f855684e163466a5c565adf0865536) C:\WINDOWS\system32\drivers\sthda.sys
14:29:15.0281 4724 STHDA - ok
14:29:15.0343 4724 stisvc (d76b0e8a4ecad1adcc75fd14a7acc54c) C:\WINDOWS\system32\wiaservc.dll
14:29:15.0343 4724 stisvc - ok
14:29:15.0437 4724 stllssvr (de3e7a2345ebaa3ce8e6957dfb55fb15) C:\Program Files\Fichiers communs\SureThing Shared\stllssvr.exe
14:29:15.0437 4724 stllssvr - ok
14:29:15.0656 4724 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
14:29:15.0656 4724 swenum - ok
14:29:15.0671 4724 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
14:29:15.0671 4724 swmidi - ok
14:29:15.0671 4724 SwPrv - ok
14:29:15.0703 4724 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys
14:29:15.0703 4724 symc810 - ok
14:29:15.0703 4724 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys
14:29:15.0703 4724 symc8xx - ok
14:29:15.0734 4724 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys
14:29:15.0734 4724 sym_hi - ok
14:29:15.0734 4724 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys
14:29:15.0734 4724 sym_u3 - ok
14:29:15.0765 4724 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
14:29:15.0765 4724 sysaudio - ok
14:29:15.0781 4724 SysmonLog (0899061318a6b1d9596aabfc77f45e44) C:\WINDOWS\system32\smlogsvc.exe
14:29:15.0781 4724 SysmonLog - ok
14:29:15.0812 4724 TapiSrv (8e5231171ad6595ff002e848cc54fcd7) C:\WINDOWS\System32\tapisrv.dll
14:29:15.0812 4724 TapiSrv - ok
14:29:15.0859 4724 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
14:29:15.0875 4724 Tcpip - ok
14:29:15.0984 4724 tcsd_win32.exe (23b506262493f1a521683ee88c5fbf60) C:\Program Files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe
14:29:16.0015 4724 tcsd_win32.exe - ok
14:29:16.0156 4724 TdmService (a27d803b21f24a5cfb775944ea4cb130) C:\Program Files\Wave Systems Corp\Trusted Drive Manager\TdmService.exe
14:29:16.0171 4724 TdmService - ok
14:29:16.0281 4724 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
14:29:16.0281 4724 TDPIPE - ok
14:29:16.0296 4724 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
14:29:16.0312 4724 TDTCP - ok
14:29:16.0328 4724 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
14:29:16.0328 4724 TermDD - ok
14:29:16.0390 4724 TermService (710bc85a8c22626ee094439e3ea0d38c) C:\WINDOWS\System32\termsrv.dll
14:29:16.0390 4724 TermService - ok
14:29:16.0453 4724 Themes (1b8542f338cdd86929a084a455837158) C:\WINDOWS\System32\shsvcs.dll
14:29:16.0453 4724 Themes - ok
14:29:16.0500 4724 tifsfilter (d352fff2a623b916c08ceacbfc8b5c32) C:\WINDOWS\system32\DRIVERS\tifsfilt.sys
14:29:16.0500 4724 tifsfilter - ok
14:29:16.0593 4724 timounter (64694b2a5c772e1c61feac300ed90ca6) C:\WINDOWS\system32\DRIVERS\timntr.sys
14:29:16.0593 4724 timounter - ok
14:29:16.0640 4724 TlntSvr (d859a9d2f026ce5804485068ffd6eaf2) C:\WINDOWS\system32\tlntsvr.exe
14:29:16.0656 4724 TlntSvr - ok
14:29:16.0687 4724 TosIde (b411668322c3bf4e690888706b999679) C:\WINDOWS\system32\DRIVERS\toside.sys
14:29:16.0687 4724 TosIde - ok
14:29:16.0734 4724 tosporte (8d624d3bd1f2d78bd1c01a2d4e954b4e) C:\WINDOWS\system32\DRIVERS\tosporte.sys
14:29:16.0734 4724 tosporte - ok
14:29:16.0781 4724 tosrfbd (435ac6cc2abed508ac5a495658cbaf0f) C:\WINDOWS\system32\DRIVERS\tosrfbd.sys
14:29:16.0781 4724 tosrfbd - ok
14:29:16.0796 4724 tosrfbnp (90c8525bc578aaffe87c2d0ed4379e9e) C:\WINDOWS\system32\Drivers\tosrfbnp.sys
14:29:16.0796 4724 tosrfbnp - ok
14:29:16.0828 4724 Tosrfcom (5ba1ca3b3cddb1ddc67df473f05d1ec2) C:\WINDOWS\system32\Drivers\tosrfcom.sys
14:29:16.0828 4724 Tosrfcom - ok
14:29:16.0843 4724 Tosrfhid (28099a4e52148319afa685d93a2244d0) C:\WINDOWS\system32\DRIVERS\Tosrfhid.sys
14:29:16.0843 4724 Tosrfhid - ok
14:29:16.0859 4724 tosrfnds (c52fd27b9adf3a1f22cb90e6bcf9b0cb) C:\WINDOWS\system32\DRIVERS\tosrfnds.sys
14:29:16.0875 4724 tosrfnds - ok
14:29:16.0906 4724 Tosrfusb (6bc529c5eca0c7654943fd6fab21c5fa) C:\WINDOWS\system32\DRIVERS\tosrfusb.sys
14:29:16.0921 4724 Tosrfusb - ok
14:29:16.0953 4724 TrkWks (e1a84a5067627407a53c2c4f8d8a1d2e) C:\WINDOWS\system32\trkwks.dll
14:29:16.0953 4724 TrkWks - ok
14:29:17.0093 4724 tvnserver (aaf458cc200326bef602b5339400bf86) C:\Program Files\TightVNC\tvnserver.exe
14:29:17.0109 4724 tvnserver - ok
14:29:17.0140 4724 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
14:29:17.0140 4724 Udfs - ok
14:29:17.0156 4724 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys
14:29:17.0171 4724 ultra - ok
14:29:17.0218 4724 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
14:29:17.0218 4724 Update - ok
14:29:17.0265 4724 upnphost (bd8166a495b02308f364b36249475f22) C:\WINDOWS\System32\upnphost.dll
14:29:17.0265 4724 upnphost - ok
14:29:17.0265 4724 UPS (1edc93d7bd731b5ca6248ae245099b60) C:\WINDOWS\System32\ups.exe
14:29:17.0281 4724 UPS - ok
14:29:17.0312 4724 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
14:29:17.0312 4724 usbccgp - ok
14:29:17.0328 4724 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
14:29:17.0328 4724 usbehci - ok
14:29:17.0375 4724 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
14:29:17.0375 4724 usbhub - ok
14:29:17.0375 4724 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
14:29:17.0375 4724 usbprint - ok
14:29:17.0375 4724 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
14:29:17.0375 4724 USBSTOR - ok
14:29:17.0406 4724 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
14:29:17.0406 4724 usbuhci - ok
14:29:17.0406 4724 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
14:29:17.0406 4724 VgaSave - ok
14:29:17.0406 4724 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys
14:29:17.0421 4724 viaagp - ok
14:29:17.0421 4724 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
14:29:17.0421 4724 ViaIde - ok
14:29:17.0437 4724 VolSnap (46de1126684369bace4849e4fc8c43ca) C:\WINDOWS\system32\drivers\VolSnap.sys
14:29:17.0437 4724 VolSnap - ok
14:29:17.0468 4724 VSS (5a4da252b2c0550ab83d129c02cf6c19) C:\WINDOWS\System32\vssvc.exe
14:29:17.0468 4724 VSS - ok
14:29:17.0531 4724 w32time (c1f726ee0b043b074a68992bc4aef8fd) C:\WINDOWS\system32\w32time.dll
14:29:17.0531 4724 w32time - ok
14:29:17.0546 4724 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
14:29:17.0546 4724 Wanarp - ok
14:29:17.0546 4724 Wave UCSPlus - ok
14:29:17.0718 4724 WaveEnrollmentService (796fda916625be7e5f6cfece15a81c3a) C:\Program Files\Wave Systems Corp\Authentication Manager\WaveEnrollmentService.exe
14:29:17.0718 4724 WaveEnrollmentService - ok
14:29:17.0750 4724 WaveFDE (db626c46997c2430d4958da5c7ffb969) C:\WINDOWS\system32\DRIVERS\WaveFDE.sys
14:29:17.0750 4724 WaveFDE - ok
14:29:17.0812 4724 WavxDMgr (51e756f2bfb5e3adcb15f966ad293231) C:\WINDOWS\system32\DRIVERS\WavxDMgr.sys
14:29:17.0812 4724 WavxDMgr - ok
14:29:17.0828 4724 WDC_SAM - ok
14:29:17.0875 4724 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
14:29:17.0875 4724 Wdf01000 - ok
14:29:17.0875 4724 WDICA - ok
14:29:17.0921 4724 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
14:29:17.0921 4724 wdmaud - ok
14:29:17.0968 4724 WebClient (714670e64fbe6d28d99871ed9a52a334) C:\WINDOWS\System32\webclnt.dll
14:29:17.0968 4724 WebClient - ok
14:29:18.0046 4724 winachsf (a8596cf86d445269a42ecc08b7066a4c) C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
14:29:18.0046 4724 winachsf - ok
14:29:18.0140 4724 winmgmt (5e9deae9980ff34bcd6dde2e9e2bf911) C:\WINDOWS\system32\wbem\WMIsvc.dll
14:29:18.0140 4724 winmgmt - ok
14:29:18.0250 4724 WLANKEEPER (4307641ca3389a210295fdffd2a73dee) C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
14:29:18.0265 4724 WLANKEEPER - ok
14:29:18.0296 4724 WmdmPmSN (aa370f0d5b900e13d40e9cb834b5da10) C:\WINDOWS\system32\mspmsnsv.dll
14:29:18.0296 4724 WmdmPmSN - ok
14:29:18.0406 4724 Wmi (31c1fd0bbdc5b81c21edba4331edae55) C:\WINDOWS\System32\advapi32.dll
14:29:18.0406 4724 Wmi - ok
14:29:18.0500 4724 WmiAcpi (c42584fd66ce9e17403aebca199f7bdb) C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
14:29:18.0500 4724 WmiAcpi - ok
14:29:18.0562 4724 WmiApSrv (4e8e8a58f56b25d0795f484e5eb7f898) C:\WINDOWS\system32\wbem\wmiapsrv.exe
14:29:18.0562 4724 WmiApSrv - ok
14:29:18.0843 4724 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
14:29:18.0875 4724 WPFFontCache_v0400 - ok
14:29:18.0906 4724 wscsvc (c1fd85db4a80a98d60ecb7a828e77fe0) C:\WINDOWS\system32\wscsvc.dll
14:29:18.0921 4724 wscsvc - ok
14:29:18.0937 4724 wuauserv (75d6c5c3d2c93b1f9931e5dfb693ae2a) C:\WINDOWS\system32\wuauserv.dll
14:29:18.0937 4724 wuauserv - ok
14:29:19.0031 4724 WZCSVC (c336e54ee0c291a02f004667db1e66cb) C:\WINDOWS\System32\wzcsvc.dll
14:29:19.0031 4724 WZCSVC - ok
14:29:19.0062 4724 xmlprov (f92a87fdda0c11c8604fbc2b864fa726) C:\WINDOWS\System32\xmlprov.dll
14:29:19.0078 4724 xmlprov - ok
14:29:19.0109 4724 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
14:29:19.0640 4724 \Device\Harddisk0\DR0 - ok
14:29:19.0640 4724 Boot (0x1200) (b3728e8b6b517d41c2230ee0af1d769d) \Device\Harddisk0\DR0\Partition0
14:29:19.0640 4724 \Device\Harddisk0\DR0\Partition0 - ok
14:29:19.0656 4724 Boot (0x1200) (967f9ef4f0aa6b12ef26b14e105640a3) \Device\Harddisk0\DR0\Partition1
14:29:19.0656 4724 \Device\Harddisk0\DR0\Partition1 - ok
14:29:19.0656 4724 ============================================================
14:29:19.0656 4724 Scan finished
14:29:19.0656 4724 ============================================================
14:29:19.0671 4488 Detected object count: 0
14:29:19.0671 4488 Actual detected object count: 0
14:28:55.0140 5204 TDSS rootkit removing tool 2.7.46.0 Jul 16 2012 22:10:11
14:28:55.0484 5204 ============================================================
14:28:55.0484 5204 Current date / time: 2012/07/18 14:28:55.0484
14:28:55.0484 5204 SystemInfo:
14:28:55.0484 5204
14:28:55.0484 5204 OS Version: 5.1.2600 ServicePack: 3.0
14:28:55.0484 5204 Product type: Workstation
14:28:55.0484 5204 ComputerName: PORTABLE
14:28:55.0484 5204 UserName: Atelier
14:28:55.0484 5204 Windows directory: C:\WINDOWS
14:28:55.0484 5204 System windows directory: C:\WINDOWS
14:28:55.0484 5204 Processor architecture: Intel x86
14:28:55.0484 5204 Number of processors: 2
14:28:55.0484 5204 Page size: 0x1000
14:28:55.0484 5204 Boot type: Normal boot
14:28:55.0484 5204 ============================================================
14:28:57.0015 5204 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 (111.79 Gb), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
14:28:57.0031 5204 ============================================================
14:28:57.0031 5204 \Device\Harddisk0\DR0:
14:28:57.0046 5204 MBR partitions:
14:28:57.0046 5204 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x2F10C, BlocksNum 0x6FB817C
14:28:57.0062 5204 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x6FE72C7, BlocksNum 0x6FAC4FA
14:28:57.0062 5204 ============================================================
14:28:57.0125 5204 C: <-> \Device\Harddisk0\DR0\Partition0
14:28:57.0156 5204 D: <-> \Device\Harddisk0\DR0\Partition1
14:28:57.0156 5204 ============================================================
14:28:57.0156 5204 Initialize success
14:28:57.0156 5204 ============================================================
14:28:59.0062 4724 ============================================================
14:28:59.0062 4724 Scan started
14:28:59.0062 4724 Mode: Manual;
14:28:59.0062 4724 ============================================================
14:29:00.0062 4724 Abiosdsk - ok
14:29:00.0093 4724 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
14:29:00.0093 4724 abp480n5 - ok
14:29:00.0140 4724 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) C:\WINDOWS\system32\DRIVERS\ACPI.sys
14:29:00.0140 4724 ACPI - ok
14:29:00.0171 4724 ACPIEC (e4abc1212b70bb03d35e60681c447210) C:\WINDOWS\system32\drivers\ACPIEC.sys
14:29:00.0171 4724 ACPIEC - ok
14:29:00.0234 4724 AcrSch2Svc (4430593ef7915ec7fecb2fc33960704f) C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
14:29:00.0250 4724 AcrSch2Svc - ok
14:29:00.0328 4724 AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
14:29:00.0328 4724 AdobeFlashPlayerUpdateSvc - ok
14:29:00.0343 4724 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys
14:29:00.0343 4724 adpu160m - ok
14:29:00.0375 4724 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
14:29:00.0375 4724 aec - ok
14:29:00.0406 4724 AegisP (a1ad1a4a9f18d900ca9c93fa3efdcb56) C:\WINDOWS\system32\DRIVERS\AegisP.sys
14:29:00.0406 4724 AegisP - ok
14:29:00.0453 4724 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
14:29:00.0453 4724 AFD - ok
14:29:00.0515 4724 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
14:29:00.0515 4724 agp440 - ok
14:29:00.0546 4724 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
14:29:00.0546 4724 agpCPQ - ok
14:29:00.0593 4724 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys
14:29:00.0593 4724 Aha154x - ok
14:29:00.0609 4724 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys
14:29:00.0625 4724 aic78u2 - ok
14:29:00.0640 4724 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys
14:29:00.0640 4724 aic78xx - ok
14:29:00.0671 4724 Alerter (758fdc60d41716ef889d849989b4b1cd) C:\WINDOWS\system32\alrsvc.dll
14:29:00.0671 4724 Alerter - ok
14:29:00.0687 4724 ALG (5e9a6658a2a69ae7eb195113b7a2e7a9) C:\WINDOWS\System32\alg.exe
14:29:00.0703 4724 ALG - ok
14:29:00.0718 4724 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys
14:29:00.0734 4724 AliIde - ok
14:29:00.0765 4724 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys
14:29:00.0765 4724 alim1541 - ok
14:29:00.0781 4724 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys
14:29:00.0781 4724 amdagp - ok
14:29:00.0796 4724 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys
14:29:00.0796 4724 amsint - ok
14:29:01.0046 4724 AntiVirSchedulerService (27c9a4e1ef31c7a64de8fbc0aa568503) C:\Program Files\Avira\AntiVir Desktop\sched.exe
14:29:01.0046 4724 AntiVirSchedulerService - ok
14:29:01.0078 4724 AntiVirService (e491888d529410d7bd8fbbad825795c8) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
14:29:01.0093 4724 AntiVirService - ok
14:29:01.0140 4724 ApfiltrService (350f19eb5fe4ec37a2414df56cde1aa8) C:\WINDOWS\system32\DRIVERS\Apfiltr.sys
14:29:01.0140 4724 ApfiltrService - ok
14:29:01.0187 4724 APPDRV (ec94e05b76d033b74394e7b2175103cf) C:\WINDOWS\SYSTEM32\DRIVERS\APPDRV.SYS
14:29:01.0187 4724 APPDRV - ok
14:29:01.0234 4724 AppMgmt (f36c9f78fc902c8dce4d3b576bb0435a) C:\WINDOWS\System32\appmgmts.dll
14:29:01.0234 4724 AppMgmt - ok
14:29:01.0281 4724 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
14:29:01.0281 4724 Arp1394 - ok
14:29:01.0312 4724 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys
14:29:01.0312 4724 asc - ok
14:29:01.0328 4724 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys
14:29:01.0328 4724 asc3350p - ok
14:29:01.0343 4724 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys
14:29:01.0343 4724 asc3550 - ok
14:29:01.0375 4724 ASFIPmon (6295dd28d0ecbc4e6e450c279fef5ed9) C:\Program Files\Broadcom\ASFIPMon\AsfIpMon.exe
14:29:01.0375 4724 ASFIPmon - ok
14:29:01.0531 4724 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
14:29:01.0531 4724 aspnet_state - ok
14:29:01.0546 4724 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
14:29:01.0546 4724 AsyncMac - ok
14:29:01.0593 4724 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
14:29:01.0593 4724 atapi - ok
14:29:01.0593 4724 Atdisk - ok
14:29:01.0640 4724 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
14:29:01.0640 4724 Atmarpc - ok
14:29:01.0687 4724 AudioSrv (b4005aef7873144634765b570dac466e) C:\WINDOWS\System32\audiosrv.dll
14:29:01.0703 4724 AudioSrv - ok
14:29:01.0734 4724 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
14:29:01.0734 4724 audstub - ok
14:29:01.0765 4724 avgntflt (7713e4eb0276702faa08e52a6e23f2a6) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
14:29:01.0781 4724 avgntflt - ok
14:29:01.0906 4724 avipbb (475fbb85956534720858ae72010c0a43) C:\WINDOWS\system32\DRIVERS\avipbb.sys
14:29:01.0906 4724 avipbb - ok
14:29:01.0937 4724 avkmgr (271cfd1a989209b1964e24d969552bf7) C:\WINDOWS\system32\DRIVERS\avkmgr.sys
14:29:01.0937 4724 avkmgr - ok
14:29:02.0078 4724 b57w2k (71509c9db1a4b2c05141563fbe3e18a0) C:\WINDOWS\system32\DRIVERS\b57xp32.sys
14:29:02.0078 4724 b57w2k - ok
14:29:02.0203 4724 BASFND (5c68ac6f3e5b3e6d6a78e97d05e42c3a) C:\Program Files\Broadcom\ASFIPMon\BASFND.sys
14:29:02.0203 4724 BASFND - ok
14:29:02.0265 4724 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
14:29:02.0265 4724 Beep - ok
14:29:02.0312 4724 BITS (baa0b6e647c1ad593e9bae5cc31bcffb) C:\WINDOWS\system32\qmgr.dll
14:29:02.0312 4724 BITS - ok
14:29:02.0359 4724 Browser (06b54a7b1ef7cb16bfd0e208d343fa71) C:\WINDOWS\System32\browser.dll
14:29:02.0359 4724 Browser - ok
14:29:02.0375 4724 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
14:29:02.0375 4724 cbidf - ok
14:29:02.0375 4724 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
14:29:02.0390 4724 cbidf2k - ok
14:29:02.0406 4724 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
14:29:02.0406 4724 cd20xrnt - ok
14:29:02.0437 4724 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
14:29:02.0437 4724 Cdaudio - ok
14:29:02.0453 4724 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
14:29:02.0453 4724 Cdfs - ok
14:29:02.0468 4724 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
14:29:02.0468 4724 Cdrom - ok
14:29:02.0468 4724 Changer - ok
14:29:02.0500 4724 CiSvc (793ef38a5fd086c3c8e48a8a861562ed) C:\WINDOWS\system32\cisvc.exe
14:29:02.0500 4724 CiSvc - ok
14:29:02.0515 4724 ClipSrv (8b30cbb0c07d49b2658fb190946b0e7e) C:\WINDOWS\system32\clipsrv.exe
14:29:02.0515 4724 ClipSrv - ok
14:29:02.0625 4724 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:29:02.0625 4724 clr_optimization_v2.0.50727_32 - ok
14:29:02.0703 4724 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:29:02.0703 4724 clr_optimization_v4.0.30319_32 - ok
14:29:02.0703 4724 CmBatt (0f6c187d38d98f8df904589a5f94d411) C:\WINDOWS\system32\DRIVERS\CmBatt.sys
14:29:02.0703 4724 CmBatt - ok
14:29:02.0750 4724 CmdIde (e3726ad522d0bdae090671048c991ab3) C:\WINDOWS\system32\DRIVERS\cmdide.sys
14:29:02.0750 4724 CmdIde - ok
14:29:02.0781 4724 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
14:29:02.0796 4724 Compbatt - ok
14:29:02.0796 4724 COMSysApp - ok
14:29:02.0796 4724 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys
14:29:02.0796 4724 Cpqarray - ok
14:29:02.0843 4724 CryptSvc (7a6d0b71035e123fdda2156a25578ad3) C:\WINDOWS\System32\cryptsvc.dll
14:29:02.0843 4724 CryptSvc - ok
14:29:02.0875 4724 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
14:29:02.0875 4724 dac2w2k - ok
14:29:02.0875 4724 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys
14:29:02.0875 4724 dac960nt - ok
14:29:02.0937 4724 DcomLaunch (0203b1aad358f206cb0a3c1f93cce17a) C:\WINDOWS\system32\rpcss.dll
14:29:02.0937 4724 DcomLaunch - ok
14:29:02.0968 4724 Dhcp (318f535dc05551d96deeb90b6d6904de) C:\WINDOWS\System32\dhcpcsvc.dll
14:29:02.0968 4724 Dhcp - ok
14:29:02.0984 4724 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
14:29:02.0984 4724 Disk - ok
14:29:03.0015 4724 DLABMFSM (a0500678a33802d8954153839301d539) C:\WINDOWS\system32\Drivers\DLABMFSM.SYS
14:29:03.0015 4724 DLABMFSM - ok
14:29:03.0031 4724 DLABOIOM (b8d2f68cac54d46281399f9092644794) C:\WINDOWS\system32\Drivers\DLABOIOM.SYS
14:29:03.0046 4724 DLABOIOM - ok
14:29:03.0046 4724 DLACDBHM (0ee93ab799d1cb4ec90b36f3612fe907) C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
14:29:03.0046 4724 DLACDBHM - ok
14:29:03.0062 4724 DLADResM (86dfc5bae3878cfabde1430475bd52a7) C:\WINDOWS\system32\Drivers\DLADResM.SYS
14:29:03.0062 4724 DLADResM - ok
14:29:03.0078 4724 DLAIFS_M (766a148235be1c0039c974446e4c0edc) C:\WINDOWS\system32\Drivers\DLAIFS_M.SYS
14:29:03.0078 4724 DLAIFS_M - ok
14:29:03.0078 4724 DLAOPIOM (38267cca177354f1c64450a43a4f7627) C:\WINDOWS\system32\Drivers\DLAOPIOM.SYS
14:29:03.0078 4724 DLAOPIOM - ok
14:29:03.0093 4724 DLAPoolM (fd363369fd313b46b5aeab1a688b52e9) C:\WINDOWS\system32\Drivers\DLAPoolM.SYS
14:29:03.0093 4724 DLAPoolM - ok
14:29:03.0093 4724 DLARTL_M (336ae18f0912ef4fbe5518849e004d74) C:\WINDOWS\system32\Drivers\DLARTL_M.SYS
14:29:03.0093 4724 DLARTL_M - ok
14:29:03.0109 4724 DLAUDFAM (fd85f682c1cc2a7ca878c7a448e6d87e) C:\WINDOWS\system32\Drivers\DLAUDFAM.SYS
14:29:03.0109 4724 DLAUDFAM - ok
14:29:03.0125 4724 DLAUDF_M (af389ce587b6bf5bbdcd6f6abe5eabc0) C:\WINDOWS\system32\Drivers\DLAUDF_M.SYS
14:29:03.0125 4724 DLAUDF_M - ok
14:29:03.0171 4724 DLPortIO (7b481d27abff689de7ed6f556def4421) C:\WINDOWS\system32\drivers\DLPortIO.sys
14:29:03.0171 4724 DLPortIO - ok
14:29:03.0171 4724 dmadmin - ok
14:29:03.0281 4724 dmboot (f5deadd42335fb33edca74ecb2f36cba) C:\WINDOWS\system32\drivers\dmboot.sys
14:29:03.0296 4724 dmboot - ok
14:29:03.0343 4724 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) C:\WINDOWS\system32\drivers\dmio.sys
14:29:03.0343 4724 dmio - ok
14:29:03.0375 4724 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
14:29:03.0390 4724 dmload - ok
14:29:03.0421 4724 dmserver (6797c23d6b79935482d7f0e8ca5e5b67) C:\WINDOWS\System32\dmserver.dll
14:29:03.0421 4724 dmserver - ok
14:29:03.0437 4724 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
14:29:03.0453 4724 DMusic - ok
14:29:03.0500 4724 Dnscache (1a1e59377fb6cacd711cc5073c4a7d79) C:\WINDOWS\System32\dnsrslvr.dll
14:29:03.0500 4724 Dnscache - ok
14:29:03.0562 4724 Dot3svc (3fcf86f03d0302443c21ce6e5bbf7a25) C:\WINDOWS\System32\dot3svc.dll
14:29:03.0562 4724 Dot3svc - ok
14:29:03.0578 4724 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys
14:29:03.0578 4724 dpti2o - ok
14:29:03.0625 4724 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
14:29:03.0625 4724 drmkaud - ok
14:29:03.0687 4724 DRVMCDB (5d3b71bb2bb0009d65d290e2ef374bd3) C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
14:29:03.0687 4724 DRVMCDB - ok
14:29:03.0734 4724 DRVNDDM (c591ba9f96f40a1fd6494dafdcd17185) C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
14:29:03.0734 4724 DRVNDDM - ok
14:29:03.0765 4724 DXEC01 (549734664886d91222969845e4311d1b) C:\WINDOWS\system32\drivers\dxec01.sys
14:29:03.0765 4724 DXEC01 - ok
14:29:03.0781 4724 E100B (1961f8b618e3c20df54c146b294efd2a) C:\WINDOWS\system32\DRIVERS\e100b325.sys
14:29:03.0796 4724 E100B - ok
14:29:03.0828 4724 EapHost (8b5fc9087d2cab110bc2ed5cc5e7b8ac) C:\WINDOWS\System32\eapsvc.dll
14:29:03.0828 4724 EapHost - ok
14:29:03.0859 4724 ERSvc (94f948cb12c4d35483f1e815deb16c7b) C:\WINDOWS\System32\ersvc.dll
14:29:03.0859 4724 ERSvc - ok
14:29:03.0906 4724 Eventlog (c3fb1d70cb88722267949694ba51759e) C:\WINDOWS\system32\services.exe
14:29:03.0921 4724 Eventlog - ok
14:29:04.0000 4724 EventSystem (ec16ae9b37eacf871629227a3f3913fd) C:\WINDOWS\system32\es.dll
14:29:04.0000 4724 EventSystem - ok
14:29:04.0156 4724 EvtEng (e71b03ff6b819ae1a286aa27e956d523) C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
14:29:04.0171 4724 EvtEng - ok
14:29:04.0234 4724 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
14:29:04.0234 4724 Fastfat - ok
14:29:04.0296 4724 FastUserSwitchingCompatibility (1b8542f338cdd86929a084a455837158) C:\WINDOWS\System32\shsvcs.dll
14:29:04.0296 4724 FastUserSwitchingCompatibility - ok
14:29:04.0359 4724 Fax (305687eb8c8e0a12a0b2bae387b6e466) C:\WINDOWS\system32\fxssvc.exe
14:29:04.0375 4724 Fax - ok
14:29:04.0406 4724 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
14:29:04.0406 4724 Fdc - ok
14:29:04.0421 4724 Fips (31f923eb2170fc172c81abda0045d18c) C:\WINDOWS\system32\drivers\Fips.sys
14:29:04.0437 4724 Fips - ok
14:29:04.0453 4724 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
14:29:04.0453 4724 Flpydisk - ok
14:29:04.0515 4724 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
14:29:04.0515 4724 FltMgr - ok
14:29:04.0625 4724 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
14:29:04.0625 4724 FontCache3.0.0.0 - ok
14:29:04.0656 4724 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
14:29:04.0656 4724 Fs_Rec - ok
14:29:04.0703 4724 Ftdisk (a86859b77b908c18c2657f284aa29fe3) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
14:29:04.0703 4724 Ftdisk - ok
14:29:04.0812 4724 FTRTSVC (ca855bb5f571cca42fce3c9506314dc2) C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
14:29:04.0812 4724 FTRTSVC - ok
14:29:04.0843 4724 GoToAssist (d3316f6e3c011435f36e3d6e49b3196c) C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe
14:29:04.0859 4724 GoToAssist - ok
14:29:04.0890 4724 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
14:29:04.0890 4724 Gpc - ok
14:29:04.0921 4724 gupdate - ok
14:29:04.0937 4724 gupdatem - ok
14:29:04.0968 4724 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
14:29:04.0968 4724 gusvc - ok
14:29:05.0031 4724 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
14:29:05.0031 4724 HDAudBus - ok
14:29:05.0109 4724 helpsvc (1247f83b705af0e796330442f7967cf8) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
14:29:05.0109 4724 helpsvc - ok
14:29:05.0156 4724 HidServ (a3b9b4a68bc839ce5a264d5908092261) C:\WINDOWS\System32\hidserv.dll
14:29:05.0156 4724 HidServ - ok
14:29:05.0187 4724 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
14:29:05.0187 4724 HidUsb - ok
14:29:05.0218 4724 hkmsvc (17b3c3d40cdba40c2e331d28be4de27f) C:\WINDOWS\System32\kmsvc.dll
14:29:05.0234 4724 hkmsvc - ok
14:29:05.0250 4724 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys
14:29:05.0265 4724 hpn - ok
14:29:05.0343 4724 hpqcxs08 (a742e5d45f127b766695b925c0d9ac94) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
14:29:05.0343 4724 hpqcxs08 - ok
14:29:05.0406 4724 HSFHWAZL (290cdbb05903742ea06b7203c5a662f5) C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys
14:29:05.0406 4724 HSFHWAZL - ok
14:29:05.0562 4724 HSF_DPV (7ab812355f98858b9ecdd46e6fcc221f) C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys
14:29:05.0578 4724 HSF_DPV - ok
14:29:05.0656 4724 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
14:29:05.0656 4724 HTTP - ok
14:29:05.0703 4724 HTTPFilter (bd31cface38d1800abdb43f4260af0d5) C:\WINDOWS\System32\w3ssl.dll
14:29:05.0718 4724 HTTPFilter - ok
14:29:05.0750 4724 hwdatacard (8adf5ef39e896a65beded878494ee2b6) C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys
14:29:05.0750 4724 hwdatacard - ok
14:29:05.0781 4724 hwinterface (448bb2fe30f1dde9eaa4f0e87b52b687) C:\WINDOWS\system32\Drivers\hwinterface.sys
14:29:05.0781 4724 hwinterface - ok
14:29:05.0828 4724 hwusbfake (9be5caeabc6b2eb98b3a4839a55d47a0) C:\WINDOWS\system32\DRIVERS\ewusbfake.sys
14:29:05.0828 4724 hwusbfake - ok
14:29:05.0859 4724 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys
14:29:05.0859 4724 i2omgmt - ok
14:29:05.0890 4724 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys
14:29:05.0890 4724 i2omp - ok
14:29:05.0921 4724 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
14:29:05.0921 4724 i8042prt - ok
14:29:06.0453 4724 ialm (8b998e6c0aebbaecd6da33df947695d3) C:\WINDOWS\system32\DRIVERS\igxpmp32.sys
14:29:06.0546 4724 ialm - ok
14:29:06.0656 4724 IDriverT (daf66902f08796f9c694901660e5a64a) C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
14:29:06.0656 4724 IDriverT - ok
14:29:06.0843 4724 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
14:29:06.0859 4724 idsvc - ok
14:29:06.0937 4724 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
14:29:06.0937 4724 Imapi - ok
14:29:06.0984 4724 ImapiService (c4221678bbaa55239c23632875759961) C:\WINDOWS\system32\imapi.exe
14:29:07.0000 4724 ImapiService - ok
14:29:07.0031 4724 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys
14:29:07.0031 4724 ini910u - ok
14:29:07.0031 4724 IntelIde (4b6da2f0a4095857a9e3f3697399d575) C:\WINDOWS\system32\DRIVERS\intelide.sys
14:29:07.0031 4724 IntelIde - ok
14:29:07.0062 4724 intelppm (ad340800c35a42d4de1641a37feea34c) C:\WINDOWS\system32\DRIVERS\intelppm.sys
14:29:07.0062 4724 intelppm - ok
14:29:07.0078 4724 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
14:29:07.0093 4724 Ip6Fw - ok
14:29:07.0125 4724 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
14:29:07.0125 4724 IpFilterDriver - ok
14:29:07.0140 4724 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
14:29:07.0140 4724 IpInIp - ok
14:29:07.0187 4724 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
14:29:07.0187 4724 IpNat - ok
14:29:07.0250 4724 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
14:29:07.0250 4724 IPSec - ok
14:29:07.0281 4724 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
14:29:07.0281 4724 IRENUM - ok
14:29:07.0312 4724 isapnp (355836975a67b6554bca60328cd6cb74) C:\WINDOWS\system32\DRIVERS\isapnp.sys
14:29:07.0312 4724 isapnp - ok
14:29:07.0468 4724 JavaQuickStarterService (5e06a9d23727daf96faa796f1135fdcd) C:\Program Files\Java\jre6\bin\jqs.exe
14:29:07.0468 4724 JavaQuickStarterService - ok
14:29:07.0500 4724 Kbdclass (16813155807c6881f4bfbf6657424659) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
14:29:07.0500 4724 Kbdclass - ok
14:29:07.0609 4724 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
14:29:07.0609 4724 kmixer - ok
14:29:07.0640 4724 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
14:29:07.0640 4724 KSecDD - ok
14:29:07.0687 4724 lanmanserver (1db8078a32e03ac8f5eb5e6dcac2aa34) C:\WINDOWS\System32\srvsvc.dll
14:29:07.0687 4724 lanmanserver - ok
14:29:07.0734 4724 lanmanworkstation (ad54ead46d92f413be189aabc1c59490) C:\WINDOWS\System32\wkssvc.dll
14:29:07.0734 4724 lanmanworkstation - ok
14:29:07.0734 4724 lbrtfdc - ok
14:29:07.0750 4724 LmHosts (0f357c079ac529a844ab5b18e4eef881) C:\WINDOWS\System32\lmhsvc.dll
14:29:07.0750 4724 LmHosts - ok
14:29:07.0765 4724 MBAMProtector (6dfe7f2e8e8a337263aa5c92a215f161) C:\WINDOWS\system32\drivers\mbam.sys
14:29:07.0781 4724 MBAMProtector - ok
14:29:07.0843 4724 MBAMService (43683e970f008c93c9429ef428147a54) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
14:29:07.0859 4724 MBAMService - ok
14:29:07.0890 4724 mdmxsdk (0cea2d0d3fa284b85ed5b68365114f76) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
14:29:07.0890 4724 mdmxsdk - ok
14:29:07.0937 4724 Messenger (e67a66a3781c1a483f0f8992664cbe0d) C:\WINDOWS\System32\msgsvc.dll
14:29:07.0937 4724 Messenger - ok
14:29:07.0984 4724 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
14:29:07.0984 4724 mnmdd - ok
14:29:08.0296 4724 mnmsrvc (d3a2870cd96cda7bcff3dc54f64087ad) C:\WINDOWS\system32\mnmsrvc.exe
14:29:08.0296 4724 mnmsrvc - ok
14:29:08.0343 4724 Modem (510ade9327fe84c10254e1902697e25f) C:\WINDOWS\system32\drivers\Modem.sys
14:29:08.0343 4724 Modem - ok
14:29:08.0359 4724 Mouclass (027c01bd7ef3349aaebc883d8a799efb) C:\WINDOWS\system32\DRIVERS\mouclass.sys
14:29:08.0359 4724 Mouclass - ok
14:29:08.0406 4724 mouhid (124d6846040c79b9c997f78ef4b2a4e5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
14:29:08.0406 4724 mouhid - ok
14:29:08.0421 4724 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
14:29:08.0421 4724 MountMgr - ok
14:29:08.0468 4724 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys
14:29:08.0468 4724 mraid35x - ok
14:29:08.0484 4724 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
14:29:08.0484 4724 MRxDAV - ok
14:29:08.0578 4724 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
14:29:08.0578 4724 MRxSmb - ok
14:29:08.0625 4724 MSDTC (8648d670ae0d95c95e7bbb5b80661796) C:\WINDOWS\system32\msdtc.exe
14:29:08.0625 4724 MSDTC - ok
14:29:08.0656 4724 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
14:29:08.0656 4724 Msfs - ok
14:29:08.0671 4724 MSIServer - ok
14:29:08.0671 4724 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
14:29:08.0671 4724 MSKSSRV - ok
14:29:08.0671 4724 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
14:29:08.0671 4724 MSPCLOCK - ok
14:29:08.0671 4724 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
14:29:08.0671 4724 MSPQM - ok
14:29:08.0687 4724 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
14:29:08.0687 4724 mssmbios - ok
14:29:08.0781 4724 MSSQL$EBP - ok
14:29:08.0859 4724 MSSQLServerADHelper100 (8e8e74c953eb0c4f8828d99d6f27fd6f) C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE
14:29:08.0859 4724 MSSQLServerADHelper100 - ok
14:29:08.0875 4724 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
14:29:08.0875 4724 Mup - ok
14:29:08.0921 4724 napagent (69e4fbbabaeee1bff422e091da3171da) C:\WINDOWS\System32\qagentrt.dll
14:29:08.0937 4724 napagent - ok
14:29:08.0968 4724 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
14:29:08.0968 4724 NDIS - ok
14:29:09.0000 4724 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
14:29:09.0000 4724 NdisTapi - ok
14:29:09.0046 4724 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
14:29:09.0046 4724 Ndisuio - ok
14:29:09.0062 4724 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
14:29:09.0062 4724 NdisWan - ok
14:29:09.0093 4724 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
14:29:09.0093 4724 NDProxy - ok
14:29:09.0125 4724 Net Driver HPZ12 (51c6d8bfbd4ea5b62a1ba7f4469250d3) C:\WINDOWS\system32\HPZinw12.dll
14:29:09.0125 4724 Net Driver HPZ12 - ok
14:29:09.0156 4724 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
14:29:09.0156 4724 NetBIOS - ok
14:29:09.0171 4724 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
14:29:09.0171 4724 NetBT - ok
14:29:09.0234 4724 NetDDE (5c9b1d83755b36237b70f95df3d46a52) C:\WINDOWS\system32\netdde.exe
14:29:09.0234 4724 NetDDE - ok
14:29:09.0250 4724 NetDDEdsdm (5c9b1d83755b36237b70f95df3d46a52) C:\WINDOWS\system32\netdde.exe
14:29:09.0250 4724 NetDDEdsdm - ok
14:29:09.0281 4724 Netlogon (91e6024d6d4dcdecdb36c43ecf9bbecb) C:\WINDOWS\system32\lsass.exe
14:29:09.0281 4724 Netlogon - ok
14:29:09.0312 4724 Netman (be0cb143fa427d93440ded18db8c918b) C:\WINDOWS\System32\netman.dll
14:29:09.0312 4724 Netman - ok
14:29:09.0453 4724 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:29:09.0453 4724 NetTcpPortSharing - ok
14:29:09.0812 4724 NETw4x32 (b5ab1108b377b5f3d37409fabda01453) C:\WINDOWS\system32\DRIVERS\NETw4x32.sys
14:29:09.0843 4724 NETw4x32 - ok
14:29:09.0984 4724 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
14:29:09.0984 4724 NIC1394 - ok
14:29:10.0125 4724 NICCONFIGSVC (27d38b7d646283d98d65e3435b1e6197) C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
14:29:10.0140 4724 NICCONFIGSVC - ok
14:29:10.0203 4724 Nla (6f5f546a92c7b6ae45db1d6910781eb0) C:\WINDOWS\System32\mswsock.dll
14:29:10.0203 4724 Nla - ok
14:29:10.0218 4724 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
14:29:10.0218 4724 Npfs - ok
14:29:10.0281 4724 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
14:29:10.0296 4724 Ntfs - ok
14:29:10.0328 4724 NtLmSsp (91e6024d6d4dcdecdb36c43ecf9bbecb) C:\WINDOWS\system32\lsass.exe
14:29:10.0328 4724 NtLmSsp - ok
14:29:10.0406 4724 NtmsSvc (037d92b3a7853a183fcab77fb1d13d6c) C:\WINDOWS\system32\ntmssvc.dll
14:29:10.0421 4724 NtmsSvc - ok
14:29:10.0453 4724 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
14:29:10.0453 4724 Null - ok
14:29:10.0703 4724 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
14:29:10.0734 4724 nv - ok
14:29:10.0875 4724 NWCWorkstation (b0401126f3b7748ee795097024787534) C:\WINDOWS\System32\nwwks.dll
14:29:10.0875 4724 NWCWorkstation - ok
14:29:10.0921 4724 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
14:29:10.0921 4724 NwlnkFlt - ok
14:29:10.0921 4724 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
14:29:10.0921 4724 NwlnkFwd - ok
14:29:10.0984 4724 NwlnkIpx (8b8b1be2dba4025da6786c645f77f123) C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys
14:29:10.0984 4724 NwlnkIpx - ok
14:29:11.0000 4724 NwlnkNb (56d34a67c05e94e16377c60609741ff8) C:\WINDOWS\system32\DRIVERS\nwlnknb.sys
14:29:11.0000 4724 NwlnkNb - ok
14:29:11.0015 4724 NwlnkSpx (c0bb7d1615e1acbdc99757f6ceaf8cf0) C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys
14:29:11.0015 4724 NwlnkSpx - ok
14:29:11.0046 4724 NWRDR (36b9b950e3d2e100970a48d8bad86740) C:\WINDOWS\system32\DRIVERS\nwrdr.sys
14:29:11.0046 4724 NWRDR - ok
14:29:11.0187 4724 odserv (84de1dd996b48b05ace31ad015fa108a) C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE
14:29:11.0187 4724 odserv - ok
14:29:11.0218 4724 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
14:29:11.0218 4724 ohci1394 - ok
14:29:11.0250 4724 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE
14:29:11.0265 4724 ose - ok
14:29:11.0296 4724 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) C:\WINDOWS\system32\DRIVERS\parport.sys
14:29:11.0312 4724 Parport - ok
14:29:11.0328 4724 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
14:29:11.0328 4724 PartMgr - ok
14:29:11.0359 4724 ParVdm (9575c5630db8fb804649a6959737154c) C:\WINDOWS\system32\drivers\ParVdm.sys
14:29:11.0359 4724 ParVdm - ok
14:29:11.0390 4724 PBADRV (9ec004140e1b675acdeb07f66ee797a4) C:\WINDOWS\system32\DRIVERS\PBADRV.sys
14:29:11.0390 4724 PBADRV - ok
14:29:11.0421 4724 PCAMPR5 (b670c5d89f0726b7a2a7dfb4e968cdf8) C:\WINDOWS\system32\PCAMPR5.SYS
14:29:11.0437 4724 PCAMPR5 - ok
14:29:11.0453 4724 PCANDIS5 (ecd2f9d67b06606064daf6961a6d5efe) C:\WINDOWS\system32\PCANDIS5.SYS
14:29:11.0468 4724 PCANDIS5 - ok
14:29:11.0484 4724 PCI (043410877bda580c528f45165f7125bc) C:\WINDOWS\system32\DRIVERS\pci.sys
14:29:11.0500 4724 PCI - ok
14:29:11.0500 4724 PCIDump - ok
14:29:11.0515 4724 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) C:\WINDOWS\system32\DRIVERS\pciide.sys
14:29:11.0515 4724 PCIIde - ok
14:29:11.0546 4724 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) C:\WINDOWS\system32\DRIVERS\pcmcia.sys
14:29:11.0546 4724 Pcmcia - ok
14:29:11.0546 4724 PDCOMP - ok
14:29:11.0546 4724 PDFRAME - ok
14:29:11.0546 4724 PDRELI - ok
14:29:11.0562 4724 PDRFRAME - ok
14:29:11.0562 4724 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys
14:29:11.0562 4724 perc2 - ok
14:29:11.0562 4724 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys
14:29:11.0562 4724 perc2hib - ok
14:29:11.0609 4724 PlugPlay (c3fb1d70cb88722267949694ba51759e) C:\WINDOWS\system32\services.exe
14:29:11.0625 4724 PlugPlay - ok
14:29:11.0656 4724 Pml Driver HPZ12 (79834aa2fbf9fe81eebb229024f6f7fc) C:\WINDOWS\system32\HPZipm12.dll
14:29:11.0656 4724 Pml Driver HPZ12 - ok
14:29:11.0687 4724 PolicyAgent (91e6024d6d4dcdecdb36c43ecf9bbecb) C:\WINDOWS\system32\lsass.exe
14:29:11.0687 4724 PolicyAgent - ok
14:29:11.0703 4724 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
14:29:11.0703 4724 PptpMiniport - ok
14:29:11.0703 4724 ProtectedStorage (91e6024d6d4dcdecdb36c43ecf9bbecb) C:\WINDOWS\system32\lsass.exe
14:29:11.0703 4724 ProtectedStorage - ok
14:29:11.0718 4724 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
14:29:11.0718 4724 PSched - ok
14:29:11.0765 4724 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
14:29:11.0765 4724 Ptilink - ok
14:29:11.0812 4724 PxHelp20 (49452bfcec22f36a7a9b9c2181bc3042) C:\WINDOWS\system32\Drivers\PxHelp20.sys
14:29:11.0812 4724 PxHelp20 - ok
14:29:11.0953 4724 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys
14:29:11.0953 4724 ql1080 - ok
14:29:12.0000 4724 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
14:29:12.0000 4724 Ql10wnt - ok
14:29:12.0125 4724 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys
14:29:12.0125 4724 ql12160 - ok
14:29:12.0218 4724 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys
14:29:12.0218 4724 ql1240 - ok
14:29:12.0312 4724 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys
14:29:12.0328 4724 ql1280 - ok
14:29:12.0328 4724 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
14:29:12.0328 4724 RasAcd - ok
14:29:12.0375 4724 RasAuto (78da9ccdac683ef5aa87d1c919f6d221) C:\WINDOWS\System32\rasauto.dll
14:29:12.0375 4724 RasAuto - ok
14:29:12.0390 4724 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
14:29:12.0390 4724 Rasl2tp - ok
14:29:12.0437 4724 RasMan (0a48df90b4784f9b90a2671af992c914) C:\WINDOWS\System32\rasmans.dll
14:29:12.0437 4724 RasMan - ok
14:29:12.0437 4724 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
14:29:12.0437 4724 RasPppoe - ok
14:29:12.0453 4724 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
14:29:12.0453 4724 Raspti - ok
14:29:12.0500 4724 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
14:29:12.0500 4724 Rdbss - ok
14:29:12.0515 4724 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
14:29:12.0515 4724 RDPCDD - ok
14:29:12.0546 4724 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
14:29:12.0546 4724 rdpdr - ok
14:29:12.0593 4724 RDPWD (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys
14:29:12.0593 4724 RDPWD - ok
14:29:12.0625 4724 RDSessMgr (9f63d9c5b238ed1c375d417eff3d5be7) C:\WINDOWS\system32\sessmgr.exe
14:29:12.0625 4724 RDSessMgr - ok
14:29:12.0656 4724 redbook (d8eb2a7904db6c916eb5361878ddcbae) C:\WINDOWS\system32\DRIVERS\redbook.sys
14:29:12.0656 4724 redbook - ok
14:29:12.0781 4724 RegSrvc (2cf574d0965f58e514a2dc94114d7eca) C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
14:29:12.0796 4724 RegSrvc - ok
14:29:12.0843 4724 RemoteAccess (7da370c31673c99497bd07068ee6e354) C:\WINDOWS\System32\mprdim.dll
14:29:12.0843 4724 RemoteAccess - ok
14:29:12.0906 4724 RemoteRegistry (e598d81197e2e0ec42a0c55772bb00e8) C:\WINDOWS\system32\regsvc.dll
14:29:12.0906 4724 RemoteRegistry - ok
14:29:12.0937 4724 RpcLocator (499c59a2584f6d4ea41e944da571d993) C:\WINDOWS\system32\locator.exe
14:29:12.0953 4724 RpcLocator - ok
14:29:13.0015 4724 RpcSs (0203b1aad358f206cb0a3c1f93cce17a) C:\WINDOWS\system32\rpcss.dll
14:29:13.0031 4724 RpcSs - ok
14:29:13.0093 4724 RsFx0150 (a95840a95a9ff74b0009e5d848cddb39) C:\WINDOWS\system32\DRIVERS\RsFx0150.sys
14:29:13.0093 4724 RsFx0150 - ok
14:29:13.0140 4724 RSVP (414964844f4793acb868d057e8ed997e) C:\WINDOWS\system32\rsvp.exe
14:29:13.0156 4724 RSVP - ok
14:29:13.0328 4724 S24EventMonitor (874173edbd4f2fe711f245855a2ffa23) C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
14:29:13.0359 4724 S24EventMonitor - ok
14:29:13.0406 4724 s24trans (eadfb87f911a7a75d1b80617f92901e8) C:\WINDOWS\system32\DRIVERS\s24trans.sys
14:29:13.0406 4724 s24trans - ok
14:29:13.0437 4724 SamSs (91e6024d6d4dcdecdb36c43ecf9bbecb) C:\WINDOWS\system32\lsass.exe
14:29:13.0453 4724 SamSs - ok
14:29:13.0500 4724 SCardSvr (67949cc8a865296c1333c96a4e1a2d66) C:\WINDOWS\System32\SCardSvr.exe
14:29:13.0500 4724 SCardSvr - ok
14:29:13.0562 4724 Schedule (55f5c5c1be1a78e285033e432ba01597) C:\WINDOWS\system32\schedsvc.dll
14:29:13.0562 4724 Schedule - ok
14:29:13.0593 4724 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
14:29:13.0593 4724 Secdrv - ok
14:29:13.0625 4724 seclogon (5ac311c0af2af5ec221670bb8dc479d3) C:\WINDOWS\System32\seclogon.dll
14:29:13.0625 4724 seclogon - ok
14:29:13.0828 4724 SecureStorageService (472946edebf85c1f0b44b6eba01ac9b6) C:\Program Files\Wave Systems Corp\Secure Storage Manager\SecureStorageService.exe
14:29:13.0843 4724 SecureStorageService - ok
14:29:13.0859 4724 SENS (3531366f38f453d08fe72e7b32dfe786) C:\WINDOWS\system32\sens.dll
14:29:13.0859 4724 SENS - ok
14:29:13.0906 4724 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
14:29:13.0906 4724 serenum - ok
14:29:13.0921 4724 Serial (93d313c31f7ad9ea2b75f26075413c7c) C:\WINDOWS\system32\DRIVERS\serial.sys
14:29:13.0921 4724 Serial - ok
14:29:13.0984 4724 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
14:29:13.0984 4724 Sfloppy - ok
14:29:14.0062 4724 SharedAccess (f4ce708a7d17a625de6c0fd746d50e88) C:\WINDOWS\System32\ipnathlp.dll
14:29:14.0062 4724 SharedAccess - ok
14:29:14.0125 4724 ShellHWDetection (1b8542f338cdd86929a084a455837158) C:\WINDOWS\System32\shsvcs.dll
14:29:14.0125 4724 ShellHWDetection - ok
14:29:14.0187 4724 SIECA132Switcher.exe (ee4d1e0f5cfc6e153b9ba1b560ce06af) C:\Program Files\Sontheim\MT_Api\SIECA132Switcher.exe
14:29:14.0187 4724 SIECA132Switcher.exe - ok
14:29:14.0234 4724 SIECE132Svr_V7.00.0901 (f9b0cab1109ed1fbb799d922819e41d8) C:\Program Files\Sontheim\MT_Api\7.0.9.1\SIECE132Svr.exe
14:29:14.0234 4724 SIECE132Svr_V7.00.0901 - ok
14:29:14.0281 4724 SIECE132Svr_V7.04.1200 (8faf97ad2093ee29a6cc46ec315c3321) C:\Program Files\Sontheim\MT_Api\7.4.12.0\SIECE132Svr.exe
14:29:14.0281 4724 SIECE132Svr_V7.04.1200 - ok
14:29:14.0328 4724 SieUsb32 (c99990099fcffeed68bf84bf5aed88a7) C:\WINDOWS\system32\Drivers\SieUsb32.sys
14:29:14.0328 4724 SieUsb32 - ok
14:29:14.0343 4724 Simbad - ok
14:29:14.0359 4724 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys
14:29:14.0375 4724 sisagp - ok
14:29:14.0421 4724 snapman (e78c98378a071ce4d48a7c514fa98fa1) C:\WINDOWS\system32\DRIVERS\snapman.sys
14:29:14.0437 4724 snapman - ok
14:29:14.0484 4724 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys
14:29:14.0484 4724 Sparrow - ok
14:29:14.0515 4724 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
14:29:14.0515 4724 splitter - ok
14:29:14.0578 4724 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
14:29:14.0578 4724 Spooler - ok
14:29:14.0734 4724 SQLAgent$EBP (37761f6be2ebaed72cc0d43bd4c8c2a6) C:\Program Files\Microsoft SQL Server\MSSQL10_50.EBP\MSSQL\Binn\SQLAGENT.EXE
14:29:14.0750 4724 SQLAgent$EBP - ok
14:29:14.0796 4724 SQLBrowser (7d67c07c63796775cc5492bcfeaff125) C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
14:29:14.0812 4724 SQLBrowser - ok
14:29:14.0828 4724 SQLWriter (8e6e5cfa06769a417b03fd6faa29e010) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
14:29:14.0828 4724 SQLWriter - ok
14:29:14.0890 4724 sr (39626e6dc1fb39434ec40c42722b660a) C:\WINDOWS\system32\DRIVERS\sr.sys
14:29:14.0890 4724 sr - ok
14:29:14.0937 4724 srservice (6ed29124a1c83bd0cf6b26bd01ca6f6f) C:\WINDOWS\system32\srsvc.dll
14:29:14.0953 4724 srservice - ok
14:29:15.0031 4724 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
14:29:15.0031 4724 Srv - ok
14:29:15.0062 4724 SSDPSRV (ea9e0db8684cef2fd3badd671df5a112) C:\WINDOWS\System32\ssdpsrv.dll
14:29:15.0062 4724 SSDPSRV - ok
14:29:15.0109 4724 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
14:29:15.0109 4724 ssmdrv - ok
14:29:15.0156 4724 STacSV (b218068eba6f46f102b4218bdb81be0b) C:\WINDOWS\system32\StacSV.exe
14:29:15.0156 4724 STacSV - ok
14:29:15.0171 4724 StarOpen - ok
14:29:15.0265 4724 STHDA (58f855684e163466a5c565adf0865536) C:\WINDOWS\system32\drivers\sthda.sys
14:29:15.0281 4724 STHDA - ok
14:29:15.0343 4724 stisvc (d76b0e8a4ecad1adcc75fd14a7acc54c) C:\WINDOWS\system32\wiaservc.dll
14:29:15.0343 4724 stisvc - ok
14:29:15.0437 4724 stllssvr (de3e7a2345ebaa3ce8e6957dfb55fb15) C:\Program Files\Fichiers communs\SureThing Shared\stllssvr.exe
14:29:15.0437 4724 stllssvr - ok
14:29:15.0656 4724 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
14:29:15.0656 4724 swenum - ok
14:29:15.0671 4724 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
14:29:15.0671 4724 swmidi - ok
14:29:15.0671 4724 SwPrv - ok
14:29:15.0703 4724 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys
14:29:15.0703 4724 symc810 - ok
14:29:15.0703 4724 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys
14:29:15.0703 4724 symc8xx - ok
14:29:15.0734 4724 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys
14:29:15.0734 4724 sym_hi - ok
14:29:15.0734 4724 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys
14:29:15.0734 4724 sym_u3 - ok
14:29:15.0765 4724 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
14:29:15.0765 4724 sysaudio - ok
14:29:15.0781 4724 SysmonLog (0899061318a6b1d9596aabfc77f45e44) C:\WINDOWS\system32\smlogsvc.exe
14:29:15.0781 4724 SysmonLog - ok
14:29:15.0812 4724 TapiSrv (8e5231171ad6595ff002e848cc54fcd7) C:\WINDOWS\System32\tapisrv.dll
14:29:15.0812 4724 TapiSrv - ok
14:29:15.0859 4724 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
14:29:15.0875 4724 Tcpip - ok
14:29:15.0984 4724 tcsd_win32.exe (23b506262493f1a521683ee88c5fbf60) C:\Program Files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe
14:29:16.0015 4724 tcsd_win32.exe - ok
14:29:16.0156 4724 TdmService (a27d803b21f24a5cfb775944ea4cb130) C:\Program Files\Wave Systems Corp\Trusted Drive Manager\TdmService.exe
14:29:16.0171 4724 TdmService - ok
14:29:16.0281 4724 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
14:29:16.0281 4724 TDPIPE - ok
14:29:16.0296 4724 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
14:29:16.0312 4724 TDTCP - ok
14:29:16.0328 4724 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
14:29:16.0328 4724 TermDD - ok
14:29:16.0390 4724 TermService (710bc85a8c22626ee094439e3ea0d38c) C:\WINDOWS\System32\termsrv.dll
14:29:16.0390 4724 TermService - ok
14:29:16.0453 4724 Themes (1b8542f338cdd86929a084a455837158) C:\WINDOWS\System32\shsvcs.dll
14:29:16.0453 4724 Themes - ok
14:29:16.0500 4724 tifsfilter (d352fff2a623b916c08ceacbfc8b5c32) C:\WINDOWS\system32\DRIVERS\tifsfilt.sys
14:29:16.0500 4724 tifsfilter - ok
14:29:16.0593 4724 timounter (64694b2a5c772e1c61feac300ed90ca6) C:\WINDOWS\system32\DRIVERS\timntr.sys
14:29:16.0593 4724 timounter - ok
14:29:16.0640 4724 TlntSvr (d859a9d2f026ce5804485068ffd6eaf2) C:\WINDOWS\system32\tlntsvr.exe
14:29:16.0656 4724 TlntSvr - ok
14:29:16.0687 4724 TosIde (b411668322c3bf4e690888706b999679) C:\WINDOWS\system32\DRIVERS\toside.sys
14:29:16.0687 4724 TosIde - ok
14:29:16.0734 4724 tosporte (8d624d3bd1f2d78bd1c01a2d4e954b4e) C:\WINDOWS\system32\DRIVERS\tosporte.sys
14:29:16.0734 4724 tosporte - ok
14:29:16.0781 4724 tosrfbd (435ac6cc2abed508ac5a495658cbaf0f) C:\WINDOWS\system32\DRIVERS\tosrfbd.sys
14:29:16.0781 4724 tosrfbd - ok
14:29:16.0796 4724 tosrfbnp (90c8525bc578aaffe87c2d0ed4379e9e) C:\WINDOWS\system32\Drivers\tosrfbnp.sys
14:29:16.0796 4724 tosrfbnp - ok
14:29:16.0828 4724 Tosrfcom (5ba1ca3b3cddb1ddc67df473f05d1ec2) C:\WINDOWS\system32\Drivers\tosrfcom.sys
14:29:16.0828 4724 Tosrfcom - ok
14:29:16.0843 4724 Tosrfhid (28099a4e52148319afa685d93a2244d0) C:\WINDOWS\system32\DRIVERS\Tosrfhid.sys
14:29:16.0843 4724 Tosrfhid - ok
14:29:16.0859 4724 tosrfnds (c52fd27b9adf3a1f22cb90e6bcf9b0cb) C:\WINDOWS\system32\DRIVERS\tosrfnds.sys
14:29:16.0875 4724 tosrfnds - ok
14:29:16.0906 4724 Tosrfusb (6bc529c5eca0c7654943fd6fab21c5fa) C:\WINDOWS\system32\DRIVERS\tosrfusb.sys
14:29:16.0921 4724 Tosrfusb - ok
14:29:16.0953 4724 TrkWks (e1a84a5067627407a53c2c4f8d8a1d2e) C:\WINDOWS\system32\trkwks.dll
14:29:16.0953 4724 TrkWks - ok
14:29:17.0093 4724 tvnserver (aaf458cc200326bef602b5339400bf86) C:\Program Files\TightVNC\tvnserver.exe
14:29:17.0109 4724 tvnserver - ok
14:29:17.0140 4724 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
14:29:17.0140 4724 Udfs - ok
14:29:17.0156 4724 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys
14:29:17.0171 4724 ultra - ok
14:29:17.0218 4724 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
14:29:17.0218 4724 Update - ok
14:29:17.0265 4724 upnphost (bd8166a495b02308f364b36249475f22) C:\WINDOWS\System32\upnphost.dll
14:29:17.0265 4724 upnphost - ok
14:29:17.0265 4724 UPS (1edc93d7bd731b5ca6248ae245099b60) C:\WINDOWS\System32\ups.exe
14:29:17.0281 4724 UPS - ok
14:29:17.0312 4724 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
14:29:17.0312 4724 usbccgp - ok
14:29:17.0328 4724 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
14:29:17.0328 4724 usbehci - ok
14:29:17.0375 4724 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
14:29:17.0375 4724 usbhub - ok
14:29:17.0375 4724 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
14:29:17.0375 4724 usbprint - ok
14:29:17.0375 4724 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
14:29:17.0375 4724 USBSTOR - ok
14:29:17.0406 4724 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
14:29:17.0406 4724 usbuhci - ok
14:29:17.0406 4724 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
14:29:17.0406 4724 VgaSave - ok
14:29:17.0406 4724 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys
14:29:17.0421 4724 viaagp - ok
14:29:17.0421 4724 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
14:29:17.0421 4724 ViaIde - ok
14:29:17.0437 4724 VolSnap (46de1126684369bace4849e4fc8c43ca) C:\WINDOWS\system32\drivers\VolSnap.sys
14:29:17.0437 4724 VolSnap - ok
14:29:17.0468 4724 VSS (5a4da252b2c0550ab83d129c02cf6c19) C:\WINDOWS\System32\vssvc.exe
14:29:17.0468 4724 VSS - ok
14:29:17.0531 4724 w32time (c1f726ee0b043b074a68992bc4aef8fd) C:\WINDOWS\system32\w32time.dll
14:29:17.0531 4724 w32time - ok
14:29:17.0546 4724 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
14:29:17.0546 4724 Wanarp - ok
14:29:17.0546 4724 Wave UCSPlus - ok
14:29:17.0718 4724 WaveEnrollmentService (796fda916625be7e5f6cfece15a81c3a) C:\Program Files\Wave Systems Corp\Authentication Manager\WaveEnrollmentService.exe
14:29:17.0718 4724 WaveEnrollmentService - ok
14:29:17.0750 4724 WaveFDE (db626c46997c2430d4958da5c7ffb969) C:\WINDOWS\system32\DRIVERS\WaveFDE.sys
14:29:17.0750 4724 WaveFDE - ok
14:29:17.0812 4724 WavxDMgr (51e756f2bfb5e3adcb15f966ad293231) C:\WINDOWS\system32\DRIVERS\WavxDMgr.sys
14:29:17.0812 4724 WavxDMgr - ok
14:29:17.0828 4724 WDC_SAM - ok
14:29:17.0875 4724 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
14:29:17.0875 4724 Wdf01000 - ok
14:29:17.0875 4724 WDICA - ok
14:29:17.0921 4724 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
14:29:17.0921 4724 wdmaud - ok
14:29:17.0968 4724 WebClient (714670e64fbe6d28d99871ed9a52a334) C:\WINDOWS\System32\webclnt.dll
14:29:17.0968 4724 WebClient - ok
14:29:18.0046 4724 winachsf (a8596cf86d445269a42ecc08b7066a4c) C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
14:29:18.0046 4724 winachsf - ok
14:29:18.0140 4724 winmgmt (5e9deae9980ff34bcd6dde2e9e2bf911) C:\WINDOWS\system32\wbem\WMIsvc.dll
14:29:18.0140 4724 winmgmt - ok
14:29:18.0250 4724 WLANKEEPER (4307641ca3389a210295fdffd2a73dee) C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
14:29:18.0265 4724 WLANKEEPER - ok
14:29:18.0296 4724 WmdmPmSN (aa370f0d5b900e13d40e9cb834b5da10) C:\WINDOWS\system32\mspmsnsv.dll
14:29:18.0296 4724 WmdmPmSN - ok
14:29:18.0406 4724 Wmi (31c1fd0bbdc5b81c21edba4331edae55) C:\WINDOWS\System32\advapi32.dll
14:29:18.0406 4724 Wmi - ok
14:29:18.0500 4724 WmiAcpi (c42584fd66ce9e17403aebca199f7bdb) C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
14:29:18.0500 4724 WmiAcpi - ok
14:29:18.0562 4724 WmiApSrv (4e8e8a58f56b25d0795f484e5eb7f898) C:\WINDOWS\system32\wbem\wmiapsrv.exe
14:29:18.0562 4724 WmiApSrv - ok
14:29:18.0843 4724 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
14:29:18.0875 4724 WPFFontCache_v0400 - ok
14:29:18.0906 4724 wscsvc (c1fd85db4a80a98d60ecb7a828e77fe0) C:\WINDOWS\system32\wscsvc.dll
14:29:18.0921 4724 wscsvc - ok
14:29:18.0937 4724 wuauserv (75d6c5c3d2c93b1f9931e5dfb693ae2a) C:\WINDOWS\system32\wuauserv.dll
14:29:18.0937 4724 wuauserv - ok
14:29:19.0031 4724 WZCSVC (c336e54ee0c291a02f004667db1e66cb) C:\WINDOWS\System32\wzcsvc.dll
14:29:19.0031 4724 WZCSVC - ok
14:29:19.0062 4724 xmlprov (f92a87fdda0c11c8604fbc2b864fa726) C:\WINDOWS\System32\xmlprov.dll
14:29:19.0078 4724 xmlprov - ok
14:29:19.0109 4724 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
14:29:19.0640 4724 \Device\Harddisk0\DR0 - ok
14:29:19.0640 4724 Boot (0x1200) (b3728e8b6b517d41c2230ee0af1d769d) \Device\Harddisk0\DR0\Partition0
14:29:19.0640 4724 \Device\Harddisk0\DR0\Partition0 - ok
14:29:19.0656 4724 Boot (0x1200) (967f9ef4f0aa6b12ef26b14e105640a3) \Device\Harddisk0\DR0\Partition1
14:29:19.0656 4724 \Device\Harddisk0\DR0\Partition1 - ok
14:29:19.0656 4724 ============================================================
14:29:19.0656 4724 Scan finished
14:29:19.0656 4724 ============================================================
14:29:19.0671 4488 Detected object count: 0
14:29:19.0671 4488 Actual detected object count: 0
Rapport Combofix :
ComboFix 12-07-18.01 - Atelier 18/07/2012 14:34:13.1.2 - x86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.2038.1351 [GMT 2:00]
Lancé depuis: c:\documents and settings\Atelier\Bureau\ComboFix.exe
.
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\1338993486.bdinstall.bin
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\Atelier\WINDOWS
c:\windows\system32\AegisI5Installer.exe
c:\windows\system32\DE121032.dll
c:\windows\system32\dllcache\dlimport.exe
c:\windows\system32\drivers\hwinterface.sys
c:\windows\system32\Edb600e.dll
c:\windows\system32\test
.
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_hwinterface
-------\Service_hwinterface
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2012-06-18 au 2012-07-18 ))))))))))))))))))))))))))))))))))))
.
.
2012-07-18 10:06 . 2012-07-18 10:06 512 ----a-w- C:\PhysicalMBR.bin
2012-07-17 13:58 . 2012-07-17 14:03 -------- d-----w- c:\program files\ZHPDiag
2012-07-17 13:09 . 2012-07-17 13:09 -------- d-----w- c:\documents and settings\Atelier\Application Data\Avira
2012-07-17 13:08 . 2011-12-01 15:55 36000 ----a-w- c:\windows\system32\drivers\avkmgr.sys
2012-07-17 13:08 . 2011-12-01 15:55 134856 ----a-w- c:\windows\system32\drivers\avipbb.sys
2012-07-17 13:08 . 2011-12-01 15:55 74640 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2012-07-17 13:08 . 2012-07-17 13:08 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2012-07-17 12:59 . 2012-07-17 12:59 -------- d-----w- c:\documents and settings\Administrateur\Application Data\Dell
2012-07-17 12:59 . 2012-07-17 12:59 -------- d-sh--w- c:\documents and settings\Administrateur\IETldCache
2012-07-16 15:59 . 2012-07-16 15:59 -------- d-----w- c:\program files\Avira
2012-07-16 14:15 . 2012-07-17 14:04 -------- d-----w- c:\program files\Trend Micro
2012-07-16 14:15 . 2012-07-16 14:15 388096 ----a-r- c:\documents and settings\Atelier\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-07-16 13:12 . 2012-07-18 12:41 0 ----a-w- c:\documents and settings\Atelier\Local Settings\Application Data\WavXMapDrive.bat
2012-07-16 13:07 . 2012-07-16 13:11 -------- d-----w- C:\Pre_Scan
2012-07-12 06:19 . 2012-07-12 06:19 -------- d-----w- c:\documents and settings\Atelier\Application Data\PhotoFiltre Studio X
2012-07-12 06:19 . 2012-07-12 06:19 -------- d-----w- c:\program files\PhotoFiltre Studio X
2012-07-05 07:53 . 2012-07-05 07:53 -------- d-----w- c:\windows\system32\wbem\Repository
2012-07-02 06:47 . 2012-07-02 06:49 -------- d-----w- c:\documents and settings\All Users\Application Data\F-Secure
2012-07-02 06:28 . 2012-07-02 06:28 -------- d-----w- c:\documents and settings\All Users\Application Data\Webroot
2012-07-02 06:18 . 2012-05-11 14:40 521728 ------w- c:\windows\system32\dllcache\jsdbgui.dll
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-17 12:59 . 2008-08-05 10:18 0 ----a-w- c:\documents and settings\Administrateur\Local Settings\Application Data\WavXMapDrive.bat
2012-07-17 07:07 . 2012-06-06 15:25 788 ----a-w- C:\FindyKill_Upload_Me_PORTABLE.zip
2012-07-12 12:53 . 2012-05-30 09:02 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-07-12 12:53 . 2011-06-14 08:16 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-07-03 11:46 . 2012-06-06 16:14 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-06-13 13:55 . 2004-08-19 12:03 1866240 ----a-w- c:\windows\system32\win32k.sys
2012-06-05 15:50 . 2009-08-19 16:07 1372672 ----a-w- c:\windows\system32\msxml6.dll
2012-06-05 15:50 . 2004-08-19 12:03 1172480 ----a-w- c:\windows\system32\msxml3.dll
2012-06-04 04:32 . 2004-08-19 12:03 152576 ----a-w- c:\windows\system32\schannel.dll
2012-06-02 13:19 . 2008-10-16 13:08 16408 ----a-w- c:\windows\system32\wuapi.dll.mui
2012-06-02 13:19 . 2008-10-16 13:08 16408 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2012-06-02 13:19 . 2008-10-16 13:07 19480 ----a-w- c:\windows\system32\wuaueng.dll.mui
2012-06-02 13:19 . 2008-10-16 13:09 25112 ----a-w- c:\windows\system32\wucltui.dll.mui
2012-05-31 13:22 . 2004-08-19 12:03 606208 ----a-w- c:\windows\system32\crypt32.dll
2012-05-16 15:06 . 2004-08-19 12:03 916992 ----a-w- c:\windows\system32\wininet.dll
2012-05-11 14:40 . 2004-08-19 12:03 43520 ----a-w- c:\windows\system32\licmgr10.dll
2012-05-11 14:40 . 2004-08-19 12:03 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2012-05-11 11:38 . 2004-08-19 12:03 385024 ----a-w- c:\windows\system32\html.iec
2012-05-05 03:15 . 2004-08-19 12:03 2150400 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-05-05 03:14 . 2004-08-03 23:48 2028544 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-05-02 13:47 . 2004-08-19 12:14 139656 ----a-w- c:\windows\system32\drivers\rdpwd.sys
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}"= "c:\program files\Setuprog\prxtbSet0.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}]
2011-05-09 09:49 176936 ----a-w- c:\program files\Setuprog\prxtbSet0.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}"= "c:\program files\Setuprog\prxtbSet0.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{F4EF4468-9BBB-45A1-A2CE-F0C430A9A7E5}"= "c:\program files\Setuprog\prxtbSet0.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM"="c:\program files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" [2007-08-30 205480]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-08-13 39408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Apoint"="c:\program files\DellTPad\Apoint.exe" [2007-09-09 159744]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-09-10 137752]
"SigmatelSysTrayApp"="stsystra.exe" [2007-09-13 405504]
"IntelZeroConfig"="c:\program files\Intel\Wireless\bin\ZCfgSvc.exe" [2007-07-25 823296]
"IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2007-07-25 974848]
"Dell QuickSet"="c:\program files\Dell\QuickSet\quickset.exe" [2008-02-22 1245184]
"WavXMgr"="c:\program files\Wave Systems Corp\Services Manager\Docmgr\bin\WavXDocMgr.exe" [2007-09-10 92160]
"SecureUpgrade"="c:\program files\Wave Systems Corp\SecureUpgrade.exe" [2007-09-14 218424]
"TrueImageMonitor.exe"="c:\program files\Acronis\TrueImageHome\TrueImageMonitor.exe" [2006-10-18 1185264]
"AcronisTimounterMonitor"="c:\program files\Acronis\TrueImageHome\TimounterMonitor.exe" [2006-10-18 1961576]
"Acronis Scheduler2 Service"="c:\program files\Fichiers communs\Acronis\Schedule2\schedhlp.exe" [2006-10-17 87584]
"SIECA132"="c:\program files\Sontheim\MT_Api\SIECE132.exe" [2010-07-19 335872]
"CardDetectorHUAWEI1752_1552"="c:\program files\CardDetector\HUAWEI1752_1552\CardDetector.exe" [2010-10-21 290816]
"BEWINTERNET-FR-MHGP-BEWPROSessionManager"="c:\program files\OrangeBS\BEWPro\SessionManager\SessionManager.exe" [2010-10-28 140016]
"tvncontrol"="c:\program files\TightVNC\tvnserver.exe" [2011-08-03 828944]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-09-10 166424]
"SunJavaUpdateSched"="c:\program files\Fichiers communs\Java\Java Update\jusched.exe" [2010-10-29 249064]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-08-10 421888]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-09-10 141848]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2011-12-01 258512]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\
Bluetooth Manager.lnk - c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe [2007-1-11 2150400]
Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2008-8-5 50688]
Epsilon QuickStart.lnk - c:\program files\AGCO\Epsilon\Bin\LinkOne.exe [2008-11-6 40960]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\gemsafe]
2006-11-16 14:20 73728 ----a-w- c:\program files\Gemplus\GemSafe Libraries\BIN\WLEventNotify.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\GoToAssist]
2010-07-27 13:24 10536 ----a-w- c:\program files\Citrix\GoToAssist\514\g2awinlogon.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Authentication Packages REG_MULTI_SZ msv1_0 wvauth relog_ap nwprovau
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDVDDXSrv]
2008-02-26 09:57 128296 ----a-w- c:\program files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2008-02-22 03:25 144784 ----a-w- c:\program files\Java\jre1.6.0_05\bin\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]
"KADxMain"=c:\windows\system32\KADxMain.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\CyberLink\\PowerDVD DX\\PowerDVD.exe"=
"c:\\Program Files\\CyberLink\\PowerDVD DX\\PDVDDXSrv.exe"=
"c:\\WINDOWS\\system32\\fxsclnt.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Lauyan\\TOWeb V3\\TOWeb.exe"=
"c:\\Program Files\\OrangeBS\\BEWPro\\Connectivity\\ConnectivityManager.exe"=
"c:\\Program Files\\TightVNC\\tvnserver.exe"=
"c:\\Program Files\\TightVNC\\vncviewer.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
"c:\\Program Files\\Microsoft SQL Server\\MSSQL10_50.EBP\\MSSQL\\Binn\\sqlservr.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"1:TCP"= 1:TCP:192.168.1.1/255.255.255.255:Enabled:Livebox-b08e
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
.
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [17/07/2012 15:08 36000]
R2 ASFIPmon;Broadcom ASF IP and SMBIOS Mailbox Monitor;c:\program files\Broadcom\ASFIPMon\AsfIpMon.exe [20/06/2007 15:30 79168]
R2 MSSQL$EBP;SQL Server (EBP);c:\program files\Microsoft SQL Server\MSSQL10_50.EBP\MSSQL\Binn\sqlservr.exe [03/04/2010 20:56 42884448]
R2 SIECA132Switcher.exe;SIECE132sw;c:\program files\Sontheim\MT_Api\SIECA132Switcher.exe [02/09/2010 14:31 61440]
R2 SIECE132Svr_V7.04.1200;SIECE132Svr_V7.04.1200;c:\program files\Sontheim\MT_Api\7.4.12.0\SIECE132Svr.exe [26/05/2010 14:48 61440]
R2 tvnserver;TightVNC Server;c:\program files\TightVNC\tvnserver.exe [03/08/2011 15:23 828944]
R2 Wave UCSPlus;Wave UCSPlus;c:\windows\system32\dllhost.exe [19/08/2004 14:03 5120]
R3 DXEC01;DXEC01;c:\windows\system32\drivers\dxec01.sys [02/11/2006 13:32 97536]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [06/06/2012 18:14 22344]
S2 AntiVirSchedulerService;Avira Planificateur;c:\program files\Avira\AntiVir Desktop\sched.exe [17/07/2012 15:08 86224]
S2 DLPortIO;DriverLINX Port I/O Driver;c:\windows\system32\drivers\DlportIO.sys [24/06/2009 17:40 5632]
S2 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [01/02/2010 21:46 135664]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [06/06/2012 18:14 655944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [30/05/2012 11:02 250056]
S3 gupdatem;Service Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [01/02/2010 21:46 135664]
S3 hwusbfake;Huawei DataCard USB Fake;c:\windows\system32\drivers\ewusbfake.sys [29/06/2011 12:00 102656]
S3 SIECE132Svr_V7.00.0901;SIECE132Svr_V7.00.0901;c:\program files\Sontheim\MT_Api\7.0.9.1\SIECE132Svr.exe [09/10/2009 13:21 61440]
S3 SieUsb32;SieUsb32;c:\windows\system32\drivers\SieUsb32.sys [24/06/2009 17:54 29184]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam.sys --> c:\windows\system32\DRIVERS\wdcsam.sys [?]
S4 MSSQLServerADHelper100;Service SQL Active Directory Helper;c:\program files\Microsoft SQL Server\100\Shared\sqladhlp.exe [03/04/2010 20:56 44896]
S4 RsFx0150;RsFx0150 Driver;c:\windows\system32\drivers\RsFx0150.sys [03/04/2010 12:02 240608]
S4 SQLAgent$EBP;Agent SQL Server (EBP);c:\program files\Microsoft SQL Server\MSSQL10_50.EBP\MSSQL\Binn\SQLAGENT.EXE [03/04/2010 20:56 367456]
.
--- Autres Services/Pilotes en mémoire ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08
.
Contenu du dossier 'Tâches planifiées'
.
2012-07-18 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-30 12:53]
.
2012-07-16 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34]
.
2012-07-18 c:\windows\Tasks\GlaryInitialize.job
- c:\program files\Glary Utilities\initialize.exe [2012-06-04 21:13]
.
2012-07-18 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-01 19:46]
.
2012-07-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-01 19:46]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.com/
uInternet Connection Wizard,ShellNext = hxxp://www1.euro.dell.com/content/default.aspx?c=fr&l=fr&s=gen
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
Trusted Zone: agcocorp.com
TCP: DhcpNameServer = 192.168.1.1
.
- - - - ORPHELINS SUPPRIMES - - - -
.
SafeBoot-SolutoService
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-07-18 14:40
Windows 5.1.2600 Service Pack 3 NTFS
.
Recherche de processus cachés ...
.
Recherche d'éléments en démarrage automatique cachés ...
.
Recherche de fichiers cachés ...
.
Scan terminé avec succès
Fichiers cachés: 0
.
**************************************************************************
.
--------------------- DLLs chargées dans les processus actifs ---------------------
.
- - - - - - - > 'winlogon.exe'(908)
c:\program files\Citrix\GoToAssist\514\G2AWinLogon.dll
.
- - - - - - - > 'lsass.exe'(964)
c:\windows\system32\wvauth.dll
c:\windows\system32\biolsp.dll
c:\windows\system32\relog_ap.dll
.
- - - - - - - > 'explorer.exe'(5220)
c:\windows\system32\eappprxy.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\msi.dll
c:\program files\Tracker Software\Shell Extensions\XCShInfo.dll
c:\program files\Fichiers communs\Adobe\Acrobat\ActiveX\PDFShell.dll
c:\program files\Fichiers communs\Adobe\Acrobat\ActiveX\PDFShell.FRA
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Intel\Wireless\Bin\S24EvMon.exe
c:\program files\Fichiers communs\Acronis\Schedule2\schedul2.exe
c:\program files\Intel\Wireless\Bin\EvtEng.exe
c:\progra~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
c:\program files\Dell\QuickSet\NICCONFIGSVC.exe
c:\program files\Intel\Wireless\Bin\RegSrvc.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\windows\system32\StacSV.exe
c:\program files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe
c:\program files\Wave Systems Corp\Trusted Drive Manager\TdmService.exe
c:\program files\Intel\Wireless\Bin\WLKeeper.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\msdtc.exe
c:\windows\stsystra.exe
c:\program files\DellTPad\ApMsgFwd.exe
c:\windows\system32\igfxsrvc.exe
c:\program files\DellTPad\HidFind.exe
c:\program files\DellTPad\Apntex.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
c:\program files\Intel\Wireless\Bin\Dot1XCfg.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
.
**************************************************************************
.
Heure de fin: 2012-07-18 14:45:07 - La machine a redémarré
ComboFix-quarantined-files.txt 2012-07-18 12:45
.
Avant-CF: 38 649 675 776 octets libres
Après-CF: 39 038 959 616 octets libres
.
WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Professionnel" /noexecute=optin /fastdetect
.
- - End Of File - - 1F6BF906940B65CBA3F70EC52CA43E1B
ComboFix 12-07-18.01 - Atelier 18/07/2012 14:34:13.1.2 - x86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.2038.1351 [GMT 2:00]
Lancé depuis: c:\documents and settings\Atelier\Bureau\ComboFix.exe
.
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\1338993486.bdinstall.bin
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\Atelier\WINDOWS
c:\windows\system32\AegisI5Installer.exe
c:\windows\system32\DE121032.dll
c:\windows\system32\dllcache\dlimport.exe
c:\windows\system32\drivers\hwinterface.sys
c:\windows\system32\Edb600e.dll
c:\windows\system32\test
.
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_hwinterface
-------\Service_hwinterface
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2012-06-18 au 2012-07-18 ))))))))))))))))))))))))))))))))))))
.
.
2012-07-18 10:06 . 2012-07-18 10:06 512 ----a-w- C:\PhysicalMBR.bin
2012-07-17 13:58 . 2012-07-17 14:03 -------- d-----w- c:\program files\ZHPDiag
2012-07-17 13:09 . 2012-07-17 13:09 -------- d-----w- c:\documents and settings\Atelier\Application Data\Avira
2012-07-17 13:08 . 2011-12-01 15:55 36000 ----a-w- c:\windows\system32\drivers\avkmgr.sys
2012-07-17 13:08 . 2011-12-01 15:55 134856 ----a-w- c:\windows\system32\drivers\avipbb.sys
2012-07-17 13:08 . 2011-12-01 15:55 74640 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2012-07-17 13:08 . 2012-07-17 13:08 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2012-07-17 12:59 . 2012-07-17 12:59 -------- d-----w- c:\documents and settings\Administrateur\Application Data\Dell
2012-07-17 12:59 . 2012-07-17 12:59 -------- d-sh--w- c:\documents and settings\Administrateur\IETldCache
2012-07-16 15:59 . 2012-07-16 15:59 -------- d-----w- c:\program files\Avira
2012-07-16 14:15 . 2012-07-17 14:04 -------- d-----w- c:\program files\Trend Micro
2012-07-16 14:15 . 2012-07-16 14:15 388096 ----a-r- c:\documents and settings\Atelier\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-07-16 13:12 . 2012-07-18 12:41 0 ----a-w- c:\documents and settings\Atelier\Local Settings\Application Data\WavXMapDrive.bat
2012-07-16 13:07 . 2012-07-16 13:11 -------- d-----w- C:\Pre_Scan
2012-07-12 06:19 . 2012-07-12 06:19 -------- d-----w- c:\documents and settings\Atelier\Application Data\PhotoFiltre Studio X
2012-07-12 06:19 . 2012-07-12 06:19 -------- d-----w- c:\program files\PhotoFiltre Studio X
2012-07-05 07:53 . 2012-07-05 07:53 -------- d-----w- c:\windows\system32\wbem\Repository
2012-07-02 06:47 . 2012-07-02 06:49 -------- d-----w- c:\documents and settings\All Users\Application Data\F-Secure
2012-07-02 06:28 . 2012-07-02 06:28 -------- d-----w- c:\documents and settings\All Users\Application Data\Webroot
2012-07-02 06:18 . 2012-05-11 14:40 521728 ------w- c:\windows\system32\dllcache\jsdbgui.dll
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-17 12:59 . 2008-08-05 10:18 0 ----a-w- c:\documents and settings\Administrateur\Local Settings\Application Data\WavXMapDrive.bat
2012-07-17 07:07 . 2012-06-06 15:25 788 ----a-w- C:\FindyKill_Upload_Me_PORTABLE.zip
2012-07-12 12:53 . 2012-05-30 09:02 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-07-12 12:53 . 2011-06-14 08:16 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-07-03 11:46 . 2012-06-06 16:14 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-06-13 13:55 . 2004-08-19 12:03 1866240 ----a-w- c:\windows\system32\win32k.sys
2012-06-05 15:50 . 2009-08-19 16:07 1372672 ----a-w- c:\windows\system32\msxml6.dll
2012-06-05 15:50 . 2004-08-19 12:03 1172480 ----a-w- c:\windows\system32\msxml3.dll
2012-06-04 04:32 . 2004-08-19 12:03 152576 ----a-w- c:\windows\system32\schannel.dll
2012-06-02 13:19 . 2008-10-16 13:08 16408 ----a-w- c:\windows\system32\wuapi.dll.mui
2012-06-02 13:19 . 2008-10-16 13:08 16408 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2012-06-02 13:19 . 2008-10-16 13:07 19480 ----a-w- c:\windows\system32\wuaueng.dll.mui
2012-06-02 13:19 . 2008-10-16 13:09 25112 ----a-w- c:\windows\system32\wucltui.dll.mui
2012-05-31 13:22 . 2004-08-19 12:03 606208 ----a-w- c:\windows\system32\crypt32.dll
2012-05-16 15:06 . 2004-08-19 12:03 916992 ----a-w- c:\windows\system32\wininet.dll
2012-05-11 14:40 . 2004-08-19 12:03 43520 ----a-w- c:\windows\system32\licmgr10.dll
2012-05-11 14:40 . 2004-08-19 12:03 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2012-05-11 11:38 . 2004-08-19 12:03 385024 ----a-w- c:\windows\system32\html.iec
2012-05-05 03:15 . 2004-08-19 12:03 2150400 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-05-05 03:14 . 2004-08-03 23:48 2028544 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-05-02 13:47 . 2004-08-19 12:14 139656 ----a-w- c:\windows\system32\drivers\rdpwd.sys
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}"= "c:\program files\Setuprog\prxtbSet0.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}]
2011-05-09 09:49 176936 ----a-w- c:\program files\Setuprog\prxtbSet0.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}"= "c:\program files\Setuprog\prxtbSet0.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{F4EF4468-9BBB-45A1-A2CE-F0C430A9A7E5}"= "c:\program files\Setuprog\prxtbSet0.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{f4ef4468-9bbb-45a1-a2ce-f0c430a9a7e5}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM"="c:\program files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" [2007-08-30 205480]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-08-13 39408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Apoint"="c:\program files\DellTPad\Apoint.exe" [2007-09-09 159744]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-09-10 137752]
"SigmatelSysTrayApp"="stsystra.exe" [2007-09-13 405504]
"IntelZeroConfig"="c:\program files\Intel\Wireless\bin\ZCfgSvc.exe" [2007-07-25 823296]
"IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2007-07-25 974848]
"Dell QuickSet"="c:\program files\Dell\QuickSet\quickset.exe" [2008-02-22 1245184]
"WavXMgr"="c:\program files\Wave Systems Corp\Services Manager\Docmgr\bin\WavXDocMgr.exe" [2007-09-10 92160]
"SecureUpgrade"="c:\program files\Wave Systems Corp\SecureUpgrade.exe" [2007-09-14 218424]
"TrueImageMonitor.exe"="c:\program files\Acronis\TrueImageHome\TrueImageMonitor.exe" [2006-10-18 1185264]
"AcronisTimounterMonitor"="c:\program files\Acronis\TrueImageHome\TimounterMonitor.exe" [2006-10-18 1961576]
"Acronis Scheduler2 Service"="c:\program files\Fichiers communs\Acronis\Schedule2\schedhlp.exe" [2006-10-17 87584]
"SIECA132"="c:\program files\Sontheim\MT_Api\SIECE132.exe" [2010-07-19 335872]
"CardDetectorHUAWEI1752_1552"="c:\program files\CardDetector\HUAWEI1752_1552\CardDetector.exe" [2010-10-21 290816]
"BEWINTERNET-FR-MHGP-BEWPROSessionManager"="c:\program files\OrangeBS\BEWPro\SessionManager\SessionManager.exe" [2010-10-28 140016]
"tvncontrol"="c:\program files\TightVNC\tvnserver.exe" [2011-08-03 828944]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-09-10 166424]
"SunJavaUpdateSched"="c:\program files\Fichiers communs\Java\Java Update\jusched.exe" [2010-10-29 249064]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-08-10 421888]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-09-10 141848]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2011-12-01 258512]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\
Bluetooth Manager.lnk - c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe [2007-1-11 2150400]
Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2008-8-5 50688]
Epsilon QuickStart.lnk - c:\program files\AGCO\Epsilon\Bin\LinkOne.exe [2008-11-6 40960]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\gemsafe]
2006-11-16 14:20 73728 ----a-w- c:\program files\Gemplus\GemSafe Libraries\BIN\WLEventNotify.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\GoToAssist]
2010-07-27 13:24 10536 ----a-w- c:\program files\Citrix\GoToAssist\514\g2awinlogon.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Authentication Packages REG_MULTI_SZ msv1_0 wvauth relog_ap nwprovau
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDVDDXSrv]
2008-02-26 09:57 128296 ----a-w- c:\program files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2008-02-22 03:25 144784 ----a-w- c:\program files\Java\jre1.6.0_05\bin\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]
"KADxMain"=c:\windows\system32\KADxMain.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\CyberLink\\PowerDVD DX\\PowerDVD.exe"=
"c:\\Program Files\\CyberLink\\PowerDVD DX\\PDVDDXSrv.exe"=
"c:\\WINDOWS\\system32\\fxsclnt.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Lauyan\\TOWeb V3\\TOWeb.exe"=
"c:\\Program Files\\OrangeBS\\BEWPro\\Connectivity\\ConnectivityManager.exe"=
"c:\\Program Files\\TightVNC\\tvnserver.exe"=
"c:\\Program Files\\TightVNC\\vncviewer.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
"c:\\Program Files\\Microsoft SQL Server\\MSSQL10_50.EBP\\MSSQL\\Binn\\sqlservr.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"1:TCP"= 1:TCP:192.168.1.1/255.255.255.255:Enabled:Livebox-b08e
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
.
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [17/07/2012 15:08 36000]
R2 ASFIPmon;Broadcom ASF IP and SMBIOS Mailbox Monitor;c:\program files\Broadcom\ASFIPMon\AsfIpMon.exe [20/06/2007 15:30 79168]
R2 MSSQL$EBP;SQL Server (EBP);c:\program files\Microsoft SQL Server\MSSQL10_50.EBP\MSSQL\Binn\sqlservr.exe [03/04/2010 20:56 42884448]
R2 SIECA132Switcher.exe;SIECE132sw;c:\program files\Sontheim\MT_Api\SIECA132Switcher.exe [02/09/2010 14:31 61440]
R2 SIECE132Svr_V7.04.1200;SIECE132Svr_V7.04.1200;c:\program files\Sontheim\MT_Api\7.4.12.0\SIECE132Svr.exe [26/05/2010 14:48 61440]
R2 tvnserver;TightVNC Server;c:\program files\TightVNC\tvnserver.exe [03/08/2011 15:23 828944]
R2 Wave UCSPlus;Wave UCSPlus;c:\windows\system32\dllhost.exe [19/08/2004 14:03 5120]
R3 DXEC01;DXEC01;c:\windows\system32\drivers\dxec01.sys [02/11/2006 13:32 97536]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [06/06/2012 18:14 22344]
S2 AntiVirSchedulerService;Avira Planificateur;c:\program files\Avira\AntiVir Desktop\sched.exe [17/07/2012 15:08 86224]
S2 DLPortIO;DriverLINX Port I/O Driver;c:\windows\system32\drivers\DlportIO.sys [24/06/2009 17:40 5632]
S2 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [01/02/2010 21:46 135664]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [06/06/2012 18:14 655944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [30/05/2012 11:02 250056]
S3 gupdatem;Service Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [01/02/2010 21:46 135664]
S3 hwusbfake;Huawei DataCard USB Fake;c:\windows\system32\drivers\ewusbfake.sys [29/06/2011 12:00 102656]
S3 SIECE132Svr_V7.00.0901;SIECE132Svr_V7.00.0901;c:\program files\Sontheim\MT_Api\7.0.9.1\SIECE132Svr.exe [09/10/2009 13:21 61440]
S3 SieUsb32;SieUsb32;c:\windows\system32\drivers\SieUsb32.sys [24/06/2009 17:54 29184]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam.sys --> c:\windows\system32\DRIVERS\wdcsam.sys [?]
S4 MSSQLServerADHelper100;Service SQL Active Directory Helper;c:\program files\Microsoft SQL Server\100\Shared\sqladhlp.exe [03/04/2010 20:56 44896]
S4 RsFx0150;RsFx0150 Driver;c:\windows\system32\drivers\RsFx0150.sys [03/04/2010 12:02 240608]
S4 SQLAgent$EBP;Agent SQL Server (EBP);c:\program files\Microsoft SQL Server\MSSQL10_50.EBP\MSSQL\Binn\SQLAGENT.EXE [03/04/2010 20:56 367456]
.
--- Autres Services/Pilotes en mémoire ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08
.
Contenu du dossier 'Tâches planifiées'
.
2012-07-18 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-30 12:53]
.
2012-07-16 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34]
.
2012-07-18 c:\windows\Tasks\GlaryInitialize.job
- c:\program files\Glary Utilities\initialize.exe [2012-06-04 21:13]
.
2012-07-18 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-01 19:46]
.
2012-07-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-01 19:46]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.com/
uInternet Connection Wizard,ShellNext = hxxp://www1.euro.dell.com/content/default.aspx?c=fr&l=fr&s=gen
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
Trusted Zone: agcocorp.com
TCP: DhcpNameServer = 192.168.1.1
.
- - - - ORPHELINS SUPPRIMES - - - -
.
SafeBoot-SolutoService
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-07-18 14:40
Windows 5.1.2600 Service Pack 3 NTFS
.
Recherche de processus cachés ...
.
Recherche d'éléments en démarrage automatique cachés ...
.
Recherche de fichiers cachés ...
.
Scan terminé avec succès
Fichiers cachés: 0
.
**************************************************************************
.
--------------------- DLLs chargées dans les processus actifs ---------------------
.
- - - - - - - > 'winlogon.exe'(908)
c:\program files\Citrix\GoToAssist\514\G2AWinLogon.dll
.
- - - - - - - > 'lsass.exe'(964)
c:\windows\system32\wvauth.dll
c:\windows\system32\biolsp.dll
c:\windows\system32\relog_ap.dll
.
- - - - - - - > 'explorer.exe'(5220)
c:\windows\system32\eappprxy.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\msi.dll
c:\program files\Tracker Software\Shell Extensions\XCShInfo.dll
c:\program files\Fichiers communs\Adobe\Acrobat\ActiveX\PDFShell.dll
c:\program files\Fichiers communs\Adobe\Acrobat\ActiveX\PDFShell.FRA
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Intel\Wireless\Bin\S24EvMon.exe
c:\program files\Fichiers communs\Acronis\Schedule2\schedul2.exe
c:\program files\Intel\Wireless\Bin\EvtEng.exe
c:\progra~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
c:\program files\Dell\QuickSet\NICCONFIGSVC.exe
c:\program files\Intel\Wireless\Bin\RegSrvc.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\windows\system32\StacSV.exe
c:\program files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe
c:\program files\Wave Systems Corp\Trusted Drive Manager\TdmService.exe
c:\program files\Intel\Wireless\Bin\WLKeeper.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\msdtc.exe
c:\windows\stsystra.exe
c:\program files\DellTPad\ApMsgFwd.exe
c:\windows\system32\igfxsrvc.exe
c:\program files\DellTPad\HidFind.exe
c:\program files\DellTPad\Apntex.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
c:\program files\Intel\Wireless\Bin\Dot1XCfg.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
.
**************************************************************************
.
Heure de fin: 2012-07-18 14:45:07 - La machine a redémarré
ComboFix-quarantined-files.txt 2012-07-18 12:45
.
Avant-CF: 38 649 675 776 octets libres
Après-CF: 39 038 959 616 octets libres
.
WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Professionnel" /noexecute=optin /fastdetect
.
- - End Of File - - 1F6BF906940B65CBA3F70EC52CA43E1B
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 658
19 juil. 2012 à 08:37
19 juil. 2012 à 08:37
Est-ce que cela change qq chose ?
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 658
19 juil. 2012 à 11:06
19 juil. 2012 à 11:06
okay.
Fais un scan avec le CD Live Kaspersky : https://forum.malekal.com/viewtopic.php?t=12133&start=
Histoire d'être sûr, m'enfin j'ai vraiment pas l'impression que ça vienne d'une infection, même si t'as que des prob pour faire fonctionner un scan sur ce PC.
C'est assez bizarre.
Fais un scan avec le CD Live Kaspersky : https://forum.malekal.com/viewtopic.php?t=12133&start=
Histoire d'être sûr, m'enfin j'ai vraiment pas l'impression que ça vienne d'une infection, même si t'as que des prob pour faire fonctionner un scan sur ce PC.
C'est assez bizarre.
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 658
19 juil. 2012 à 15:56
19 juil. 2012 à 15:56
Bha là à part faire une restauration du système à une date assez antérieur pour espérer que cela corriger le prob.
18 juil. 2012 à 11:47
18 juil. 2012 à 11:58
www.malwarebytes.org
Version de la base de données: v2012.07.18.04
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Atelier :: PORTABLE [administrateur]
Protection: Désactivé
18/07/2012 11:51:59
mbam-log-2012-07-18 (11-51-59).txt
Type d'examen: Examen rapide
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM | P2P
Options d'examen désactivées:
Elément(s) analysé(s): 224452
Temps écoulé: 5 minute(s), 40 seconde(s)
Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)
Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)
Fichier(s) détecté(s): 0
(Aucun élément nuisible détecté)
(fin)
18 juil. 2012 à 12:11