Help BOO/TDss.B

bullbull -  
Malekal_morte- Messages postés 184348 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   -
Bonjour,

je n'arrive pas à me défaire de ce virus (BOO/TDss.B)
Avira Antivirus le détecte mais n'arrive pas à l'éliminer

les symptômes sont :
si je ne bouge pas la souris pendant un long laps de temps,
l'ordinateur freeze puis redemarre
avec l'écran bleu : "vidage de la mémoire physique"

est ce que quelqu'un peut m'aider svp ?

Bonne journée
Mathieu
A voir également:

3 réponses

Malekal_morte- Messages postés 184348 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 693
 
Salut,

Passe un coup de TDSSKiller : https://forum.malekal.com/viewtopic.php?t=28637&start=
Lire ce qui est écrit au niveau des suppressions/réparation (delete et cure), ne pas supprimer n'importe quoi.
Poste le rapport ici.

0
bullbull
 
17:21:20.0718 2092 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:32
17:21:22.0734 2092 ============================================================
17:21:22.0734 2092 Current date / time: 2012/07/25 17:21:22.0734
17:21:22.0734 2092 SystemInfo:
17:21:22.0734 2092
17:21:22.0734 2092 OS Version: 5.1.2600 ServicePack: 2.0
17:21:22.0734 2092 Product type: Workstation
17:21:22.0734 2092 ComputerName: LUGADET
17:21:22.0734 2092 UserName: Mathieu
17:21:22.0734 2092 Windows directory: C:\WINDOWS
17:21:22.0734 2092 System windows directory: C:\WINDOWS
17:21:22.0734 2092 Processor architecture: Intel x86
17:21:22.0734 2092 Number of processors: 2
17:21:22.0734 2092 Page size: 0x1000
17:21:22.0734 2092 Boot type: Normal boot
17:21:22.0734 2092 ============================================================
17:21:24.0890 2092 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x9DB770, SectorsPerTrack: 0x3F, TracksPerCylinder: 0x3, Type 'K0', Flags 0x00000054
17:21:24.0906 2092 ============================================================
17:21:24.0906 2092 \Device\Harddisk0\DR0:
17:21:24.0906 2092 GPT partitions:
17:21:24.0906 2092 \Device\Harddisk0\DR0\Partition0: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {0000715B-00A8-0000-D86E-00006F3A0000}, Name: EFI system partition, StartLBA 0x28, BlocksNum 0x64000
17:21:24.0906 2092 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {48465300-0000-11AA-AA11-00306543ECAC}, UniqueGUID: {000015E3-06D3-0000-4F30-0000646C0000}, Name: Customer, StartLBA 0x64028, BlocksNum 0x3A7C0000
17:21:24.0906 2092 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {79DB5F21-2298-43A9-805E-9C8C4FB5227D}, Name: BOOTCAMP, StartLBA 0x3A864800, BlocksNum 0x39EA2000
17:21:24.0906 2092 MBR partitions:
17:21:24.0906 2092 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x3A864800, BlocksNum 0x39EA2000
17:21:24.0906 2092 ============================================================
17:21:24.0953 2092 C: <-> \Device\Harddisk0\DR0\Partition3
17:21:24.0953 2092 ============================================================
17:21:24.0953 2092 Initialize success
17:21:24.0953 2092 ============================================================
17:21:26.0937 2272 ============================================================
17:21:26.0937 2272 Scan started
17:21:26.0937 2272 Mode: Manual;
17:21:26.0937 2272 ============================================================
17:21:27.0687 2272 Abiosdsk - ok
17:21:27.0687 2272 abp480n5 - ok
17:21:27.0703 2272 ACPI (0bd94fbfc14ea3606cd6ca4c0255baa3) C:\WINDOWS\system32\DRIVERS\ACPI.sys
17:21:27.0703 2272 ACPI - ok
17:21:27.0718 2272 ACPIEC (e4abc1212b70bb03d35e60681c447210) C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
17:21:27.0718 2272 ACPIEC - ok
17:21:27.0718 2272 adpu160m - ok
17:21:27.0734 2272 aec (841f385c6cfaf66b58fbd898722bb4f0) C:\WINDOWS\system32\drivers\aec.sys
17:21:27.0750 2272 aec - ok
17:21:27.0781 2272 AFD (55e6e1c51b6d30e54335750955453702) C:\WINDOWS\System32\drivers\afd.sys
17:21:27.0781 2272 AFD - ok
17:21:27.0781 2272 Aha154x - ok
17:21:27.0781 2272 aic78u2 - ok
17:21:27.0781 2272 aic78xx - ok
17:21:27.0812 2272 Alerter (cb0067eb22b6bdd9e978934c5b951d8b) C:\WINDOWS\system32\alrsvc.dll
17:21:27.0812 2272 Alerter - ok
17:21:27.0828 2272 ALG (b43cc0f07752d456038cd0268e4d84e9) C:\WINDOWS\System32\alg.exe
17:21:27.0828 2272 ALG - ok
17:21:27.0828 2272 AliIde - ok
17:21:27.0828 2272 amsint - ok
17:21:27.0875 2272 AntiVirSchedulerService (b4837fe56d76b2e9ea90e5365cf6a2be) C:\Program Files\Avira\AntiVir Desktop\sched.exe
17:21:27.0875 2272 AntiVirSchedulerService - ok
17:21:27.0890 2272 AntiVirService (df5a3016052755c910a206058b4a1729) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
17:21:27.0890 2272 AntiVirService - ok
17:21:27.0921 2272 applebmt (bbc83f74c27067929dc3f6d4e1a10299) C:\WINDOWS\system32\DRIVERS\applebmt.sys
17:21:27.0921 2272 applebmt - ok
17:21:27.0937 2272 AppleBtBc (9956161425c7f4975e715c1dff5b6445) C:\WINDOWS\system32\DRIVERS\AppleBtBc.sys
17:21:27.0937 2272 AppleBtBc - ok
17:21:27.0968 2272 AppleHFS (9d6ded1ec58cdde3ed58734212a7f7a7) C:\WINDOWS\system32\drivers\AppleHFS.sys
17:21:27.0968 2272 AppleHFS - ok
17:21:27.0968 2272 AppleMNT (5b975663209b96db34fff47e02639262) C:\WINDOWS\system32\drivers\AppleMNT.sys
17:21:27.0968 2272 AppleMNT - ok
17:21:28.0000 2272 AppleOSSMgr (a8e6b9b51c2f07826f37203aa4a4d452) C:\WINDOWS\system32\AppleOSSMgr.exe
17:21:28.0000 2272 AppleOSSMgr - ok
17:21:28.0000 2272 AppleTimeSrv (ee4108c5584f6ec6234777e0bf126616) C:\WINDOWS\system32\AppleTimeSrv.exe
17:21:28.0000 2272 AppleTimeSrv - ok
17:21:28.0046 2272 AppMgmt (7e9d138dc991bcce6e6026cd74e69cc4) C:\WINDOWS\System32\appmgmts.dll
17:21:28.0109 2272 AppMgmt - ok
17:21:28.0234 2272 AR5416 (4e6c5671520c216b18abd9c8f7b3c501) C:\WINDOWS\system32\DRIVERS\athw.sys
17:21:28.0250 2272 AR5416 - ok
17:21:28.0250 2272 Arp1394 (f0d692b0bffb46e30eb3cea168bbc49f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
17:21:28.0265 2272 Arp1394 - ok
17:21:28.0265 2272 asc - ok
17:21:28.0265 2272 asc3350p - ok
17:21:28.0265 2272 asc3550 - ok
17:21:28.0375 2272 ASFWHide (f8c718dc4299002d495a9da30a7c6ef1) C:\DOCUME~1\Mathieu\LOCALS~1\Temp\ASFWHide
17:21:28.0421 2272 ASFWHide - ok
17:21:28.0421 2272 AsyncMac (02000abf34af4c218c35d257024807d6) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
17:21:28.0437 2272 AsyncMac - ok
17:21:28.0437 2272 atapi (cdfe4411a69c224bd1d11b2da92dac51) C:\WINDOWS\system32\DRIVERS\atapi.sys
17:21:28.0437 2272 atapi - ok
17:21:28.0437 2272 Atdisk - ok
17:21:28.0468 2272 Ati HotKey Poller (bae7603f489ddc1c895217d98d3ec5b7) C:\WINDOWS\system32\Ati2evxx.exe
17:21:28.0484 2272 Ati HotKey Poller - ok
17:21:28.0531 2272 ATI Smart (ce0664ae94855be469deb05b8bfafb95) C:\WINDOWS\system32\ati2sgag.exe
17:21:28.0531 2272 ATI Smart - ok
17:21:28.0781 2272 ati2mtag (7a95a5f3ed40a3b6f1275821553f3f4f) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
17:21:28.0812 2272 ati2mtag - ok
17:21:29.0265 2272 AtiHdmiService (fac04a8e09c8d70594382656d99772a3) C:\WINDOWS\system32\drivers\AtiHdmi.sys
17:21:29.0265 2272 AtiHdmiService - ok
17:21:29.0296 2272 Atmarpc (ec88da854ab7d7752ec8be11a741bb7f) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
17:21:29.0296 2272 Atmarpc - ok
17:21:29.0312 2272 AudioSrv (21620df34b0acf0a37f72396f855820c) C:\WINDOWS\System32\audiosrv.dll
17:21:29.0312 2272 AudioSrv - ok
17:21:29.0343 2272 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
17:21:29.0343 2272 audstub - ok
17:21:29.0390 2272 avgio (0b497c79824f8e1bf22fa6aacd3de3a0) C:\Program Files\Avira\AntiVir Desktop\avgio.sys
17:21:29.0390 2272 avgio - ok
17:21:29.0406 2272 avgntflt (1e4114685de1ffa9675e09c6a1fb3f4b) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
17:21:29.0406 2272 avgntflt - ok
17:21:29.0421 2272 avipbb (0f78d3dae6dedd99ae54c9491c62adf2) C:\WINDOWS\system32\DRIVERS\avipbb.sys
17:21:29.0421 2272 avipbb - ok
17:21:29.0453 2272 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
17:21:29.0453 2272 Beep - ok
17:21:29.0500 2272 BITS (659f7b6c502051bfa37910614b225548) C:\WINDOWS\system32\qmgr.dll
17:21:29.0515 2272 BITS - ok
17:21:29.0531 2272 Browser (75ac49029966bffea09f96c1c194f684) C:\WINDOWS\System32\browser.dll
17:21:29.0531 2272 Browser - ok
17:21:29.0531 2272 BthEnum (d24b8d1784c68a25060fffbe8ed34b76) C:\WINDOWS\system32\DRIVERS\BthEnum.sys
17:21:29.0546 2272 BthEnum - ok
17:21:29.0546 2272 BthPan (10355270be12641b9764235da39dcf0f) C:\WINDOWS\system32\DRIVERS\bthpan.sys
17:21:29.0562 2272 BthPan - ok
17:21:29.0578 2272 BTHPORT (453299f8ef5b514cf4dbd1dff78abca4) C:\WINDOWS\system32\Drivers\BTHport.sys
17:21:29.0593 2272 BTHPORT - ok
17:21:29.0593 2272 BthServ (17a5b75fee908e2a96408c7f5143fa42) C:\WINDOWS\System32\bthserv.dll
17:21:29.0593 2272 BthServ - ok
17:21:29.0593 2272 BTHUSB (f06d4cb9918b462a84d9ac00027efc30) C:\WINDOWS\system32\Drivers\BTHUSB.sys
17:21:29.0609 2272 BTHUSB - ok
17:21:29.0625 2272 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
17:21:29.0625 2272 cbidf2k - ok
17:21:29.0640 2272 CCDECODE (6163ed60b684bab19d3352ab22fc48b2) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
17:21:29.0656 2272 CCDECODE - ok
17:21:29.0656 2272 cd20xrnt - ok
17:21:29.0671 2272 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
17:21:29.0687 2272 Cdaudio - ok
17:21:29.0687 2272 Cdfs (cd7d5152df32b47f4e36f710b35aae02) C:\WINDOWS\system32\drivers\Cdfs.sys
17:21:29.0687 2272 Cdfs - ok
17:21:29.0718 2272 Cdrom (7b53584d94e9d8716b2de91d5f1cb42d) C:\WINDOWS\system32\DRIVERS\cdrom.sys
17:21:29.0718 2272 Cdrom - ok
17:21:29.0734 2272 Changer - ok
17:21:29.0734 2272 CiSvc (abfac5d58218c0a655dfcae2d8a535f3) C:\WINDOWS\system32\cisvc.exe
17:21:29.0750 2272 CiSvc - ok
17:21:29.0750 2272 ClipSrv (e42101918c50f754fc15367814fec11c) C:\WINDOWS\system32\clipsrv.exe
17:21:29.0750 2272 ClipSrv - ok
17:21:29.0750 2272 CmdIde - ok
17:21:29.0765 2272 COMSysApp - ok
17:21:29.0765 2272 Cpqarray - ok
17:21:29.0765 2272 CryptSvc (cd73133eb24c572019944001fad1b8d9) C:\WINDOWS\System32\cryptsvc.dll
17:21:29.0765 2272 CryptSvc - ok
17:21:29.0765 2272 dac2w2k - ok
17:21:29.0765 2272 dac960nt - ok
17:21:29.0812 2272 DcomLaunch (5620353b93dd08016674e4fee280190b) C:\WINDOWS\system32\rpcss.dll
17:21:29.0812 2272 DcomLaunch - ok
17:21:29.0828 2272 Dhcp (a44c9220f460e38fc7ec0b4be4716077) C:\WINDOWS\System32\dhcpcsvc.dll
17:21:29.0828 2272 Dhcp - ok
17:21:29.0828 2272 Disk (00ca44e4534865f8a3b64f7c0984bff0) C:\WINDOWS\system32\DRIVERS\disk.sys
17:21:29.0828 2272 Disk - ok
17:21:29.0828 2272 dmadmin - ok
17:21:29.0906 2272 dmboot (e2d3b7620310fe56685f9b15a6b404b3) C:\WINDOWS\system32\drivers\dmboot.sys
17:21:29.0921 2272 dmboot - ok
17:21:29.0921 2272 dmio (c77f5c20aa70197a69aa84baa9de43c8) C:\WINDOWS\system32\drivers\dmio.sys
17:21:29.0937 2272 dmio - ok
17:21:29.0937 2272 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
17:21:29.0953 2272 dmload - ok
17:21:29.0953 2272 dmserver (893cc650e9e7aa8c9ee14d61e7c150ce) C:\WINDOWS\System32\dmserver.dll
17:21:29.0953 2272 dmserver - ok
17:21:29.0968 2272 DMusic (a6f881284ac1150e37d9ae47ff601267) C:\WINDOWS\system32\drivers\DMusic.sys
17:21:29.0968 2272 DMusic - ok
17:21:29.0984 2272 Dnscache (3b352c41f5087e637b60745bac262d94) C:\WINDOWS\System32\dnsrslvr.dll
17:21:29.0984 2272 Dnscache - ok
17:21:29.0984 2272 dpti2o - ok
17:21:29.0984 2272 drmkaud (1ed4dbbae9f5d558dbba4cc450e3eb2e) C:\WINDOWS\system32\drivers\drmkaud.sys
17:21:29.0984 2272 drmkaud - ok
17:21:30.0031 2272 dtsoftbus01 (555e54ac2f601a8821cef58961653991) C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys
17:21:30.0031 2272 dtsoftbus01 - ok
17:21:30.0031 2272 ERSvc (a4661552caeaf05a7cae43431987910c) C:\WINDOWS\System32\ersvc.dll
17:21:30.0031 2272 ERSvc - ok
17:21:30.0046 2272 Eventlog (9d6bf82fe50d55f20f8e10e0f6653886) C:\WINDOWS\system32\services.exe
17:21:30.0046 2272 Eventlog - ok
17:21:30.0062 2272 EventSystem (a5b1b7c76134329aa7547f6e6da35410) C:\WINDOWS\system32\es.dll
17:21:30.0062 2272 EventSystem - ok
17:21:30.0093 2272 Fastfat (3117f595e9615e04f05a54fc15a03b20) C:\WINDOWS\system32\drivers\Fastfat.sys
17:21:30.0093 2272 Fastfat - ok
17:21:30.0093 2272 FastUserSwitchingCompatibility (aba25e49f6589fd73f1143fdc39a6b46) C:\WINDOWS\System32\shsvcs.dll
17:21:30.0093 2272 FastUserSwitchingCompatibility - ok
17:21:30.0109 2272 Fdc (ced2e8396a8838e59d8fd529c680e02c) C:\WINDOWS\system32\drivers\Fdc.sys
17:21:30.0109 2272 Fdc - ok
17:21:30.0109 2272 Fips (8b121ff880683607ab2aef0340721718) C:\WINDOWS\system32\drivers\Fips.sys
17:21:30.0125 2272 Fips - ok
17:21:30.0125 2272 Flpydisk (0dd1de43115b93f4d85e889d7a86f548) C:\WINDOWS\system32\drivers\Flpydisk.sys
17:21:30.0125 2272 Flpydisk - ok
17:21:30.0156 2272 FltMgr (157754f0df355a9e0a6f54721914f9c6) C:\WINDOWS\system32\DRIVERS\fltMgr.sys
17:21:30.0156 2272 FltMgr - ok
17:21:30.0156 2272 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:21:30.0171 2272 Fs_Rec - ok
17:21:30.0171 2272 Ftdisk (a86859b77b908c18c2657f284aa29fe3) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
17:21:30.0171 2272 Ftdisk - ok
17:21:30.0187 2272 Gpc (c0f1d4a21de5a415df8170616703debf) C:\WINDOWS\system32\DRIVERS\msgpc.sys
17:21:30.0187 2272 Gpc - ok
17:21:30.0203 2272 HdAudAddService (cb8f97bc7b2cc1bf1957a042f779c924) C:\WINDOWS\system32\drivers\clhdaud.sys
17:21:30.0203 2272 HdAudAddService - ok
17:21:30.0234 2272 HDAudBus (3fcc124b6e08ee0e9351f717dd136939) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
17:21:30.0234 2272 HDAudBus - ok
17:21:30.0250 2272 helpsvc (3a18f1fe2e70e736014710ef85857ef8) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
17:21:30.0250 2272 helpsvc - ok
17:21:30.0281 2272 HIDBTH (6705d66bb1419cb9c3a8478a0b4161d0) C:\WINDOWS\system32\DRIVERS\hidbth.sys
17:21:30.0281 2272 HIDBTH - ok
17:21:30.0296 2272 HidServ (bba013d455c7cd9d8c42e8c7cc7418f9) C:\WINDOWS\System32\hidserv.dll
17:21:30.0296 2272 HidServ - ok
17:21:30.0296 2272 hidusb (1de6783b918f540149aa69943bdfeba8) C:\WINDOWS\system32\DRIVERS\hidusb.sys
17:21:30.0296 2272 hidusb - ok
17:21:30.0312 2272 hpn - ok
17:21:30.0328 2272 HTTP (9f8b0f4276f618964fd118be4289b7cd) C:\WINDOWS\system32\Drivers\HTTP.sys
17:21:30.0328 2272 HTTP - ok
17:21:30.0375 2272 HTTPFilter (fdcd442cf729d30b5d9c07ade37901ab) C:\WINDOWS\System32\w3ssl.dll
17:21:30.0375 2272 HTTPFilter - ok
17:21:30.0375 2272 i2omgmt - ok
17:21:30.0375 2272 i2omp - ok
17:21:30.0390 2272 Imapi (f8aa320c6a0409c0380e5d8a99d76ec6) C:\WINDOWS\system32\DRIVERS\imapi.sys
17:21:30.0390 2272 Imapi - ok
17:21:30.0406 2272 ImapiService (17b7a4375868b8c38f2dfc98b3b420c6) C:\WINDOWS\system32\imapi.exe
17:21:30.0406 2272 ImapiService - ok
17:21:30.0406 2272 ini910u - ok
17:21:30.0406 2272 IntelIde - ok
17:21:30.0406 2272 intelppm (dd5ad1e79ac26d3f8d8828ad4627f160) C:\WINDOWS\system32\DRIVERS\intelppm.sys
17:21:30.0406 2272 intelppm - ok
17:21:30.0421 2272 Ip6Fw (4448006b6bc60e6c027932cfc38d6855) C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
17:21:30.0421 2272 Ip6Fw - ok
17:21:30.0437 2272 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:21:30.0437 2272 IpFilterDriver - ok
17:21:30.0453 2272 IpInIp (e1ec7f5da720b640cd8fb8424f1b14bb) C:\WINDOWS\system32\DRIVERS\ipinip.sys
17:21:30.0453 2272 IpInIp - ok
17:21:30.0484 2272 IpNat (b5a8e215ac29d24d60b4d1250ef05ace) C:\WINDOWS\system32\DRIVERS\ipnat.sys
17:21:30.0484 2272 IpNat - ok
17:21:30.0484 2272 IPSec (64537aa5c003a6afeee1df819062d0d1) C:\WINDOWS\system32\DRIVERS\ipsec.sys
17:21:30.0484 2272 IPSec - ok
17:21:30.0515 2272 IRENUM (50708daa1b1cbb7d6ac1cf8f56a24410) C:\WINDOWS\system32\DRIVERS\irenum.sys
17:21:30.0515 2272 IRENUM - ok
17:21:30.0546 2272 IRRemoteFlt (dd4c1a21abd0c41184d3f529421e4650) C:\WINDOWS\system32\DRIVERS\IRFilter.sys
17:21:30.0546 2272 IRRemoteFlt - ok
17:21:30.0546 2272 isapnp (54632f1a7de61dc3615d756f2a90fa72) C:\WINDOWS\system32\DRIVERS\isapnp.sys
17:21:30.0546 2272 isapnp - ok
17:21:30.0625 2272 JavaQuickStarterService (91061352084424820ac6268808cb8ee3) C:\Program Files\Java\jre6\bin\jqs.exe
17:21:30.0625 2272 JavaQuickStarterService - ok
17:21:30.0625 2272 Kbdclass (e798705e8dc7fab596ef6bfdf167e007) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
17:21:30.0625 2272 Kbdclass - ok
17:21:30.0625 2272 kbdhid (62dd5eefcec4ef4163f1168d4262a9e4) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
17:21:30.0640 2272 kbdhid - ok
17:21:30.0656 2272 KeyAgent (091f84b33f9cc1bf90b0036f539c1145) C:\WINDOWS\system32\drivers\KeyAgent.sys
17:21:30.0656 2272 KeyAgent - ok
17:21:30.0656 2272 KeyMagic (f0135c184560c73aacd53ad07a9aa434) C:\WINDOWS\system32\DRIVERS\KeyMagic.sys
17:21:30.0656 2272 KeyMagic - ok
17:21:30.0687 2272 kmixer (d93cad07c5683db066b0b2d2d3790ead) C:\WINDOWS\system32\drivers\kmixer.sys
17:21:30.0703 2272 kmixer - ok
17:21:30.0718 2272 KSecDD (674d3e5a593475915dc6643317192403) C:\WINDOWS\system32\drivers\KSecDD.sys
17:21:30.0718 2272 KSecDD - ok
17:21:30.0718 2272 lanmanserver (ef009a39ae1d3eb6e154ba06a331579c) C:\WINDOWS\System32\srvsvc.dll
17:21:30.0718 2272 lanmanserver - ok
17:21:30.0750 2272 lanmanworkstation (1a1a7ace3190224c82f70561fc7a4774) C:\WINDOWS\System32\wkssvc.dll
17:21:30.0750 2272 lanmanworkstation - ok
17:21:30.0765 2272 lbrtfdc - ok
17:21:30.0765 2272 LmHosts (2c6d3047910b70ccd571ba2698b0c98b) C:\WINDOWS\System32\lmhsvc.dll
17:21:30.0765 2272 LmHosts - ok
17:21:30.0781 2272 MacHALDriver (e9866eb47c66a785b92d25f79ee8ea48) C:\WINDOWS\system32\drivers\MacHALDriver.sys
17:21:30.0781 2272 MacHALDriver - ok
17:21:30.0812 2272 Messenger (de71362123e81d268088e78543752576) C:\WINDOWS\System32\msgsvc.dll
17:21:30.0812 2272 Messenger - ok
17:21:30.0828 2272 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
17:21:30.0828 2272 mnmdd - ok
17:21:30.0843 2272 mnmsrvc (5b219f99cf6d5be05a6c6e86c38cb7ce) C:\WINDOWS\system32\mnmsrvc.exe
17:21:30.0859 2272 mnmsrvc - ok
17:21:30.0875 2272 Modem (5ac7e16f5b40a6da14b5f2b3ada4693e) C:\WINDOWS\system32\drivers\Modem.sys
17:21:30.0875 2272 Modem - ok
17:21:30.0875 2272 Mouclass (7d4f19411bd941e1d432a99e24230386) C:\WINDOWS\system32\DRIVERS\mouclass.sys
17:21:30.0875 2272 Mouclass - ok
17:21:30.0890 2272 mouhid (124d6846040c79b9c997f78ef4b2a4e5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
17:21:30.0890 2272 mouhid - ok
17:21:30.0906 2272 MountMgr (65653f3b4477f3c63e68a9659f85ee2e) C:\WINDOWS\system32\drivers\MountMgr.sys
17:21:30.0906 2272 MountMgr - ok
17:21:30.0937 2272 MozillaMaintenance (46297fa8e30a6007f14118fc2b942fbc) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
17:21:30.0953 2272 MozillaMaintenance - ok
17:21:30.0953 2272 mraid35x - ok
17:21:30.0968 2272 MRxDAV (46edcc8f2db2f322c24f48785cb46366) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
17:21:30.0968 2272 MRxDAV - ok
17:21:31.0000 2272 MRxSmb (fb6c89bb3ce282b08bdb1e3c179e1c39) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
17:21:31.0015 2272 MRxSmb - ok
17:21:31.0031 2272 MSDTC (11ca338b8765db8e2d1b459f2cfad147) C:\WINDOWS\system32\msdtc.exe
17:21:31.0046 2272 MSDTC - ok
17:21:31.0046 2272 Msfs (561b3a4333ca2dbdba28b5b956822519) C:\WINDOWS\system32\drivers\Msfs.sys
17:21:31.0046 2272 Msfs - ok
17:21:31.0046 2272 MSIServer - ok
17:21:31.0062 2272 MSKSSRV (ae431a8dd3c1d0d0610cdbac16057ad0) C:\WINDOWS\system32\drivers\MSKSSRV.sys
17:21:31.0062 2272 MSKSSRV - ok
17:21:31.0078 2272 MSPCLOCK (13e75fef9dfeb08eeded9d0246e1f448) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
17:21:31.0078 2272 MSPCLOCK - ok
17:21:31.0093 2272 MSPQM (1988a33ff19242576c3d0ef9ce785da7) C:\WINDOWS\system32\drivers\MSPQM.sys
17:21:31.0093 2272 MSPQM - ok
17:21:31.0109 2272 mssmbios (469541f8bfd2b32659d5d463a6714bce) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
17:21:31.0109 2272 mssmbios - ok
17:21:31.0125 2272 MSTEE (bf13612142995096ab084f2db7f40f77) C:\WINDOWS\system32\drivers\MSTEE.sys
17:21:31.0125 2272 MSTEE - ok
17:21:31.0125 2272 Mup (82035e0f41c2dd05ae41d27fe6cf7de1) C:\WINDOWS\system32\drivers\Mup.sys
17:21:31.0140 2272 Mup - ok
17:21:31.0140 2272 NABTSFEC (5c8dc6429c43dc6177c1fa5b76290d1a) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
17:21:31.0156 2272 NABTSFEC - ok
17:21:31.0171 2272 NDIS (558635d3af1c7546d26067d5d9b6959e) C:\WINDOWS\system32\drivers\NDIS.sys
17:21:31.0171 2272 NDIS - ok
17:21:31.0187 2272 NdisIP (520ce427a8b298f54112857bcf6bde15) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
17:21:31.0187 2272 NdisIP - ok
17:21:31.0234 2272 NdisTapi (08d43bbdacdf23f34d79e44ed35c1b4c) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
17:21:31.0234 2272 NdisTapi - ok
17:21:31.0234 2272 Ndisuio (34d6cd56409da9a7ed573e1c90a308bf) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
17:21:31.0250 2272 Ndisuio - ok
17:21:31.0250 2272 NdisWan (0b90e255a9490166ab368cd55a529893) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:21:31.0250 2272 NdisWan - ok
17:21:31.0250 2272 NDProxy (59fc3fb44d2669bc144fd87826bb571f) C:\WINDOWS\system32\drivers\NDProxy.sys
17:21:31.0265 2272 NDProxy - ok
17:21:31.0265 2272 NetBIOS (3a2aca8fc1d7786902ca434998d7ceb4) C:\WINDOWS\system32\DRIVERS\netbios.sys
17:21:31.0265 2272 NetBIOS - ok
17:21:31.0281 2272 NetBT (0c80e410cd2f47134407ee7dd19cc86b) C:\WINDOWS\system32\DRIVERS\netbt.sys
17:21:31.0281 2272 NetBT - ok
17:21:31.0296 2272 NetDDE (d40598fd7b7dccbfb22d777e0dfb1cf0) C:\WINDOWS\system32\netdde.exe
17:21:31.0312 2272 NetDDE - ok
17:21:31.0312 2272 NetDDEdsdm (d40598fd7b7dccbfb22d777e0dfb1cf0) C:\WINDOWS\system32\netdde.exe
17:21:31.0312 2272 NetDDEdsdm - ok
17:21:31.0328 2272 Netlogon (259af82a0932eea4f316f92db94707b6) C:\WINDOWS\system32\lsass.exe
17:21:31.0328 2272 Netlogon - ok
17:21:31.0343 2272 Netman (237f77c91b70469e3af9f7fd0a524954) C:\WINDOWS\System32\netman.dll
17:21:31.0343 2272 Netman - ok
17:21:31.0343 2272 NIC1394 (5c5c53db4fef16cf87b9911c7e8c6fbc) C:\WINDOWS\system32\DRIVERS\nic1394.sys
17:21:31.0343 2272 NIC1394 - ok
17:21:31.0390 2272 Nla (8a52de10680a40ecd04fa2c0fbc34190) C:\WINDOWS\System32\mswsock.dll
17:21:31.0390 2272 Nla - ok
17:21:31.0390 2272 Npfs (4f601bcb8f64ea3ac0994f98fed03f8e) C:\WINDOWS\system32\drivers\Npfs.sys
17:21:31.0390 2272 Npfs - ok
17:21:31.0437 2272 Ntfs (b78be402c3f63dd55521f73876951cdd) C:\WINDOWS\system32\drivers\Ntfs.sys
17:21:31.0437 2272 Ntfs - ok
17:21:31.0453 2272 NtLmSsp (259af82a0932eea4f316f92db94707b6) C:\WINDOWS\system32\lsass.exe
17:21:31.0453 2272 NtLmSsp - ok
17:21:31.0484 2272 NtmsSvc (951543ffb84012d13f4cb09da2eace96) C:\WINDOWS\system32\ntmssvc.dll
17:21:31.0500 2272 NtmsSvc - ok
17:21:31.0531 2272 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
17:21:31.0531 2272 Null - ok
17:21:31.0562 2272 NVENETFD (28727d0f5ca6579890d0b6ad1598c935) C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
17:21:31.0578 2272 NVENETFD - ok
17:21:31.0593 2272 nvnetbus (a3cd61af33e8b3cc2cc22bd37f867d54) C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
17:21:31.0609 2272 nvnetbus - ok
17:21:31.0640 2272 nvsmu (b1fb1516fd38e69749886c9bdd357bab) C:\WINDOWS\system32\DRIVERS\nvsmu.sys
17:21:31.0640 2272 nvsmu - ok
17:21:31.0656 2272 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
17:21:31.0656 2272 NwlnkFlt - ok
17:21:31.0671 2272 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
17:21:31.0671 2272 NwlnkFwd - ok
17:21:31.0703 2272 ohci1394 (0951db8e5823ea366b0e408d71e1ba2a) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
17:21:31.0703 2272 ohci1394 - ok
17:21:31.0750 2272 Parport (318696359ac7df48d1e51974ec527dd2) C:\WINDOWS\system32\drivers\Parport.sys
17:21:31.0750 2272 Parport - ok
17:21:31.0765 2272 PartMgr (3334430c29dc338092f79c38ef7b4cd0) C:\WINDOWS\system32\drivers\PartMgr.sys
17:21:31.0765 2272 PartMgr - ok
17:21:31.0781 2272 ParVdm (9575c5630db8fb804649a6959737154c) C:\WINDOWS\system32\drivers\ParVdm.sys
17:21:31.0796 2272 ParVdm - ok
17:21:31.0796 2272 PCI (7c5da5c1ed801ad8b0309d5514f0b75e) C:\WINDOWS\system32\DRIVERS\pci.sys
17:21:31.0812 2272 PCI - ok
17:21:31.0812 2272 PCIDump - ok
17:21:31.0812 2272 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) C:\WINDOWS\system32\DRIVERS\pciide.sys
17:21:31.0812 2272 PCIIde - ok
17:21:31.0843 2272 Pcmcia (641da274e163617ea7a33506bc6da8e3) C:\WINDOWS\system32\drivers\Pcmcia.sys
17:21:31.0859 2272 Pcmcia - ok
17:21:31.0859 2272 PDCOMP - ok
17:21:31.0859 2272 PDFRAME - ok
17:21:31.0859 2272 PDRELI - ok
17:21:31.0859 2272 PDRFRAME - ok
17:21:31.0859 2272 perc2 - ok
17:21:31.0859 2272 perc2hib - ok
17:21:31.0906 2272 pfc (5903fa75200807ad739286bbf40c4904) C:\WINDOWS\system32\drivers\pfc.sys
17:21:31.0906 2272 pfc - ok
17:21:31.0921 2272 PlugPlay (9d6bf82fe50d55f20f8e10e0f6653886) C:\WINDOWS\system32\services.exe
17:21:31.0921 2272 PlugPlay - ok
17:21:31.0921 2272 PolicyAgent (259af82a0932eea4f316f92db94707b6) C:\WINDOWS\system32\lsass.exe
17:21:31.0921 2272 PolicyAgent - ok
17:21:31.0937 2272 PptpMiniport (1c5cc65aac0783c344f16353e60b72ac) C:\WINDOWS\system32\DRIVERS\raspptp.sys
17:21:31.0937 2272 PptpMiniport - ok
17:21:31.0937 2272 ProtectedStorage (259af82a0932eea4f316f92db94707b6) C:\WINDOWS\system32\lsass.exe
17:21:31.0937 2272 ProtectedStorage - ok
17:21:31.0953 2272 PSched (48671f327553dcf1d27f6197f622a668) C:\WINDOWS\system32\DRIVERS\psched.sys
17:21:31.0953 2272 PSched - ok
17:21:31.0953 2272 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
17:21:31.0968 2272 Ptilink - ok
17:21:31.0968 2272 ql1080 - ok
17:21:31.0968 2272 Ql10wnt - ok
17:21:31.0968 2272 ql12160 - ok
17:21:31.0968 2272 ql1240 - ok
17:21:31.0968 2272 ql1280 - ok
17:21:31.0984 2272 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
17:21:31.0984 2272 RasAcd - ok
17:21:32.0015 2272 RasAuto (03d5509f513eac463d1c5b3601ebc62c) C:\WINDOWS\System32\rasauto.dll
17:21:32.0031 2272 RasAuto - ok
17:21:32.0031 2272 Rasl2tp (98faeb4a4dcf812ba1c6fca4aa3e115c) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
17:21:32.0031 2272 Rasl2tp - ok
17:21:32.0078 2272 RasMan (846e0536290c0488bf3d797f2cabbccf) C:\WINDOWS\System32\rasmans.dll
17:21:32.0078 2272 RasMan - ok
17:21:32.0078 2272 RasPppoe (7306eeed8895454cbed4669be9f79faa) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
17:21:32.0078 2272 RasPppoe - ok
17:21:32.0093 2272 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
17:21:32.0093 2272 Raspti - ok
17:21:32.0109 2272 Rdbss (29d66245adba878fff574cd66abd2884) C:\WINDOWS\system32\DRIVERS\rdbss.sys
17:21:32.0109 2272 Rdbss - ok
17:21:32.0125 2272 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
17:21:32.0125 2272 RDPCDD - ok
17:21:32.0140 2272 rdpdr (a2cae2c60bc37e0751ef9dda7ceaf4ad) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
17:21:32.0156 2272 rdpdr - ok
17:21:32.0187 2272 RDPWD (d4f5643d7714ef499ae9527fdcd50894) C:\WINDOWS\system32\drivers\RDPWD.sys
17:21:32.0187 2272 RDPWD - ok
17:21:32.0234 2272 RDSessMgr (f35a23e5b6413f93ccca0d05d00183fb) C:\WINDOWS\system32\sessmgr.exe
17:21:32.0234 2272 RDSessMgr - ok
17:21:32.0250 2272 redbook (2cc30b68dd62b73d444a41322cd7fc4c) C:\WINDOWS\system32\DRIVERS\redbook.sys
17:21:32.0265 2272 redbook - ok
17:21:32.0281 2272 RemoteAccess (6e2cbbd6956a605ef98ffd4843928fed) C:\WINDOWS\System32\mprdim.dll
17:21:32.0296 2272 RemoteAccess - ok
17:21:32.0312 2272 RemoteRegistry (b6f76ce10953a141545a0d01f1776885) C:\WINDOWS\system32\regsvc.dll
17:21:32.0312 2272 RemoteRegistry - ok
17:21:32.0343 2272 RFCOMM (99c4b74981a1413f142a3903130088cb) C:\WINDOWS\system32\DRIVERS\rfcomm.sys
17:21:32.0359 2272 RFCOMM - ok
17:21:32.0406 2272 RpcLocator (dab8e0b2f07dc4d44f8f72bf3994630b) C:\WINDOWS\system32\locator.exe
17:21:32.0406 2272 RpcLocator - ok
17:21:32.0437 2272 RpcSs (5620353b93dd08016674e4fee280190b) C:\WINDOWS\system32\rpcss.dll
17:21:32.0437 2272 RpcSs - ok
17:21:32.0484 2272 RSVP (414964844f4793acb868d057e8ed997e) C:\WINDOWS\system32\rsvp.exe
17:21:32.0500 2272 RSVP - ok
17:21:32.0531 2272 s1039bus (d259d085f215b57b7170dc2d0b646b2a) C:\WINDOWS\system32\DRIVERS\s1039bus.sys
17:21:32.0546 2272 s1039bus - ok
17:21:32.0562 2272 s1039mdfl (7b35091a7bb597c86262c589b0b57d06) C:\WINDOWS\system32\DRIVERS\s1039mdfl.sys
17:21:32.0562 2272 s1039mdfl - ok
17:21:32.0578 2272 s1039mdm (4cb1ab13c9813cbf3e4c6406f8043ec2) C:\WINDOWS\system32\DRIVERS\s1039mdm.sys
17:21:32.0593 2272 s1039mdm - ok
17:21:32.0625 2272 s1039mgmt (5e91068b3f5e003b83d8a99dc0c76e2c) C:\WINDOWS\system32\DRIVERS\s1039mgmt.sys
17:21:32.0625 2272 s1039mgmt - ok
17:21:32.0640 2272 s1039nd5 (df54dbf1c4105d2074d07929f6ba91aa) C:\WINDOWS\system32\DRIVERS\s1039nd5.sys
17:21:32.0656 2272 s1039nd5 - ok
17:21:32.0671 2272 s1039obex (1bc084b0708d42e29e2222346149e52f) C:\WINDOWS\system32\DRIVERS\s1039obex.sys
17:21:32.0687 2272 s1039obex - ok
17:21:32.0703 2272 s1039unic (2e8ccb7bf5b1eb34bcf4ebf880b3e11c) C:\WINDOWS\system32\DRIVERS\s1039unic.sys
17:21:32.0703 2272 s1039unic - ok
17:21:32.0734 2272 SamSs (259af82a0932eea4f316f92db94707b6) C:\WINDOWS\system32\lsass.exe
17:21:32.0734 2272 SamSs - ok
17:21:32.0781 2272 SCardSvr (8866078139c403a28cb4cb460ca6dc90) C:\WINDOWS\System32\SCardSvr.exe
17:21:32.0781 2272 SCardSvr - ok
17:21:32.0828 2272 Schedule (a65e74cc5831ced5762aa16033ed20ee) C:\WINDOWS\system32\schedsvc.dll
17:21:32.0828 2272 Schedule - ok
17:21:32.0843 2272 Secdrv (d26e26ea516450af9d072635c60387f4) C:\WINDOWS\system32\DRIVERS\secdrv.sys
17:21:32.0859 2272 Secdrv - ok
17:21:32.0875 2272 seclogon (27adc5543dbdfff3fcb8d14d36395072) C:\WINDOWS\System32\seclogon.dll
17:21:32.0875 2272 seclogon - ok
17:21:32.0875 2272 SENS (3c6be06a5e464056f7a10e4d66ef92c0) C:\WINDOWS\system32\sens.dll
17:21:32.0875 2272 SENS - ok
17:21:32.0906 2272 Serial (653201755ca96ab4aaa4131daf6da356) C:\WINDOWS\system32\drivers\Serial.sys
17:21:32.0906 2272 Serial - ok
17:21:32.0937 2272 Sfloppy (0d13b6df6e9e101013a7afb0ce629fe0) C:\WINDOWS\system32\drivers\Sfloppy.sys
17:21:32.0937 2272 Sfloppy - ok
17:21:32.0953 2272 SharedAccess (bc919495f27aeedac71c123e859413d0) C:\WINDOWS\System32\ipnathlp.dll
17:21:32.0953 2272 SharedAccess - ok
17:21:32.0984 2272 ShellHWDetection (aba25e49f6589fd73f1143fdc39a6b46) C:\WINDOWS\System32\shsvcs.dll
17:21:32.0984 2272 ShellHWDetection - ok
17:21:32.0984 2272 Simbad - ok
17:21:33.0015 2272 SLIP (5caeed86821fa2c6139e32e9e05ccdc9) C:\WINDOWS\system32\DRIVERS\SLIP.sys
17:21:33.0015 2272 SLIP - ok
17:21:33.0093 2272 Sony Ericsson PCCompanion (1a623f2b69e1f182f995f963c55db935) C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
17:21:33.0093 2272 Sony Ericsson PCCompanion - ok
17:21:33.0093 2272 Sparrow - ok
17:21:33.0125 2272 splitter (8e186b8f23295d1e42c573b82b80d548) C:\WINDOWS\system32\drivers\splitter.sys
17:21:33.0125 2272 splitter - ok
17:21:33.0156 2272 Spooler (df9fc62ad51cb082b0ae371919a232cb) C:\WINDOWS\system32\spoolsv.exe
17:21:33.0156 2272 Spooler - ok
17:21:33.0203 2272 sptd (d390675b8ce45e5fb359338e5e649329) C:\WINDOWS\system32\Drivers\sptd.sys
17:21:33.0203 2272 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: d390675b8ce45e5fb359338e5e649329
17:21:33.0203 2272 sptd ( LockedFile.Multi.Generic ) - warning
17:21:33.0203 2272 sptd - detected LockedFile.Multi.Generic (1)
17:21:33.0218 2272 sr (b52181023b827acda36c1b76751ebffd) C:\WINDOWS\system32\DRIVERS\sr.sys
17:21:33.0218 2272 sr - ok
17:21:33.0234 2272 srservice (ce978404558ce2d82896ac2032f06dbf) C:\WINDOWS\system32\srsvc.dll
17:21:33.0234 2272 srservice - ok
17:21:33.0734 2272 Srv (7a4f147cc6b133f905f6e65e2f8669fb) C:\WINDOWS\system32\DRIVERS\srv.sys
17:21:33.0750 2272 Srv - ok
17:21:33.0781 2272 SSDPSRV (dcb185c829538971e47affe77ba138c3) C:\WINDOWS\System32\ssdpsrv.dll
17:21:33.0781 2272 SSDPSRV - ok
17:21:33.0812 2272 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
17:21:33.0812 2272 ssmdrv - ok
17:21:33.0843 2272 stisvc (3180d308ba44c96f18e6a83ad2bef13a) C:\WINDOWS\system32\wiaservc.dll
17:21:33.0843 2272 stisvc - ok
17:21:33.0859 2272 streamip (284c57df5dc7abca656bc2b96a667afb) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
17:21:33.0875 2272 streamip - ok
17:21:33.0890 2272 swenum (03c1bae4766e2450219d20b993d6e046) C:\WINDOWS\system32\DRIVERS\swenum.sys
17:21:33.0890 2272 swenum - ok
17:21:33.0906 2272 swmidi (94abc808fc4b6d7d2bbf42b85e25bb4d) C:\WINDOWS\system32\drivers\swmidi.sys
17:21:33.0921 2272 swmidi - ok
17:21:33.0921 2272 SwPrv - ok
17:21:33.0921 2272 symc810 - ok
17:21:33.0921 2272 symc8xx - ok
17:21:33.0921 2272 sym_hi - ok
17:21:33.0921 2272 sym_u3 - ok
17:21:33.0937 2272 sysaudio (650ad082d46bac0e64c9c0e0928492fd) C:\WINDOWS\system32\drivers\sysaudio.sys
17:21:33.0937 2272 sysaudio - ok
17:21:33.0968 2272 SysmonLog (0faad412d36e668260a6d5699875d534) C:\WINDOWS\system32\smlogsvc.exe
17:21:33.0984 2272 SysmonLog - ok
17:21:34.0031 2272 TapiSrv (5cc2a233dac03caf99d20b87598675cd) C:\WINDOWS\System32\tapisrv.dll
17:21:34.0046 2272 TapiSrv - ok
17:21:34.0078 2272 Tcpip (2a5554fc5b1e04e131230e3ce035c3f9) C:\WINDOWS\system32\DRIVERS\tcpip.sys
17:21:34.0093 2272 Tcpip - ok
17:21:34.0125 2272 TDPIPE (38d437cf2d98965f239b0abcd66dcb0f) C:\WINDOWS\system32\drivers\TDPIPE.sys
17:21:34.0125 2272 TDPIPE - ok
17:21:34.0156 2272 TDTCP (ed0580af02502d00ad8c4c066b156be9) C:\WINDOWS\system32\drivers\TDTCP.sys
17:21:34.0156 2272 TDTCP - ok
17:21:34.0187 2272 TermDD (a540a99c281d933f3d69d55e48727f47) C:\WINDOWS\system32\DRIVERS\termdd.sys
17:21:34.0187 2272 TermDD - ok
17:21:34.0234 2272 TermService (78f90c3e230ad122bcb116abad5fefe9) C:\WINDOWS\System32\termsrv.dll
17:21:34.0234 2272 TermService - ok
17:21:34.0265 2272 Themes (aba25e49f6589fd73f1143fdc39a6b46) C:\WINDOWS\System32\shsvcs.dll
17:21:34.0265 2272 Themes - ok
17:21:34.0312 2272 TlntSvr (d244322be1a7c8ad252ec5397ea6d296) C:\WINDOWS\system32\tlntsvr.exe
17:21:34.0312 2272 TlntSvr - ok
17:21:34.0312 2272 TosIde - ok
17:21:34.0343 2272 TrkWks (215e18ca64cea34540ad2984f4a06fae) C:\WINDOWS\system32\trkwks.dll
17:21:34.0343 2272 TrkWks - ok
17:21:34.0375 2272 Udfs (12f70256f140cd7d52c58c7048fde657) C:\WINDOWS\system32\drivers\Udfs.sys
17:21:34.0390 2272 Udfs - ok
17:21:34.0390 2272 ultra - ok
17:21:34.0406 2272 Update (aff2e5045961bbc0a602bb6f95eb1345) C:\WINDOWS\system32\DRIVERS\update.sys
17:21:34.0421 2272 Update - ok
17:21:34.0437 2272 upnphost (0b6a726c2de9bbb80a48459f0c318f44) C:\WINDOWS\System32\upnphost.dll
17:21:34.0453 2272 upnphost - ok
17:21:34.0484 2272 UPS (394c9b28c1a97e1ae0421be88ddac102) C:\WINDOWS\System32\ups.exe
17:21:34.0484 2272 UPS - ok
17:21:34.0500 2272 usbccgp (bffd9f120cc63bcbaa3d840f3eef9f79) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
17:21:34.0500 2272 usbccgp - ok
17:21:34.0515 2272 usbehci (15e993ba2f6946b2bfbbfcd30398621e) C:\WINDOWS\system32\DRIVERS\usbehci.sys
17:21:34.0531 2272 usbehci - ok
17:21:34.0546 2272 usbhub (c72f40947f92cea56a8fb532edf025f1) C:\WINDOWS\system32\DRIVERS\usbhub.sys
17:21:34.0546 2272 usbhub - ok
17:21:34.0546 2272 usbohci (bdfe799a8531bad8a5a985821fe78760) C:\WINDOWS\system32\DRIVERS\usbohci.sys
17:21:34.0546 2272 usbohci - ok
17:21:34.0578 2272 usbprint (a42369b7cd8886cd7c70f33da6fcbcf5) C:\WINDOWS\system32\DRIVERS\usbprint.sys
17:21:34.0578 2272 usbprint - ok
17:21:34.0625 2272 usbscan (a6bc71402f4f7dd5b77fd7f4a8ddba85) C:\WINDOWS\system32\DRIVERS\usbscan.sys
17:21:34.0625 2272 usbscan - ok
17:21:34.0640 2272 usbstor (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
17:21:34.0640 2272 usbstor - ok
17:21:34.0656 2272 usbvideo (8968ff3973a883c49e8b564200f565b9) C:\WINDOWS\system32\Drivers\usbvideo.sys
17:21:34.0671 2272 usbvideo - ok
17:21:34.0671 2272 VgaSave (8a60edd72b4ea5aea8202daf0e427925) C:\WINDOWS\System32\drivers\vga.sys
17:21:34.0671 2272 VgaSave - ok
17:21:34.0671 2272 ViaIde - ok
17:21:34.0796 2272 VolSnap (313b1a0d5db26dfe1c34a6c13b2ce0a7) C:\WINDOWS\system32\drivers\VolSnap.sys
17:21:34.0796 2272 VolSnap - ok
17:21:34.0843 2272 VSS (ce38755ff8c161a66e45fc0c10cdee87) C:\WINDOWS\System32\vssvc.exe
17:21:34.0843 2272 VSS - ok
17:21:34.0890 2272 W32Time (b46f3abac633b2cfd34de56fe5130735) C:\WINDOWS\system32\w32time.dll
17:21:34.0890 2272 W32Time - ok
17:21:34.0906 2272 Wanarp (984ef0b9788abf89974cfed4bfbaacbc) C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:21:34.0906 2272 Wanarp - ok
17:21:34.0937 2272 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
17:21:34.0953 2272 Wdf01000 - ok
17:21:34.0953 2272 WDICA - ok
17:21:34.0984 2272 wdmaud (2797f33ebf50466020c430ee4f037933) C:\WINDOWS\system32\drivers\wdmaud.sys
17:21:34.0984 2272 wdmaud - ok
17:21:35.0000 2272 WebClient (bdda07933f4cac14a7e35d1084649af5) C:\WINDOWS\System32\webclnt.dll
17:21:35.0000 2272 WebClient - ok
17:21:35.0046 2272 winmgmt (d62dd45d691350a7029a554831b42bba) C:\WINDOWS\system32\wbem\WMIsvc.dll
17:21:35.0046 2272 winmgmt - ok
17:21:35.0078 2272 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
17:21:35.0078 2272 WmdmPmSN - ok
17:21:35.0125 2272 Wmi (ffc53381078f5d442cbb7f4633b47c2e) C:\WINDOWS\System32\advapi32.dll
17:21:35.0125 2272 Wmi - ok
17:21:35.0156 2272 WmiApSrv (93a3fc4cf42587a7ab54788f19b9259c) C:\WINDOWS\system32\wbem\wmiapsrv.exe
17:21:35.0156 2272 WmiApSrv - ok
17:21:35.0171 2272 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
17:21:35.0187 2272 WpdUsb - ok
17:21:35.0218 2272 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
17:21:35.0218 2272 WS2IFSL - ok
17:21:35.0250 2272 wscsvc (53760d195988739a9945e5f738b85723) C:\WINDOWS\system32\wscsvc.dll
17:21:35.0250 2272 wscsvc - ok
17:21:35.0265 2272 WSTCODEC (d5842484f05e12121c511aa93f6439ec) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
17:21:35.0265 2272 WSTCODEC - ok
17:21:35.0296 2272 wuauserv (a01a65bea57e71de6afb80940d3e1f77) C:\WINDOWS\system32\wuauserv.dll
17:21:35.0312 2272 wuauserv - ok
17:21:35.0468 2272 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
17:21:35.0484 2272 WudfPf - ok
17:21:35.0484 2272 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
17:21:35.0484 2272 WudfRd - ok
17:21:35.0500 2272 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
17:21:35.0500 2272 WudfSvc - ok
17:21:35.0531 2272 WZCSVC (2536e6bacdd146c5c2398b2d41b372e5) C:\WINDOWS\System32\wzcsvc.dll
17:21:35.0531 2272 WZCSVC - ok
17:21:35.0609 2272 xmlprov (912591e2055e26566d1cb54092a7e8b0) C:\WINDOWS\System32\xmlprov.dll
17:21:35.0609 2272 xmlprov - ok
17:21:35.0640 2272 MBR (0x1B8) (c99c3199cfaa4cbdcd91493f6d113a50) \Device\Harddisk0\DR0
17:21:36.0109 2272 \Device\Harddisk0\DR0 - ok
17:21:36.0109 2272 Boot (0x1200) (a0b239f34023edd9c64edcf546752183) \Device\Harddisk0\DR0\Partition0
17:21:36.0109 2272 \Device\Harddisk0\DR0\Partition0 - ok
17:21:36.0125 2272 Boot (0x1200) (9a07cfddf30df397360651d87af9f939) \Device\Harddisk0\DR0\Partition1
17:21:36.0125 2272 \Device\Harddisk0\DR0\Partition1 - ok
17:21:36.0125 2272 Boot (0x1200) (efd8b793041072112193094eb129b32c) \Device\Harddisk0\DR0\Partition2
17:21:36.0125 2272 \Device\Harddisk0\DR0\Partition2 - ok
17:21:36.0125 2272 Boot (0x1200) (efd8b793041072112193094eb129b32c) \Device\Harddisk0\DR0\Partition3
17:21:36.0125 2272 \Device\Harddisk0\DR0\Partition3 - ok
17:21:36.0125 2272 ============================================================
17:21:36.0125 2272 Scan finished
17:21:36.0125 2272 ============================================================
17:21:36.0140 2264 Detected object count: 1
17:21:36.0140 2264 Actual detected object count: 1
17:21:45.0171 2264 C:\WINDOWS\system32\Drivers\sptd.sys - copied to quarantine
17:21:45.0171 2264 HKLM\SYSTEM\ControlSet001\services\sptd - will be deleted on reboot
17:21:45.0171 2264 HKLM\SYSTEM\ControlSet002\services\sptd - will be deleted on reboot
17:21:45.0171 2264 C:\WINDOWS\system32\Drivers\sptd.sys - will be deleted on reboot
17:21:45.0171 2264 sptd ( LockedFile.Multi.Generic ) - User select action: Delete
0
Malekal_morte- Messages postés 184348 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 693
 
Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour, fais un scan rapide, supprime tout et poste le rapport ici.
!!! Malwarebyte doit être à jour avant de faire le scan !!!
Supprime bien ce qui est détecté : bouton supprimer sélection.

~~

0