Virus page blanche au boot
Utilisateur anonyme
-
Utilisateur anonyme -
Utilisateur anonyme -
Bonjour,
Bonjour a tous je post ce message par le biais d'un autre ordinateur .
J'ai mon ordinateur principale qui est infecté par un virus je pense.
En effet au demmarage et apres avoir rentré le mot de passe ,le pc est bloqué sur une page blanche avec ecrit
''Please wait while the connection is beeing established
Bitte warten..............
J'ai lu divers forum mais n'etant pas experte et ayant peur de faire des betises je préfere demander l'avis sur ce forum.
Merci de m'avoir lu il s'agit de windows seven
Bonjour a tous je post ce message par le biais d'un autre ordinateur .
J'ai mon ordinateur principale qui est infecté par un virus je pense.
En effet au demmarage et apres avoir rentré le mot de passe ,le pc est bloqué sur une page blanche avec ecrit
''Please wait while the connection is beeing established
Bitte warten..............
J'ai lu divers forum mais n'etant pas experte et ayant peur de faire des betises je préfere demander l'avis sur ce forum.
Merci de m'avoir lu il s'agit de windows seven
A voir également:
- Virus page blanche au boot
- Dual boot - Guide
- Supprimer page blanche word - Guide
- Hiren's boot - Télécharger - Divers Utilitaires
- Virus mcafee - Accueil - Piratage
- Boot camp - Télécharger - Systèmes d'exploitation
43 réponses
▶ Télécharge : Gmer (by Przemyslaw Gmerek) clique sur "Download EXE" et enregistre-le sur ton bureau
Desactive toutes tes protections le temps du scan de gMer
Pour XP => double clique sur gmer.exe
Pour Vista et 7 => clique droit "executer en tant que...."
▶ clique sur l'onglet rootkit,lances le scan,des lignes rouges vont apparaitre.
▶ Les lignes rouges indiquent la presence d'un rootkit.Postes moi le rapport gmer (cliques sur copy,puis vas dans demarrer ,puis ouvres le bloc note,vas dans edition et cliques sur coller,le rapport gmer va apparaitre,postes moi le)
ensuite :
fais bien attention que toutes les cases à droites soient cochées , puis clique sur scan
j'attends donc deux rapports hébergés
Desactive toutes tes protections le temps du scan de gMer
Pour XP => double clique sur gmer.exe
Pour Vista et 7 => clique droit "executer en tant que...."
▶ clique sur l'onglet rootkit,lances le scan,des lignes rouges vont apparaitre.
▶ Les lignes rouges indiquent la presence d'un rootkit.Postes moi le rapport gmer (cliques sur copy,puis vas dans demarrer ,puis ouvres le bloc note,vas dans edition et cliques sur coller,le rapport gmer va apparaitre,postes moi le)
ensuite :
fais bien attention que toutes les cases à droites soient cochées , puis clique sur scan
j'attends donc deux rapports hébergés
voici le 1 ER rapport
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit scan 2012-10-29 13:49:55
Windows 6.1.7600
Running: xk1szsbf.exe
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Bind ?????????????????????????9??????????*6to4mp?1C??? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????????????E??E7???????????2??-7??*6to4mp?FB??? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????????????4??E1???????????4??9B??????66??? ?????????????????????0????????????&????????????????????D??????????????? ?????????????????????0????????????????????? ?????????????????????0????????~????????????????????????????E??E-????~??????B??41??nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp?-48??????C-???????????4???e??tunnel?-F8??? *??????1?????394??Carte Microsoft 6to4?-??????????????????????????????????????????E5??? ?????????????????????0??????????????????????????????????????????????????????076-982F-C41??? ?????????????????????0????????*???????????? l??????3?????69-??@nettun.inf,%6to4mp.displayname%;Carte Microsoft 6to4????????????????????????????????4?????s61??? ??????????????????????????????'????????e?????????????
Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Route ?????????????????????????????h???????????1??85??????????????????text????????????????????Microsoft???? ???????U?????????????,????????$???<???????????????????????????????5D??? ??????????????????Basic_Install???????????? ???????3??????n???? ???????????????????z?0??????*?>??? ???????????Connexion au r?seau local* 181??? ??? ?????????????????????0?????????????????????????????i??ta??Composite.Dev???? ??????????????t???.NT?????? ?????????????????????0????????????????????????????????????????? ?????????????????????0????????????????????????????????????????????????????????????.NT?????????????????????t???? ,?????????????????????????????????????????????????? ?????????????????????0?????????????????????????????y???r??? ???????y???????y??6.1.7600.20934?y?y??? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????z???z???????????t???y??6.1.7600.20934???????????????y??s???USB??z??? 6?????????????????????@usb.inf,%generic.mfg%;(Contr?leur h?te USB standard)???????????????????????usb\com
Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Export ???? I??????47??????? ???????@????????*???????????B?|????????????????????d????????????N?????????????????{EA509FAE-C4CC-45FF-81C5-A6AFF8E3B526}??????????G????????e???????????????????s??? ?????????????? ????????????s??????????????ATHAMPFL?l??????????????????????50????|?????????????????PCI\VEN_168C&DEV_002A&SUBSYS_03061A32&REV_01\4&D74826C&0&00E1????????????u???????????????????D??????????????????????????????????? ???????????????????????????????m?????????????el????????????r???????????????a???? ??????\??????????838?al???!???????s????????????????e\Lo??????1???????????????? ???????e??????e8??????5????????e??256?ns?????????????????????r??????L????????????d?????????????a???????s??? ??0???????????????? ??????????????????????pci\ven_168c&dev_002a&subsys_03061a32???? ??1???????????????????0??????????c????????????60??????????1???????????????? ??3??????????????????????????????n?t??4212539?????? ??1????n??????? ??????1?????????e??????????????y???h??oem9.inf??????"??????r??????NI??netvwifibus.inf??m??? 6??????:?????s\A??ATH
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Bind ????32????N?????????????????????????6.1.7600.16385?A9B??????=A???????p??????os??? ???????????????????????????????????????f??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?60-???????????k???????????o??Microsoft???????????????????????????????????????????????????????????????????????????????? ???????0?????????????,????????$???<???????????????????????????????? ??? ?????????????????????,????????z?????#?????????????A5??\\?\Root#*6TO4MP#0257#{cac88484-7515-4c03-82e6-71a87abac361}????????el??????????????????"{??????????????????????????????????????????????????????4}??*6to4mp?A-??????????????????6to4mp.ndi??????????????????????????????????????????????????????????4???? ?????????????????????0?????????????????????????????r??of??nettun.inf??????????????nettun.inf??12???????e??????????????????gr??????????? ?????????????????????0????????*???????????????????????????????????????????????????????????????????????6to4mp.ndi??????????09??????????????4???????????*6to4mp?????????FF??? ?????????????????????0??L????????? ??????m?n??? ?????????
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Route ????????????????????????????mrxsmb??????????????????????????????E-??????????????????system32\DRIVERS\mrxsmb20.sys????????????p??ta??AsyncMac?????????o???????????D??????\m??LegacyDriver?????????j???r??? ??@umbus.inf,%ms%;Microsoft???NDIS Proxy????????V??s?????????e????????????????????????????????????1w??6to4mp.ndi???????????????/???????????j???????????n?n?j???j??@system32\DRIVERS\pci.sys,#3077;SM Bus Controller???? ???????j?????j???????0????????????&???????????????????????? ???????j?????j???????0????????????????????? ???????j???????????j?0?????????????????????????j???????6??machine.inf:INTEL_SYS.NTamd64:NO_DRV:6.1.7600.16385:pci\ven_8086&dev_3b30????j?????????????????j????? ???????j?????j???????0?????????????????????j?j?????j??? ???????j???????????j?0?????????????????????????????????????????j??????????6.1.7600.16385?.76?????j????? ???????j?????j???????0?????????????????????????????????????j??? ???????j???????????j?0?????????????????????????????????????????j??????????Intel(R) 5 Series/3400 Series Chipset Famil
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Export ?????t?????s???s???s???s????? ???????s?????????????:?????????????????S??? ???????s?????s?????s?:????????????????????????????????????????? ???????n???????????p??????????V????????V???????????????????s???s?????????????????s??????R??s????????h?????\SystemRoot\system32\DRIVERS\IPMIDrv.sys??????V??s???????????d??ipmidrv.inf_amd64_neutral_183d6cac9a33faff????????<??s?????????e?????????????:??? ???????n???????????s??????????<???????T???IP Network Address Translator?????6??s??????????????System32\drivers\ipnat.sys???????????????????????????????????????????????????y?????????????s?????????????????????????r???????????e???s?s?s?s?s?sr????????????1??????? ???????n???????????s??????????^?????????????^??s?????????e????@%SystemRoot%\system32\drivers\irenum.sys,-100????????????????????????????8??s????????h?????system32\drivers\irenum.sys??????????????+???+????????????????????^??s?????????n????@%SystemRoot%\system32\drivers\irenum.sys,-101???????s?s?s?s?s?s????? ???????n???????????s??????????V?????????????????????????????????P
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Bind ????????????????????????????????????????????????????????????????USB?2C??6to4mp.ndi?B-4??*6to4mp?54??nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp??????? ??????????????????????????????????????????????3D??????????? ???????_?????l?????????????4???????????"??{6??v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|?????? ??????????????x7??????????? ??????????????????????????????'???????????{A3E44B35-98D4-4C04-B93C-FC5E53179B0E}???t??????????????????????????????????????????????????????????07??????????????????????????????????????????????????11???t??????s???????????????????????????Type?????????????????????????B??????v2??????????????tunnel??@u??????F4??????????????6.1.7600.16385????????????????????????*??????????????????????2??12??1???????????82??????????????????6_???????????a????????N???????????????????*?????????????????????Carte Microsoft 6to
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Route ?????????????m???????????;??????????????t????????B?????????????g????Net?????tunnel??D2???????t??? 0??z???????????????????????????????r????P??r?????????e?????r?????r?????r???r??????????????? ???????n?????r??????????????$???q????x????@%systemroot%\system32\fxsresm.dll,-118???????????????????????????B??r????????h?????%systemroot%\system32\fxssvc.exe????????????????t?????????????????????P??r?????????n????@%systemroot%\system32\fxsresm.dll,-122??????????r???+????????P??r?????????e??????????????????@??r???????????e??TapiSrv?RpcSs?PlugPlay?Spooler??????? 8??r??????????????NT AUTHORITY\NetworkService???????,??????+???????+???????????????????????????r??????????????????SeAssignPrimaryTokenPrivilege?SeAuditPrivilege?SeChangeNotifyPrivilege?SeCreateGlobalPrivilege?SeImpersonatePrivilege?SeIncreaseQuotaPrivilege???????????p??????e???? ???????r???????????r?????????????????????????????????p?????????????(??????P??????????????????? ???????????????????????????? ???????n???????????r??????????N?r????c?????o?o?p?o?p?q???????????
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Export ?????r???????F??100???????????????????????????????????????????????X??????????????????&???? ??d???????e????N????????????D??????X??????5??????@netrasa.inf,%msft%;Microsoft???????????????? ???????j?????k?????k?????????????? ???????????????????????????????? ???????k???????????i??????????N???????????{4d36e972-e325-11ce-bfc1-08002be10318}?1?1??Net??????????????y?????????????m???k??????X????????????????k?&????X??????y???x??? ???????m????????????????0???????????????????????N??k???H?????Div????X?????????????????????????????????volume.inf:MSFT.NTamd64:volume_install:6.1.7600.16385:storage\volume????{8ECC055D-047F-11D1-A537-0000F8753ED1}??N???{8ECC055D-047F-11D1-A537-0000F8753ED1}?.?.????N??k????????D??/??DETECTEDInternal\volmgr?DETECTED\volmgr?????????FF????2??s????????h??????????????????????????????????y??? ???????k???????????j???????????????????????????1??{00000000-0000-0000-0000-000000000000}??????????????????? ???????j?????k?????k?????????????????????C????? t?????????????????? ???????k???????????h??????????Z??????
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Bind ??????????????????X?????? ???t???????z???*??s????????????o??????Da???????????6??48????N??????c?????Dot??Adresse r?seau? IS??????????SCSI CDROM Class????????????????????t4??v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33011|Desc=@FirewallAPI.dll,-33014|EmbedCtxt=@FirewallAPI.dll,-33002|??????????????????????????????????????????????????????????????????????j???????j??Microsoft???????0?????*?????????????????D2??LegacyDriver????????????????5????????????-??????00??OpenPerformanceData??z???????????????????????????????????t??? ???????/????????????????????????????????????0?????????????????6A???????.??CD/DVD File System Reader???v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33015|Desc=@FirewallAPI.dll,-33018|EmbedCtxt=@FirewallAPI.dll,-33002|????6.1.7600.16385????????????????????????*?????????????Carte Microsoft 6to4???????????????????????? #???7?????????????
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Route ??????????:????????g????????-B??Net?????tunnel??15?????? I??????47??????? ???????@????????*???????????B?|????????????????????d????????????N?????????????????{EA509FAE-C4CC-45FF-81C5-A6AFF8E3B526}??????????G????????e???????????????????s??? ?????????????? ????????????s??????????????ATHAMPFL?l??????????????????????50????|?????????????????PCI\VEN_168C&DEV_002A&SUBSYS_03061A32&REV_01\4&D74826C&0&00E1????????????u???????????????????D??????????????????????????????????? ???????????????????????????????m?????????????el????????????r???????????????a???? ??????\??????????838?al???!???????s????????????????e\Lo??????1???????????????? ???????e??????e8??????5????????e??256?ns?????????????????????r??????L????????????d?????????????a???????s??? ??0???????????????? ??????????????????????pci\ven_168c&dev_002a&subsys_03061a32???? ??1???????????????????0??????????c????????????60??????????1???????????????? ??3??????????????????????????????n?t??4212539?????? ??1????n??????? ??????1?????????e??????????????y???h??oem9.inf??????"??????r?
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Export ?????????????????????????N???????p???e??????????tunnel???}??????????????????????????????????????????? ?????????????????????0????????????????????? ???????????????????????????????????????f??Microsoft???? ????????????????????????????????????????????s9D1??? ?????????????????????0??L????????? ???????68????????????????roso??nettun.inf??????????? ?????????????????????0????????????&????????????????????d??? ?????????????????????0????????????????????? ?????????????????????0????????~???????????6to4mp.ndi???????????????=??UE??? ??????????????????????????????????????????????????????????????????????? ???????????????????????????????????????f??? ?????????????????????0??L????????? ??????e?e??????????????????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0?????????????????????????????????????2??? ???????@????????????????????$?N?\??????????????????1???????????n????>??????%???????????1??????????????????nettun.inf?@????? ??????????????76??6to4mp.ndi?47F??? ??????????????????6-21-2006??????
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Bind ????t????????????????k??????????????????tunnel??????Microsoft????????????????????????????????B???????????1?????e????????0?????D??????1??????????????4?????~??????7??45???????????????????????????t???????????????????????&???????i???????????????????e????????*?????????????????????text????? ?????????????????????0?????????????????????????????????????????????????????????B??????????????????????????????????????????????????????????6.1.7600.16385?65?????*?????????????Carte Microsoft 6to4?????????????t??????????d ???????????????????????????????????????A???????????&??Type????????E-???????t??tunnel??????? D??????i???????S??*6to4mp?B6???????t??????????????????????????????Microsoft???????????????????????????? ???????????????????p?0????????*???????????GHz??????????????????B??? ??????????????????????A5???????????????????????B??????????? ?????????????????????,????????z?????#??????????n???n??? ?????????????????????0????????????????????????? ?????????????????????0????????~?????????????~??????c??{B??nettun.inf:Microsoft.NTamd64:6t
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Route ????1E??????88??? ??????????????????????????????'????????e??????????????? P??????4?????A-4??{FCDFF3DB-BC1C-4825-8BBF-2791CA714E87}??7A????*??????9????d6}"??TCPIP6TUNNEL?Tcpip6??C????'??????A???}??\Device\{FCDFF3DB-BC1C-4825-8BBF-2791CA714E87}??FC???????????-??????7E??????????????????????????? ???????????????????????????????????????f????N??????6?????D2F??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?9B7??? ???????0?????????????,????????$???<???????????????????????????????85??? ?????????????????????,????????z?????#8FB??????#?????$??????F???????1??Root\*6TO4MP\0157?????z??????D??????-4??\\?\Root#*6TO4MP#0157#{cac88484-7515-4c03-82e6-71a87abac361}?"??? ???????1?????????????,??N?????$???<???????????????????????????????1F??? ?????????????????????,????????????'????????????????????}????????????$??????C???????0??Root\*6TO4MP\0157????????????4??????BB??\\?\Root#*6TO4MP#0157#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{FCDFF3DB-BC1C-4825-8BBF-2791CA714E87}?E-??? ???????:?????????????:????????????&????????????????????B??? ???????0?
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Export ????????????at??????????????????????????????el??c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe??????Adobe Active File Monitor V8????LocalSystem??????o?o?o?o?o?o?o?o?o?o????????? ???????n???????????n??????????????????????storage\volumesnapshot?s P??storage\volumesnapshot?ver??????????????????????????????0????????????????p???????????????????? ?????????????????????????????????????????????????? ?????????????????????0????????????????????? ???????????????????j?0????????L???????????Clich? instantan? de volume g?n?rique???? ???????n????? Au??Clich? instantan? de volume g?n?rique?????????????????????H??????t??????????? ???????????????????j?0????????????????????Clich? instantan? de volume g?n?rique???Po??Microsoft???? ???????n?????????????????????????? ???????????? ????????????????????????????$????????f??????????????????????????????(??????e?????e?e??? ???????????????????j?0????????.???????????????????????6A???n??? ???????n???????????n??????????l?'?????????????@volsnap.inf,%storage\v
Reg HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Bind ?????t???????????????????}??"{???????????E??4C???????????B??A3???????????B??BC??????????????????????????????????????CB???????????-??46??6.1.7600.16385?0}"??????????.NT???????X?????? ???t???????????*??s???????????????????Workstation_Tcpip6_{957DD04A-C001-49A5-8743-1A46E34EDD50}?\Device\LanmanWorkstation_Tcpip6_{B855DF76-5F7E-4312-B1E6-3A76EC674C0A}?\Device\LanmanWorkstation_Tcpip6_{37D93F37-8200-4452-9667-54C2EA35C670}?\Device\LanmanWorkstation_Tcpip6_{34AAFD4B-B4CA-45A6-87B8-ABE89A959885}?\Device\LanmanWorkstation_Tcpip6_{F70FCA02-3AFB-4409-8DD0-5A491A9318E8}?\Device\LanmanWorkstation_Tcpip6_{435B1C1A-8390-48BF-80A1-2279CEAAA49A}?\Device\LanmanWorkstation_Tcpip6_{E9D71EC8-DE9A-42BB-982A-6BBAF3C02362}?\Device\LanmanWorkstation_Tcpip6_{17DA06B7-A66B-47CA-8F10-603B33EC2005}?\Device\LanmanWorkstation_Tcpip6_{B7AF9289-7CDB-4D8F-8DF3-7026449F3EBE}?\Device\LanmanWorkstation_Tcpip6_{7D0B483F-9532-4C34-B14B-A4E4D7A4774D}?\Device\LanmanWorkstation_Tcpip6_{4FC294D4-5ABA-4573-ADF3-44CA5FDD3F58}?\Device\LanmanWorkstation
Reg HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Route ?????????????????????????9??????????? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????????????9??5D???????????3??9F??*6to4mp?-8??? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????????????8??F-???????????4??-D??? ?????????????????????0????????????&????????????????????8??????????????? ?????????????????????0????????????????????? ?????????????????????0????????~????????????????????????????{??91????~??????7??-A??nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp?1AF???????????4???e??tunnel?2AE??? *??????8?????809??Carte Microsoft 6to4?}???????????????????????????????????????????"??? ?????????????????????0???????????????????????????????????????????????????????"{384DFA0C-??? ?????????????????????0????????*???????????? l??????-?????C9E??@nettun.inf,%6to4mp.displayname%;Carte Microsoft 6to4????????????????????????????????"?????s5C??????1E??????88??? ??????????????????????????????'????????e??????????????? P??????4?
Reg HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Export ??????????N??????C????DMic??nettun.inf???t??7????????l??????? ????????????????????????(???????????????????s?????????????????????????? ?????????????????????,??4?????????????????????????? ?????????????????????,?????????????????????y??? ????????????????????????????"??????????f??@nettun.inf,%6to4mp.displayname%;Carte Microsoft 6to4???{4d36e972-e325-11ce-bfc1-08002be10318}??"???? l???????????????????4?????????????16??{4d36e972-e325-11ce-bfc1-08002be10318}??????? ?????????????????????0??L????????? ???????????????????????????????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????????????????? ?????????????????????0?????????????????????????????????3??????? ?????????????????????0????????????????????? ?????????????????????0????????????????????? ???????D?????D29??????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????? ?????????????
Reg HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Bind ????4A???????????y???????s???????z??????????????????????????????????? ????????????????????????"?????l???????3E??{4d36e972-e325-11ce-bfc1-08002be10318}?841???????????3??sB??? ???????9?????A-8??*6to4mp??}??? ????????????????????????????$?N???????????{4d36e972-e325-11ce-bfc1-08002be10318}\0180?00????????????????????????????N?????????????????{F9959CDC-F8BD-40C2-A536-B8AE9C655D75}???????????????????e???????????????????s??????????????? ??????????????????????????????????????te???????& ?????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0??????*?>??? ????????????????????e??????????d7???????????C????????????>??????t??Mi??Connexion au r?seau local* 179????????????????????????????????????????????????$??????8??????????ROOT\*6TO4MP\0167????????????????????????????????A??????????? ??????????????????????????????>??????iE}??????????? ???????????????????????????????????????1??????????? ???????????????????????????????????????????7??Type?????????????1????c5E-??Adresse r?seau?125?????????
Reg HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Route ??????????????????????N????????????D??????????N?????????????????????????????????? ???????@????????????????????$?N???????????{97768061-E6D1-4900-84EB-532D40BD5175}???????????????y???????s??? ??????????????Ad???????????u????????????????????????????????????$?????????????????ROOT\*6TO4MP\0176???????????????????????????????????????????? ???????3??????14??int?????? ???????@????????????????????$?N???????????{675CD452-27C4-42BC-978D-F74E34AB8C7E}??????ROOT\*6TO4MP\0175????????????????????????????o???n??????????? ????????????????(???????????????????????????????????????????I???????R?????????????????? ???{??????????????????????? ?? r???????????*??76??????????????????????4????????????????????g??????????????????????????????????????????????????Microsoft???? D??????s???????????????????????????????????????????????????????????;???-??????6-21-2006??????????????????????????????????e?????????????????????????????z??????????wpdfs.inf:Microsoft.NTamd64:Basic_Install:6.1.7600.16385:wpdbusenum\fs?????????????????????????????????????
Reg HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Export ?????n??6-21-2006???{EE86197B-1171-41D2-8038-7786704396A9}??????????????????????????????*6to4mp??????????????e???????????????4??6-????$?????????????????????????? ????????????????????????"?????l???????B5??USBAAPL64????????????2?????sC-??????????*6to4mp?????? ???????U?????????????,????????$?p?<???????????????????????????????1???? ????????????????????????"?????l???????????? ?????????????????????,????????z?????#?56????:??????4???t??????????????#???????? ???????U?????????????,????????$?o?<???????????????????????????????98??? ????????????????????????"?????l?r?????of??? ?????????????????????,????????z?????#35-??{4d36e972-e325-11ce-bfc1-08002be10318}?03-??ROOT\*6TO4MP\0141???usbstor.inf??h??????re??????#???? ???????????????????f?;??????0?J?????????????4-6B??? ???????|???????????k?:????????????&????????????????????2???????????n???????s???? ??????f???e??? ??????????????????????????????????????????? ????????????????????????"?????l?????????????>??????2???????????????C??????????int??s????????'????????????????????????????
Reg HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Bind ???.???????.?????.?????? ????-??????1D??? ???????.???????????.????????"?h????????f????h??. ??.????????r??.?????.?????.???.?.?.????????????????????????????V??.???d?????????xx.???????.???;???????????o??h???????????????????????????@???C???????????P???S???????? .??.???y?????r?C???.???.??? (??.???D?????sol???????????????.??? ???????,?????.?????.???????????????????????????????????0??????7F??ACPI\PNP0100?*PNP0100?????????N??.?????????D?????????????e???????????.???.??????????????????????????????DI??6-21-2006????????.?????????????)????{00000000-0000-0000-ffff-ffffffffffff}?-A5??????????????@?????????P????????????.?U??? ???????.?????.???????,??4?????????????????????????? ???????.?????????????,?????????????????????y??? ???????-?????3??????????"?????h??????????????????? ????e???????.???3?3??????:??.???(??????????????????????SYSTEM? ? ????N??/??????????? ??????????? ???????.???????????.????????$???????????????sers??? <??.???y?????0?e?????.????ATI display adapter (0x68C1)????Microsoft????????.???????;??tunnel??os??? ?????
Reg HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Route ???.?U??? ???????.?????.???????,??4?????????????????????????? ???????.?????????????,?????????????????????y??? ???????-?????3??????????"?????h??????????????????? ????e???????.???3?3??????:??.???(??????????????????????SYSTEM? ? ????N??/??????????? ??????????? ???????.???????????.????????$???????????????sers??? <??.???y?????0?e?????.????ATI display adapter (0x68C1)????Microsoft????????.???????;??tunnel??os??? ???????-?????7?? ???????"??????????????????0??????'????.?????????????????????????s??????h??. ??.?????????.?&??Internal DAC(400MHz)?0???????????????????????.???e???????.???;??????\SystemRoot\system32\DRIVERS\adp94xx.sys???????????????????s?????????6???.???h???.??? ???????.????????????????L?????????????????? ???????.????????????????V?????????&????????????????????????0???????.?.???????2???:???8???????????????8????intelppm?.?????????????.??????????????????????????????????:??.???????????????????Z??????????????? ???????.???????????.????????"?h????????f??? .??.?????????s?????????.???????e???.??? ???????,?????.???
Reg HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Export ???.?.???.???????????E???????????????&??????????????????????????????????????po??\SystemRoot\system32\DRIVERS\adpu320.sys?l??????????????p????????4???????????????.????N??.??????????????????????? ???????.?????.??a???????(???>? ?????????????s??????????????8?????????.????????????????????????????? ???????.?????.???????,??4??????????????????????.????X??.??????????ATI Mobility Radeon HD 5650UDI???????????????????????U????<??????.?g????? ???????.???????????.????????$???????????????s????????????????????????.?????~???U??? ???????.?????????????,?????????????????????y??{4d36e97d-e325-11ce-bfc1-08002be10318}\0028?????65?????-???-???.??3540?????.???????.????????\SystemRoot\system32\DRIVERS\arc.sys?/???????.???????????????????4????"??.??????????????pci??-??????????????? <??.???.??????????????????????b?????????f????????????? ????????????.?????.?????.??? ???????????????????8???????? ??????????????y??? ???????-?????-???????0??L????????? ???????????? ???????.?????.???????0????????????&????????????????????.?????????????????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Bind ???o?o???????r??F-Secure Vista Support Driver???Net?61???????y??@%SystemRoot%\system32\drivers\fvevol.sys,-100???????????e??????????Net?\0????????????????????????????????????????????????????????????????????????????Symantec IPS Provider???????DingSvc????????????????????????? ??????????? ????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P?????????????P??????????? ???????????????????????????????????????????Video??????o????igfx?????o?o?o?o?o?o?o?o?r????(??o???1??.1???????????n??????ne???s?s?s??http????? ???????o???????? ??r?????????????????????ent????.??o??? ???t???&???o???????????????????????????????o???:??????????????OpenPerformanceData?st?????o??????????????????????????????????????????????????????????????@FirewallAPI.dll,-23501???????@FirewallAPI.dll,-23502???????mpssvc?????????&???o??????????????????????????? F??s???????????????????o??????????fsfwperf.ini???????????????????????????????????????????????????????????es ???s?s?s?????????????????????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Route ???o?s??? ???????n??????????????????????????????????????"C:\Program Files (x86)\Pack S?r?nit?\S?curit?\ORSP Client\fsorsp.exe"????????<????????????n???????????????????e???????or???? 8??o??????????????NT AUTHORITY\NetworkService??????????????????????????o???????s??????????????t????????????????????????????o????????h??????????o????????????????????????????????????????????????????????????????????????????????@FirewallAPI.dll,-23521???????@FirewallAPI.dll,-23522???????MPSSVC?????????????????????????? ??????????? ????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P?????????????P????????????????????????y?y?????? ??g?????????t????? ??????????????????????<????????????????t?t?t?????????o???o???o???????????????????????????????????????????#????????????????????@FirewallAPI.dll,-23501?????????????????????????????????????????????????????????????????????????????????????@FirewallAPI.dll,-23501??????????????????????????&???o???????????????????????????&???o?????????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Export ???o?????????????m?m?o?oe????????u??????????NTDS?0???????????????????????}?}?o???n?n?o?o?o?o?o??????6-21-2006???? ???????o???????? ????????????????????????eSe???}?}???????????????????????s?????????????o??????????????F-Secure Firewall Driver? ??C:\Program Files (x86)\Pack S?r?nit?\S?curit?\FWES\Program\fsesperf.dll??????????o????????ho?????s?s?s???????o?????????e????fsesperf.ini????????????????????????????????????????????????????????????????????????????????????????????????t???OpenPerformanceData???????*??o???n??e7??????????????????????CollectPerformanceData?ecu??RPCSS????????????????0??4???ClosePerformanceData?r???????o??? ???y????????????????????????????????p?????? ??????????????r?????4??o?????????e?????s?s?s??? ???????n???????????o??????????????????????? ???o??? ??????????LocalSystem???????4??o?????????n????F-Secure Management Agent????o?o?o?o?o?o?o?o?o????*??o?????????e????F-Secure ORSP Client????????????????4???????????????4????s?s?s??"C:\Program Files (x86)\Pack S?r?nit?\S?curit?\Common\FSMA32.EXE"???F-S
Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Bind ???n?j???????y??Filter?t?t??11???????????????0???????????????????0?????sms????N??m???0?????D?0?????j?z?????? ??????????s??????N??j???E????D7&C??{8ECC055D-047F-11D1-A537-0000F8753ED1}??PC???????j??????s-?????????????????s????????????? ???????????????????j???:???:???????o???????n???????z???j??????????????????????Net??y??{8ECC055D-047F-11D1-A537-0000F8753ED1}??????Base?????????j??????s??????????????????s?????? ??'???????e??Net?? ???????n??????????elodie?tt????u?|?|???????????0???e????N??k???1????Dmso??????ll??{71a27cdd-812a-11d0-bec7-08002be2092f}?163???????????????????i??volsnap?21???????????7???j?j?j?j?j?j?j??@oem2.inf,%pci\ven_8086&dev_3b34.devicedesc%;Intel(R) 5 Series/3400 Series Chipset Family USB Enhanced Host Controller - 3B34???? ???d???D????????????:????????g?????????????????????????j???????j????????????4??j?????g??????X????????????????????~?????????????????????????????~??86??? ???h??? ???????/???j???????????????j?jc9?????j????? ???????j?????j???????0?????????????????????????????j??? ???????j?????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Route ???o?????????o???????????????z?z??????????????????p??????????????????????o???o??? ???????p???????????o???????? ???i?????????C:\Windows\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll????????*??o?????????n????F-Secure ORSP Client??????<??o????????h??????????????????y?z??????$??????s??????? ??Boot Bus Extender????????????????y????????????????????????????8??p????????h?????Net??????q?q?l???????o???????????????o???s??ep???????r???o???????????o???????????????????????????????r??????????????4????????????-??66??????????????t????????????4??????AB????????????????z??o????????h???????@??o?????????e?????????????9????h{4C??????????????????????????????Service Google Update (gupdate)?De????n??o?????????e????RpcSs???????tunnel??????"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc?2??system32\DRIVERS\HECIx64.sys????? ???????c?????{6B??????????????????????????????????v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.
Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Export ???s?s??????????????????????????sftlist??????p?p?p?o?p?p?p?p?p?p?p?p?p?p?p???????p???????????????????p??????????????800 -2300????????p??????????????????400 -6500????p???????p???????????????????????????????????????t?t?t??800 -5500????????o?????????e?????p??400 -1800??????? ??????????s???????? ??????????s?????? ??p?????????e????????????????????? ???????p???????????p????????,?????$???????????????????????760 -360?????????p???????????????????????p??????????????????4000 -5000???????????p???????????????????p??5000 -4000??????360 -760?????t?t?t??MSBFirst?????????p???????????p????????????????D?????????Ho?????????e?????????p???????????????p??????????????????????????????????????MSBFirst????760 -360?????????????????????????????p?p?p?p?p?p?p?p?p?p?p?p?p?p?p?p?p??Thompson 24-bit?????4304?????????????????????????????p?p?p?p?p?p?p?p?p?p?p?p?p?p?p??LSBFirst????? ???????p???????????p????????,?????$???????????????????????4500 -3500???????????p??????????????????300 -700????????????????????????BiPhase?????700 -300???????????????
Reg HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Bind ???f?s???f?y?y???????s????N??f???o?????Dst???f?f?j?j?j?j?j???????????????????????????'???-???????.????N?????????????????mrxsmb20?h???????f???????e????N??????T??????0????????e??Net??????????-??? ???????f?????f?????????????????????????3??? ???????f?????f?? ???????"?????v????????????.??{4d36e97d-e325-11ce-bfc1-08002be10318}???7????N??g????????D?????????????{4d36e97d-e325-11ce-bfc1-08002be10318}??????tunnel?Net??? &??f???E?????owA????????????????????N??m?????????????n?????????????u??td??Net????????????????f???f?????????{???????????.????????????N??g?????????D??????N??g?????????D??????N??g????????D?????????????????????????????????????????tunnel???????????????????????????????e?f?f?f?f?c?e?e?f??? ???h??????????????Wanarpv6?0?????????????f???f?????f??????????????????????????????????????????'???'???????????d???d???????????????????-0??????????????'?????????d?????????????????st??????????????? ???????f?????f???????0??L????????? ??????}?3?????f???f???f????????? ???????f?????f???????0????????????&????????????????????F??? ?
Reg HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Route ???o?o???????n???????????????l??? ???????n?????o????????????????P???????????C:\Program Files (x86)\Pack S?r?nit?\S?curit?\Anti-Virus\avperf.dll?ne??? ???????o?????Fil???r?r?r???r??OpenPerformanceData?\N?????o???o????? ??????????????D???bitsperf.dll????????????????????????????????t???RpcSs?????????<??p????????h?????USBSTOR??????????????????????p???????????????????p???p??? ???????o?????o?????,????????$????? ???????????????????????????????????? ???????n???????????o??????????V????????i????????????????????????R??o????????h?????\SystemRoot\system32\DRIVERS\acpipmi.sys?????o?o?o?o?o?o???????o??????????????????????0??o?????????e????ACPI Power Meter Driver???????V??o???????????d??acpipmi.inf_amd64_neutral_21e3ebca2e5038cb??????????? ???????o???????????o??????????????????e????o??? ???????n?????o?????n??????????V? ??????x??avperf.ini?????????????????????????????????????????????????????????7.1???????o??????p???CollectPerformanceData?rf.???????o????????h?????FltMgr??????????????BFE?????PerfMon_Close????r?r?r??? ???????o?
Reg HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Export ???or???? 8??o??????????????NT AUTHORITY\NetworkService??????????????????????????o???????s??????????????t????????????????????????????o????????h??????????o????????????????????????????????????????????????????????????????????????????????@FirewallAPI.dll,-23521???????@FirewallAPI.dll,-23522???????MPSSVC?????????????????????????? ??????????? ????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P?????????????P????????????????????????y?y?????? ??g?????????t????? ??????????????????????<????????????????t?t?t?????????o???o???o???????????????????????????????????????????#????????????????????@FirewallAPI.dll,-23501?????????????????????????????????????????????????????????????????????????????????????@FirewallAPI.dll,-23501??????????????????????????&???o???????????????????????????&???o??????????????????????????%SystemRoot%\system32\wevtapi.dll???? ???????c?????\En???}???????????????????:???????????t?t?t???????????\????ptlr????????????,??????????????????o?????????????
Reg HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Bind ???g?m??????-2???f?f?????d?d?d?d?e?'?e?e?f????p??????3??????{4d36e96b-e325-11ce-bfc1-08002be10318}??????Net??????????g???????e??????????????t???????????*6to4mp?????? ??????????????????????????????????tunnel??ms???????????????3???3???????u?????????????f???f?????????f ??????????????e??????????????????????????????????????????????????????????????????????????????????????????????????????????????????4x???f?f?f??????????????????? ???????f?????f???????0??L????????? ???????? ?????f???f???f????????? ???????f?????f???????0????????????&???????????????????????? ???????f?????f???????0????????????????????? ???????f???????????f?0?????????????????????????????????????????f??????????machine.inf:GENDEV_SYS.NTamd64:NO_DRV_HPET:6.1.7600.16385:*pnp0103???????f?fP??????f????? ???????f?????f???????0????????????????????????????????? ???????f???????????f?0?????????????????????????f???????????????????f?f???????????????f????? ???????f?????f???????0???????????????????????f???f???f????????? ???????f???????????f?0???????????????????????????
Reg HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Route ???t?t????2?????????????????????????????????????????????????%SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted??????NetBT?Afd????????????????????????|?|?|??@%SystemRoot%\system32\lmhsvc.dll,-101????????R??u???+?????e?+??? B??t???????????????t??@%SystemRoot%\system32\lmhsvc.dll,-102??????NT AUTHORITY\LocalService????????????????????????v?v?v?v?v??? ???????t???????????t?9??????,?B??? ???????????%SystemRoot%\System32\lmhsvc.dll????????????????????????????? ???????t?????t???????????????????????????o???????t???t????? ???????t???????????o????????????????0??????????p???????????????????????????????s??????????RPCSS??????????t????? ???????t???????????o????????????????1??????????????}???~???????????????????????????????????????????????????e?????t0??t1???? ???????n?????t???????????????????????a????? ???????t???????????s??????????4??????????e????CloseLsaPerformanceData???????4??t???????t??CollectLsaPerformanceData?????.??t??????????OpenLsaPerformanceData???????????t???????y??Secur32.dll??????????s?????????
Reg HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Export ???ss????o??????????? ???????n???????? ???????????$????????G????@%SystemRoot%\system32\Alg.exe,-112???????<??o????????h??????o???????????????????????n?n?n?n?n?o?o????????????????????????????????????????R??????????????d????????????????????????????,??o???????????????????????????????????????????o??????p???????????????t????o??tunnel???????o??%SystemRoot%\System32\alg.exe????o????<???????????h???????H??o?????????e??????????????????????????H??o?????????n????@%SystemRoot%\system32\Alg.exe,-113?????? 4??o??????????????NT AUTHORITY\LocalService????????????????r?r?&??? ???????n???????????o??????????R???????????\??\C:\Program Files (x86)\Pack S?r?nit?\S?curit?\HIPS\drivers\fshs.sys???????T??p????????h??????n?n?o?o?o?o?o???????????o???????????r????pnte??Microsoft????????????????????????????o???p?p????? ???????n???????????n??????????R???????????"C:\Program Files (x86)\Pack S?r?nit?\S?curit?\FWES\Program\fsdfwd.exe"?\N????H??o???n?????eur???? ??n???i???????e????(??o???i??\E??F-Secure Anti-Virus Firewall Daemon?\C????.??o?
Reg HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Bind ???j????????????? ?????s?0??????????????t???t???????????C-??????????@machine.inf,%pci\ven_8086&dev_3b42.devicedesc%;Intel(R) 5 Series/3400 Series Chipset Family PCI Express Root Port 1 - 3B42??-?????????????????s???????????????????????????????????????sN???Base??????N??k????????D?????5028?????????????????????????????j?j?j?j?j?j?j??LegacyDriver?.???????k??? ???d???&???????&????:????????gne????N??????*????Dy ???PCI\VEN_8086&DEV_3B42&SUBSYS_03791025&REV_05?PCI\VEN_8086&DEV_3B42&SUBSYS_03791025?PCI\VEN_8086&DEV_3B42&CC_060400?PCI\VEN_8086&DEV_3B42&CC_0604????PCI\VEN_8086&DEV_3B42&REV_05?PCI\VEN_8086&DEV_3B42?PCI\VEN_8086&CC_060400?PCI\VEN_8086&CC_0604?PCI\VEN_8086?PCI\CC_060400?PCI\CC_0604????????????????5?????s0F???????j??????????? ???????j?????j???????0????????????????????? ???????j???????????j?0?????????????????????????????????7???????j??? ?????????j????? ???????j?????????????0????????????&???????????????????????? ???????j?????j???????0?????????????????????j?j????? ???????j???????????j?0???????????????????????
Reg HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Route ???m?????????|???n?o?o???????n???s?s?s???????????????????????m??????????? ???????m?????m???????0?????????????????????????????????????????l???????????m???????????????????????m???????????m??? r??????m???????????????????????????????f??? r??????m?????m???????0??L????????? ??????????????m???m????? r??????m?????m???????0????????????&???????????????????????? r??????m?????m???????0????????????????????????????? r??????m???????????k?0????????????????????ksfilter.inf:Microsoft.NTamd64:MSPQM:6.1.7600.16385:sw\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}???Microsoft Streaming Quality Manager Proxy????m?????m????? r??????m?????m???????0?????????????????????m?m?????m??? r??????m???????????k?0?????????????????????????????????????????????????????m?m7-?????m????? r??????m?????m???????0???????????????????????m???m???m????????? r??????m???????????l?0??????????????????????T??m???????????????????????????m?m???????m????? r??????m?????m???????0????????????&??????????????????????????m???m????? r??????m?????m???????0????????????????????? r
Reg HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Export ???j?z?????? ??????????s??????N??j???E????D7&C??{8ECC055D-047F-11D1-A537-0000F8753ED1}??PC???????j??????s-?????????????????s????????????? ???????????????????j???:???:???????o???????n???????z???j??????????????????????Net??y??{8ECC055D-047F-11D1-A537-0000F8753ED1}??????Base?????????j??????s??????????????????s?????? ??'???????e??Net?? ???????n??????????elodie?tt????u?|?|???????????0???e????N??k???1????Dmso??????ll??{71a27cdd-812a-11d0-bec7-08002be2092f}?163???????????????????i??volsnap?21???????????7???j?j?j?j?j?j?j??@oem2.inf,%pci\ven_8086&dev_3b34.devicedesc%;Intel(R) 5 Series/3400 Series Chipset Family USB Enhanced Host Controller - 3B34???? ???d???D????????????:????????g?????????????????????????j???????j????????????4??j?????g??????X????????????????????~?????????????????????????????~??86??? ???h??? ???????/???j???????????????j?jc9?????j????? ???????j?????j???????0?????????????????????????????j??? ???????j???????????j?0?????????????????????????????????????????j???????????j?j???????j????? ???????j?????j???????
Reg HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Bind ???:?j??????e????????i??????e?????<??:?????????e????TCP/IP Registry Compatibility???NDIS?~??? ???????:???????????9??????????N?????????????s526???????:???-??????69?????:?=?:?=???:??? ?????????????????????9??L????????? ?????????????2??:???E??????1-??HD Audio Speaker mixer 3?}??{17CCA71B-ECD7-11D0-B908-00A0C9223196}???:??? ???????:?????:????????????????????????ic??? ???????:???????????9????????R?N?????0?BT???)J??:???"?????????????????????;????Microsoft Audio Home Theater Effects?????(N??:??????????????????????????{62dc1a93-ae24-464c-a43e-452f824c4250}???????(N??:???????????????????????????(N??:???:???????????????????????:??????????????HD Audio Speaker 4?e?:????0??:???????s??2????????????????????????????:??? ???????9?????:?????:????"???????7??????????????????:???????????????:???:?????0?&???:??{4d36e97d-e325-11ce-bfc1-08002be10318}???????:??????????? ???????5?????:???????0????????????????????????????? ???????y?????????????0??????????????????????N??????????&??cpu.inf??????}?}?h???t?t?t???????????????????????:????
Reg HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Route ???i????{00000000-0000-0000-ffff-ffffffffffff}?.?????????????????3????N??i???7???????-????P??j?????????n????????p????????i??? ???????i?????i???????0????????????????????MEDIA???? ???????i????????????????????????????????????s??????????8??? ???????i???????????????????????????????f?????i?????i??? ???????i?????i???????0??L????????? ??????H9 ?????i???i???i????????? ???????i?????i???????0????????????&???????????????????????? ???????i?????i???????0????????????????????? ???????i???????????i?0????????'????????????????????(?? I????'??i???P?? E??@system32\DRIVERS\pci.sys,#1536;PCI HOST Bridge?n_???i?i???????i????? ???????i?????i???????0????????????&????????????????????n???????????i??? ???????i?????i???????0????????????????????? ???????i???????????i?0?????????????????????????????????????????????????????i?i????nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp????????.??i??????????Microsoft 6to4 Adapter???????h?i?????????h?????????????h?????i??????????????\\?\Root#*6TO4MP#0205#{ad498944-762f-11d0-8dcb-00c04fc3
Reg HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Export ???j?o???k??LegacyDriver?l??Boot Bus Extender????k?????k????? ???????k?????k???????0????????????????????LegacyDriver?????k??? ???????k???????????j?0????????2?????????????N??k???????????????i?i?k?k?k???k???????????????????????&?????k????? ???????k?????k???????0????????????????????? ???????k???????????j?0????????"????????????f?i?k?k?k?k?i???????????g?????s?4???????????????????????k?????k????? ???????k?????k???????0?????????????????????????k???????????k??.NTAMD64?t??? ???????k???????????j?0????????(????????????????k??????s?????N??????_??????????St?r?o 3D??????k????? ???????k?????k???????0????????????????????? ???????k???????????j?0???????????????????????????????????s????LegacyDriver????tunnel??00?????k????? ???????k?????k???????0????????????????????? ???????k???????????j?0????????$????????????k???k??? ???????j????????????????????????????????????Y????????k????? ???????k?????k???????0???????????????????????k???k???k???k???k???k???k???k???k????????????? ???????k???????????j?0?????????????????????????????5??????0F?
---- Files - GMER 1.0.15 ----
File C:\Users\Elodie Arnaud\AppData\Local\Temp\au-descriptor-uac-1.6.0_20-b76.xml 8857 bytes
File C:\Users\Elodie Arnaud\AppData\LocalLow\Sun\Java\jre1.6.0_20\gtapi.dll 79488 bytes executable
File C:\Users\Elodie Arnaud\AppData\LocalLow\Sun\Java\jre1.6.0_20\jre1.6.0_20-pfrom18.msi 1738752 bytes
File C:\Users\Elodie Arnaud\AppData\LocalLow\Sun\Java\jre1.6.0_20\sp1036.MST
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit scan 2012-10-29 13:49:55
Windows 6.1.7600
Running: xk1szsbf.exe
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Bind ?????????????????????????9??????????*6to4mp?1C??? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????????????E??E7???????????2??-7??*6to4mp?FB??? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????????????4??E1???????????4??9B??????66??? ?????????????????????0????????????&????????????????????D??????????????? ?????????????????????0????????????????????? ?????????????????????0????????~????????????????????????????E??E-????~??????B??41??nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp?-48??????C-???????????4???e??tunnel?-F8??? *??????1?????394??Carte Microsoft 6to4?-??????????????????????????????????????????E5??? ?????????????????????0??????????????????????????????????????????????????????076-982F-C41??? ?????????????????????0????????*???????????? l??????3?????69-??@nettun.inf,%6to4mp.displayname%;Carte Microsoft 6to4????????????????????????????????4?????s61??? ??????????????????????????????'????????e?????????????
Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Route ?????????????????????????????h???????????1??85??????????????????text????????????????????Microsoft???? ???????U?????????????,????????$???<???????????????????????????????5D??? ??????????????????Basic_Install???????????? ???????3??????n???? ???????????????????z?0??????*?>??? ???????????Connexion au r?seau local* 181??? ??? ?????????????????????0?????????????????????????????i??ta??Composite.Dev???? ??????????????t???.NT?????? ?????????????????????0????????????????????????????????????????? ?????????????????????0????????????????????????????????????????????????????????????.NT?????????????????????t???? ,?????????????????????????????????????????????????? ?????????????????????0?????????????????????????????y???r??? ???????y???????y??6.1.7600.20934?y?y??? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????z???z???????????t???y??6.1.7600.20934???????????????y??s???USB??z??? 6?????????????????????@usb.inf,%generic.mfg%;(Contr?leur h?te USB standard)???????????????????????usb\com
Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Export ???? I??????47??????? ???????@????????*???????????B?|????????????????????d????????????N?????????????????{EA509FAE-C4CC-45FF-81C5-A6AFF8E3B526}??????????G????????e???????????????????s??? ?????????????? ????????????s??????????????ATHAMPFL?l??????????????????????50????|?????????????????PCI\VEN_168C&DEV_002A&SUBSYS_03061A32&REV_01\4&D74826C&0&00E1????????????u???????????????????D??????????????????????????????????? ???????????????????????????????m?????????????el????????????r???????????????a???? ??????\??????????838?al???!???????s????????????????e\Lo??????1???????????????? ???????e??????e8??????5????????e??256?ns?????????????????????r??????L????????????d?????????????a???????s??? ??0???????????????? ??????????????????????pci\ven_168c&dev_002a&subsys_03061a32???? ??1???????????????????0??????????c????????????60??????????1???????????????? ??3??????????????????????????????n?t??4212539?????? ??1????n??????? ??????1?????????e??????????????y???h??oem9.inf??????"??????r??????NI??netvwifibus.inf??m??? 6??????:?????s\A??ATH
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Bind ????32????N?????????????????????????6.1.7600.16385?A9B??????=A???????p??????os??? ???????????????????????????????????????f??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?60-???????????k???????????o??Microsoft???????????????????????????????????????????????????????????????????????????????? ???????0?????????????,????????$???<???????????????????????????????? ??? ?????????????????????,????????z?????#?????????????A5??\\?\Root#*6TO4MP#0257#{cac88484-7515-4c03-82e6-71a87abac361}????????el??????????????????"{??????????????????????????????????????????????????????4}??*6to4mp?A-??????????????????6to4mp.ndi??????????????????????????????????????????????????????????4???? ?????????????????????0?????????????????????????????r??of??nettun.inf??????????????nettun.inf??12???????e??????????????????gr??????????? ?????????????????????0????????*???????????????????????????????????????????????????????????????????????6to4mp.ndi??????????09??????????????4???????????*6to4mp?????????FF??? ?????????????????????0??L????????? ??????m?n??? ?????????
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Route ????????????????????????????mrxsmb??????????????????????????????E-??????????????????system32\DRIVERS\mrxsmb20.sys????????????p??ta??AsyncMac?????????o???????????D??????\m??LegacyDriver?????????j???r??? ??@umbus.inf,%ms%;Microsoft???NDIS Proxy????????V??s?????????e????????????????????????????????????1w??6to4mp.ndi???????????????/???????????j???????????n?n?j???j??@system32\DRIVERS\pci.sys,#3077;SM Bus Controller???? ???????j?????j???????0????????????&???????????????????????? ???????j?????j???????0????????????????????? ???????j???????????j?0?????????????????????????j???????6??machine.inf:INTEL_SYS.NTamd64:NO_DRV:6.1.7600.16385:pci\ven_8086&dev_3b30????j?????????????????j????? ???????j?????j???????0?????????????????????j?j?????j??? ???????j???????????j?0?????????????????????????????????????????j??????????6.1.7600.16385?.76?????j????? ???????j?????j???????0?????????????????????????????????????j??? ???????j???????????j?0?????????????????????????????????????????j??????????Intel(R) 5 Series/3400 Series Chipset Famil
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Export ?????t?????s???s???s???s????? ???????s?????????????:?????????????????S??? ???????s?????s?????s?:????????????????????????????????????????? ???????n???????????p??????????V????????V???????????????????s???s?????????????????s??????R??s????????h?????\SystemRoot\system32\DRIVERS\IPMIDrv.sys??????V??s???????????d??ipmidrv.inf_amd64_neutral_183d6cac9a33faff????????<??s?????????e?????????????:??? ???????n???????????s??????????<???????T???IP Network Address Translator?????6??s??????????????System32\drivers\ipnat.sys???????????????????????????????????????????????????y?????????????s?????????????????????????r???????????e???s?s?s?s?s?sr????????????1??????? ???????n???????????s??????????^?????????????^??s?????????e????@%SystemRoot%\system32\drivers\irenum.sys,-100????????????????????????????8??s????????h?????system32\drivers\irenum.sys??????????????+???+????????????????????^??s?????????n????@%SystemRoot%\system32\drivers\irenum.sys,-101???????s?s?s?s?s?s????? ???????n???????????s??????????V?????????????????????????????????P
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Bind ????????????????????????????????????????????????????????????????USB?2C??6to4mp.ndi?B-4??*6to4mp?54??nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp??????? ??????????????????????????????????????????????3D??????????? ???????_?????l?????????????4???????????"??{6??v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|?????? ??????????????x7??????????? ??????????????????????????????'???????????{A3E44B35-98D4-4C04-B93C-FC5E53179B0E}???t??????????????????????????????????????????????????????????07??????????????????????????????????????????????????11???t??????s???????????????????????????Type?????????????????????????B??????v2??????????????tunnel??@u??????F4??????????????6.1.7600.16385????????????????????????*??????????????????????2??12??1???????????82??????????????????6_???????????a????????N???????????????????*?????????????????????Carte Microsoft 6to
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Route ?????????????m???????????;??????????????t????????B?????????????g????Net?????tunnel??D2???????t??? 0??z???????????????????????????????r????P??r?????????e?????r?????r?????r???r??????????????? ???????n?????r??????????????$???q????x????@%systemroot%\system32\fxsresm.dll,-118???????????????????????????B??r????????h?????%systemroot%\system32\fxssvc.exe????????????????t?????????????????????P??r?????????n????@%systemroot%\system32\fxsresm.dll,-122??????????r???+????????P??r?????????e??????????????????@??r???????????e??TapiSrv?RpcSs?PlugPlay?Spooler??????? 8??r??????????????NT AUTHORITY\NetworkService???????,??????+???????+???????????????????????????r??????????????????SeAssignPrimaryTokenPrivilege?SeAuditPrivilege?SeChangeNotifyPrivilege?SeCreateGlobalPrivilege?SeImpersonatePrivilege?SeIncreaseQuotaPrivilege???????????p??????e???? ???????r???????????r?????????????????????????????????p?????????????(??????P??????????????????? ???????????????????????????? ???????n???????????r??????????N?r????c?????o?o?p?o?p?q???????????
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Export ?????r???????F??100???????????????????????????????????????????????X??????????????????&???? ??d???????e????N????????????D??????X??????5??????@netrasa.inf,%msft%;Microsoft???????????????? ???????j?????k?????k?????????????? ???????????????????????????????? ???????k???????????i??????????N???????????{4d36e972-e325-11ce-bfc1-08002be10318}?1?1??Net??????????????y?????????????m???k??????X????????????????k?&????X??????y???x??? ???????m????????????????0???????????????????????N??k???H?????Div????X?????????????????????????????????volume.inf:MSFT.NTamd64:volume_install:6.1.7600.16385:storage\volume????{8ECC055D-047F-11D1-A537-0000F8753ED1}??N???{8ECC055D-047F-11D1-A537-0000F8753ED1}?.?.????N??k????????D??/??DETECTEDInternal\volmgr?DETECTED\volmgr?????????FF????2??s????????h??????????????????????????????????y??? ???????k???????????j???????????????????????????1??{00000000-0000-0000-0000-000000000000}??????????????????? ???????j?????k?????k?????????????????????C????? t?????????????????? ???????k???????????h??????????Z??????
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Bind ??????????????????X?????? ???t???????z???*??s????????????o??????Da???????????6??48????N??????c?????Dot??Adresse r?seau? IS??????????SCSI CDROM Class????????????????????t4??v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33011|Desc=@FirewallAPI.dll,-33014|EmbedCtxt=@FirewallAPI.dll,-33002|??????????????????????????????????????????????????????????????????????j???????j??Microsoft???????0?????*?????????????????D2??LegacyDriver????????????????5????????????-??????00??OpenPerformanceData??z???????????????????????????????????t??? ???????/????????????????????????????????????0?????????????????6A???????.??CD/DVD File System Reader???v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33015|Desc=@FirewallAPI.dll,-33018|EmbedCtxt=@FirewallAPI.dll,-33002|????6.1.7600.16385????????????????????????*?????????????Carte Microsoft 6to4???????????????????????? #???7?????????????
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Route ??????????:????????g????????-B??Net?????tunnel??15?????? I??????47??????? ???????@????????*???????????B?|????????????????????d????????????N?????????????????{EA509FAE-C4CC-45FF-81C5-A6AFF8E3B526}??????????G????????e???????????????????s??? ?????????????? ????????????s??????????????ATHAMPFL?l??????????????????????50????|?????????????????PCI\VEN_168C&DEV_002A&SUBSYS_03061A32&REV_01\4&D74826C&0&00E1????????????u???????????????????D??????????????????????????????????? ???????????????????????????????m?????????????el????????????r???????????????a???? ??????\??????????838?al???!???????s????????????????e\Lo??????1???????????????? ???????e??????e8??????5????????e??256?ns?????????????????????r??????L????????????d?????????????a???????s??? ??0???????????????? ??????????????????????pci\ven_168c&dev_002a&subsys_03061a32???? ??1???????????????????0??????????c????????????60??????????1???????????????? ??3??????????????????????????????n?t??4212539?????? ??1????n??????? ??????1?????????e??????????????y???h??oem9.inf??????"??????r?
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Export ?????????????????????????N???????p???e??????????tunnel???}??????????????????????????????????????????? ?????????????????????0????????????????????? ???????????????????????????????????????f??Microsoft???? ????????????????????????????????????????????s9D1??? ?????????????????????0??L????????? ???????68????????????????roso??nettun.inf??????????? ?????????????????????0????????????&????????????????????d??? ?????????????????????0????????????????????? ?????????????????????0????????~???????????6to4mp.ndi???????????????=??UE??? ??????????????????????????????????????????????????????????????????????? ???????????????????????????????????????f??? ?????????????????????0??L????????? ??????e?e??????????????????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0?????????????????????????????????????2??? ???????@????????????????????$?N?\??????????????????1???????????n????>??????%???????????1??????????????????nettun.inf?@????? ??????????????76??6to4mp.ndi?47F??? ??????????????????6-21-2006??????
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Bind ????t????????????????k??????????????????tunnel??????Microsoft????????????????????????????????B???????????1?????e????????0?????D??????1??????????????4?????~??????7??45???????????????????????????t???????????????????????&???????i???????????????????e????????*?????????????????????text????? ?????????????????????0?????????????????????????????????????????????????????????B??????????????????????????????????????????????????????????6.1.7600.16385?65?????*?????????????Carte Microsoft 6to4?????????????t??????????d ???????????????????????????????????????A???????????&??Type????????E-???????t??tunnel??????? D??????i???????S??*6to4mp?B6???????t??????????????????????????????Microsoft???????????????????????????? ???????????????????p?0????????*???????????GHz??????????????????B??? ??????????????????????A5???????????????????????B??????????? ?????????????????????,????????z?????#??????????n???n??? ?????????????????????0????????????????????????? ?????????????????????0????????~?????????????~??????c??{B??nettun.inf:Microsoft.NTamd64:6t
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Route ????1E??????88??? ??????????????????????????????'????????e??????????????? P??????4?????A-4??{FCDFF3DB-BC1C-4825-8BBF-2791CA714E87}??7A????*??????9????d6}"??TCPIP6TUNNEL?Tcpip6??C????'??????A???}??\Device\{FCDFF3DB-BC1C-4825-8BBF-2791CA714E87}??FC???????????-??????7E??????????????????????????? ???????????????????????????????????????f????N??????6?????D2F??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?9B7??? ???????0?????????????,????????$???<???????????????????????????????85??? ?????????????????????,????????z?????#8FB??????#?????$??????F???????1??Root\*6TO4MP\0157?????z??????D??????-4??\\?\Root#*6TO4MP#0157#{cac88484-7515-4c03-82e6-71a87abac361}?"??? ???????1?????????????,??N?????$???<???????????????????????????????1F??? ?????????????????????,????????????'????????????????????}????????????$??????C???????0??Root\*6TO4MP\0157????????????4??????BB??\\?\Root#*6TO4MP#0157#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{FCDFF3DB-BC1C-4825-8BBF-2791CA714E87}?E-??? ???????:?????????????:????????????&????????????????????B??? ???????0?
Reg HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Export ????????????at??????????????????????????????el??c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe??????Adobe Active File Monitor V8????LocalSystem??????o?o?o?o?o?o?o?o?o?o????????? ???????n???????????n??????????????????????storage\volumesnapshot?s P??storage\volumesnapshot?ver??????????????????????????????0????????????????p???????????????????? ?????????????????????????????????????????????????? ?????????????????????0????????????????????? ???????????????????j?0????????L???????????Clich? instantan? de volume g?n?rique???? ???????n????? Au??Clich? instantan? de volume g?n?rique?????????????????????H??????t??????????? ???????????????????j?0????????????????????Clich? instantan? de volume g?n?rique???Po??Microsoft???? ???????n?????????????????????????? ???????????? ????????????????????????????$????????f??????????????????????????????(??????e?????e?e??? ???????????????????j?0????????.???????????????????????6A???n??? ???????n???????????n??????????l?'?????????????@volsnap.inf,%storage\v
Reg HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Bind ?????t???????????????????}??"{???????????E??4C???????????B??A3???????????B??BC??????????????????????????????????????CB???????????-??46??6.1.7600.16385?0}"??????????.NT???????X?????? ???t???????????*??s???????????????????Workstation_Tcpip6_{957DD04A-C001-49A5-8743-1A46E34EDD50}?\Device\LanmanWorkstation_Tcpip6_{B855DF76-5F7E-4312-B1E6-3A76EC674C0A}?\Device\LanmanWorkstation_Tcpip6_{37D93F37-8200-4452-9667-54C2EA35C670}?\Device\LanmanWorkstation_Tcpip6_{34AAFD4B-B4CA-45A6-87B8-ABE89A959885}?\Device\LanmanWorkstation_Tcpip6_{F70FCA02-3AFB-4409-8DD0-5A491A9318E8}?\Device\LanmanWorkstation_Tcpip6_{435B1C1A-8390-48BF-80A1-2279CEAAA49A}?\Device\LanmanWorkstation_Tcpip6_{E9D71EC8-DE9A-42BB-982A-6BBAF3C02362}?\Device\LanmanWorkstation_Tcpip6_{17DA06B7-A66B-47CA-8F10-603B33EC2005}?\Device\LanmanWorkstation_Tcpip6_{B7AF9289-7CDB-4D8F-8DF3-7026449F3EBE}?\Device\LanmanWorkstation_Tcpip6_{7D0B483F-9532-4C34-B14B-A4E4D7A4774D}?\Device\LanmanWorkstation_Tcpip6_{4FC294D4-5ABA-4573-ADF3-44CA5FDD3F58}?\Device\LanmanWorkstation
Reg HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Route ?????????????????????????9??????????? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????????????9??5D???????????3??9F??*6to4mp?-8??? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????????????8??F-???????????4??-D??? ?????????????????????0????????????&????????????????????8??????????????? ?????????????????????0????????????????????? ?????????????????????0????????~????????????????????????????{??91????~??????7??-A??nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp?1AF???????????4???e??tunnel?2AE??? *??????8?????809??Carte Microsoft 6to4?}???????????????????????????????????????????"??? ?????????????????????0???????????????????????????????????????????????????????"{384DFA0C-??? ?????????????????????0????????*???????????? l??????-?????C9E??@nettun.inf,%6to4mp.displayname%;Carte Microsoft 6to4????????????????????????????????"?????s5C??????1E??????88??? ??????????????????????????????'????????e??????????????? P??????4?
Reg HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Export ??????????N??????C????DMic??nettun.inf???t??7????????l??????? ????????????????????????(???????????????????s?????????????????????????? ?????????????????????,??4?????????????????????????? ?????????????????????,?????????????????????y??? ????????????????????????????"??????????f??@nettun.inf,%6to4mp.displayname%;Carte Microsoft 6to4???{4d36e972-e325-11ce-bfc1-08002be10318}??"???? l???????????????????4?????????????16??{4d36e972-e325-11ce-bfc1-08002be10318}??????? ?????????????????????0??L????????? ???????????????????????????????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????????????????? ?????????????????????0?????????????????????????????????3??????? ?????????????????????0????????????????????? ?????????????????????0????????????????????? ???????D?????D29??????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????? ?????????????
Reg HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Bind ????4A???????????y???????s???????z??????????????????????????????????? ????????????????????????"?????l???????3E??{4d36e972-e325-11ce-bfc1-08002be10318}?841???????????3??sB??? ???????9?????A-8??*6to4mp??}??? ????????????????????????????$?N???????????{4d36e972-e325-11ce-bfc1-08002be10318}\0180?00????????????????????????????N?????????????????{F9959CDC-F8BD-40C2-A536-B8AE9C655D75}???????????????????e???????????????????s??????????????? ??????????????????????????????????????te???????& ?????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0??????*?>??? ????????????????????e??????????d7???????????C????????????>??????t??Mi??Connexion au r?seau local* 179????????????????????????????????????????????????$??????8??????????ROOT\*6TO4MP\0167????????????????????????????????A??????????? ??????????????????????????????>??????iE}??????????? ???????????????????????????????????????1??????????? ???????????????????????????????????????????7??Type?????????????1????c5E-??Adresse r?seau?125?????????
Reg HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Route ??????????????????????N????????????D??????????N?????????????????????????????????? ???????@????????????????????$?N???????????{97768061-E6D1-4900-84EB-532D40BD5175}???????????????y???????s??? ??????????????Ad???????????u????????????????????????????????????$?????????????????ROOT\*6TO4MP\0176???????????????????????????????????????????? ???????3??????14??int?????? ???????@????????????????????$?N???????????{675CD452-27C4-42BC-978D-F74E34AB8C7E}??????ROOT\*6TO4MP\0175????????????????????????????o???n??????????? ????????????????(???????????????????????????????????????????I???????R?????????????????? ???{??????????????????????? ?? r???????????*??76??????????????????????4????????????????????g??????????????????????????????????????????????????Microsoft???? D??????s???????????????????????????????????????????????????????????;???-??????6-21-2006??????????????????????????????????e?????????????????????????????z??????????wpdfs.inf:Microsoft.NTamd64:Basic_Install:6.1.7600.16385:wpdbusenum\fs?????????????????????????????????????
Reg HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Export ?????n??6-21-2006???{EE86197B-1171-41D2-8038-7786704396A9}??????????????????????????????*6to4mp??????????????e???????????????4??6-????$?????????????????????????? ????????????????????????"?????l???????B5??USBAAPL64????????????2?????sC-??????????*6to4mp?????? ???????U?????????????,????????$?p?<???????????????????????????????1???? ????????????????????????"?????l???????????? ?????????????????????,????????z?????#?56????:??????4???t??????????????#???????? ???????U?????????????,????????$?o?<???????????????????????????????98??? ????????????????????????"?????l?r?????of??? ?????????????????????,????????z?????#35-??{4d36e972-e325-11ce-bfc1-08002be10318}?03-??ROOT\*6TO4MP\0141???usbstor.inf??h??????re??????#???? ???????????????????f?;??????0?J?????????????4-6B??? ???????|???????????k?:????????????&????????????????????2???????????n???????s???? ??????f???e??? ??????????????????????????????????????????? ????????????????????????"?????l?????????????>??????2???????????????C??????????int??s????????'????????????????????????????
Reg HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Bind ???.???????.?????.?????? ????-??????1D??? ???????.???????????.????????"?h????????f????h??. ??.????????r??.?????.?????.???.?.?.????????????????????????????V??.???d?????????xx.???????.???;???????????o??h???????????????????????????@???C???????????P???S???????? .??.???y?????r?C???.???.??? (??.???D?????sol???????????????.??? ???????,?????.?????.???????????????????????????????????0??????7F??ACPI\PNP0100?*PNP0100?????????N??.?????????D?????????????e???????????.???.??????????????????????????????DI??6-21-2006????????.?????????????)????{00000000-0000-0000-ffff-ffffffffffff}?-A5??????????????@?????????P????????????.?U??? ???????.?????.???????,??4?????????????????????????? ???????.?????????????,?????????????????????y??? ???????-?????3??????????"?????h??????????????????? ????e???????.???3?3??????:??.???(??????????????????????SYSTEM? ? ????N??/??????????? ??????????? ???????.???????????.????????$???????????????sers??? <??.???y?????0?e?????.????ATI display adapter (0x68C1)????Microsoft????????.???????;??tunnel??os??? ?????
Reg HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Route ???.?U??? ???????.?????.???????,??4?????????????????????????? ???????.?????????????,?????????????????????y??? ???????-?????3??????????"?????h??????????????????? ????e???????.???3?3??????:??.???(??????????????????????SYSTEM? ? ????N??/??????????? ??????????? ???????.???????????.????????$???????????????sers??? <??.???y?????0?e?????.????ATI display adapter (0x68C1)????Microsoft????????.???????;??tunnel??os??? ???????-?????7?? ???????"??????????????????0??????'????.?????????????????????????s??????h??. ??.?????????.?&??Internal DAC(400MHz)?0???????????????????????.???e???????.???;??????\SystemRoot\system32\DRIVERS\adp94xx.sys???????????????????s?????????6???.???h???.??? ???????.????????????????L?????????????????? ???????.????????????????V?????????&????????????????????????0???????.?.???????2???:???8???????????????8????intelppm?.?????????????.??????????????????????????????????:??.???????????????????Z??????????????? ???????.???????????.????????"?h????????f??? .??.?????????s?????????.???????e???.??? ???????,?????.???
Reg HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Export ???.?.???.???????????E???????????????&??????????????????????????????????????po??\SystemRoot\system32\DRIVERS\adpu320.sys?l??????????????p????????4???????????????.????N??.??????????????????????? ???????.?????.??a???????(???>? ?????????????s??????????????8?????????.????????????????????????????? ???????.?????.???????,??4??????????????????????.????X??.??????????ATI Mobility Radeon HD 5650UDI???????????????????????U????<??????.?g????? ???????.???????????.????????$???????????????s????????????????????????.?????~???U??? ???????.?????????????,?????????????????????y??{4d36e97d-e325-11ce-bfc1-08002be10318}\0028?????65?????-???-???.??3540?????.???????.????????\SystemRoot\system32\DRIVERS\arc.sys?/???????.???????????????????4????"??.??????????????pci??-??????????????? <??.???.??????????????????????b?????????f????????????? ????????????.?????.?????.??? ???????????????????8???????? ??????????????y??? ???????-?????-???????0??L????????? ???????????? ???????.?????.???????0????????????&????????????????????.?????????????????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Bind ???o?o???????r??F-Secure Vista Support Driver???Net?61???????y??@%SystemRoot%\system32\drivers\fvevol.sys,-100???????????e??????????Net?\0????????????????????????????????????????????????????????????????????????????Symantec IPS Provider???????DingSvc????????????????????????? ??????????? ????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P?????????????P??????????? ???????????????????????????????????????????Video??????o????igfx?????o?o?o?o?o?o?o?o?r????(??o???1??.1???????????n??????ne???s?s?s??http????? ???????o???????? ??r?????????????????????ent????.??o??? ???t???&???o???????????????????????????????o???:??????????????OpenPerformanceData?st?????o??????????????????????????????????????????????????????????????@FirewallAPI.dll,-23501???????@FirewallAPI.dll,-23502???????mpssvc?????????&???o??????????????????????????? F??s???????????????????o??????????fsfwperf.ini???????????????????????????????????????????????????????????es ???s?s?s?????????????????????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Route ???o?s??? ???????n??????????????????????????????????????"C:\Program Files (x86)\Pack S?r?nit?\S?curit?\ORSP Client\fsorsp.exe"????????<????????????n???????????????????e???????or???? 8??o??????????????NT AUTHORITY\NetworkService??????????????????????????o???????s??????????????t????????????????????????????o????????h??????????o????????????????????????????????????????????????????????????????????????????????@FirewallAPI.dll,-23521???????@FirewallAPI.dll,-23522???????MPSSVC?????????????????????????? ??????????? ????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P?????????????P????????????????????????y?y?????? ??g?????????t????? ??????????????????????<????????????????t?t?t?????????o???o???o???????????????????????????????????????????#????????????????????@FirewallAPI.dll,-23501?????????????????????????????????????????????????????????????????????????????????????@FirewallAPI.dll,-23501??????????????????????????&???o???????????????????????????&???o?????????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Export ???o?????????????m?m?o?oe????????u??????????NTDS?0???????????????????????}?}?o???n?n?o?o?o?o?o??????6-21-2006???? ???????o???????? ????????????????????????eSe???}?}???????????????????????s?????????????o??????????????F-Secure Firewall Driver? ??C:\Program Files (x86)\Pack S?r?nit?\S?curit?\FWES\Program\fsesperf.dll??????????o????????ho?????s?s?s???????o?????????e????fsesperf.ini????????????????????????????????????????????????????????????????????????????????????????????????t???OpenPerformanceData???????*??o???n??e7??????????????????????CollectPerformanceData?ecu??RPCSS????????????????0??4???ClosePerformanceData?r???????o??? ???y????????????????????????????????p?????? ??????????????r?????4??o?????????e?????s?s?s??? ???????n???????????o??????????????????????? ???o??? ??????????LocalSystem???????4??o?????????n????F-Secure Management Agent????o?o?o?o?o?o?o?o?o????*??o?????????e????F-Secure ORSP Client????????????????4???????????????4????s?s?s??"C:\Program Files (x86)\Pack S?r?nit?\S?curit?\Common\FSMA32.EXE"???F-S
Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Bind ???n?j???????y??Filter?t?t??11???????????????0???????????????????0?????sms????N??m???0?????D?0?????j?z?????? ??????????s??????N??j???E????D7&C??{8ECC055D-047F-11D1-A537-0000F8753ED1}??PC???????j??????s-?????????????????s????????????? ???????????????????j???:???:???????o???????n???????z???j??????????????????????Net??y??{8ECC055D-047F-11D1-A537-0000F8753ED1}??????Base?????????j??????s??????????????????s?????? ??'???????e??Net?? ???????n??????????elodie?tt????u?|?|???????????0???e????N??k???1????Dmso??????ll??{71a27cdd-812a-11d0-bec7-08002be2092f}?163???????????????????i??volsnap?21???????????7???j?j?j?j?j?j?j??@oem2.inf,%pci\ven_8086&dev_3b34.devicedesc%;Intel(R) 5 Series/3400 Series Chipset Family USB Enhanced Host Controller - 3B34???? ???d???D????????????:????????g?????????????????????????j???????j????????????4??j?????g??????X????????????????????~?????????????????????????????~??86??? ???h??? ???????/???j???????????????j?jc9?????j????? ???????j?????j???????0?????????????????????????????j??? ???????j?????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Route ???o?????????o???????????????z?z??????????????????p??????????????????????o???o??? ???????p???????????o???????? ???i?????????C:\Windows\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll????????*??o?????????n????F-Secure ORSP Client??????<??o????????h??????????????????y?z??????$??????s??????? ??Boot Bus Extender????????????????y????????????????????????????8??p????????h?????Net??????q?q?l???????o???????????????o???s??ep???????r???o???????????o???????????????????????????????r??????????????4????????????-??66??????????????t????????????4??????AB????????????????z??o????????h???????@??o?????????e?????????????9????h{4C??????????????????????????????Service Google Update (gupdate)?De????n??o?????????e????RpcSs???????tunnel??????"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc?2??system32\DRIVERS\HECIx64.sys????? ???????c?????{6B??????????????????????????????????v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.
Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Export ???s?s??????????????????????????sftlist??????p?p?p?o?p?p?p?p?p?p?p?p?p?p?p???????p???????????????????p??????????????800 -2300????????p??????????????????400 -6500????p???????p???????????????????????????????????????t?t?t??800 -5500????????o?????????e?????p??400 -1800??????? ??????????s???????? ??????????s?????? ??p?????????e????????????????????? ???????p???????????p????????,?????$???????????????????????760 -360?????????p???????????????????????p??????????????????4000 -5000???????????p???????????????????p??5000 -4000??????360 -760?????t?t?t??MSBFirst?????????p???????????p????????????????D?????????Ho?????????e?????????p???????????????p??????????????????????????????????????MSBFirst????760 -360?????????????????????????????p?p?p?p?p?p?p?p?p?p?p?p?p?p?p?p?p??Thompson 24-bit?????4304?????????????????????????????p?p?p?p?p?p?p?p?p?p?p?p?p?p?p??LSBFirst????? ???????p???????????p????????,?????$???????????????????????4500 -3500???????????p??????????????????300 -700????????????????????????BiPhase?????700 -300???????????????
Reg HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Bind ???f?s???f?y?y???????s????N??f???o?????Dst???f?f?j?j?j?j?j???????????????????????????'???-???????.????N?????????????????mrxsmb20?h???????f???????e????N??????T??????0????????e??Net??????????-??? ???????f?????f?????????????????????????3??? ???????f?????f?? ???????"?????v????????????.??{4d36e97d-e325-11ce-bfc1-08002be10318}???7????N??g????????D?????????????{4d36e97d-e325-11ce-bfc1-08002be10318}??????tunnel?Net??? &??f???E?????owA????????????????????N??m?????????????n?????????????u??td??Net????????????????f???f?????????{???????????.????????????N??g?????????D??????N??g?????????D??????N??g????????D?????????????????????????????????????????tunnel???????????????????????????????e?f?f?f?f?c?e?e?f??? ???h??????????????Wanarpv6?0?????????????f???f?????f??????????????????????????????????????????'???'???????????d???d???????????????????-0??????????????'?????????d?????????????????st??????????????? ???????f?????f???????0??L????????? ??????}?3?????f???f???f????????? ???????f?????f???????0????????????&????????????????????F??? ?
Reg HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Route ???o?o???????n???????????????l??? ???????n?????o????????????????P???????????C:\Program Files (x86)\Pack S?r?nit?\S?curit?\Anti-Virus\avperf.dll?ne??? ???????o?????Fil???r?r?r???r??OpenPerformanceData?\N?????o???o????? ??????????????D???bitsperf.dll????????????????????????????????t???RpcSs?????????<??p????????h?????USBSTOR??????????????????????p???????????????????p???p??? ???????o?????o?????,????????$????? ???????????????????????????????????? ???????n???????????o??????????V????????i????????????????????????R??o????????h?????\SystemRoot\system32\DRIVERS\acpipmi.sys?????o?o?o?o?o?o???????o??????????????????????0??o?????????e????ACPI Power Meter Driver???????V??o???????????d??acpipmi.inf_amd64_neutral_21e3ebca2e5038cb??????????? ???????o???????????o??????????????????e????o??? ???????n?????o?????n??????????V? ??????x??avperf.ini?????????????????????????????????????????????????????????7.1???????o??????p???CollectPerformanceData?rf.???????o????????h?????FltMgr??????????????BFE?????PerfMon_Close????r?r?r??? ???????o?
Reg HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Export ???or???? 8??o??????????????NT AUTHORITY\NetworkService??????????????????????????o???????s??????????????t????????????????????????????o????????h??????????o????????????????????????????????????????????????????????????????????????????????@FirewallAPI.dll,-23521???????@FirewallAPI.dll,-23522???????MPSSVC?????????????????????????? ??????????? ????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P????????????(??????P?????????????P????????????????????????y?y?????? ??g?????????t????? ??????????????????????<????????????????t?t?t?????????o???o???o???????????????????????????????????????????#????????????????????@FirewallAPI.dll,-23501?????????????????????????????????????????????????????????????????????????????????????@FirewallAPI.dll,-23501??????????????????????????&???o???????????????????????????&???o??????????????????????????%SystemRoot%\system32\wevtapi.dll???? ???????c?????\En???}???????????????????:???????????t?t?t???????????\????ptlr????????????,??????????????????o?????????????
Reg HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Bind ???g?m??????-2???f?f?????d?d?d?d?e?'?e?e?f????p??????3??????{4d36e96b-e325-11ce-bfc1-08002be10318}??????Net??????????g???????e??????????????t???????????*6to4mp?????? ??????????????????????????????????tunnel??ms???????????????3???3???????u?????????????f???f?????????f ??????????????e??????????????????????????????????????????????????????????????????????????????????????????????????????????????????4x???f?f?f??????????????????? ???????f?????f???????0??L????????? ???????? ?????f???f???f????????? ???????f?????f???????0????????????&???????????????????????? ???????f?????f???????0????????????????????? ???????f???????????f?0?????????????????????????????????????????f??????????machine.inf:GENDEV_SYS.NTamd64:NO_DRV_HPET:6.1.7600.16385:*pnp0103???????f?fP??????f????? ???????f?????f???????0????????????????????????????????? ???????f???????????f?0?????????????????????????f???????????????????f?f???????????????f????? ???????f?????f???????0???????????????????????f???f???f????????? ???????f???????????f?0???????????????????????????
Reg HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Route ???t?t????2?????????????????????????????????????????????????%SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted??????NetBT?Afd????????????????????????|?|?|??@%SystemRoot%\system32\lmhsvc.dll,-101????????R??u???+?????e?+??? B??t???????????????t??@%SystemRoot%\system32\lmhsvc.dll,-102??????NT AUTHORITY\LocalService????????????????????????v?v?v?v?v??? ???????t???????????t?9??????,?B??? ???????????%SystemRoot%\System32\lmhsvc.dll????????????????????????????? ???????t?????t???????????????????????????o???????t???t????? ???????t???????????o????????????????0??????????p???????????????????????????????s??????????RPCSS??????????t????? ???????t???????????o????????????????1??????????????}???~???????????????????????????????????????????????????e?????t0??t1???? ???????n?????t???????????????????????a????? ???????t???????????s??????????4??????????e????CloseLsaPerformanceData???????4??t???????t??CollectLsaPerformanceData?????.??t??????????OpenLsaPerformanceData???????????t???????y??Secur32.dll??????????s?????????
Reg HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Export ???ss????o??????????? ???????n???????? ???????????$????????G????@%SystemRoot%\system32\Alg.exe,-112???????<??o????????h??????o???????????????????????n?n?n?n?n?o?o????????????????????????????????????????R??????????????d????????????????????????????,??o???????????????????????????????????????????o??????p???????????????t????o??tunnel???????o??%SystemRoot%\System32\alg.exe????o????<???????????h???????H??o?????????e??????????????????????????H??o?????????n????@%SystemRoot%\system32\Alg.exe,-113?????? 4??o??????????????NT AUTHORITY\LocalService????????????????r?r?&??? ???????n???????????o??????????R???????????\??\C:\Program Files (x86)\Pack S?r?nit?\S?curit?\HIPS\drivers\fshs.sys???????T??p????????h??????n?n?o?o?o?o?o???????????o???????????r????pnte??Microsoft????????????????????????????o???p?p????? ???????n???????????n??????????R???????????"C:\Program Files (x86)\Pack S?r?nit?\S?curit?\FWES\Program\fsdfwd.exe"?\N????H??o???n?????eur???? ??n???i???????e????(??o???i??\E??F-Secure Anti-Virus Firewall Daemon?\C????.??o?
Reg HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Bind ???j????????????? ?????s?0??????????????t???t???????????C-??????????@machine.inf,%pci\ven_8086&dev_3b42.devicedesc%;Intel(R) 5 Series/3400 Series Chipset Family PCI Express Root Port 1 - 3B42??-?????????????????s???????????????????????????????????????sN???Base??????N??k????????D?????5028?????????????????????????????j?j?j?j?j?j?j??LegacyDriver?.???????k??? ???d???&???????&????:????????gne????N??????*????Dy ???PCI\VEN_8086&DEV_3B42&SUBSYS_03791025&REV_05?PCI\VEN_8086&DEV_3B42&SUBSYS_03791025?PCI\VEN_8086&DEV_3B42&CC_060400?PCI\VEN_8086&DEV_3B42&CC_0604????PCI\VEN_8086&DEV_3B42&REV_05?PCI\VEN_8086&DEV_3B42?PCI\VEN_8086&CC_060400?PCI\VEN_8086&CC_0604?PCI\VEN_8086?PCI\CC_060400?PCI\CC_0604????????????????5?????s0F???????j??????????? ???????j?????j???????0????????????????????? ???????j???????????j?0?????????????????????????????????7???????j??? ?????????j????? ???????j?????????????0????????????&???????????????????????? ???????j?????j???????0?????????????????????j?j????? ???????j???????????j?0???????????????????????
Reg HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Route ???m?????????|???n?o?o???????n???s?s?s???????????????????????m??????????? ???????m?????m???????0?????????????????????????????????????????l???????????m???????????????????????m???????????m??? r??????m???????????????????????????????f??? r??????m?????m???????0??L????????? ??????????????m???m????? r??????m?????m???????0????????????&???????????????????????? r??????m?????m???????0????????????????????????????? r??????m???????????k?0????????????????????ksfilter.inf:Microsoft.NTamd64:MSPQM:6.1.7600.16385:sw\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}???Microsoft Streaming Quality Manager Proxy????m?????m????? r??????m?????m???????0?????????????????????m?m?????m??? r??????m???????????k?0?????????????????????????????????????????????????????m?m7-?????m????? r??????m?????m???????0???????????????????????m???m???m????????? r??????m???????????l?0??????????????????????T??m???????????????????????????m?m???????m????? r??????m?????m???????0????????????&??????????????????????????m???m????? r??????m?????m???????0????????????????????? r
Reg HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Export ???j?z?????? ??????????s??????N??j???E????D7&C??{8ECC055D-047F-11D1-A537-0000F8753ED1}??PC???????j??????s-?????????????????s????????????? ???????????????????j???:???:???????o???????n???????z???j??????????????????????Net??y??{8ECC055D-047F-11D1-A537-0000F8753ED1}??????Base?????????j??????s??????????????????s?????? ??'???????e??Net?? ???????n??????????elodie?tt????u?|?|???????????0???e????N??k???1????Dmso??????ll??{71a27cdd-812a-11d0-bec7-08002be2092f}?163???????????????????i??volsnap?21???????????7???j?j?j?j?j?j?j??@oem2.inf,%pci\ven_8086&dev_3b34.devicedesc%;Intel(R) 5 Series/3400 Series Chipset Family USB Enhanced Host Controller - 3B34???? ???d???D????????????:????????g?????????????????????????j???????j????????????4??j?????g??????X????????????????????~?????????????????????????????~??86??? ???h??? ???????/???j???????????????j?jc9?????j????? ???????j?????j???????0?????????????????????????????j??? ???????j???????????j?0?????????????????????????????????????????j???????????j?j???????j????? ???????j?????j???????
Reg HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Bind ???:?j??????e????????i??????e?????<??:?????????e????TCP/IP Registry Compatibility???NDIS?~??? ???????:???????????9??????????N?????????????s526???????:???-??????69?????:?=?:?=???:??? ?????????????????????9??L????????? ?????????????2??:???E??????1-??HD Audio Speaker mixer 3?}??{17CCA71B-ECD7-11D0-B908-00A0C9223196}???:??? ???????:?????:????????????????????????ic??? ???????:???????????9????????R?N?????0?BT???)J??:???"?????????????????????;????Microsoft Audio Home Theater Effects?????(N??:??????????????????????????{62dc1a93-ae24-464c-a43e-452f824c4250}???????(N??:???????????????????????????(N??:???:???????????????????????:??????????????HD Audio Speaker 4?e?:????0??:???????s??2????????????????????????????:??? ???????9?????:?????:????"???????7??????????????????:???????????????:???:?????0?&???:??{4d36e97d-e325-11ce-bfc1-08002be10318}???????:??????????? ???????5?????:???????0????????????????????????????? ???????y?????????????0??????????????????????N??????????&??cpu.inf??????}?}?h???t?t?t???????????????????????:????
Reg HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Route ???i????{00000000-0000-0000-ffff-ffffffffffff}?.?????????????????3????N??i???7???????-????P??j?????????n????????p????????i??? ???????i?????i???????0????????????????????MEDIA???? ???????i????????????????????????????????????s??????????8??? ???????i???????????????????????????????f?????i?????i??? ???????i?????i???????0??L????????? ??????H9 ?????i???i???i????????? ???????i?????i???????0????????????&???????????????????????? ???????i?????i???????0????????????????????? ???????i???????????i?0????????'????????????????????(?? I????'??i???P?? E??@system32\DRIVERS\pci.sys,#1536;PCI HOST Bridge?n_???i?i???????i????? ???????i?????i???????0????????????&????????????????????n???????????i??? ???????i?????i???????0????????????????????? ???????i???????????i?0?????????????????????????????????????????????????????i?i????nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp????????.??i??????????Microsoft 6to4 Adapter???????h?i?????????h?????????????h?????i??????????????\\?\Root#*6TO4MP#0205#{ad498944-762f-11d0-8dcb-00c04fc3
Reg HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Export ???j?o???k??LegacyDriver?l??Boot Bus Extender????k?????k????? ???????k?????k???????0????????????????????LegacyDriver?????k??? ???????k???????????j?0????????2?????????????N??k???????????????i?i?k?k?k???k???????????????????????&?????k????? ???????k?????k???????0????????????????????? ???????k???????????j?0????????"????????????f?i?k?k?k?k?i???????????g?????s?4???????????????????????k?????k????? ???????k?????k???????0?????????????????????????k???????????k??.NTAMD64?t??? ???????k???????????j?0????????(????????????????k??????s?????N??????_??????????St?r?o 3D??????k????? ???????k?????k???????0????????????????????? ???????k???????????j?0???????????????????????????????????s????LegacyDriver????tunnel??00?????k????? ???????k?????k???????0????????????????????? ???????k???????????j?0????????$????????????k???k??? ???????j????????????????????????????????????Y????????k????? ???????k?????k???????0???????????????????????k???k???k???k???k???k???k???k???k????????????? ???????k???????????j?0?????????????????????????????5??????0F?
---- Files - GMER 1.0.15 ----
File C:\Users\Elodie Arnaud\AppData\Local\Temp\au-descriptor-uac-1.6.0_20-b76.xml 8857 bytes
File C:\Users\Elodie Arnaud\AppData\LocalLow\Sun\Java\jre1.6.0_20\gtapi.dll 79488 bytes executable
File C:\Users\Elodie Arnaud\AppData\LocalLow\Sun\Java\jre1.6.0_20\jre1.6.0_20-pfrom18.msi 1738752 bytes
File C:\Users\Elodie Arnaud\AppData\LocalLow\Sun\Java\jre1.6.0_20\sp1036.MST