Infecté par ouverture intempestive de publicite

Résolu/Fermé
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012 - 9 nov. 2012 à 10:02
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 - 16 nov. 2012 à 14:04
Bonjour,

Je suis en permanence infecté par de la pub
Aidez moi svp
merci !!!!


41 réponses

Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
9 nov. 2012 à 10:33
Salut,
Télécharge AdwCleaner (merci à Xplode)
Lance AdwCleaner
Clique sur le bouton [ Suppression ]
Patiente...
Poste le rapport qui apparait en fin de recherche.
(Le rapport est sauvegardé aussi sous C:\ AdwCleaner[SX].Txt)
==============================
Pour éviter d'avoir des publicités et des toolbars, tu peux lire <<< ceci >>>

0
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012
9 nov. 2012 à 10:43
# AdwCleaner v2.005 - Rapport créé le 09/11/2012 à 10:36:05
# Mis à jour le 14/10/2012 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : bio13 - BIO13-PC
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\bio13\Downloads\adwcleaner.exe
# Option [Suppression]


***** [Services] *****


***** [Fichiers / Dossiers] *****


***** [Registre] *****

Clé Supprimée : HKCU\Software\Tutorials

***** [Navigateurs] *****

-\\ Internet Explorer v9.0.8112.16421

[OK] Le registre ne contient aucune entrée illégitime.

-\\ Google Chrome v [Impossible d'obtenir la version]

Fichier : C:\Users\bio13\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] Le fichier ne contient aucune entrée illégitime.

*************************

AdwCleaner[R1].txt - [5776 octets] - [24/10/2012 07:13:13]
AdwCleaner[R2].txt - [5836 octets] - [24/10/2012 07:14:05]
AdwCleaner[S1].txt - [5627 octets] - [24/10/2012 07:21:31]
AdwCleaner[S2].txt - [1734 octets] - [24/10/2012 07:46:20]
AdwCleaner[S3].txt - [1196 octets] - [24/10/2012 09:28:42]
AdwCleaner[S4].txt - [1127 octets] - [09/11/2012 10:36:05]

########## EOF - C:\AdwCleaner[S4].txt - [1187 octets] ##########


merci
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
9 nov. 2012 à 10:48
Re,
Tu as fait passer ADWCleaner fois en mode suppression, poste
stp : C:\ AdwCleaner[S1].Txt
0
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012
9 nov. 2012 à 11:57
# AdwCleaner v2.005 - Rapport créé le 09/11/2012 à 11:08:08
# Mis à jour le 14/10/2012 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : bio13 - BIO13-PC
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\bio13\Desktop\adwcleaner.exe
# Option [Suppression]


***** [Services] *****


***** [Fichiers / Dossiers] *****


***** [Registre] *****

Clé Supprimée : HKCU\Software\Tutorials

***** [Navigateurs] *****

-\\ Internet Explorer v9.0.8112.16421

[OK] Le registre ne contient aucune entrée illégitime.

-\\ Google Chrome v [Impossible d'obtenir la version]

Fichier : C:\Users\bio13\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] Le fichier ne contient aucune entrée illégitime.

*************************

AdwCleaner[S4].txt - [1256 octets] - [09/11/2012 10:36:05]
AdwCleaner[S5].txt - [885 octets] - [09/11/2012 11:08:08]

########## EOF - C:\AdwCleaner[S5].txt - [944 octets] ##########
Merci
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
9 nov. 2012 à 13:27
Re,
* Télécharge puis enregistre sur le bureau de ton PC ZHPDiag
(de Nicolas Coolman) à partir : ce lien
* Lance-le, (Clic droit "exécuter en tant qu'administrateur" si tu es sous Vista/7)
* Clique sur l'icône en forme de loupe pour lancer le diagnostique
* Héberge le rapport ZHPDiag.txt de ton bureau sur : malekal.com ou cjoint.com
* Fais copier/coller le lien fourni dans ta prochaine réponse
* Aide ZHPDiag : <<< ICI >>>

0
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012
9 nov. 2012 à 15:16
Merci Fish66,

j'ai hebergé le rapport sur malekal et ci joint mais je n'ai pas eu de lien généré
merci
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
9 nov. 2012 à 15:18
Hébergement de rapport sur pjjoint.malekal.com


* Rends toi sur pjjoint.malekal.com
* Clique sur le bouton Parcourir
* Sélectionne le fichier que tu veux héberger et clique sur Ouvrir
* Clique sur le bouton Envoyer
* Un message de confirmation s'affiche (L'upload a réussi ! - Le lien à transmettre à vos correspondant pour visualiser le fichier est : https://pjjoint.malekal.com/files.php?id=df5ea299241015

* Copie le lien dans ta prochaine réponse.
0
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012
9 nov. 2012 à 16:35
meme chose sur cijoint.com, le lien ne s'affiche pas et efface le fichier selectionné.....
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
9 nov. 2012 à 16:41
Télécharge TDSSKiller sur ton Bureau.

# Décompresse le (clic droit sur le fichier et extraire) sur le bureau.
# dans le dossier crée, déplacer le fichier TDSSKiller.exe pour le mettre sur le Bureau
# Faire un double clic sur TDSSKiller.exe pour le lancer.
# Cliquer sur Start scan pour lancer l'analyse,

# Lorsque l'outil a terminé son travail d'inspection, si des nuisibles ("Malicious objects") ont été trouvés, vérifier que l'option Cure est sélectionnée,
# Si des objects suspects "Suspicious objects" ont été détectés, sur l'écran de demande de confirmation, laisser l'option sur Skip.
# Puis cliquer sur le bouton Continue.
# Attendre l'affichage du fichier rapport.
# Si l'outil a besoin d'un redémarrage pour finaliser le nettoyage, cliquer sur le bouton Reboot computer.
<<<<<< AIDE : ICI >>>>>>

Envoyer en réponse le rapport de TDSSKiller

Note : Il se trouve aussi en C:\TDSSKiller.Version_Date_Heure_log.txt
0
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012
9 nov. 2012 à 16:53
16:44:47.0824 4564 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
16:44:48.0242 4564 ============================================================
16:44:48.0242 4564 Current date / time: 2012/11/09 16:44:48.0242
16:44:48.0242 4564 SystemInfo:
16:44:48.0242 4564
16:44:48.0242 4564 OS Version: 6.1.7601 ServicePack: 1.0
16:44:48.0242 4564 Product type: Workstation
16:44:48.0242 4564 ComputerName: BIO13-PC
16:44:48.0242 4564 UserName: bio13
16:44:48.0242 4564 Windows directory: C:\Windows
16:44:48.0242 4564 System windows directory: C:\Windows
16:44:48.0242 4564 Running under WOW64
16:44:48.0242 4564 Processor architecture: Intel x64
16:44:48.0242 4564 Number of processors: 2
16:44:48.0242 4564 Page size: 0x1000
16:44:48.0242 4564 Boot type: Normal boot
16:44:48.0242 4564 ============================================================
16:44:49.0325 4564 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:44:49.0357 4564 ============================================================
16:44:49.0357 4564 \Device\Harddisk0\DR0:
16:44:49.0357 4564 MBR partitions:
16:44:49.0357 4564 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1B58800, BlocksNum 0x32000
16:44:49.0357 4564 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1B8A800, BlocksNum 0x395BD800
16:44:49.0357 4564 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x3B148000, BlocksNum 0x395BE5B0
16:44:49.0357 4564 ============================================================
16:44:49.0435 4564 C: <-> \Device\Harddisk0\DR0\Partition2
16:44:49.0559 4564 D: <-> \Device\Harddisk0\DR0\Partition3
16:44:49.0559 4564 ============================================================
16:44:49.0559 4564 Initialize success
16:44:49.0559 4564 ============================================================
16:47:47.0931 5028 ============================================================
16:47:47.0931 5028 Scan started
16:47:47.0931 5028 Mode: Manual;
16:47:47.0931 5028 ============================================================
16:47:50.0942 5028 ================ Scan system memory ========================
16:47:50.0942 5028 System memory - ok
16:47:50.0942 5028 ================ Scan services =============================
16:47:51.0878 5028 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
16:47:51.0878 5028 1394ohci - ok
16:47:51.0941 5028 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
16:47:51.0956 5028 ACPI - ok
16:47:52.0003 5028 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
16:47:52.0003 5028 AcpiPmi - ok
16:47:52.0251 5028 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:47:52.0254 5028 AdobeARMservice - ok
16:47:52.0531 5028 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:47:52.0534 5028 AdobeFlashPlayerUpdateSvc - ok
16:47:52.0596 5028 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
16:47:52.0604 5028 adp94xx - ok
16:47:52.0729 5028 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
16:47:52.0734 5028 adpahci - ok
16:47:52.0776 5028 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
16:47:52.0779 5028 adpu320 - ok
16:47:52.0809 5028 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
16:47:52.0831 5028 AeLookupSvc - ok
16:47:52.0922 5028 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
16:47:52.0929 5028 AFD - ok
16:47:52.0974 5028 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
16:47:52.0977 5028 agp440 - ok
16:47:53.0042 5028 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
16:47:53.0042 5028 ALG - ok
16:47:53.0097 5028 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
16:47:53.0097 5028 aliide - ok
16:47:53.0127 5028 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
16:47:53.0129 5028 amdide - ok
16:47:53.0182 5028 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
16:47:53.0184 5028 AmdK8 - ok
16:47:53.0197 5028 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
16:47:53.0199 5028 AmdPPM - ok
16:47:53.0237 5028 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
16:47:53.0239 5028 amdsata - ok
16:47:53.0259 5028 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
16:47:53.0264 5028 amdsbs - ok
16:47:53.0292 5028 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
16:47:53.0292 5028 amdxata - ok
16:47:53.0332 5028 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
16:47:53.0334 5028 AppID - ok
16:47:53.0382 5028 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
16:47:53.0382 5028 AppIDSvc - ok
16:47:53.0428 5028 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
16:47:53.0428 5028 Appinfo - ok
16:47:53.0769 5028 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
16:47:53.0769 5028 Apple Mobile Device - ok
16:47:53.0800 5028 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
16:47:53.0815 5028 arc - ok
16:47:53.0831 5028 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
16:47:53.0831 5028 arcsas - ok
16:47:53.0878 5028 [ 55142B4F7A7E4C9C151C6000A6BF7809 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
16:47:53.0878 5028 aswFsBlk - ok
16:47:53.0940 5028 [ AA9FDE3D630160B47DAB21BF8250111C ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
16:47:53.0940 5028 aswMonFlt - ok
16:47:54.0018 5028 [ 2A6675C24DF5159A9506CD13ECE5ABE9 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
16:47:54.0018 5028 aswRdr - ok
16:47:54.0549 5028 [ 4E38475BDB51A867CCBA7D5DF7FDFC0C ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
16:47:54.0652 5028 aswSnx - ok
16:47:54.0808 5028 [ 9A49D80D65451AF22913AEF772CC3DA9 ] aswSP C:\Windows\system32\drivers\aswSP.sys
16:47:54.0839 5028 aswSP - ok
16:47:55.0027 5028 [ C3EC420451AC5300A22190AE38418FBA ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
16:47:55.0058 5028 aswTdi - ok
16:47:55.0136 5028 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
16:47:55.0167 5028 AsyncMac - ok
16:47:55.0261 5028 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
16:47:55.0292 5028 atapi - ok
16:47:55.0692 5028 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:47:55.0723 5028 AudioEndpointBuilder - ok
16:47:55.0754 5028 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
16:47:55.0770 5028 AudioSrv - ok
16:47:56.0607 5028 [ 04AC21E821F259845BD7367CEE057290 ] avast! Antivirus C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
16:47:56.0638 5028 avast! Antivirus - ok
16:47:57.0293 5028 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
16:47:57.0293 5028 AxInstSV - ok
16:47:57.0589 5028 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
16:47:57.0633 5028 b06bdrv - ok
16:47:57.0851 5028 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
16:47:57.0883 5028 b57nd60a - ok
16:47:58.0132 5028 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
16:47:58.0195 5028 BDESVC - ok
16:47:58.0304 5028 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
16:47:58.0319 5028 Beep - ok
16:47:58.0875 5028 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
16:47:58.0891 5028 BFE - ok
16:47:59.0109 5028 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
16:47:59.0109 5028 BITS - ok
16:47:59.0187 5028 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
16:47:59.0203 5028 blbdrive - ok
16:47:59.0312 5028 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
16:47:59.0312 5028 Bonjour Service - ok
16:47:59.0421 5028 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
16:47:59.0421 5028 bowser - ok
16:47:59.0484 5028 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
16:47:59.0484 5028 BrFiltLo - ok
16:47:59.0531 5028 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
16:47:59.0531 5028 BrFiltUp - ok
16:47:59.0577 5028 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
16:47:59.0577 5028 Browser - ok
16:47:59.0658 5028 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
16:47:59.0658 5028 Brserid - ok
16:47:59.0674 5028 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
16:47:59.0674 5028 BrSerWdm - ok
16:47:59.0697 5028 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
16:47:59.0697 5028 BrUsbMdm - ok
16:47:59.0712 5028 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
16:47:59.0712 5028 BrUsbSer - ok
16:47:59.0743 5028 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
16:47:59.0743 5028 BTHMODEM - ok
16:47:59.0790 5028 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
16:47:59.0790 5028 bthserv - ok
16:47:59.0821 5028 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
16:47:59.0821 5028 cdfs - ok
16:47:59.0915 5028 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\drivers\cdrom.sys
16:47:59.0915 5028 cdrom - ok
16:48:00.0040 5028 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
16:48:00.0040 5028 CertPropSvc - ok
16:48:00.0071 5028 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
16:48:00.0071 5028 circlass - ok
16:48:00.0165 5028 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
16:48:00.0165 5028 CLFS - ok
16:48:00.0367 5028 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:48:00.0367 5028 clr_optimization_v2.0.50727_32 - ok
16:48:00.0633 5028 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:48:00.0633 5028 clr_optimization_v2.0.50727_64 - ok
16:48:01.0033 5028 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:48:01.0204 5028 clr_optimization_v4.0.30319_32 - ok
16:48:01.0282 5028 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:48:01.0282 5028 clr_optimization_v4.0.30319_64 - ok
16:48:01.0298 5028 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
16:48:01.0298 5028 CmBatt - ok
16:48:01.0313 5028 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
16:48:01.0313 5028 cmdide - ok
16:48:01.0345 5028 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
16:48:01.0360 5028 CNG - ok
16:48:01.0376 5028 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
16:48:01.0376 5028 Compbatt - ok
16:48:01.0438 5028 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
16:48:01.0438 5028 CompositeBus - ok
16:48:01.0469 5028 COMSysApp - ok
16:48:01.0485 5028 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
16:48:01.0485 5028 crcdisk - ok
16:48:01.0579 5028 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\Windows\system32\cryptsvc.dll
16:48:01.0610 5028 CryptSvc - ok
16:48:01.0669 5028 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
16:48:01.0679 5028 DcomLaunch - ok
16:48:01.0695 5028 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
16:48:01.0695 5028 defragsvc - ok
16:48:01.0742 5028 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
16:48:01.0757 5028 DfsC - ok
16:48:01.0835 5028 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
16:48:01.0835 5028 Dhcp - ok
16:48:01.0866 5028 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
16:48:01.0866 5028 discache - ok
16:48:01.0929 5028 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
16:48:01.0929 5028 Disk - ok
16:48:02.0007 5028 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
16:48:02.0007 5028 Dnscache - ok
16:48:02.0085 5028 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
16:48:02.0085 5028 dot3svc - ok
16:48:02.0163 5028 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
16:48:02.0163 5028 DPS - ok
16:48:02.0194 5028 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
16:48:02.0194 5028 drmkaud - ok
16:48:02.0241 5028 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
16:48:02.0256 5028 DXGKrnl - ok
16:48:02.0319 5028 [ 50AD8FC1DC800FF36087994C8F7FDFF2 ] e1yexpress C:\Windows\system32\DRIVERS\e1y60x64.sys
16:48:02.0319 5028 e1yexpress - ok
16:48:02.0381 5028 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
16:48:02.0381 5028 EapHost - ok
16:48:03.0124 5028 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
16:48:03.0202 5028 ebdrv - ok
16:48:03.0234 5028 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
16:48:03.0234 5028 EFS - ok
16:48:03.0608 5028 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
16:48:03.0608 5028 ehRecvr - ok
16:48:03.0670 5028 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
16:48:03.0670 5028 ehSched - ok
16:48:03.0899 5028 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
16:48:03.0946 5028 elxstor - ok
16:48:04.0008 5028 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
16:48:04.0008 5028 ErrDev - ok
16:48:04.0242 5028 [ DF96C3CD6AE15F6D0A6BCB70F9C1E88D ] esgiguard C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys
16:48:04.0242 5028 esgiguard - ok
16:48:04.0476 5028 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
16:48:04.0538 5028 EventSystem - ok
16:48:04.0601 5028 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
16:48:04.0601 5028 exfat - ok
16:48:04.0648 5028 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
16:48:04.0663 5028 fastfat - ok
16:48:04.0897 5028 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
16:48:04.0912 5028 Fax - ok
16:48:04.0959 5028 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
16:48:04.0959 5028 fdc - ok
16:48:05.0068 5028 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
16:48:05.0068 5028 fdPHost - ok
16:48:05.0349 5028 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
16:48:05.0349 5028 FDResPub - ok
16:48:05.0396 5028 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
16:48:05.0396 5028 FileInfo - ok
16:48:05.0427 5028 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
16:48:05.0427 5028 Filetrace - ok
16:48:05.0474 5028 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
16:48:05.0489 5028 flpydisk - ok
16:48:05.0614 5028 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
16:48:05.0630 5028 FltMgr - ok
16:48:05.0843 5028 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\Windows\system32\FntCache.dll
16:48:05.0858 5028 FontCache - ok
16:48:05.0983 5028 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:48:05.0983 5028 FontCache3.0.0.0 - ok
16:48:06.0030 5028 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
16:48:06.0030 5028 FsDepends - ok
16:48:06.0108 5028 [ B16B626996C74B564005BA855C5DEE90 ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
16:48:06.0108 5028 fssfltr - ok
16:48:06.0342 5028 [ 812E1BA5C52A78F13EA6AA10DF708B1D ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
16:48:06.0357 5028 fsssvc - ok
16:48:06.0389 5028 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
16:48:06.0389 5028 Fs_Rec - ok
16:48:06.0607 5028 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
16:48:06.0607 5028 fvevol - ok
16:48:06.0685 5028 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
16:48:06.0685 5028 gagp30kx - ok
16:48:06.0757 5028 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
16:48:06.0789 5028 GEARAspiWDM - ok
16:48:06.0913 5028 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
16:48:06.0929 5028 gpsvc - ok
16:48:07.0288 5028 [ 816FD5A6F3C2F3D600900096632FC60E ] Greg_Service C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
16:48:07.0303 5028 Greg_Service - ok
16:48:07.0350 5028 [ E9FF64AEBCC87F9A5A2B70382DD6413B ] GTUHSBUS C:\Windows\system32\DRIVERS\gtuhsbus.sys
16:48:07.0350 5028 GTUHSBUS - ok
16:48:07.0397 5028 [ E828BF42D350A7ABB6C4C29BDBBCFB80 ] GTUHSNDISIPXP C:\Windows\system32\DRIVERS\gtuhs51.sys
16:48:07.0413 5028 GTUHSNDISIPXP - ok
16:48:07.0522 5028 [ 4E82F226B7CB482188FB61892727EFA3 ] GTUHSSER C:\Windows\system32\DRIVERS\gtuhsser.sys
16:48:07.0522 5028 GTUHSSER - ok
16:48:07.0828 5028 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:48:07.0828 5028 gupdate - ok
16:48:07.0953 5028 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:48:07.0953 5028 gupdatem - ok
16:48:08.0062 5028 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
16:48:08.0062 5028 gusvc - ok
16:48:08.0125 5028 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
16:48:08.0125 5028 hcw85cir - ok
16:48:08.0265 5028 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:48:08.0265 5028 HdAudAddService - ok
16:48:08.0359 5028 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
16:48:08.0374 5028 HDAudBus - ok
16:48:08.0405 5028 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
16:48:08.0405 5028 HidBatt - ok
16:48:08.0421 5028 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
16:48:08.0437 5028 HidBth - ok
16:48:08.0452 5028 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
16:48:08.0452 5028 HidIr - ok
16:48:08.0515 5028 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
16:48:08.0515 5028 hidserv - ok
16:48:08.0639 5028 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys
16:48:08.0639 5028 HidUsb - ok
16:48:08.0717 5028 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
16:48:08.0717 5028 hkmsvc - ok
16:48:08.0808 5028 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:48:08.0823 5028 HomeGroupListener - ok
16:48:08.0901 5028 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:48:08.0901 5028 HomeGroupProvider - ok
16:48:08.0995 5028 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
16:48:08.0995 5028 HpSAMD - ok
16:48:09.0213 5028 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
16:48:09.0229 5028 HTTP - ok
16:48:09.0260 5028 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
16:48:09.0276 5028 hwpolicy - ok
16:48:09.0416 5028 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
16:48:09.0416 5028 i8042prt - ok
16:48:09.0541 5028 [ 7548066DF68A8A1A56B043359F915F37 ] IAANTMON C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
16:48:09.0541 5028 IAANTMON - ok
16:48:09.0697 5028 [ 1D004CB1DA6323B1F55CAEF7F94B61D9 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
16:48:09.0697 5028 iaStor - ok
16:48:09.0832 5028 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
16:48:09.0863 5028 iaStorV - ok
16:48:10.0144 5028 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:48:10.0159 5028 idsvc - ok
16:48:10.0596 5028 [ 59E3E4D80CDFBBC61BF7D9B7CC3BC993 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
16:48:11.0012 5028 igfx - ok
16:48:11.0059 5028 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
16:48:11.0059 5028 iirsp - ok
16:48:11.0277 5028 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
16:48:11.0293 5028 IKEEXT - ok
16:48:11.0698 5028 [ BC64B75E8E0A0B8982AB773483164E72 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
16:48:11.0729 5028 IntcAzAudAddService - ok
16:48:11.0802 5028 [ D485D3BD3E2179AA86853A182F70699F ] IntcHdmiAddService C:\Windows\system32\drivers\IntcHdmi.sys
16:48:11.0833 5028 IntcHdmiAddService - ok
16:48:11.0880 5028 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
16:48:11.0895 5028 intelide - ok
16:48:12.0005 5028 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
16:48:12.0005 5028 intelppm - ok
16:48:12.0051 5028 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
16:48:12.0051 5028 IPBusEnum - ok
16:48:12.0145 5028 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:48:12.0145 5028 IpFilterDriver - ok
16:48:12.0270 5028 [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
16:48:12.0317 5028 iphlpsvc - ok
16:48:12.0379 5028 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
16:48:12.0379 5028 IPMIDRV - ok
16:48:12.0426 5028 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
16:48:12.0426 5028 IPNAT - ok
16:48:12.0857 5028 [ 6E50CFA46527B39015B750AAD161C5CC ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
16:48:12.0873 5028 iPod Service - ok
16:48:12.0951 5028 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
16:48:12.0951 5028 IRENUM - ok
16:48:13.0029 5028 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
16:48:13.0044 5028 isapnp - ok
16:48:13.0138 5028 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
16:48:13.0138 5028 iScsiPrt - ok
16:48:13.0263 5028 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
16:48:13.0263 5028 kbdclass - ok
16:48:13.0325 5028 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
16:48:13.0325 5028 kbdhid - ok
16:48:13.0372 5028 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
16:48:13.0372 5028 KeyIso - ok
16:48:13.0450 5028 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
16:48:13.0465 5028 KSecDD - ok
16:48:13.0559 5028 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
16:48:13.0559 5028 KSecPkg - ok
16:48:13.0653 5028 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
16:48:13.0668 5028 ksthunk - ok
16:48:13.0731 5028 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
16:48:13.0746 5028 KtmRm - ok
16:48:13.0837 5028 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
16:48:13.0837 5028 LanmanServer - ok
16:48:13.0977 5028 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:48:13.0993 5028 LanmanWorkstation - ok
16:48:14.0055 5028 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
16:48:14.0055 5028 lltdio - ok
16:48:14.0149 5028 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
16:48:14.0149 5028 lltdsvc - ok
16:48:14.0196 5028 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
16:48:14.0196 5028 lmhosts - ok
16:48:14.0461 5028 [ 7109163D8027076D2680CFC4E80E2A28 ] LMIGuardianSvc C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
16:48:14.0461 5028 LMIGuardianSvc - ok
16:48:14.0648 5028 [ 0317335B15FF3BDA8E10197E3434CFC0 ] LMIInfo C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys
16:48:14.0648 5028 LMIInfo - ok
16:48:14.0788 5028 [ 8054CE1FC8B417691960D00F931516A7 ] LMIMaint C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe
16:48:14.0788 5028 LMIMaint - ok
16:48:14.0894 5028 [ 413ECDCFAD9A82804D3674C8D7EEC24E ] lmimirr C:\Windows\system32\DRIVERS\lmimirr.sys
16:48:14.0894 5028 lmimirr - ok
16:48:14.0957 5028 LMIRfsClientNP - ok
16:48:15.0066 5028 [ C57D3FAA50E6F395759FFB7C709BD944 ] LMIRfsDriver C:\Windows\system32\drivers\LMIRfsDriver.sys
16:48:15.0066 5028 LMIRfsDriver - ok
16:48:15.0160 5028 [ D3760BC17E1755091B7120CF32DBF56B ] LogMeIn C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
16:48:15.0160 5028 LogMeIn - ok
16:48:15.0206 5028 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
16:48:15.0222 5028 LSI_FC - ok
16:48:15.0300 5028 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
16:48:15.0300 5028 LSI_SAS - ok
16:48:15.0362 5028 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
16:48:15.0362 5028 LSI_SAS2 - ok
16:48:15.0440 5028 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
16:48:15.0440 5028 LSI_SCSI - ok
16:48:15.0472 5028 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
16:48:15.0472 5028 luafv - ok
16:48:15.0706 5028 [ A8FE8F2783B2929B56F5370A89356CE9 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
16:48:15.0706 5028 MBAMProtector - ok
16:48:16.0012 5028 [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
16:48:16.0012 5028 MBAMScheduler - ok
16:48:16.0277 5028 [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
16:48:16.0277 5028 MBAMService - ok
16:48:16.0324 5028 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
16:48:16.0340 5028 Mcx2Svc - ok
16:48:16.0386 5028 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
16:48:16.0386 5028 megasas - ok
16:48:16.0464 5028 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
16:48:16.0464 5028 MegaSR - ok
16:48:16.0620 5028 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
16:48:16.0620 5028 MMCSS - ok
16:48:16.0683 5028 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
16:48:16.0698 5028 Modem - ok
16:48:16.0745 5028 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
16:48:16.0745 5028 monitor - ok
16:48:16.0776 5028 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\drivers\mouclass.sys
16:48:16.0776 5028 mouclass - ok
16:48:16.0896 5028 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
16:48:16.0896 5028 mouhid - ok
16:48:16.0958 5028 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
16:48:16.0958 5028 mountmgr - ok
16:48:17.0083 5028 [ DAE3C509F33059BC4D48A8925F476FB4 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:48:17.0083 5028 MozillaMaintenance - ok
16:48:17.0145 5028 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
16:48:17.0145 5028 mpio - ok
16:48:17.0286 5028 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
16:48:17.0286 5028 mpsdrv - ok
16:48:17.0566 5028 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
16:48:17.0582 5028 MpsSvc - ok
16:48:17.0754 5028 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
16:48:17.0754 5028 MRxDAV - ok
16:48:17.0816 5028 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
16:48:17.0816 5028 mrxsmb - ok
16:48:17.0888 5028 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:48:17.0904 5028 mrxsmb10 - ok
16:48:17.0935 5028 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:48:17.0935 5028 mrxsmb20 - ok
16:48:17.0982 5028 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
16:48:17.0982 5028 msahci - ok
16:48:18.0044 5028 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
16:48:18.0044 5028 msdsm - ok
16:48:18.0107 5028 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
16:48:18.0122 5028 MSDTC - ok
16:48:18.0310 5028 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
16:48:18.0310 5028 Msfs - ok
16:48:18.0419 5028 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
16:48:18.0419 5028 mshidkmdf - ok
16:48:18.0512 5028 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
16:48:18.0528 5028 msisadrv - ok
16:48:18.0653 5028 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
16:48:18.0653 5028 MSiSCSI - ok
16:48:18.0653 5028 msiserver - ok
16:48:18.0746 5028 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
16:48:18.0746 5028 MSKSSRV - ok
16:48:18.0910 5028 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
16:48:18.0912 5028 MSPCLOCK - ok
16:48:19.0024 5028 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
16:48:19.0024 5028 MSPQM - ok
16:48:19.0165 5028 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
16:48:19.0196 5028 MsRPC - ok
16:48:19.0227 5028 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
16:48:19.0227 5028 mssmbios - ok
16:48:19.0383 5028 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
16:48:19.0383 5028 MSTEE - ok
16:48:19.0445 5028 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
16:48:19.0445 5028 MTConfig - ok
16:48:19.0492 5028 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
16:48:19.0508 5028 Mup - ok
16:48:19.0586 5028 [ 6FFECC25B39DC7652A0CEC0ADA9DB589 ] mwlPSDFilter C:\Windows\system32\DRIVERS\mwlPSDFilter.sys
16:48:19.0586 5028 mwlPSDFilter - ok
16:48:19.0664 5028 [ 0BEFE32CA56D6EE89D58175725596A85 ] mwlPSDNServ C:\Windows\system32\DRIVERS\mwlPSDNServ.sys
16:48:19.0679 5028 mwlPSDNServ - ok
16:48:19.0726 5028 [ D43BC633B8660463E446E28E14A51262 ] mwlPSDVDisk C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys
16:48:19.0726 5028 mwlPSDVDisk - ok
16:48:19.0939 5028 [ 0F5FAAC852DB4C340B7A2F187E3358B8 ] MWLService C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe
16:48:20.0095 5028 MWLService - ok
16:48:20.0267 5028 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
16:48:20.0329 5028 napagent - ok
16:48:20.0594 5028 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
16:48:20.0610 5028 NativeWifiP - ok
16:48:20.0828 5028 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
16:48:20.0844 5028 NDIS - ok
16:48:20.0891 5028 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
16:48:20.0891 5028 NdisCap - ok
16:48:20.0947 5028 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
16:48:20.0947 5028 NdisTapi - ok
16:48:21.0025 5028 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
16:48:21.0025 5028 Ndisuio - ok
16:48:21.0228 5028 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
16:48:21.0369 5028 NdisWan - ok
16:48:21.0431 5028 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
16:48:21.0431 5028 NDProxy - ok
16:48:21.0852 5028 [ B90E093E7A7250906F1054418B5339C0 ] Nero BackItUp Scheduler 4.0 C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
16:48:21.0868 5028 Nero BackItUp Scheduler 4.0 - ok
16:48:21.0915 5028 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
16:48:21.0930 5028 NetBIOS - ok
16:48:21.0989 5028 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
16:48:22.0005 5028 NetBT - ok
16:48:22.0036 5028 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
16:48:22.0036 5028 Netlogon - ok
16:48:22.0177 5028 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
16:48:22.0177 5028 Netman - ok
16:48:22.0317 5028 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
16:48:22.0348 5028 netprofm - ok
16:48:22.0645 5028 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:48:22.0645 5028 NetTcpPortSharing - ok
16:48:22.0691 5028 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
16:48:22.0707 5028 nfrd960 - ok
16:48:23.0778 5028 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll
16:48:23.0793 5028 NlaSvc - ok
16:48:23.0809 5028 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
16:48:23.0809 5028 Npfs - ok
16:48:23.0856 5028 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
16:48:23.0856 5028 nsi - ok
16:48:23.0918 5028 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
16:48:23.0918 5028 nsiproxy - ok
16:48:24.0243 5028 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
16:48:24.0258 5028 Ntfs - ok
16:48:24.0352 5028 [ BD691091AC7D9713D8F0B07C6B099E6C ] NTI IScheduleSvc C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
16:48:24.0352 5028 NTI IScheduleSvc - ok
16:48:24.0399 5028 [ 64DDD0DEE976302F4BD93E5EFCC2F013 ] NTIDrvr C:\Windows\system32\drivers\NTIDrvr.sys
16:48:24.0414 5028 NTIDrvr - ok
16:48:24.0446 5028 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
16:48:24.0446 5028 Null - ok
16:48:24.0555 5028 [ CB599955CE2CE9694721562F9481CD84 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
16:48:24.0555 5028 NVHDA - ok
16:48:25.0953 5028 [ D7A2CD1D76E6CC996A0852D566AF2F73 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
16:48:26.0228 5028 nvlddmkm - ok
16:48:26.0322 5028 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
16:48:26.0338 5028 nvraid - ok
16:48:26.0384 5028 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
16:48:26.0712 5028 nvstor - ok
16:48:27.0018 5028 [ 59DD481E0063F8F7EA8B9F149FCACF32 ] nvsvc C:\Windows\system32\nvvsvc.exe
16:48:27.0143 5028 nvsvc - ok
16:48:27.0330 5028 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
16:48:27.0330 5028 nv_agp - ok
16:48:27.0674 5028 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
16:48:27.0674 5028 ohci1394 - ok
16:48:28.0120 5028 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:48:28.0120 5028 ose - ok
16:48:28.0214 5028 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
16:48:28.0230 5028 p2pimsvc - ok
16:48:28.0370 5028 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
16:48:28.0386 5028 p2psvc - ok
16:48:28.0448 5028 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
16:48:28.0448 5028 Parport - ok
16:48:28.0510 5028 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
16:48:28.0526 5028 partmgr - ok
16:48:28.0604 5028 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
16:48:28.0620 5028 PcaSvc - ok
16:48:28.0729 5028 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
16:48:28.0729 5028 pci - ok
16:48:28.0822 5028 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
16:48:28.0822 5028 pciide - ok
16:48:28.0854 5028 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
16:48:28.0869 5028 pcmcia - ok
16:48:28.0916 5028 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
16:48:28.0916 5028 pcw - ok
16:48:29.0082 5028 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
16:48:29.0113 5028 PEAUTH - ok
16:48:29.0269 5028 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
16:48:29.0269 5028 PerfHost - ok
16:48:29.0503 5028 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
16:48:29.0534 5028 pla - ok
16:48:29.0706 5028 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
16:48:29.0722 5028 PlugPlay - ok
16:48:29.0878 5028 [ F485770EEC8959684CC4C4786B63C06C ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
16:48:29.0878 5028 Pml Driver HPZ12 - ok
16:48:29.0940 5028 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
16:48:29.0940 5028 PNRPAutoReg - ok
16:48:30.0034 5028 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
16:48:30.0052 5028 PNRPsvc - ok
16:48:30.0171 5028 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
16:48:30.0187 5028 PolicyAgent - ok
16:48:30.0311 5028 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
16:48:30.0327 5028 Power - ok
16:48:30.0389 5028 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
16:48:30.0389 5028 PptpMiniport - ok
16:48:30.0467 5028 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
16:48:30.0748 5028 Processor - ok
16:48:30.0935 5028 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
16:48:30.0935 5028 ProfSvc - ok
16:48:31.0086 5028 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
16:48:31.0101 5028 ProtectedStorage - ok
16:48:31.0741 5028 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
16:48:31.0757 5028 Psched - ok
16:48:31.0991 5028 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
16:48:32.0157 5028 ql2300 - ok
16:48:32.0469 5028 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
16:48:32.0469 5028 ql40xx - ok
16:48:32.0609 5028 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
16:48:32.0609 5028 QWAVE - ok
16:48:32.0656 5028 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
16:48:32.0656 5028 QWAVEdrv - ok
16:48:32.0687 5028 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
16:48:32.0687 5028 RasAcd - ok
16:48:32.0765 5028 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
16:48:32.0765 5028 RasAgileVpn - ok
16:48:32.0827 5028 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
16:48:32.0827 5028 RasAuto - ok
16:48:32.0859 5028 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
16:48:32.0874 5028 Rasl2tp - ok
16:48:32.0952 5028 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
16:48:32.0952 5028 RasMan - ok
16:48:33.0015 5028 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
16:48:33.0030 5028 RasPppoe - ok
16:48:33.0118 5028 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
16:48:33.0118 5028 RasSstp - ok
16:48:33.0181 5028 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
16:48:33.0181 5028 rdbss - ok
16:48:33.0227 5028 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
16:48:33.0227 5028 rdpbus - ok
16:48:33.0259 5028 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
16:48:33.0259 5028 RDPCDD - ok
16:48:33.0352 5028 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
16:48:33.0352 5028 RDPENCDD - ok
16:48:33.0399 5028 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
16:48:33.0399 5028 RDPREFMP - ok
16:48:33.0477 5028 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
16:48:33.0493 5028 RDPWD - ok
16:48:33.0602 5028 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
16:48:33.0602 5028 rdyboost - ok
16:48:33.0695 5028 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
16:48:33.0711 5028 RemoteAccess - ok
16:48:33.0789 5028 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
16:48:33.0789 5028 RemoteRegistry - ok
16:48:33.0851 5028 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
16:48:33.0851 5028 RpcEptMapper - ok
16:48:33.0914 5028 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
16:48:33.0914 5028 RpcLocator - ok
16:48:34.0007 5028 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
16:48:34.0023 5028 RpcSs - ok
16:48:34.0111 5028 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
16:48:34.0111 5028 rspndr - ok
16:48:34.0142 5028 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
16:48:34.0158 5028 SamSs - ok
16:48:34.0220 5028 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
16:48:34.0236 5028 sbp2port - ok
16:48:34.0298 5028 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
16:48:34.0298 5028 SCardSvr - ok
16:48:34.0361 5028 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
16:48:34.0361 5028 scfilter - ok
16:48:34.0626 5028 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
16:48:34.0688 5028 Schedule - ok
16:48:34.0751 5028 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
16:48:34.0751 5028 SCPolicySvc - ok
16:48:34.0891 5028 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
16:48:34.0907 5028 SDRSVC - ok
16:48:35.0000 5028 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
16:48:35.0000 5028 secdrv - ok
16:48:35.0063 5028 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
16:48:35.0078 5028 seclogon - ok
16:48:35.0109 5028 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
16:48:35.0130 5028 SENS - ok
16:48:35.0171 5028 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
16:48:35.0187 5028 SensrSvc - ok
16:48:35.0249 5028 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
16:48:35.0249 5028 Serenum - ok
16:48:35.0343 5028 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
16:48:35.0358 5028 Serial - ok
16:48:35.0405 5028 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
16:48:35.0405 5028 sermouse - ok
16:48:35.0452 5028 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
16:48:35.0452 5028 SessionEnv - ok
16:48:35.0483 5028 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
16:48:35.0483 5028 sffdisk - ok
16:48:35.0514 5028 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
16:48:35.0514 5028 sffp_mmc - ok
16:48:35.0561 5028 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
16:48:35.0561 5028 sffp_sd - ok
16:48:35.0592 5028 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
16:48:35.0592 5028 sfloppy - ok
16:48:35.0686 5028 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
16:48:35.0702 5028 SharedAccess - ok
16:48:35.0811 5028 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:48:35.0826 5028 ShellHWDetection - ok
16:48:35.0873 5028 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
16:48:35.0873 5028 SiSRaid2 - ok
16:48:35.0920 5028 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
16:48:35.0920 5028 SiSRaid4 - ok
16:48:35.0998 5028 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
16:48:35.0998 5028 Smb - ok
16:48:36.0092 5028 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
16:48:36.0092 5028 SNMPTRAP - ok
16:48:36.0164 5028 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
16:48:36.0164 5028 spldr - ok
16:48:36.0336 5028 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
16:48:36.0351 5028 Spooler - ok
16:48:36.0866 5028 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
16:48:36.0975 5028 sppsvc - ok
16:48:37.0069 5028 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
16:48:37.0069 5028 sppuinotify - ok
16:48:37.0172 5028 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
16:48:37.0172 5028 srv - ok
16:48:37.0531 5028 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
16:48:37.0531 5028 srv2 - ok
16:48:37.0562 5028 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
16:48:37.0562 5028 srvnet - ok
16:48:37.0656 5028 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
16:48:37.0656 5028 SSDPSRV - ok
16:48:37.0718 5028 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
16:48:37.0734 5028 SstpSvc - ok
16:48:37.0828 5028 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
16:48:37.0828 5028 stexstor - ok
16:48:37.0937 5028 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
16:48:37.0952 5028 stisvc - ok
16:48:38.0446 5028 [ D09B976717F364230FE0EEC80B85E0C3 ] supt4pc_fr_16 C:\Users\bio13\AppData\Local\tuto4pc_fr_16\supt4pc_fr_16.exe
16:48:38.0462 5028 supt4pc_fr_16 - ok
16:48:38.0508 5028 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
16:48:38.0524 5028 swenum - ok
16:48:38.0571 5028 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
16:48:38.0586 5028 swprv - ok
16:48:38.0930 5028 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
16:48:38.0992 5028 SysMain - ok
16:48:39.0023 5028 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
16:48:39.0054 5028 TabletInputService - ok
16:48:39.0117 5028 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
16:48:39.0132 5028 TapiSrv - ok
16:48:39.0189 5028 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
16:48:39.0194 5028 TBS - ok
16:48:39.0740 5028 [ F782CAD3CEDBB3F9FFE3BF2775D92DDC ] Tcpip C:\Windows\system32\drivers\tcpip.sys
16:48:39.0803 5028 Tcpip - ok
16:48:39.0865 5028 [ F782CAD3CEDBB3F9FFE3BF2775D92DDC ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
16:48:39.0881 5028 TCPIP6 - ok
16:48:39.0943 5028 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
16:48:39.0959 5028 tcpipreg - ok
16:48:40.0052 5028 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
16:48:40.0052 5028 TDPIPE - ok
16:48:40.0099 5028 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
16:48:40.0099 5028 TDTCP - ok
16:48:40.0200 5028 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
16:48:40.0203 5028 tdx - ok
16:48:40.0905 5028 [ A4D2CE94B028EF1E437CF4AC3D8FF26C ] TeamViewer7 C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
16:48:40.0983 5028 TeamViewer7 - ok
16:48:40.0998 5028 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
16:48:40.0998 5028 TermDD - ok
16:48:41.0076 5028 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
16:48:41.0092 5028 TermService - ok
16:48:41.0139 5028 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
16:48:41.0139 5028 Themes - ok
16:48:41.0213 5028 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
16:48:41.0213 5028 THREADORDER - ok
16:48:41.0229 5028 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
16:48:41.0245 5028 TrkWks - ok
16:48:41.0354 5028 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
16:48:41.0354 5028 TrustedInstaller - ok
16:48:41.0463 5028 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
16:48:41.0463 5028 tssecsrv - ok
16:48:41.0557 5028 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
16:48:41.0557 5028 TsUsbFlt - ok
16:48:41.0666 5028 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
16:48:41.0666 5028 tunnel - ok
16:48:41.0728 5028 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
16:48:41.0728 5028 uagp35 - ok
16:48:41.0759 5028 [ 2E22C1FD397A5A9FFEF55E9D1FC96C00 ] UBHelper C:\Windows\system32\drivers\UBHelper.sys
16:48:41.0759 5028 UBHelper - ok
16:48:42.0025 5028 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
16:48:42.0118 5028 udfs - ok
16:48:42.0181 5028 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
16:48:42.0181 5028 UI0Detect - ok
16:48:42.0212 5028 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
16:48:42.0214 5028 uliagpkx - ok
16:48:42.0292 5028 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
16:48:42.0307 5028 umbus - ok
16:48:42.0354 5028 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
16:48:42.0354 5028 UmPass - ok
16:48:42.0573 5028 [ 70DDE3A86DBEB1D6C3C30AD687B1877A ] Updater Service C:\Program Files\Acer\Acer Updater\UpdaterService.exe
16:48:42.0573 5028 Updater Service - ok
16:48:42.0651 5028 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
16:48:42.0651 5028 upnphost - ok
16:48:42.0744 5028 [ AF1B9474D67897D0C2CFF58E0ACEACCC ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
16:48:42.0744 5028 USBAAPL64 - ok
16:48:42.0822 5028 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
16:48:42.0838 5028 usbccgp - ok
16:48:42.0947 5028 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
16:48:42.0947 5028 usbcir - ok
16:48:43.0009 5028 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
16:48:43.0009 5028 usbehci - ok
16:48:43.0134 5028 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
16:48:43.0134 5028 usbhub - ok
16:48:43.0181 5028 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
16:48:43.0181 5028 usbohci - ok
16:48:43.0285 5028 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
16:48:43.0285 5028 usbprint - ok
16:48:43.0378 5028 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
16:48:43.0378 5028 usbscan - ok
16:48:43.0441 5028 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:48:43.0441 5028 USBSTOR - ok
16:48:43.0519 5028 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
16:48:43.0519 5028 usbuhci - ok
16:48:43.0643 5028 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
16:48:43.0643 5028 UxSms - ok
16:48:43.0675 5028 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
16:48:43.0690 5028 VaultSvc - ok
16:48:43.0753 5028 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
16:48:43.0753 5028 vdrvroot - ok
16:48:43.0909 5028 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
16:48:43.0924 5028 vds - ok
16:48:43.0987 5028 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
16:48:43.0987 5028 vga - ok
16:48:44.0033 5028 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
16:48:44.0033 5028 VgaSave - ok
16:48:44.0127 5028 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
16:48:44.0127 5028 vhdmp - ok
16:48:44.0174 5028 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
16:48:44.0174 5028 viaide - ok
16:48:44.0221 5028 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
16:48:44.0262 5028 volmgr - ok
16:48:44.0355 5028 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
16:48:44.0355 5028 volmgrx - ok
16:48:44.0449 5028 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
16:48:44.0465 5028 volsnap - ok
16:48:44.0543 5028 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
16:48:44.0543 5028 vsmraid - ok
16:48:44.0808 5028 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
16:48:44.0839 5028 VSS - ok
16:48:44.0839 5028 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
16:48:44.0855 5028 vwifibus - ok
16:48:45.0073 5028 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
16:48:45.0089 5028 W32Time - ok
16:48:45.0167 5028 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
16:48:45.0167 5028 WacomPen - ok
16:48:45.0288 5028 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
16:48:45.0304 5028 WANARP - ok
16:48:45.0304 5028 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
16:48:45.0304 5028 Wanarpv6 - ok
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
9 nov. 2012 à 17:02
Le rapport est incomplet, est ce que tu peux l'héberger ?
0
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012
9 nov. 2012 à 17:05
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
9 nov. 2012 à 18:39
Re,
1/
Désinstalle s'il est possible :
- Logiciel: SpyHunter
- Logiciel: TUTO4PC_FR_5-v1.0

2/
* Télécharge sur le bureau RogueKiller (par tigzy)
https://www.luanagames.com/index.fr.html
* ( Sous Vista/Seven,clique droit, lancer en tant qu'administrateur )
* Quitte tous tes programmes en cours
* Lance RogueKiller.exe
Si l'infection bloque le programme, il faut le relancer plusieurs fois ou le renommer en winlogon.exe
* Laisse le prescan se terminer, clique sur Scan
* Clique sur Rapport pour l'ouvrir puis copie/colle le sur le dans ton prochain message

0
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012
9 nov. 2012 à 18:53
RogueKiller V8.2.3 [07/11/2012] par Tigzy
mail: tigzyRK<at>gmail<dot>com
Remontees: https://www.luanagames.com/index.fr.html
Website: https://www.luanagames.com/index.fr.html
Blog: http://tigzyrk.blogspot.com

Systeme d'exploitation: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Demarrage : Mode normal
Utilisateur : bio13 [Droits d'admin]
Mode : Recherche -- Date : 09/11/2012 18:49:11

¤¤¤ Processus malicieux : 2 ¤¤¤
[SUSP PATH] upt4pc_fr_5.exe -- C:\Users\bio13\AppData\Local\tuto4pc_fr_5\upt4pc_fr_5.exe -> TUÉ [TermProc]
[SUSP PATH] Megakey.exe -- C:\Users\bio13\AppData\Local\Megamedia\Megakey\Megakey.exe -> TUÉ [TermProc]

¤¤¤ Entrees de registre : 11 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Megakey (C:\Users\bio13\AppData\Local\Megamedia\Megakey\Megakey.exe /Tray) -> TROUVÉ
[RUN][SUSP PATH] HKUS\S-1-5-21-606372689-3450569324-258698359-1000[...]\Run : Megakey (C:\Users\bio13\AppData\Local\Megamedia\Megakey\Megakey.exe /Tray) -> TROUVÉ
[RUN][SUSP PATH] HKLM\[...]\Wow6432Node\RunOnce : upt4pc_fr_5.exe (C:\Users\bio13\AppData\Local\tuto4pc_fr_5\upt4pc_fr_5.exe -runonce) -> TROUVÉ
[DNS] HKLM\[...]\ControlSet001\Services\Interfaces\{CD0A5032-3D3C-4592-8D93-C5B7CF2B18B0} : NameServer (8.8.8.8,8.8.8.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> TROUVÉ
[DNS] HKLM\[...]\ControlSet002\Services\Interfaces\{CD0A5032-3D3C-4592-8D93-C5B7CF2B18B0} : NameServer (8.8.8.8,8.8.8.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> TROUVÉ
[HJ] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> TROUVÉ
[HJ] HKLM\[...]\Wow6432Node\System : ConsentPromptBehaviorAdmin (0) -> TROUVÉ
[HJ] HKLM\[...]\System : EnableLUA (0) -> TROUVÉ
[HJ] HKLM\[...]\Wow6432Node\System : EnableLUA (0) -> TROUVÉ
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> TROUVÉ
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> TROUVÉ

¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤

¤¤¤ Driver : [NON CHARGE] ¤¤¤

¤¤¤ Fichier HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

172.36.100.1 3040513.hexalis.net serveur bioalliance
172.36.100.15 dlxa1


¤¤¤ MBR Verif: ¤¤¤

+++++ PhysicalDrive0: WDC WD10EADS-22M2B0 +++++
--- User ---
[MBR] 1b743940e129546660c6e4d02c8420d8
[BSP] 98e01d641fc00a5c911e0d05fd7ab175 : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 14000 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 28674048 | Size: 100 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 28878848 | Size: 469883 Mo
3 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 991199232 | Size: 469884 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Termine : << RKreport[1]_S_09112012_184911.txt >>
RKreport[1]_S_09112012_184911.txt
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
9 nov. 2012 à 19:03
1/
Relance RogueKiller puis choisis "Suppression" ensuite "RAZ Host" et poste les 2 rapports correspondants à ces 2 options

2/
Lance Malwarebytes, fais la mise à jour, choisis une analyse complète, supprime tout ce qu'il trouve puis poste le rapport stp
0
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012
10 nov. 2012 à 10:26
RogueKiller V8.2.3 [07/11/2012] par Tigzy
mail: tigzyRK<at>gmail<dot>com
Remontees: https://www.luanagames.com/index.fr.html
Website: https://www.luanagames.com/index.fr.html
Blog: http://tigzyrk.blogspot.com

Systeme d'exploitation: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Demarrage : Mode normal
Utilisateur : bio13 [Droits d'admin]
Mode : Recherche -- Date : 10/11/2012 09:28:23

¤¤¤ Processus malicieux : 0 ¤¤¤

¤¤¤ Entrees de registre : 2 ¤¤¤
[DNS] HKLM\[...]\ControlSet001\Services\Interfaces\{CD0A5032-3D3C-4592-8D93-C5B7CF2B18B0} : NameServer (8.8.8.8,8.8.8.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> TROUVÉ
[DNS] HKLM\[...]\ControlSet002\Services\Interfaces\{CD0A5032-3D3C-4592-8D93-C5B7CF2B18B0} : NameServer (8.8.8.8,8.8.8.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> TROUVÉ

¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤

¤¤¤ Driver : [NON CHARGE] ¤¤¤

¤¤¤ Fichier HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

172.36.100.1 3040513.hexalis.net serveur bioalliance
172.36.100.15 dlxa1


¤¤¤ MBR Verif: ¤¤¤

+++++ PhysicalDrive0: WDC WD10EADS-22M2B0 +++++
--- User ---
[MBR] 1b743940e129546660c6e4d02c8420d8
[BSP] 98e01d641fc00a5c911e0d05fd7ab175 : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 14000 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 28674048 | Size: 100 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 28878848 | Size: 469883 Mo
3 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 991199232 | Size: 469884 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Termine : << RKreport[4]_S_10112012_092823.txt >>
RKreport[1]_S_09112012_184911.txt ; RKreport[2]_D_09112012_190025.txt ; RKreport[3]_D_09112012_190035.txt ; RKreport[4]_S_10112012_092823.txt



RogueKiller V8.2.3 [07/11/2012] par Tigzy
mail: tigzyRK<at>gmail<dot>com
Remontees: https://www.luanagames.com/index.fr.html
Website: https://www.luanagames.com/index.fr.html
Blog: http://tigzyrk.blogspot.com

Systeme d'exploitation: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Demarrage : Mode normal
Utilisateur : bio13 [Droits d'admin]
Mode : HOSTS RAZ -- Date : 10/11/2012 09:29:07

¤¤¤ Processus malicieux : 0 ¤¤¤

¤¤¤ Entrees de registre : 0 ¤¤¤

¤¤¤ Driver : [NON CHARGE] ¤¤¤

¤¤¤ Fichier HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

172.36.100.1 3040513.hexalis.net serveur bioalliance
172.36.100.15 dlxa1


¤¤¤ Nouveau fichier HOSTS: ¤¤¤


Termine : << RKreport[7]_H_10112012_092907.txt >>
RKreport[1]_S_09112012_184911.txt ; RKreport[2]_D_09112012_190025.txt ; RKreport[3]_D_09112012_190035.txt ; RKreport[4]_S_10112012_092823.txt ; RKreport[5]_H_10112012_092856.txt ;
RKreport[6]_S_10112012_092903.txt ; RKreport[7]_H_10112012_092907.txt


Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Version de la base de données: v2012.11.05.06

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
bio13 :: BIO13-PC [administrateur]

10/11/2012 09:29:51
mbam-log-2012-11-10 (09-29-51).txt

Type d'examen: Examen complet (C:\|D:\|)
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 395103
Temps écoulé: 55 minute(s), 53 seconde(s)

Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)

Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)

Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)

Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)

Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)

Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)

Fichier(s) détecté(s): 0
(Aucun élément nuisible détecté)

(fin)
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
10 nov. 2012 à 11:56
Bonjour,
1/
* Télécharge Rsthosts

* Lance le ainsi
* Utilisateurs Windows XP => double clique >>sur RstHosts .exe
* Utilisateurs Windows Vista / windows 7 => clic droit "executer en tant que en tant qu'administrateur "sur RstHosts .exe .

* Appuie sur Restaurer.
* Copie/colle le contenu du rapport qui s'ouvrira à l'écran dans ton prochain message.
* Note : Le rapport est également sauvegardé à la racine du disque dur ( C:\RstHosts.txt)

2/
Relance RogueKiller puis choisis "DNS RAZ" et poste le rapport
<<<<<<<< AIDE ICI >>>>>>>>

3/
Désinstalle s'il est possible :
- Logiciel: SpyHunter
- Logiciel: TUTO4PC_FR_5-v1.0

4/
=> Copie tout le texte présent en gras ci-dessous (Sélectionne-le, clique droit dessus et choisis "Copier").



SysRestore
O42 - Logiciel: SpyHunter - (.Enigma Software Group USA, LLC.) [HKLM][64Bits] -- {83B952C7-F8F3-4CA3-B4C5-33C85B24E478} => Infection FakeAlert (Crapware.SpyHunter)
O42 - Logiciel: TUTO4PC_FR_5-v1.0 - (.TUTO4PC.) [HKLM][64Bits] -- TUTO4PC_FR_5_is1 => Infection BT (Spyware.AgenceExclusive)
O43 - CFD: 23/10/2012 - 16:10:57 - [0,005] ----D C:\Users\bio13\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter => Infection FakeAlert (Crapware.SpyHunter)
O64 - Services: CurCS - 02/03/2011 - C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys - esgiguard (esgiguard) .(...) - LEGACY_ESGIGUARD => Infection FakeAlert (Crapware.SpyHunter)
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[MD5.42A126A24F0E0A7E1E3966740E37F112] - (...) -- C:\Users\bio13\AppData\Local\tuto4pc_fr_5\upt4pc_fr_5.exe [719720] [PID.3972]
[MD5.67A232549C162E1D2CF0010ECA122221] - (...) -- C:\Program Files (x86)\Tuto4pc 1.0.1\tuto4pc_fr_16.exe [3858280] [PID.4420]
[MD5.D09B976717F364230FE0EEC80B85E0C3] - (...) -- C:\Users\bio13\AppData\Local\tuto4pc_fr_16\supt4pc_fr_16.exe [3057000] [PID.]
O23 - Service: supt4pc_fr_16 (supt4pc_fr_16) . (...) - C:\Users\bio13\AppData\Local\tuto4pc_fr_16\supt4pc_fr_16.exe
[HKCU\Software\AppDataLow\Software\iGraal]
[HKCU\Software\Tutorials] => Toolbar.Agent
O43 - CFD: 31/12/2009 - 11:29:22 - [0,922] ----D C:\Users\bio13\AppData\Roaming\igraal
[MD5.62B7C506B092D460898F3296DA94B728] [SPRF][18/07/2009] (.Oberon Media - FullRemove.) -- C:\ProgramData\FullRemove.exe [36136]
SR - | Auto 3057000 | (supt4pc_fr_16) . (...) - C:\Users\bio13\AppData\Local\tuto4pc_fr_16\supt4pc_fr_16.exe

EmptyCLSID
EmptyFlash
EmptyTemp


=> Puis lance ZHPFix depuis le raccourci situé sur ton Bureau.
(Sous Vista/Win7, il faut cliquer droit sur le raccourci de ZHPFix et choisir Exécuter en tant qu'administrateur)

=> Une fois ZHPFix ouvert, clique sur le bouton "Coller le presse-papier".

=> Dans l'encadré principal, tu verras donc les lignes que tu as copié précédemment apparaître. Vérifie que toutes les lignes que je t'ai demandé de copier (et seulement elles) sont dans la fenêtre.

=> Clique sur "GO" pour lancer le nettoyage. Laisse l'outil travailler et ne touche à rien.

=> Une fois terminé, copie-colle le rapport dans ton prochain message.

0
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012
10 nov. 2012 à 12:19
-|x| RstHosts v2.0 - Rapport créé le 10/11/2012 à 12:09:05
-|x| Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
-|x| Nom d'utilisateur : bio13 - BIO13-PC (Administrateur)

-|x|- Informations -|x|-

Emplacement : C:\Windows\System32\drivers\etc\hosts
Attribut(s) : RASH
Propriétaire : Administrateurs - BUILTIN
Taille : 89 bytes
Date de création : 14/07/2009 - 03:34:48
Date de modification : 10/11/2012 - 12:08:59
Date de dernier accès : 10/11/2012 - 12:08:59

-|x|- Contenu du fichier -|x|-

# Fichier Hosts créé par RstHosts

127.0.0.1 localhost
::1 localhost

-|x|- E.O.F - C:\RstHosts.txt - 625 bytes -|x|-


RogueKiller V8.2.3 [07/11/2012] par Tigzy
mail: tigzyRK<at>gmail<dot>com
Remontees: https://www.luanagames.com/index.fr.html
Website: https://www.luanagames.com/index.fr.html
Blog: http://tigzyrk.blogspot.com

Systeme d'exploitation: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Demarrage : Mode normal
Utilisateur : bio13 [Droits d'admin]
Mode : DNS RAZ -- Date : 10/11/2012 12:11:25

¤¤¤ Processus malicieux : 0 ¤¤¤

¤¤¤ Entrees de registre : 2 ¤¤¤
[DNS] HKLM\[...]\ControlSet001\Services\Interfaces\{CD0A5032-3D3C-4592-8D93-C5B7CF2B18B0} : NameServer (8.8.8.8,8.8.8.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> REMPLACÉ ()
[DNS] HKLM\[...]\ControlSet002\Services\Interfaces\{CD0A5032-3D3C-4592-8D93-C5B7CF2B18B0} : NameServer (8.8.8.8,8.8.8.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> REMPLACÉ ()

¤¤¤ Driver : [NON CHARGE] ¤¤¤

Termine : << RKreport[8]_DN_10112012_121125.txt >>
RKreport[1]_S_09112012_184911.txt ; RKreport[2]_D_09112012_190025.txt ; RKreport[3]_D_09112012_190035.txt ; RKreport[4]_S_10112012_092823.txt ; RKreport[5]_H_10112012_092856.txt ;
RKreport[6]_S_10112012_092903.txt ; RKreport[7]_H_10112012_092907.txt ; RKreport[8]_DN_10112012_121125.txt



Rapport de ZHPFix 1.3.06 par Nicolas Coolman, Update du 09/11/2012
Fichier d'export Registre : C:\ZHP\ZHPExportRegistry-10-11-2012-12-16-20.txt
Run by bio13 at 10/11/2012 12:16:20
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)



========== Logiciel(s) ==========
ABSENT Software Key: {83B952C7-F8F3-4CA3-B4C5-33C85B24E478}
ABSENT Software Key: TUTO4PC_FR_5_is1

========== Processus mémoire ==========
SUPPRIME Memory Process: C:\Users\bio13\AppData\Local\tuto4pc_fr_5\upt4pc_fr_5.exe
SUPPRIME Memory Process: C:\ProgramData\FullRemove.exe

========== Clé(s) du Registre ==========
ERREUR Key: Service Legacy: LEGACY_ESGIGUARD
ABSENT Key: Service: supt4pc_fr_16
SUPPRIME Key: HKCU\Software\AppDataLow\Software\iGraal
SUPPRIME Key: HKCU\Software\Tutorials

========== Elément(s) de donnée du Registre ==========
REMPLACE Value NoActiveDesktopChanges : Good (0) - Bad (1)
REMPLACE Value EnableLUA : Good (1) - Bad (0)

========== Dossier(s) ==========
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{01E89E8B-EA90-465C-86C1-36DB94BAB1E0}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{0255C52F-7016-49E8-8CE0-3D0D41A1AA06}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{04328268-14B3-4861-9B76-A8CEEBB4E82E}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{043D96C2-EFD1-447B-A973-CBB0DCC41F88}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{044F6CC9-EE9C-46DC-8E3A-DECE943B3FB5}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{05053CA0-2C88-41AD-A591-A6B3625500AF}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{05851CB9-C9DF-4AE9-8FC5-8798A9DE82CF}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{0671F9E9-DAF5-4125-B29E-B3ED37EDDBD3}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{06E67A22-9855-44BC-BD10-47C4AFDFD583}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{0856DAA0-BD11-4D57-BF86-3D006DF83713}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{094A392C-806C-4253-BE13-555AFF4C2D39}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{0F3AF54B-2A33-4209-BA30-9DF333F703F2}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{0F7A222D-FB92-4DFD-B14C-BDEAFF9D3293}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{12DE4007-B3B8-4C5A-9AF8-1F55038CC907}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{179415DE-071F-46F4-BBCF-7BC79F573A8D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{1C6AA098-5878-4519-8F1C-1FE9D4FFF44D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{1DD2691C-CD82-4FC3-A506-D529E1C82DFA}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{1E385D48-353C-4CC0-B179-9C07FAE1571C}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{1E675006-AA5C-462C-80F4-4D5D7425C9F0}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{1FAB833D-B7B7-4976-A68C-6060F458E48B}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{21034287-4FDE-4108-BD71-AB6EFBA149F3}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{21E36C8C-6DDD-44A0-8A2C-7510C28E715B}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{2234304D-7D0E-4551-AE1E-3C5D22331DFC}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{22CDCBB3-1CBB-442F-8484-3D25B4120058}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{2674B5BF-040C-4261-B9D5-69BAA7ED9366}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{269A75EA-2581-416A-BA08-DFF41E1F742B}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{2A6EF274-1DD4-41E5-8AA1-B0ABBCE6BD29}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{2AA0589D-68D8-41C4-9002-95447D614630}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{2AFBC297-FBE7-4646-9A30-4CCA9BA86E0A}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{2C319F76-D256-41B7-BA84-011B86662E4F}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{3024CFE8-A8C6-4298-9F3A-0C9E5ED2E0D6}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{306229D8-DBAD-425F-A191-B6B73CA8D470}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{31C80ECC-8CA8-4DF7-9A1D-2A7BC65BC189}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{32682DDD-C064-4FB4-9F33-EE8E791FE5AB}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{3290244E-97F8-41C0-B631-F79908401F3C}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{330E2CB8-AC17-4888-8750-AF1CCF86B0AD}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{36230035-D431-40F8-975F-5520EB3D6FE9}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{36F69863-6B7F-4025-B688-B5EA056124BB}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{3896A180-1978-48F2-93EE-AA9EF4F8F236}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{3AFD0ECC-7046-439D-A51C-DBD930A54300}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{3B246BFA-CD15-4D2C-9566-74CC0B49999A}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{3B9881CA-A1BD-4F93-A9EF-B65272F05C05}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{3DD3C570-AB58-42AC-945B-81507CC47A54}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{3E911638-80E9-470A-9772-D9438DB2D93A}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{41414DE8-27F8-4FD4-BE7A-B40BCBDF3F16}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{431CDE80-52C6-4B18-81A8-C80602355B1F}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{4627AE78-C83F-4ADD-9CBB-0272FFDCF357}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{46B974D4-0BBB-41C9-87A4-35E5140C07A1}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{4AE832FC-E115-47A7-9031-048AAD45B06A}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{4E547E18-9667-4123-96D0-F8C3EF1120CC}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{4F2E4997-41E5-494F-9A79-EBAE172B173A}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{4FA7D576-CAA7-48CD-9742-4A3EB968F8B5}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{50AD4250-9133-4798-8388-FB95CA66537E}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{518B3853-79B7-490F-86B1-E357C9D71E7D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{51FCB476-937A-46BC-941D-C0193051828E}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{52AA7FE9-E847-46AE-8984-671513E70BEE}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{53F5A50E-DCCC-4B2D-A835-B48EDFE96141}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{57E0C0F4-4E1C-4F34-AC67-C2DA5A8E6BD9}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{5937C3CF-3ED3-488E-BD4E-A3D1C20AB3FB}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{5AF23D0B-C3AA-46AF-BD9B-9485F69D6D4F}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{5C345D49-0D49-4164-830B-8BECB9D1F7B3}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{5D4CECCD-1F4F-4526-97D1-A5EC772800EA}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{5DB93A2B-9707-46F8-A31A-47903FB77908}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{601A6214-FA30-4B40-9EB5-29DD07308B38}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{639BC80D-8607-493A-AF89-2353DB48A8DB}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{64C3AEAB-5418-459D-997E-A33035A1E02F}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{670F7778-6277-43FF-A6D4-2BD669C61F2D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{68E4A7E0-5013-4BE8-BC49-68B1A68506FC}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{69168205-CC45-4661-8808-0882C70A2606}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{6A056A50-FD0E-46E4-BB28-A899CD0BECA2}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{6B5E7891-DCD5-49C6-B27B-D621C4978955}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{6E43DB1F-5CA9-42A5-9C69-839EF195A8A4}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{6E8475B5-22B0-40D5-84AC-F246FC1D501A}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{6F380601-371D-4876-94AB-9C681390026D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{70816178-98E4-4B70-B0BA-A777B64F86DF}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{71FF820F-FCF1-46E9-9432-4FC59F3833EC}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{749738CD-6EC7-4B2A-9DB0-D7FA3CE70270}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{75FFC78D-620C-48AC-A49F-A4230C57C5AD}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{77513F81-A63D-4145-B33F-DA1E856B0FD9}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{7803EF69-4BA0-46EB-9B4E-4CB41D6BC7D2}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{7A8E2508-3F04-4206-8E4C-CC5E1C7B8A04}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{7BE6E591-1E56-4E89-ABAC-CA4F67D766F1}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{7CF308C0-F1CD-492D-A66B-069C29503E17}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{7F839DEF-2CD5-4A06-89EF-719C2FB76064}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{7FE4BCEA-6C1F-4DB5-9D6E-81EC820344CF}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{7FF484D5-4DE9-4F39-B738-DC4153255CB6}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{81F70873-0E61-47FC-B9D3-2881DE395DBE}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{8372BB9F-68B0-4C54-90D6-C836FFE96C5B}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{83DBE896-29DD-4313-B0F1-42CF18752D93}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{847D946D-9681-4554-8978-619D1A999FE6}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{89787667-829E-4A47-9E23-1037434D8B58}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{89AF7863-347A-448C-B612-47F2BCA9802D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{8B35136A-A4B3-40CF-B816-3B7BFA58592D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{8CC36EF8-18C2-486E-A82D-D07D6401AB01}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{8CFFEFD8-BE98-4FFB-9348-8606098FCF57}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{8D10815A-75BF-4780-A66D-187F79DCCFBF}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{928A3D77-5A7C-4A73-B00B-B40611A98E4D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{96458DCF-BC47-4E92-A5D3-A994AD19AF94}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{965D31FC-0574-4D47-B838-61AC1591B425}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{97BB2EE3-7F17-44C6-BB05-73481227DA9F}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{9CB9E187-B973-4212-BAD6-FDB7F1196289}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{9DDBBAD5-AC00-48D0-A438-8EBBBE87CA94}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{9EA4BFA9-F18D-42A4-87A1-A40F8154B0A2}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{9ED4D994-D79B-494B-A8D8-A96AB72C0D26}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{9EF3B814-9352-4F33-B85F-AA5CC50BA813}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{9FA8B65F-FA5D-4FCD-A2DF-7321DBF31CBD}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{A248A65A-62FD-49E1-A281-ED389372D4B0}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{A56B2344-0967-4386-B781-A7BCBF80A634}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{A70C13F8-0D64-489C-978E-9A9AF10A931C}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{A95D3D43-CB43-4A75-B108-505AD5CB888A}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{A95E9665-7FAD-43F1-A932-C02FA185785C}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{A9A4F3CF-C0FA-40A3-86CE-147BEBB61615}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{AEC5E865-23B7-4E54-9A11-7433643AEFDF}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{B5A212ED-CA16-42E9-B3E6-FFE55F9B868C}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{B6D61D8C-E1D7-4640-8600-B631E38DA1A7}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{B8072C75-256B-4FF0-B31E-284CC857C70C}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{B82B6B73-B8A6-4201-BD25-F697BD7A093F}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{B83E9A10-312A-49CD-85E1-07AD72591761}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{B84DBAA4-D850-46A0-B339-7AF99FDA5B39}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{B865D697-CEC3-46AA-B4C3-95F7905EED88}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{B885A9D2-0869-4664-91D3-810FFBE2EEE1}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{B8DB29C2-A8D1-4680-B994-A66C3202FEDC}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{B977CB15-0DA8-4BAA-8CEE-01350BB61D8F}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{BA45CB4B-1CC4-4187-BED0-2DFF30CC8893}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{BB909C64-E625-4128-9688-24DB46822BBC}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{BD0EBF2C-A391-4392-B218-2129FBF132AF}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{BE45CE1B-6765-494D-B260-0F5346426AC5}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{BF987C71-2BFF-4436-82C7-9E16B8B1A4DF}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{C2A0D895-6E76-4891-910E-C5487617C741}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{C6D27040-B0BB-4A02-A46C-C9410AD01DEB}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{C6F24574-8D0D-4228-86F0-925BD9FEE81B}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{C7E5FFF1-2A48-4D77-AC72-9A87ECEEAD6B}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{C7E9AA74-D989-4F00-93F2-AAC7093DC14B}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{C83367C1-B31C-41E6-88DF-F3CE4E2A7092}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{C981D812-37A6-4AA3-9269-4DAC11CC702D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{CDA00908-CE82-40CD-B736-D21FDB394714}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{CEDF0F71-EE39-4A6B-804D-B16398B90790}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{CF357C45-9E75-49B7-8CDD-203108B2A2A1}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{D18B106F-4218-4040-A867-52C74A310A79}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{D23D96C9-7273-4A6C-B609-F60D301CE76D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{D6F2EBA6-C09A-4EF6-B6F2-9FE3AB4782BF}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{D7C0E7F0-57C0-4FEE-8BF9-2FE64CCAE29F}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{D8C777CC-F781-4284-A281-5CD714C4397A}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{DA410902-FBE0-45D9-848D-C92801E25975}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{DC39105E-9C6E-4B66-8ADB-A18837DAA306}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{DC8BE104-B83E-4655-8B8B-C2CA37848EAD}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{DCD825E2-FE2C-4233-89BD-C0AA590D1EDE}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{DEAAFD47-67C4-4DF7-8A03-DE91F9C7F79D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{DF128622-0DF9-4333-A97D-A0507869048C}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{E071A274-4B89-4863-976C-2F83F87F4247}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{E09B6EED-5005-4913-85C6-6DBC6A8F88A3}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{E1F8B09E-5970-44FF-ADBB-227BE6749735}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{E2C76627-1A9B-4858-85BD-0C2F618999FE}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{E42FA288-CA36-4E25-9D1B-A8F3354D2FBA}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{E4C4F154-C2FC-492B-B111-C2E2D655F377}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{E4C93962-BBF6-4D2C-BD12-92FF4F22159F}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{E5EA06C5-9E11-47A9-84E3-6D4C11BD04D2}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{E6B30AD1-08B3-4841-AB22-2D4F18465692}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{EA527D14-6642-4FAA-B810-4455329A1293}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{EB202DA9-2BD6-4706-962F-91D86B1256FA}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{EB3F3CD6-8809-48E8-8612-AE31F651897D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{EBBDAE23-D91F-4F3B-B415-D70A355ADB4E}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{EBE1FEE4-54B8-40FD-8A3D-A1D827447855}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{EC4DE87D-9FF6-407A-8E38-DBAC89949908}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{EDAB9A3E-D300-41F1-A20D-C23E984B9B9E}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{EDB02A7F-02D4-40E8-837D-D8930FB86A54}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{EF3CDD58-B068-4EF0-964B-78901418F0DE}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{F08F1C89-D729-40B5-9377-A1B1A0CC4D5D}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{F0D18660-5045-4405-8315-3C3F1FBED901}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{F1D804B3-E7AA-4DBE-A078-B3A931F6283C}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{F6497390-FD07-4995-B7AB-F32443D6DBB5}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{F746B3BC-354D-46AE-B4D7-7FAF58FD7339}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{F8736473-DE81-4727-93E7-51C3464EA3E4}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{FA4BAE95-B1A1-42BE-AA27-CD721D698108}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{FB55849D-912A-4C61-988F-E25FB9DB7062}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{FB5AFB1C-F693-492B-8E6C-E05FF050B488}
SUPPRIME Folder: C:\Users\bio13\AppData\Local\{FCA7A067-4276-47D7-B4B8-8E386111549A}
SUPPRIME Flash Cookies:
SUPPRIME Temporaires Windows:

========== Fichier(s) ==========
SUPPRIME File: c:\users\bio13\appdata\local\tuto4pc_fr_5\upt4pc_fr_5.exe
ABSENT Folder/File: c:\program files (x86)\tuto4pc 1.0.1\tuto4pc_fr_16.exe
ABSENT Folder/File: c:\users\bio13\appdata\local\tuto4pc_fr_16\supt4pc_fr_16.exe
ABSENT File: c:\users\bio13\appdata\local\tuto4pc_fr_16\supt4pc_fr_16.exe
SUPPRIME File: c:\programdata\fullremove.exe
SUPPRIME Flash Cookies:
SUPPRIME Temporaires Windows:

========== Restauration Système ==========
Point de restauration du système créé avec succès


========== Récapitulatif ==========
2 : Processus mémoire
4 : Clé(s) du Registre
2 : Elément(s) de donnée du Registre
179 : Dossier(s)
7 : Fichier(s)
2 : Logiciel(s)
1 : Restauration Système


End of clean in 00mn 43s

========== Chemin de fichier rapport ==========
C:\ZHP\ZHPFix[R1].txt - 10/11/2012 11:05:10 [2064]
C:\ZHP\ZHPFix[R2].txt - 10/11/2012 11:12:50 [479]
C:\ZHP\ZHPFix[R3].txt - 10/11/2012 11:18:45 [2143]
C:\ZHP\ZHPFix[R4].txt - 10/11/2012 12:16:20 [17212]
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
10 nov. 2012 à 13:25
OK,
Redémarre ton PC.
1/
Lance ZHPDiag depuis le bureau, lance l'analyse et héberge le rapport. colle le lien dans ta prochaine réponse

2/
Comment se comporte ton PC maintenant ?
0
onchocerca Messages postés 23 Date d'inscription vendredi 9 novembre 2012 Statut Membre Dernière intervention 16 novembre 2012
12 nov. 2012 à 13:05
c'est la cata, ce matin j'avais perdu mon ip toutes mes passerelles et le dns.
J'ai remis les bons chiffres la connection est oj mais mon navigateur ie rame enormément
help!!!!
merci
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
12 nov. 2012 à 13:07
Salut,

Il manque le rapport ZHPDiag pour voir ce que c'est passé!

@+
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
12 nov. 2012 à 14:31
Re,
Le rapport est incomplet, héberge le comme expliqué : <<< ICI >>>
0