Processeur qui s'emballe sans raison !
Résolu/Fermé
Artengo
Messages postés
96
Date d'inscription
samedi 29 décembre 2007
Statut
Membre
Dernière intervention
14 juin 2014
-
17 juil. 2013 à 18:35
Utilisateur anonyme - 30 juil. 2013 à 18:10
Utilisateur anonyme - 30 juil. 2013 à 18:10
A voir également:
- Ordinateur ventilateur qui s'emballe
- Ordinateur qui rame - Guide
- Réinitialiser ordinateur - Guide
- Qu'est ce qui se lance au démarrage de l'ordinateur - Guide
- Ordinateur qui freeze - Guide
- Ventilateur carte graphique ne tourne pas - Forum Carte graphique
76 réponses
RogueKiller V8.6.3 [Jul 17 2013] par Tigzy
mail : tigzyRK<at>gmail<dot>com
Remontees : http://www.adlice.com/forum/
Site Web : http://www.sur-la-toile.com/RogueKiller/
Blog : http://tigzyrk.blogspot.com/
Systeme d'exploitation : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Demarrage : Mode normal
Utilisateur : FOURE [Droits d'admin]
Mode : HOSTS RAZ -- Date : 07/23/2013 18:47:41
| ARK || FAK || MBR |
¤¤¤ Processus malicieux : 0 ¤¤¤
¤¤¤ Entrees de registre : 1 ¤¤¤
[PROXY IE] HKCU\[...]\Internet Settings : ProxyServer (:0) -> NON SUPPRIMÉ, UTILISER PROXY RAZ
¤¤¤ Driver : [CHARGE] ¤¤¤
¤¤¤ Ruches Externes: ¤¤¤
¤¤¤ Infection : ¤¤¤
¤¤¤ Fichier HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
[...]
¤¤¤ Nouveau fichier HOSTS: ¤¤¤
127.0.0.1 localhost
Termine : << RKreport[0]_H_07232013_184741.txt >>
RKreport[0]_D_07232013_184236.txt;RKreport[0]_S_07232013_182812.txt;RKreport[0]_S_07232013_184230.txt
RKreport[0]_S_07232013_184721.txt
Je poursuis avec Proxy RAZ
mail : tigzyRK<at>gmail<dot>com
Remontees : http://www.adlice.com/forum/
Site Web : http://www.sur-la-toile.com/RogueKiller/
Blog : http://tigzyrk.blogspot.com/
Systeme d'exploitation : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Demarrage : Mode normal
Utilisateur : FOURE [Droits d'admin]
Mode : HOSTS RAZ -- Date : 07/23/2013 18:47:41
| ARK || FAK || MBR |
¤¤¤ Processus malicieux : 0 ¤¤¤
¤¤¤ Entrees de registre : 1 ¤¤¤
[PROXY IE] HKCU\[...]\Internet Settings : ProxyServer (:0) -> NON SUPPRIMÉ, UTILISER PROXY RAZ
¤¤¤ Driver : [CHARGE] ¤¤¤
¤¤¤ Ruches Externes: ¤¤¤
¤¤¤ Infection : ¤¤¤
¤¤¤ Fichier HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
[...]
¤¤¤ Nouveau fichier HOSTS: ¤¤¤
127.0.0.1 localhost
Termine : << RKreport[0]_H_07232013_184741.txt >>
RKreport[0]_D_07232013_184236.txt;RKreport[0]_S_07232013_182812.txt;RKreport[0]_S_07232013_184230.txt
RKreport[0]_S_07232013_184721.txt
Je poursuis avec Proxy RAZ
RogueKiller V8.6.3 [Jul 17 2013] par Tigzy
mail : tigzyRK<at>gmail<dot>com
Remontees : http://www.adlice.com/forum/
Site Web : http://www.sur-la-toile.com/RogueKiller/
Blog : http://tigzyrk.blogspot.com/
Systeme d'exploitation : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Demarrage : Mode normal
Utilisateur : FOURE [Droits d'admin]
Mode : Proxy RAZ -- Date : 07/23/2013 18:50:54
| ARK || FAK || MBR |
¤¤¤ Processus malicieux : 0 ¤¤¤
¤¤¤ Entrees de registre : 1 ¤¤¤
[PROXY IE] HKCU\[...]\Internet Settings : ProxyServer (:0) -> SUPPRIMÉ
¤¤¤ Navigateurs web : 0 ¤¤¤
¤¤¤ Driver : [CHARGE] ¤¤¤
¤¤¤ Ruches Externes: ¤¤¤
¤¤¤ Infection : ¤¤¤
Termine : << RKreport[0]_PR_07232013_185054.txt >>
RKreport[0]_D_07232013_184236.txt;RKreport[0]_H_07232013_184741.txt;RKreport[0]_S_07232013_182812.txt
RKreport[0]_S_07232013_184230.txt;RKreport[0]_S_07232013_184721.txt;RKreport[0]_S_07232013_185050.txt
mail : tigzyRK<at>gmail<dot>com
Remontees : http://www.adlice.com/forum/
Site Web : http://www.sur-la-toile.com/RogueKiller/
Blog : http://tigzyrk.blogspot.com/
Systeme d'exploitation : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Demarrage : Mode normal
Utilisateur : FOURE [Droits d'admin]
Mode : Proxy RAZ -- Date : 07/23/2013 18:50:54
| ARK || FAK || MBR |
¤¤¤ Processus malicieux : 0 ¤¤¤
¤¤¤ Entrees de registre : 1 ¤¤¤
[PROXY IE] HKCU\[...]\Internet Settings : ProxyServer (:0) -> SUPPRIMÉ
¤¤¤ Navigateurs web : 0 ¤¤¤
¤¤¤ Driver : [CHARGE] ¤¤¤
¤¤¤ Ruches Externes: ¤¤¤
¤¤¤ Infection : ¤¤¤
Termine : << RKreport[0]_PR_07232013_185054.txt >>
RKreport[0]_D_07232013_184236.txt;RKreport[0]_H_07232013_184741.txt;RKreport[0]_S_07232013_182812.txt
RKreport[0]_S_07232013_184230.txt;RKreport[0]_S_07232013_184721.txt;RKreport[0]_S_07232013_185050.txt
Utilisateur anonyme
23 juil. 2013 à 18:54
23 juil. 2013 à 18:54
super,
redémarre le pc ,
https://support.kaspersky.com/downloads/utils/tdsskiller.exe
* Lance le ( Utilisateurs de vista/Seven -> Clic droit puis " Exécuter en tant qu'administrateur " )
* Clique sur [Start Scan] pour démarrer l'analyse.
* Si des élements sont trouvés, cliques sur [Continue] puis sur [Reboot Now]
* Un rapport s'ouvrira au redémarrage du PC.
* Copie/Colle son contenu dans ta prochaine réponse.
Note : Le rapport se trouve également sous C:\TDSSKiller.N°deversion_Date_Heure_log.txt.
note :
Conserve l'action proposée par défaut par l'outil :
- Si TDSS.tdl2 : l'option Delete sera cochée.
- Si TDSS.tdl3 ou TDSS.tdl4 : assure toi que Cure soit bien cochée.
- Si "Suspicious object" ou Sptd ou ForgedFile.Multi.Generic : laisse l'option cochée sur Skip
- Si Rootkit.Win32.ZAccess.* est détecté règle sur cure en haut , et delete en bas:D
redémarre le pc ,
https://support.kaspersky.com/downloads/utils/tdsskiller.exe
* Lance le ( Utilisateurs de vista/Seven -> Clic droit puis " Exécuter en tant qu'administrateur " )
* Clique sur [Start Scan] pour démarrer l'analyse.
* Si des élements sont trouvés, cliques sur [Continue] puis sur [Reboot Now]
* Un rapport s'ouvrira au redémarrage du PC.
* Copie/Colle son contenu dans ta prochaine réponse.
Note : Le rapport se trouve également sous C:\TDSSKiller.N°deversion_Date_Heure_log.txt.
note :
Conserve l'action proposée par défaut par l'outil :
- Si TDSS.tdl2 : l'option Delete sera cochée.
- Si TDSS.tdl3 ou TDSS.tdl4 : assure toi que Cure soit bien cochée.
- Si "Suspicious object" ou Sptd ou ForgedFile.Multi.Generic : laisse l'option cochée sur Skip
- Si Rootkit.Win32.ZAccess.* est détecté règle sur cure en haut , et delete en bas:D
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Le scan n'a rien trouvé.
Je te fais un copier/coller du détail
19:27:50.0421 3108 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
19:27:50.0953 3108 ============================================================
19:27:50.0953 3108 Current date / time: 2013/07/23 19:27:50.0953
19:27:50.0953 3108 SystemInfo:
19:27:50.0953 3108
19:27:50.0953 3108 OS Version: 5.1.2600 ServicePack: 3.0
19:27:50.0953 3108 Product type: Workstation
19:27:50.0953 3108 ComputerName: SA-2WL3PH0K2XL2
19:27:50.0953 3108 UserName: FOURE
19:27:50.0953 3108 Windows directory: C:\WINDOWS
19:27:50.0953 3108 System windows directory: C:\WINDOWS
19:27:50.0953 3108 Processor architecture: Intel x86
19:27:50.0953 3108 Number of processors: 2
19:27:50.0953 3108 Page size: 0x1000
19:27:50.0953 3108 Boot type: Normal boot
19:27:50.0953 3108 ============================================================
19:27:51.0953 3108 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x7E2D, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000054
19:27:52.0171 3108 ============================================================
19:27:52.0171 3108 \Device\Harddisk0\DR0:
19:27:52.0203 3108 MBR partitions:
19:27:52.0203 3108 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1000800, BlocksNum 0x1C1C4970
19:27:52.0203 3108 ============================================================
19:27:52.0234 3108 C: <-> \Device\Harddisk0\DR0\Partition1
19:27:52.0234 3108 ============================================================
19:27:52.0234 3108 Initialize success
19:27:52.0234 3108 ============================================================
19:28:01.0687 3620 ============================================================
19:28:01.0687 3620 Scan started
19:28:01.0687 3620 Mode: Manual;
19:28:01.0687 3620 ============================================================
19:28:02.0343 3620 ================ Scan system memory ========================
19:28:02.0343 3620 System memory - ok
19:28:02.0343 3620 ================ Scan services =============================
19:28:02.0562 3620 [ 4C1FD15C288B2389A154BD78043160FF ] A0380VID C:\WINDOWS\system32\DRIVERS\A0380Vid.sys
19:28:02.0671 3620 A0380VID - ok
19:28:02.0671 3620 Abiosdsk - ok
19:28:02.0687 3620 abp480n5 - ok
19:28:02.0812 3620 [ E5B8644DB3436FA4A4665E945923A54C ] AcerSyncSystemService C:\Program Files\Acer\AcerSync\AcerSyncSystemService.exe
19:28:02.0812 3620 AcerSyncSystemService - ok
19:28:02.0843 3620 [ E5E6DBFC41EA8AAD005CB9A57A96B43B ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
19:28:02.0843 3620 ACPI - ok
19:28:02.0875 3620 [ E4ABC1212B70BB03D35E60681C447210 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
19:28:02.0890 3620 ACPIEC - ok
19:28:02.0953 3620 [ 45586DC24ACF54EBB7D0D494653942E9 ] AcrSch2Svc C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
19:28:02.0953 3620 AcrSch2Svc - ok
19:28:03.0046 3620 [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
19:28:03.0046 3620 AdobeFlashPlayerUpdateSvc - ok
19:28:03.0046 3620 adpu160m - ok
19:28:03.0109 3620 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
19:28:03.0109 3620 aec - ok
19:28:03.0156 3620 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
19:28:03.0156 3620 AFD - ok
19:28:03.0156 3620 Aha154x - ok
19:28:03.0187 3620 aic78u2 - ok
19:28:03.0187 3620 aic78xx - ok
19:28:03.0218 3620 [ 758FDC60D41716EF889D849989B4B1CD ] Alerter C:\WINDOWS\system32\alrsvc.dll
19:28:03.0234 3620 Alerter - ok
19:28:03.0265 3620 [ 5E9A6658A2A69AE7EB195113B7A2E7A9 ] ALG C:\WINDOWS\System32\alg.exe
19:28:03.0265 3620 ALG - ok
19:28:03.0265 3620 AliIde - ok
19:28:03.0281 3620 amsint - ok
19:28:03.0296 3620 [ 29C537D74694DE38B07B8D0C37BC25C5 ] APL531 C:\WINDOWS\system32\Drivers\HDvid.sys
19:28:03.0312 3620 APL531 - ok
19:28:03.0390 3620 [ 4FE5C6D40664AE07BE5105874357D2ED ] Apple Mobile Device C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
19:28:03.0390 3620 Apple Mobile Device - ok
19:28:03.0406 3620 AppMgmt - ok
19:28:03.0421 3620 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
19:28:03.0421 3620 Arp1394 - ok
19:28:03.0437 3620 asc - ok
19:28:03.0453 3620 asc3350p - ok
19:28:03.0468 3620 asc3550 - ok
19:28:03.0593 3620 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
19:28:03.0609 3620 aspnet_state - ok
19:28:03.0656 3620 [ 4AF5F360BA1E8794D32B366E45A64A0A ] aswFsBlk C:\WINDOWS\system32\drivers\aswFsBlk.sys
19:28:03.0656 3620 aswFsBlk - ok
19:28:03.0718 3620 [ 4691B3FE3717F9D9C64A5282C8543D4D ] aswKbd C:\WINDOWS\system32\drivers\aswKbd.sys
19:28:03.0718 3620 aswKbd - ok
19:28:03.0734 3620 [ 1F7094D4268D46F718C51286DC189791 ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
19:28:03.0734 3620 aswMonFlt - ok
19:28:03.0781 3620 [ 7B43265F92257A21CBFD88E7A651044C ] aswRdr C:\WINDOWS\system32\drivers\aswRdr.sys
19:28:03.0781 3620 aswRdr - ok
19:28:03.0812 3620 [ B680134BA1813B78B47FDD1DFF223CA5 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
19:28:03.0812 3620 aswRvrt - ok
19:28:03.0843 3620 [ CCD565A8A72AF7D45F9A242013870926 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
19:28:03.0859 3620 aswSnx - ok
19:28:03.0890 3620 [ 937300BC7C4CDF7576BCCE44E19BBB9D ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
19:28:03.0906 3620 aswSP - ok
19:28:03.0921 3620 [ 1F71F170D90E42EFDE9633D81D5E12DC ] aswTdi C:\WINDOWS\system32\drivers\aswTdi.sys
19:28:03.0921 3620 aswTdi - ok
19:28:03.0937 3620 [ 8CFAA2B965773A653F48F1207A9CB9C4 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
19:28:03.0953 3620 aswVmm - ok
19:28:03.0984 3620 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
19:28:03.0984 3620 AsyncMac - ok
19:28:04.0000 3620 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
19:28:04.0000 3620 atapi - ok
19:28:04.0000 3620 Atdisk - ok
19:28:04.0031 3620 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
19:28:04.0031 3620 Atmarpc - ok
19:28:04.0093 3620 [ B4005AEF7873144634765B570DAC466E ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
19:28:04.0093 3620 AudioSrv - ok
19:28:04.0140 3620 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
19:28:04.0140 3620 audstub - ok
19:28:04.0203 3620 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
19:28:04.0203 3620 avast! Antivirus - ok
19:28:04.0250 3620 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
19:28:04.0250 3620 Beep - ok
19:28:04.0296 3620 [ BAA0B6E647C1AD593E9BAE5CC31BCFFB ] BITS C:\WINDOWS\system32\qmgr.dll
19:28:04.0312 3620 BITS - ok
19:28:04.0390 3620 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
19:28:04.0406 3620 Bonjour Service - ok
19:28:04.0437 3620 [ F934D1B230F84E1D19DD00AC5A7A83ED ] Bridge C:\WINDOWS\system32\DRIVERS\bridge.sys
19:28:04.0437 3620 Bridge - ok
19:28:04.0437 3620 [ F934D1B230F84E1D19DD00AC5A7A83ED ] BridgeMP C:\WINDOWS\system32\DRIVERS\bridge.sys
19:28:04.0437 3620 BridgeMP - ok
19:28:04.0484 3620 [ 952322AE7F95A21F3EEDA99C36C68663 ] Browser C:\WINDOWS\System32\browser.dll
19:28:04.0484 3620 Browser - ok
19:28:04.0531 3620 [ E156C353FCBC05DB5DEE57BE0592F2D4 ] camfilt C:\WINDOWS\system32\Drivers\camfilt.sys
19:28:04.0531 3620 camfilt - ok
19:28:04.0640 3620 catchme - ok
19:28:04.0687 3620 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
19:28:04.0687 3620 cbidf2k - ok
19:28:04.0718 3620 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
19:28:04.0718 3620 CCDECODE - ok
19:28:04.0734 3620 cd20xrnt - ok
19:28:04.0781 3620 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
19:28:04.0781 3620 Cdaudio - ok
19:28:04.0796 3620 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
19:28:04.0796 3620 Cdfs - ok
19:28:04.0843 3620 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
19:28:04.0843 3620 Cdrom - ok
19:28:04.0859 3620 Changer - ok
19:28:04.0906 3620 [ 793EF38A5FD086C3C8E48A8A861562ED ] CiSvc C:\WINDOWS\system32\cisvc.exe
19:28:04.0906 3620 CiSvc - ok
19:28:04.0953 3620 [ 8B30CBB0C07D49B2658FB190946B0E7E ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
19:28:04.0953 3620 ClipSrv - ok
19:28:05.0015 3620 [ 7FA87325900183197BC9710D1CE4C9FA ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:28:05.0093 3620 clr_optimization_v2.0.50727_32 - ok
19:28:05.0187 3620 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:28:05.0187 3620 clr_optimization_v4.0.30319_32 - ok
19:28:05.0203 3620 CmdIde - ok
19:28:05.0203 3620 COMSysApp - ok
19:28:05.0218 3620 Cpqarray - ok
19:28:05.0265 3620 [ 7A6D0B71035E123FDDA2156A25578AD3 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
19:28:05.0265 3620 CryptSvc - ok
19:28:05.0265 3620 dac2w2k - ok
19:28:05.0281 3620 dac960nt - ok
19:28:05.0328 3620 [ 0203B1AAD358F206CB0A3C1F93CCE17A ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
19:28:05.0343 3620 DcomLaunch - ok
19:28:05.0343 3620 dgderdrv - ok
19:28:05.0406 3620 [ 318F535DC05551D96DEEB90B6D6904DE ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
19:28:05.0406 3620 Dhcp - ok
19:28:05.0421 3620 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
19:28:05.0421 3620 Disk - ok
19:28:05.0421 3620 dmadmin - ok
19:28:05.0468 3620 [ F5DEADD42335FB33EDCA74ECB2F36CBA ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
19:28:05.0500 3620 dmboot - ok
19:28:05.0531 3620 [ 5A7C47C9B3F9FB92A66410A7509F0C71 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
19:28:05.0531 3620 dmio - ok
19:28:05.0562 3620 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
19:28:05.0562 3620 dmload - ok
19:28:05.0593 3620 [ 6797C23D6B79935482D7F0E8CA5E5B67 ] dmserver C:\WINDOWS\System32\dmserver.dll
19:28:05.0593 3620 dmserver - ok
19:28:05.0640 3620 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
19:28:05.0640 3620 DMusic - ok
19:28:05.0687 3620 [ 1A1E59377FB6CACD711CC5073C4A7D79 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
19:28:05.0687 3620 Dnscache - ok
19:28:05.0734 3620 [ 3FCF86F03D0302443C21CE6E5BBF7A25 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
19:28:05.0734 3620 Dot3svc - ok
19:28:05.0734 3620 dpti2o - ok
19:28:05.0875 3620 [ 0F1189883690949BA7A9F68339587E51 ] driverhardwarev2 C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
19:28:05.0875 3620 driverhardwarev2 - ok
19:28:05.0921 3620 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
19:28:05.0921 3620 drmkaud - ok
19:28:05.0953 3620 [ 651554E483712B708EDE864D0CA1AA73 ] DrvAgent32 C:\WINDOWS\system32\Drivers\DrvAgent32.sys
19:28:05.0953 3620 DrvAgent32 - ok
19:28:05.0984 3620 [ 8B5FC9087D2CAB110BC2ED5CC5E7B8AC ] EapHost C:\WINDOWS\System32\eapsvc.dll
19:28:05.0984 3620 EapHost - ok
19:28:06.0031 3620 [ 94F948CB12C4D35483F1E815DEB16C7B ] ERSvc C:\WINDOWS\System32\ersvc.dll
19:28:06.0046 3620 ERSvc - ok
19:28:06.0093 3620 [ A55DD7D8CED5D2624A9EE2DDA7BE0319 ] es1371 C:\WINDOWS\system32\drivers\es1371mp.sys
19:28:06.0093 3620 es1371 - ok
19:28:06.0171 3620 [ C3FB1D70CB88722267949694BA51759E ] Eventlog C:\WINDOWS\system32\services.exe
19:28:06.0171 3620 Eventlog - ok
19:28:06.0234 3620 [ EC16AE9B37EACF871629227A3F3913FD ] EventSystem C:\WINDOWS\System32\es.dll
19:28:06.0234 3620 EventSystem - ok
19:28:06.0281 3620 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
19:28:06.0296 3620 Fastfat - ok
19:28:06.0343 3620 [ 1B8542F338CDD86929A084A455837158 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
19:28:06.0343 3620 FastUserSwitchingCompatibility - ok
19:28:06.0375 3620 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
19:28:06.0390 3620 Fdc - ok
19:28:06.0421 3620 [ E9648254056BCE81A85380C0C3647DC4 ] FETNDIS C:\WINDOWS\system32\DRIVERS\fetnd5.sys
19:28:06.0421 3620 FETNDIS - ok
19:28:06.0453 3620 [ 31F923EB2170FC172C81ABDA0045D18C ] Fips C:\WINDOWS\system32\drivers\Fips.sys
19:28:06.0453 3620 Fips - ok
19:28:06.0468 3620 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
19:28:06.0468 3620 Flpydisk - ok
19:28:06.0515 3620 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
19:28:06.0515 3620 FltMgr - ok
19:28:06.0578 3620 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
19:28:06.0578 3620 FontCache3.0.0.0 - ok
19:28:06.0609 3620 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
19:28:06.0609 3620 Fs_Rec - ok
19:28:06.0656 3620 [ A86859B77B908C18C2657F284AA29FE3 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
19:28:06.0656 3620 Ftdisk - ok
19:28:06.0703 3620 [ 065639773D8B03F33577F6CDAEA21063 ] gameenum C:\WINDOWS\system32\DRIVERS\gameenum.sys
19:28:06.0703 3620 gameenum - ok
19:28:06.0734 3620 [ 185ADA973B5020655CEE342059A86CBB ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
19:28:06.0734 3620 GEARAspiWDM - ok
19:28:06.0765 3620 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
19:28:06.0765 3620 Gpc - ok
19:28:06.0843 3620 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
19:28:06.0843 3620 gupdate - ok
19:28:06.0859 3620 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
19:28:06.0859 3620 gupdatem - ok
19:28:06.0921 3620 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
19:28:06.0921 3620 gusvc - ok
19:28:06.0937 3620 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
19:28:06.0937 3620 HDAudBus - ok
19:28:07.0031 3620 [ 1247F83B705AF0E796330442F7967CF8 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
19:28:07.0031 3620 helpsvc - ok
19:28:07.0078 3620 [ A3B9B4A68BC839CE5A264D5908092261 ] HidServ C:\WINDOWS\System32\hidserv.dll
19:28:07.0093 3620 HidServ - ok
19:28:07.0109 3620 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
19:28:07.0109 3620 HidUsb - ok
19:28:07.0140 3620 [ 17B3C3D40CDBA40C2E331D28BE4DE27F ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
19:28:07.0156 3620 hkmsvc - ok
19:28:07.0156 3620 hpn - ok
19:28:07.0187 3620 [ 30CA91E657CEDE2F95359D6EF186F650 ] HPZid412 C:\WINDOWS\system32\DRIVERS\HPZid412.sys
19:28:07.0187 3620 HPZid412 - ok
19:28:07.0203 3620 [ EFD31AFA752AA7C7BBB57BCBE2B01C78 ] HPZipr12 C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
19:28:07.0218 3620 HPZipr12 - ok
19:28:07.0250 3620 [ 7AC43C38CA8FD7ED0B0A4466F753E06E ] HPZius12 C:\WINDOWS\system32\DRIVERS\HPZius12.sys
19:28:07.0250 3620 HPZius12 - ok
19:28:07.0281 3620 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
19:28:07.0281 3620 HTTP - ok
19:28:07.0343 3620 [ BD31CFACE38D1800ABDB43F4260AF0D5 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
19:28:07.0343 3620 HTTPFilter - ok
19:28:07.0359 3620 i2omgmt - ok
19:28:07.0375 3620 i2omp - ok
19:28:07.0406 3620 [ A09BDC4ED10E3B2E0EC27BB94AF32516 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
19:28:07.0406 3620 i8042prt - ok
19:28:07.0500 3620 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
19:28:07.0515 3620 IDriverT - ok
19:28:07.0578 3620 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
19:28:07.0609 3620 idsvc - ok
19:28:07.0703 3620 [ AD5DF6F4FBBC798636EDC66BFEC7D0DE ] IJPLMSVC C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
19:28:07.0703 3620 IJPLMSVC - ok
19:28:07.0718 3620 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
19:28:07.0718 3620 Imapi - ok
19:28:07.0781 3620 [ C4221678BBAA55239C23632875759961 ] ImapiService C:\WINDOWS\System32\imapi.exe
19:28:07.0796 3620 ImapiService - ok
19:28:07.0812 3620 [ 242B1EDC880D892A0A6C5940D38654FC ] incdrm C:\WINDOWS\system32\drivers\incdrm.sys
19:28:07.0812 3620 incdrm - ok
19:28:07.0828 3620 ini910u - ok
19:28:08.0031 3620 [ CBDDAB14249B2F05407FC09AB8FFFB88 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
19:28:08.0171 3620 IntcAzAudAddService - ok
19:28:08.0187 3620 IntelIde - ok
19:28:08.0218 3620 [ AD340800C35A42D4DE1641A37FEEA34C ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
19:28:08.0218 3620 intelppm - ok
19:28:08.0265 3620 [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys
19:28:08.0265 3620 ip6fw - ok
19:28:08.0296 3620 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
19:28:08.0296 3620 IpFilterDriver - ok
19:28:08.0312 3620 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
19:28:08.0312 3620 IpInIp - ok
19:28:08.0343 3620 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
19:28:08.0343 3620 IpNat - ok
19:28:08.0421 3620 [ FE56897B27ED266F9C4E7D90A0B5DA47 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
19:28:08.0421 3620 iPod Service - ok
19:28:08.0453 3620 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
19:28:08.0453 3620 IPSec - ok
19:28:08.0500 3620 [ EFE93361E5E2D14A403EC62235C53023 ] IpWrapper C:\Program Files\IpWrapper\nssm.exe
19:28:08.0500 3620 IpWrapper - ok
19:28:08.0531 3620 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
19:28:08.0531 3620 IRENUM - ok
19:28:08.0578 3620 [ 355836975A67B6554BCA60328CD6CB74 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
19:28:08.0578 3620 isapnp - ok
19:28:08.0687 3620 [ 9ECF00E19736054E019C532AED8228FC ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
19:28:08.0687 3620 JavaQuickStarterService - ok
19:28:08.0703 3620 JL2005C - ok
19:28:08.0734 3620 [ 16813155807C6881F4BFBF6657424659 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
19:28:08.0734 3620 Kbdclass - ok
19:28:08.0781 3620 [ 94C59CB884BA010C063687C3A50DCE8E ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
19:28:08.0781 3620 kbdhid - ok
19:28:08.0796 3620 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
19:28:08.0796 3620 kmixer - ok
19:28:08.0828 3620 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
19:28:08.0843 3620 KSecDD - ok
19:28:08.0875 3620 [ 1DB8078A32E03AC8F5EB5E6DCAC2AA34 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
19:28:08.0875 3620 lanmanserver - ok
19:28:08.0921 3620 [ AD54EAD46D92F413BE189AABC1C59490 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
19:28:08.0937 3620 lanmanworkstation - ok
19:28:08.0968 3620 Lavasoft Kernexplorer - ok
19:28:08.0968 3620 Lbd - ok
19:28:08.0968 3620 lbrtfdc - ok
19:28:09.0031 3620 [ 0F357C079AC529A844AB5B18E4EEF881 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
19:28:09.0031 3620 LmHosts - ok
19:28:09.0078 3620 [ 3137B276C48D77DC05B7592E156E2880 ] maconfservice C:\Program Files\ma-config.com\maconfservice.exe
19:28:09.0078 3620 maconfservice - ok
19:28:09.0093 3620 [ E67A66A3781C1A483F0F8992664CBE0D ] Messenger C:\WINDOWS\System32\msgsvc.dll
19:28:09.0109 3620 Messenger - ok
19:28:09.0187 3620 Microsoft SharePoint Workspace Audit Service - ok
19:28:09.0234 3620 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
19:28:09.0234 3620 mnmdd - ok
19:28:09.0281 3620 [ D3A2870CD96CDA7BCFF3DC54F64087AD ] mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe
19:28:09.0281 3620 mnmsrvc - ok
19:28:09.0328 3620 [ 510ADE9327FE84C10254E1902697E25F ] Modem C:\WINDOWS\system32\drivers\Modem.sys
19:28:09.0343 3620 Modem - ok
19:28:09.0375 3620 [ 027C01BD7EF3349AAEBC883D8A799EFB ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
19:28:09.0375 3620 Mouclass - ok
19:28:09.0406 3620 [ 124D6846040C79B9C997F78EF4B2A4E5 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
19:28:09.0406 3620 mouhid - ok
19:28:09.0453 3620 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
19:28:09.0453 3620 MountMgr - ok
19:28:09.0500 3620 MozillaMaintenance - ok
19:28:09.0531 3620 mraid35x - ok
19:28:09.0546 3620 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
19:28:09.0562 3620 MRxDAV - ok
19:28:09.0609 3620 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
19:28:09.0625 3620 MRxSmb - ok
19:28:09.0671 3620 [ 8648D670AE0D95C95E7BBB5B80661796 ] MSDTC C:\WINDOWS\System32\msdtc.exe
19:28:09.0687 3620 MSDTC - ok
19:28:09.0703 3620 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
19:28:09.0703 3620 Msfs - ok
19:28:09.0718 3620 [ 082A950191DDE602BBEA8EF4E5900251 ] msgame C:\WINDOWS\system32\DRIVERS\msgame.sys
19:28:09.0718 3620 msgame - ok
19:28:09.0734 3620 MSIServer - ok
19:28:09.0781 3620 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
19:28:09.0781 3620 MSKSSRV - ok
19:28:09.0781 3620 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
19:28:09.0796 3620 MSPCLOCK - ok
19:28:09.0812 3620 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
19:28:09.0812 3620 MSPQM - ok
19:28:09.0843 3620 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
19:28:09.0843 3620 mssmbios - ok
19:28:09.0890 3620 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
19:28:09.0890 3620 MSTEE - ok
19:28:09.0921 3620 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
19:28:09.0921 3620 Mup - ok
19:28:09.0937 3620 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
19:28:09.0937 3620 NABTSFEC - ok
19:28:09.0984 3620 [ 69E4FBBABAEEE1BFF422E091DA3171DA ] napagent C:\WINDOWS\System32\qagentrt.dll
19:28:10.0000 3620 napagent - ok
19:28:10.0046 3620 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
19:28:10.0046 3620 NDIS - ok
19:28:10.0093 3620 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
19:28:10.0109 3620 NdisIP - ok
19:28:10.0140 3620 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
19:28:10.0140 3620 NdisTapi - ok
19:28:10.0156 3620 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
19:28:10.0156 3620 Ndisuio - ok
19:28:10.0171 3620 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
19:28:10.0187 3620 NdisWan - ok
19:28:10.0218 3620 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
19:28:10.0234 3620 NDProxy - ok
19:28:10.0250 3620 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
19:28:10.0250 3620 NetBIOS - ok
19:28:10.0265 3620 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
19:28:10.0281 3620 NetBT - ok
19:28:10.0312 3620 [ 5C9B1D83755B36237B70F95DF3D46A52 ] NetDDE C:\WINDOWS\system32\netdde.exe
19:28:10.0312 3620 NetDDE - ok
19:28:10.0328 3620 [ 5C9B1D83755B36237B70F95DF3D46A52 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
19:28:10.0343 3620 NetDDEdsdm - ok
19:28:10.0375 3620 [ 91E6024D6D4DCDECDB36C43ECF9BBECB ] Netlogon C:\WINDOWS\System32\lsass.exe
19:28:10.0390 3620 Netlogon - ok
19:28:10.0437 3620 [ BE0CB143FA427D93440DED18DB8C918B ] Netman C:\WINDOWS\System32\netman.dll
19:28:10.0437 3620 Netman - ok
19:28:10.0484 3620 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
19:28:10.0484 3620 NetTcpPortSharing - ok
19:28:10.0515 3620 [ E9E47CFB2D461FA0FC75B7A74C6383EA ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys
19:28:10.0531 3620 NIC1394 - ok
19:28:10.0546 3620 [ 6F5F546A92C7B6AE45DB1D6910781EB0 ] Nla C:\WINDOWS\System32\mswsock.dll
19:28:10.0562 3620 Nla - ok
19:28:10.0578 3620 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
19:28:10.0578 3620 Npfs - ok
19:28:10.0625 3620 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
19:28:10.0640 3620 Ntfs - ok
19:28:10.0687 3620 [ 91E6024D6D4DCDECDB36C43ECF9BBECB ] NtLmSsp C:\WINDOWS\System32\lsass.exe
19:28:10.0687 3620 NtLmSsp - ok
19:28:10.0718 3620 [ 037D92B3A7853A183FCAB77FB1D13D6C ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
19:28:10.0734 3620 NtmsSvc - ok
19:28:10.0765 3620 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
19:28:10.0765 3620 Null - ok
19:28:11.0203 3620 [ 7B5A17BD54BB9142843DBE99A1CAAED8 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
19:28:11.0531 3620 nv - ok
19:28:11.0562 3620 [ FB61DB41ABB47FF893A35DCA09628D12 ] NVHDA C:\WINDOWS\system32\drivers\nvhda32.sys
19:28:11.0562 3620 NVHDA - ok
19:28:11.0609 3620 [ 5150B108EA88831E1C599603D8B89621 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe
19:28:11.0609 3620 NVSvc - ok
19:28:11.0718 3620 [ 83E8AB7BB3C8956C53FEC071C94F0BBB ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
19:28:11.0781 3620 nvUpdatusService - ok
19:28:11.0828 3620 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
19:28:11.0828 3620 NwlnkFlt - ok
19:28:11.0843 3620 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
19:28:11.0843 3620 NwlnkFwd - ok
19:28:11.0875 3620 [ CA33832DF41AFB202EE7AEB05145922F ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys
19:28:11.0890 3620 ohci1394 - ok
19:28:11.0921 3620 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE
19:28:11.0921 3620 ose - ok
19:28:12.0140 3620 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Fichiers communs\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
19:28:12.0281 3620 osppsvc - ok
19:28:12.0312 3620 [ 8FD0BDBEA875D06CCF6C945CA9ABAF75 ] Parport C:\WINDOWS\system32\drivers\Parport.sys
19:28:12.0312 3620 Parport - ok
19:28:12.0328 3620 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
19:28:12.0343 3620 PartMgr - ok
19:28:12.0375 3620 [ 9575C5630DB8FB804649A6959737154C ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
19:28:12.0375 3620 ParVdm - ok
19:28:12.0375 3620 [ 043410877BDA580C528F45165F7125BC ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
19:28:12.0390 3620 PCI - ok
19:28:12.0390 3620 PCIDump - ok
19:28:12.0421 3620 [ F4BFDE7209C14A07AAA61E4D6AE69EAC ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
19:28:12.0437 3620 PCIIde - ok
19:28:12.0468 3620 [ F0406CBC60BDB0394A0E17FFB04CDD3D ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
19:28:12.0484 3620 Pcmcia - ok
19:28:12.0484 3620 PDCOMP - ok
19:28:12.0500 3620 PDFRAME - ok
19:28:12.0515 3620 PDRELI - ok
19:28:12.0515 3620 PDRFRAME - ok
19:28:12.0531 3620 perc2 - ok
19:28:12.0531 3620 perc2hib - ok
19:28:12.0640 3620 [ 957B82EC80AD7EAD64E5E47DF6B0DC40 ] pfc C:\WINDOWS\system32\drivers\pfc.sys
19:28:12.0687 3620 pfc - ok
19:28:12.0734 3620 [ B293F05AD9120B0232C28945C1E98CD0 ] PfModNT C:\WINDOWS\system32\PfModNT.sys
19:28:12.0750 3620 PfModNT - ok
19:28:12.0765 3620 [ C3FB1D70CB88722267949694BA51759E ] PlugPlay C:\WINDOWS\system32\services.exe
19:28:12.0765 3620 PlugPlay - ok
19:28:12.0828 3620 [ D31F88C5F19EEFA366A415D6BC5F2ABC ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
19:28:12.0828 3620 Pml Driver HPZ12 - ok
19:28:12.0843 3620 [ 91E6024D6D4DCDECDB36C43ECF9BBECB ] PolicyAgent C:\WINDOWS\System32\lsass.exe
19:28:12.0859 3620 PolicyAgent - ok
19:28:12.0906 3620 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
19:28:12.0906 3620 PptpMiniport - ok
19:28:12.0921 3620 [ E19C9632AC828F6F214391E2BDDA11CB ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
19:28:12.0937 3620 Processor - ok
19:28:12.0953 3620 [ 18D9789A4664BF417EEA944D2776091A ] prodrv06 C:\WINDOWS\System32\drivers\prodrv06.sys
19:28:12.0968 3620 prodrv06 - ok
19:28:13.0000 3620 [ 8CC9671A7ED2902E747EE0892E1C8575 ] prohlp02 C:\WINDOWS\system32\drivers\prohlp02.sys
19:28:13.0000 3620 prohlp02 - ok
19:28:13.0031 3620 [ 960BCE3ED38761B446AABAC06C76BADF ] prosync1 C:\WINDOWS\system32\drivers\prosync1.sys
19:28:13.0031 3620 prosync1 - ok
19:28:13.0046 3620 [ 91E6024D6D4DCDECDB36C43ECF9BBECB ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
19:28:13.0062 3620 ProtectedStorage - ok
19:28:13.0062 3620 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
19:28:13.0062 3620 PSched - ok
19:28:13.0093 3620 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
19:28:13.0093 3620 Ptilink - ok
19:28:13.0140 3620 [ 5039A4F67F781E03B79A4FD0CAE27FC8 ] PVUSB C:\WINDOWS\system32\DRIVERS\CESG502.sys
19:28:13.0140 3620 PVUSB - ok
19:28:13.0171 3620 [ CFACAA25576D473EF7B771ECE1B24D73 ] pwdrvio C:\WINDOWS\system32\pwdrvio.sys
19:28:13.0187 3620 pwdrvio - ok
19:28:13.0218 3620 [ 0B675A61B23561C86E8710F751842276 ] pwdspio C:\WINDOWS\system32\pwdspio.sys
19:28:13.0234 3620 pwdspio - ok
19:28:13.0265 3620 [ D86B4A68565E444D76457F14172C875A ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
19:28:13.0281 3620 PxHelp20 - ok
19:28:13.0281 3620 ql1080 - ok
19:28:13.0296 3620 Ql10wnt - ok
19:28:13.0312 3620 ql12160 - ok
19:28:13.0312 3620 ql1240 - ok
19:28:13.0328 3620 ql1280 - ok
19:28:13.0375 3620 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
19:28:13.0375 3620 RasAcd - ok
19:28:13.0406 3620 [ 78DA9CCDAC683EF5AA87D1C919F6D221 ] RasAuto C:\WINDOWS\System32\rasauto.dll
19:28:13.0421 3620 RasAuto - ok
19:28:13.0453 3620 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
19:28:13.0453 3620 Rasl2tp - ok
19:28:13.0500 3620 [ 0A48DF90B4784F9B90A2671AF992C914 ] RasMan C:\WINDOWS\System32\rasmans.dll
19:28:13.0515 3620 RasMan - ok
19:28:13.0515 3620 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
19:28:13.0515 3620 RasPppoe - ok
19:28:13.0531 3620 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
19:28:13.0531 3620 Raspti - ok
19:28:13.0546 3620 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
19:28:13.0546 3620 Rdbss - ok
19:28:13.0562 3620 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
19:28:13.0562 3620 RDPCDD - ok
19:28:13.0625 3620 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
19:28:13.0625 3620 RDPWD - ok
19:28:13.0687 3620 [ 9F63D9C5B238ED1C375D417EFF3D5BE7 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
19:28:13.0687 3620 RDSessMgr - ok
19:28:13.0703 3620 [ D8EB2A7904DB6C916EB5361878DDCBAE ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
19:28:13.0718 3620 redbook - ok
19:28:13.0750 3620 [ 7DA370C31673C99497BD07068EE6E354 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
19:28:13.0750 3620 RemoteAccess - ok
19:28:13.0765 3620 [ 499C59A2584F6D4EA41E944DA571D993 ] RpcLocator C:\WINDOWS\System32\locator.exe
19:28:13.0765 3620 RpcLocator - ok
19:28:13.0812 3620 [ 0203B1AAD358F206CB0A3C1F93CCE17A ] RpcSs C:\WINDOWS\system32\rpcss.dll
19:28:13.0812 3620 RpcSs - ok
19:28:13.0843 3620 [ 414964844F4793ACB868D057E8ED997E ] RSVP C:\WINDOWS\System32\rsvp.exe
19:28:13.0875 3620 RSVP - ok
19:28:13.0921 3620 [ EE5AD71A1F576D4D58D8D014560EB856 ] rt2870 C:\WINDOWS\system32\DRIVERS\rt2870.sys
19:28:13.0968 3620 rt2870 - ok
19:28:13.0984 3620 [ 91E6024D6D4DCDECDB36C43ECF9BBECB ] SamSs C:\WINDOWS\system32\lsass.exe
19:28:14.0000 3620 SamSs - ok
19:28:14.0062 3620 [ B84BC802CCC0F2FAC78F8B8E22DAE60C ] sbpci C:\WINDOWS\system32\drivers\sbpci.sys
19:28:14.0109 3620 sbpci - ok
19:28:14.0140 3620 [ 0505DA5D357F18A5D42FC5DEDE6BC9A0 ] SBRE C:\WINDOWS\system32\drivers\SBREdrv.sys
19:28:14.0140 3620 SBRE - ok
19:28:14.0171 3620 [ 67949CC8A865296C1333C96A4E1A2D66 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
19:28:14.0203 3620 SCardSvr - ok
19:28:14.0218 3620 [ 55F5C5C1BE1A78E285033E432BA01597 ] Schedule C:\WINDOWS\system32\schedsvc.dll
19:28:14.0250 3620 Schedule - ok
19:28:14.0265 3620 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
19:28:14.0265 3620 Secdrv - ok
19:28:14.0296 3620 [ 5AC311C0AF2AF5EC221670BB8DC479D3 ] seclogon C:\WINDOWS\System32\seclogon.dll
19:28:14.0312 3620 seclogon - ok
19:28:14.0328 3620 [ 3531366F38F453D08FE72E7B32DFE786 ] SENS C:\WINDOWS\system32\sens.dll
19:28:14.0328 3620 SENS - ok
19:28:14.0359 3620 [ 93D313C31F7AD9EA2B75F26075413C7C ] Serial C:\WINDOWS\system32\drivers\Serial.sys
19:28:14.0375 3620 Serial - ok
19:28:14.0421 3620 [ 462AEE0EA0481EA8BD45CAC876A4CCC4 ] sfhlp01 C:\WINDOWS\system32\drivers\sfhlp01.sys
19:28:14.0437 3620 sfhlp01 - ok
19:28:14.0437 3620 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
19:28:14.0453 3620 Sfloppy - ok
19:28:14.0500 3620 [ F4CE708A7D17A625DE6C0FD746D50E88 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
19:28:14.0515 3620 SharedAccess - ok
19:28:14.0562 3620 [ 1B8542F338CDD86929A084A455837158 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
19:28:14.0578 3620 ShellHWDetection - ok
19:28:14.0578 3620 Simbad - ok
19:28:14.0625 3620 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
19:28:14.0625 3620 SLIP - ok
19:28:14.0687 3620 [ BCC773872041AA59BC9A6CF770FB32E2 ] snapman C:\WINDOWS\system32\DRIVERS\snapman.sys
19:28:14.0718 3620 snapman - ok
19:28:14.0765 3620 [ A1ECEEAA5C5E74B2499EB51D38185B84 ] SONYPVU1 C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
19:28:14.0765 3620 SONYPVU1 - ok
19:28:14.0781 3620 Sparrow - ok
19:28:14.0812 3620 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
19:28:14.0828 3620 splitter - ok
19:28:14.0859 3620 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
19:28:14.0875 3620 Spooler - ok
19:28:14.0906 3620 [ 68103A2B441BBF3908EBB587F0704D6C ] sptd C:\WINDOWS\System32\Drivers\sptd.sys
19:28:14.0921 3620 sptd - ok
19:28:14.0921 3620 [ 39626E6DC1FB39434EC40C42722B660A ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
19:28:14.0937 3620 sr - ok
19:28:14.0968 3620 [ 6ED29124A1C83BD0CF6B26BD01CA6F6F ] srservice C:\WINDOWS\System32\srsvc.dll
19:28:14.0984 3620 srservice - ok
19:28:15.0015 3620 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
19:28:15.0015 3620 Srv - ok
19:28:15.0046 3620 [ EA9E0DB8684CEF2FD3BADD671DF5A112 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
19:28:15.0062 3620 SSDPSRV - ok
19:28:15.0093 3620 [ D76B0E8A4ECAD1ADCC75FD14A7ACC54C ] stisvc C:\WINDOWS\system32\wiaservc.dll
19:28:15.0109 3620 stisvc - ok
19:28:15.0140 3620 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
19:28:15.0156 3620 streamip - ok
19:28:15.0171 3620 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
19:28:15.0171 3620 swenum - ok
19:28:15.0187 3620 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
19:28:15.0203 3620 swmidi - ok
19:28:15.0203 3620 SwPrv - ok
19:28:15.0218 3620 symc810 - ok
19:28:15.0234 3620 symc8xx - ok
19:28:15.0250 3620 sym_hi - ok
19:28:15.0250 3620 sym_u3 - ok
19:28:15.0281 3620 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
19:28:15.0281 3620 sysaudio - ok
19:28:15.0343 3620 [ 0899061318A6B1D9596AABFC77F45E44 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
19:28:15.0359 3620 SysmonLog - ok
19:28:15.0390 3620 [ 8E5231171AD6595FF002E848CC54FCD7 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
19:28:15.0406 3620 TapiSrv - ok
19:28:15.0468 3620 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
19:28:15.0468 3620 Tcpip - ok
19:28:15.0500 3620 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
19:28:15.0500 3620 TDPIPE - ok
19:28:15.0531 3620 [ 603D59923828C6C213B84B14CBF32083 ] tdrpman C:\WINDOWS\system32\DRIVERS\tdrpman.sys
19:28:15.0546 3620 tdrpman - ok
19:28:15.0562 3620 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
19:28:15.0578 3620 TDTCP - ok
19:28:15.0765 3620 [ 7C8DD5576695B3362202EF09B20C425E ] TeamViewer8 C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
19:28:15.0796 3620 TeamViewer8 - ok
19:28:15.0828 3620 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
19:28:15.0828 3620 TermDD - ok
19:28:15.0906 3620 [ 710BC85A8C22626EE094439E3EA0D38C ] TermService C:\WINDOWS\System32\termsrv.dll
19:28:15.0906 3620 TermService - ok
19:28:15.0937 3620 [ 1B8542F338CDD86929A084A455837158 ] Themes C:\WINDOWS\System32\shsvcs.dll
19:28:15.0953 3620 Themes - ok
19:28:16.0000 3620 [ B0B3122BFF3910E0BA97014045467778 ] tifsfilter C:\WINDOWS\system32\DRIVERS\tifsfilt.sys
19:28:16.0000 3620 tifsfilter - ok
19:28:16.0015 3620 [ 13BFE330880AC0CE8672D00AA5AFF738 ] timounter C:\WINDOWS\system32\DRIVERS\timntr.sys
19:28:16.0031 3620 timounter - ok
19:28:16.0093 3620 [ EFEF22B9577E5051057FDE1AE381B50C ] TomTomHOMEService C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
19:28:16.0109 3620 TomTomHOMEService - ok
19:28:16.0125 3620 TosIde - ok
19:28:16.0156 3620 [ E1A84A5067627407A53C2C4F8D8A1D2E ] TrkWks C:\WINDOWS\system32\trkwks.dll
19:28:16.0234 3620 TrkWks - ok
19:28:16.0312 3620 [ 800E8F1DC5F6A200B6DFCA2B3C21365E ] TryAndDecideService C:\Program Files\Fichiers communs\Acronis\Fomatik\TrueImageTryStartService.exe
19:28:16.0328 3620 TryAndDecideService - ok
19:28:16.0359 3620 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
19:28:16.0359 3620 Udfs - ok
19:28:16.0375 3620 ultra - ok
19:28:16.0437 3620 [ 4847639D852763EE39415C929470F672 ] UnlockerDriver5 C:\Program Files\Unlocker\UnlockerDriver5.sys
19:28:16.0437 3620 UnlockerDriver5 - ok
19:28:16.0484 3620 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
19:28:16.0484 3620 Update - ok
19:28:16.0546 3620 [ BD8166A495B02308F364B36249475F22 ] upnphost C:\WINDOWS\System32\upnphost.dll
19:28:16.0562 3620 upnphost - ok
19:28:16.0578 3620 [ 1EDC93D7BD731B5CA6248AE245099B60 ] UPS C:\WINDOWS\System32\ups.exe
19:28:16.0578 3620 UPS - ok
19:28:16.0640 3620 [ 6E421CCC57059B0186C6259CA3B6DFC9 ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
19:28:16.0640 3620 USBAAPL - ok
19:28:16.0671 3620 [ E919708DB44ED8543A7C017953148330 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
19:28:16.0671 3620 usbaudio - ok
19:28:16.0734 3620 [ AF9388E736AF0C325067F05EDC350010 ] usbbus C:\WINDOWS\system32\DRIVERS\lgusbbus.sys
19:28:16.0734 3620 usbbus - ok
19:28:16.0765 3620 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
19:28:16.0765 3620 usbccgp - ok
19:28:16.0812 3620 [ AE30EA96E60E823C7B525DA356283AE8 ] UsbDiag C:\WINDOWS\system32\DRIVERS\lgusbdiag.sys
19:28:16.0812 3620 UsbDiag - ok
19:28:16.0843 3620 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
19:28:16.0843 3620 usbehci - ok
19:28:16.0906 3620 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
19:28:16.0906 3620 usbhub - ok
19:28:16.0968 3620 [ 46AC66DF3D6EFE81F69BEA823A53AAB5 ] USBModem C:\WINDOWS\system32\DRIVERS\lgusbmodem.sys
19:28:16.0968 3620 USBModem - ok
19:28:17.0000 3620 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
19:28:17.0000 3620 usbprint - ok
19:28:17.0031 3620 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
19:28:17.0031 3620 usbscan - ok
19:28:17.0046 3620 [ A32426D9B14A089EAA1D922E0C5801A9 ] usbstor C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
19:28:17.0046 3620 usbstor - ok
19:28:17.0062 3620 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
19:28:17.0062 3620 usbuhci - ok
19:28:17.0078 3620 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
19:28:17.0078 3620 VgaSave - ok
19:28:17.0093 3620 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
19:28:17.0093 3620 ViaIde - ok
19:28:17.0109 3620 [ 46DE1126684369BACE4849E4FC8C43CA ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
19:28:17.0109 3620 VolSnap - ok
19:28:17.0171 3620 [ 5A4DA252B2C0550AB83D129C02CF6C19 ] VSS C:\WINDOWS\System32\vssvc.exe
19:28:17.0234 3620 VSS - ok
19:28:17.0296 3620 [ C1F726EE0B043B074A68992BC4AEF8FD ] W32Time C:\WINDOWS\System32\w32time.dll
19:28:17.0312 3620 W32Time - ok
19:28:17.0343 3620 [ 738244934C71118A21F8D678067D057D ] W8335XP C:\WINDOWS\system32\DRIVERS\WG311v3XP.sys
19:28:17.0343 3620 W8335XP - ok
19:28:17.0375 3620 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
19:28:17.0375 3620 Wanarp - ok
19:28:17.0390 3620 WDICA - ok
19:28:17.0406 3620 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
19:28:17.0406 3620 wdmaud - ok
19:28:17.0468 3620 [ 714670E64FBE6D28D99871ED9A52A334 ] WebClient C:\WINDOWS\System32\webclnt.dll
19:28:17.0484 3620 WebClient - ok
19:28:17.0578 3620 [ 5E9DEAE9980FF34BCD6DDE2E9E2BF911 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
19:28:17.0578 3620 winmgmt - ok
19:28:17.0656 3620 [ 9595464710862B17E399818AB114BD5E ] WinRM C:\WINDOWS\system32\WsmSvc.dll
19:28:17.0703 3620 WinRM - ok
19:28:17.0750 3620 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
19:28:17.0750 3620 WmdmPmSN - ok
19:28:17.0781 3620 [ 4E8E8A58F56B25D0795F484E5EB7F898 ] WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe
19:28:17.0796 3620 WmiApSrv - ok
19:28:17.0875 3620 [ C9BEA742CE225CC993C9465FDDAE4656 ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
19:28:17.0906 3620 WMPNetworkSvc - ok
19:28:17.0937 3620 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
19:28:17.0937 3620 WpdUsb - ok
19:28:18.0109 3620 [ B800EEC15851597405784126C407188C ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
19:28:18.0125 3620 WPFFontCache_v0400 - ok
19:28:18.0187 3620 [ C1FD85DB4A80A98D60ECB7A828E77FE0 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
19:28:18.0187 3620 wscsvc - ok
19:28:18.0203 3620 WSearch - ok
19:28:18.0250 3620 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
19:28:18.0250 3620 WSTCODEC - ok
19:28:18.0265 3620 [ 75D6C5C3D2C93B1F9931E5DFB693AE2A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
19:28:18.0281 3620 wuauserv - ok
19:28:18.0328 3620 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
19:28:18.0328 3620 WudfPf - ok
19:28:18.0343 3620 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
19:28:18.0359 3620 WudfRd - ok
19:28:18.0375 3620 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
19:28:18.0390 3620 WudfSvc - ok
19:28:18.0453 3620 [ C336E54EE0C291A02F004667DB1E66CB ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
19:28:18.0468 3620 WZCSVC - ok
19:28:18.0515 3620 [ F92A87FDDA0C11C8604FBC2B864FA726 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
19:28:18.0531 3620 xmlprov - ok
19:28:18.0531 3620 ZDCndis5 - ok
19:28:18.0562 3620 ================ Scan global ===============================
19:28:18.0656 3620 [ 61013AB2E38550619637AA6CC02383D4 ] C:\WINDOWS\system32\basesrv.dll
19:28:18.0703 3620 [ C95F48F2A057F886077D4C6668EDD193 ] C:\WINDOWS\system32\winsrv.dll
19:28:18.0718 3620 [ C95F48F2A057F886077D4C6668EDD193 ] C:\WINDOWS\system32\winsrv.dll
19:28:18.0750 3620 [ C3FB1D70CB88722267949694BA51759E ] C:\WINDOWS\system32\services.exe
19:28:18.0765 3620 [Global] - ok
19:28:18.0765 3620 ================ Scan MBR ==================================
19:28:18.0781 3620 [ C99C3199CFAA4CBDCD91493F6D113A50 ] \Device\Harddisk0\DR0
19:28:18.0953 3620 \Device\Harddisk0\DR0 - ok
19:28:18.0953 3620 ================ Scan VBR ==================================
19:28:18.0953 3620 [ 4D142B9F874525EDAD9537CDC7B217F2 ] \Device\Harddisk0\DR0\Partition1
19:28:18.0953 3620 \Device\Harddisk0\DR0\Partition1 - ok
19:28:18.0953 3620 ============================================================
19:28:18.0953 3620 Scan finished
19:28:18.0953 3620 ============================================================
19:28:18.0968 2656 Detected object count: 0
19:28:18.0968 2656 Actual detected object count: 0
19:28:52.0703 3660 ============================================================
19:28:52.0703 3660 Scan started
19:28:52.0703 3660 Mode: Manual;
19:28:52.0703 3660 ============================================================
19:28:53.0093 3660 ================ Scan system memory ========================
19:28:53.0093 3660 System memory - ok
19:28:53.0093 3660 ================ Scan services =============================
19:28:53.0296 3660 [ 4C1FD15C288B2389A154BD78043160FF ] A0380VID C:\WINDOWS\system32\DRIVERS\A0380Vid.sys
19:28:53.0328 3660 A0380VID - ok
19:28:53.0343 3660 Abiosdsk - ok
19:28:53.0359 3660 abp480n5 - ok
19:28:53.0453 3660 [ E5B8644DB3436FA4A4665E945923A54C ] AcerSyncSystemService C:\Program Files\Acer\AcerSync\AcerSyncSystemService.exe
19:28:53.0453 3660 AcerSyncSystemService - ok
19:28:53.0500 3660 [ E5E6DBFC41EA8AAD005CB9A57A96B43B ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
19:28:53.0500 3660 ACPI - ok
19:28:53.0531 3660 [ E4ABC1212B70BB03D35E60681C447210 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
19:28:53.0531 3660 ACPIEC - ok
19:28:53.0593 3660 [ 45586DC24ACF54EBB7D0D494653942E9 ] AcrSch2Svc C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
19:28:53.0593 3660 AcrSch2Svc - ok
19:28:53.0687 3660 [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
19:28:53.0687 3660 AdobeFlashPlayerUpdateSvc - ok
19:28:53.0703 3660 adpu160m - ok
19:28:53.0734 3660 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
19:28:53.0734 3660 aec - ok
19:28:53.0781 3660 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
19:28:53.0781 3660 AFD - ok
19:28:53.0781 3660 Aha154x - ok
19:28:53.0796 3660 aic78u2 - ok
19:28:53.0828 3660 aic78xx - ok
19:28:53.0859 3660 [ 758FDC60D41716EF889D849989B4B1CD ] Alerter C:\WINDOWS\system32\alrsvc.dll
19:28:53.0859 3660 Alerter - ok
19:28:53.0890 3660 [ 5E9A6658A2A69AE7EB195113B7A2E7A9 ] ALG C:\WINDOWS\System32\alg.exe
19:28:53.0890 3660 ALG - ok
19:28:53.0890 3660 AliIde - ok
19:28:53.0906 3660 amsint - ok
19:28:53.0968 3660 [ 29C537D74694DE38B07B8D0C37BC25C5 ] APL531 C:\WINDOWS\system32\Drivers\HDvid.sys
19:28:53.0968 3660 APL531 - ok
19:28:54.0046 3660 [ 4FE5C6D40664AE07BE5105874357D2ED ] Apple Mobile Device C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
19:28:54.0046 3660 Apple Mobile Device - ok
19:28:54.0046 3660 AppMgmt - ok
19:28:54.0078 3660 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
19:28:54.0078 3660 Arp1394 - ok
19:28:54.0078 3660 asc - ok
19:28:54.0078 3660 asc3350p - ok
19:28:54.0093 3660 asc3550 - ok
19:28:54.0203 3660 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
19:28:54.0203 3660 aspnet_state - ok
19:28:54.0234 3660 [ 4AF5F360BA1E8794D32B366E45A64A0A ] aswFsBlk C:\WINDOWS\system32\drivers\aswFsBlk.sys
19:28:54.0234 3660 aswFsBlk - ok
19:28:54.0265 3660 [ 4691B3FE3717F9D9C64A5282C8543D4D ] aswKbd C:\WINDOWS\system32\drivers\aswKbd.sys
19:28:54.0265 3660 aswKbd - ok
19:28:54.0281 3660 [ 1F7094D4268D46F718C51286DC189791 ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
19:28:54.0296 3660 aswMonFlt - ok
19:28:54.0343 3660 [ 7B43265F92257A21CBFD88E7A651044C ] aswRdr C:\WINDOWS\system32\drivers\aswRdr.sys
19:28:54.0343 3660 aswRdr - ok
19:28:54.0375 3660 [ B680134BA1813B78B47FDD1DFF223CA5 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
19:28:54.0375 3660 aswRvrt - ok
19:28:54.0421 3660 [ CCD565A8A72AF7D45F9A242013870926 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
19:28:54.0437 3660 aswSnx - ok
19:28:54.0468 3660 [ 937300BC7C4CDF7576BCCE44E19BBB9D ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
19:28:54.0484 3660 aswSP - ok
19:28:54.0515 3660 [ 1F71F170D90E42EFDE9633D81D5E12DC ] aswTdi C:\WINDOWS\system32\drivers\aswTdi.sys
19:28:54.0515 3660 aswTdi - ok
19:28:54.0546 3660 [ 8CFAA2B965773A653F48F1207A9CB9C4 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
19:28:54.0546 3660 aswVmm - ok
19:28:54.0578 3660 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
19:28:54.0593 3660 AsyncMac - ok
19:28:54.0593 3660 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
19:28:54.0593 3660 atapi - ok
19:28:54.0609 3660 Atdisk - ok
19:28:54.0640 3660 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
19:28:54.0640 3660 Atmarpc - ok
19:28:54.0671 3660 [ B4005AEF7873144634765B570DAC466E ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
19:28:54.0671 3660 AudioSrv - ok
19:28:54.0718 3660 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
19:28:54.0718 3660 audstub - ok
19:28:54.0781 3660 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
19:28:54.0781 3660 avast! Antivirus - ok
19:28:54.0812 3660 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
19:28:54.0828 3660 Beep - ok
19:28:54.0859 3660 [ BAA0B6E647C1AD593E9BAE5CC31BCFFB ] BITS C:\WINDOWS\system32\qmgr.dll
19:28:54.0875 3660 BITS - ok
19:28:54.0968 3660 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
19:28:54.0968 3660 Bonjour Service - ok
19:28:55.0000 3660 [ F934D1B230F84E1D19DD00AC5A7A83ED ] Bridge C:\WINDOWS\system32\DRIVERS\bridge.sys
19:28:55.0000 3660 Bridge - ok
19:28:55.0000 3660 [ F934D1B230F84E1D19DD00AC5A7A83ED ] BridgeMP C:\WINDOWS\system32\DRIVERS\bridge.sys
19:28:55.0000 3660 BridgeMP - ok
19:28:55.0046 3660 [ 952322AE7F95A21F3EEDA99C36C68663 ] Browser C:\WINDOWS\System32\browser.dll
19:28:55.0046 3660 Browser - ok
19:28:55.0093 3660 [ E156C353FCBC05DB5DEE57BE0592F2D4 ] camfilt C:\WINDOWS\system32\Drivers\camfilt.sys
19:28:55.0093 3660 camfilt - ok
19:28:55.0250 3660 catchme - ok
19:28:55.0281 3660 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
19:28:55.0281 3660 cbidf2k - ok
19:28:55.0296 3660 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
19:28:55.0312 3660 CCDECODE - ok
19:28:55.0312 3660 cd20xrnt - ok
19:28:55.0343 3660 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
19:28:55.0359 3660 Cdaudio - ok
19:28:55.0375 3660 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
19:28:55.0375 3660 Cdfs - ok
19:28:55.0421 3660 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
19:28:55.0421 3660 Cdrom - ok
19:28:55.0421 3660 Changer - ok
19:28:55.0468 3660 [ 793EF38A5FD086C3C8E48A8A861562ED ] CiSvc C:\WINDOWS\system32\cisvc.exe
19:28:55.0468 3660 CiSvc - ok
19:28:55.0515 3660 [ 8B30CBB0C07D49B2658FB190946B0E7E ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
19:28:55.0515 3660 ClipSrv - ok
19:28:55.0578 3660 [ 7FA87325900183197BC9710D1CE4C9FA ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:28:55.0578 3660 clr_optimization_v2.0.50727_32 - ok
19:28:55.0640 3660 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:28:55.0640 3660 clr_optimization_v4.0.30319_32 - ok
19:28:55.0640 3660 CmdIde - ok
19:28:55.0656 3660 COMSysApp - ok
19:28:55.0671 3660 Cpqarray - ok
19:28:55.0718 3660 [ 7A6D0B71035E123FDDA2156A25578AD3 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
19:28:55.0718 3660 CryptSvc - ok
19:28:55.0718 3660 dac2w2k - ok
19:28:55.0734 3660 dac960nt - ok
19:28:55.0781 3660 [ 0203B1AAD358F206CB0A3C1F93CCE17A ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
19:28:55.0796 3660 DcomLaunch - ok
19:28:55.0812 3660 dgderdrv - ok
19:28:55.0859 3660 [ 318F535DC05551D96DEEB90B6D6904DE ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
19:28:55.0859 3660 Dhcp - ok
19:28:55.0875 3660 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
19:28:55.0875 3660 Disk - ok
19:28:55.0875 3660 dmadmin - ok
19:28:55.0921 3660 [ F5DEADD42335FB33EDCA74ECB2F36CBA ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
19:28:55.0921 3660 dmboot - ok
19:28:55.0937 3660 [ 5A7C47C9B3F9FB92A66410A7509F0C71 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
19:28:55.0953 3660 dmio - ok
19:28:55.0968 3660 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
19:28:55.0968 3660 dmload - ok
19:28:56.0000 3660 [ 6797C23D6B79935482D7F0E8CA5E5B67 ] dmserver C:\WINDOWS\System32\dmserver.dll
19:28:56.0000 3660 dmserver - ok
19:28:56.0031 3660 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
19:28:56.0031 3660 DMusic - ok
19:28:56.0078 3660 [ 1A1E59377FB6CACD711CC5073C4A7D79 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
19:28:56.0093 3660 Dnscache - ok
19:28:56.0125 3660 [ 3FCF86F03D0302443C21CE6E5BBF7A25 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
19:28:56.0125 3660 Dot3svc - ok
19:28:56.0125 3660 dpti2o - ok
19:28:56.0265 3660 [ 0F1189883690949BA7A9F68339587E51 ] driverhardwarev2 C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
19:28:56.0265 3660 driverhardwarev2 - ok
19:28:56.0296 3660 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
19:28:56.0296 3660 drmkaud - ok
19:28:56.0343 3660 [ 651554E483712B708EDE864D0CA1AA73 ] DrvAgent32 C:\WINDOWS\system32\Drivers\DrvAgent32.sys
19:28:56.0343 3660 DrvAgent32 - ok
19:28:56.0359 3660 [ 8B5FC9087D2CAB110BC2ED5CC5E7B8AC ] EapHost C:\WINDOWS\System32\eapsvc.dll
19:28:56.0359 3660 EapHost - ok
19:28:56.0390 3660 [ 94F948CB12C4D35483F1E815DEB16C7B ] ERSvc C:\WINDOWS\System32\ersvc.dll
19:28:56.0406 3660 ERSvc - ok
19:28:56.0421 3660 [ A55DD7D8CED5D2624A9EE2DDA7BE0319 ] es1371 C:\WINDOWS\system32\drivers\es1371mp.sys
19:28:56.0437 3660 es1371 - ok
19:28:56.0468 3660 [ C3FB1D70CB88722267949694BA51759E ] Eventlog C:\WINDOWS\system32\services.exe
19:28:56.0484 3660 Eventlog - ok
19:28:56.0531 3660 [ EC16AE9B37EACF871629227A3F3913FD ] EventSystem C:\WINDOWS\System32\es.dll
19:28:56.0531 3660 EventSystem - ok
19:28:56.0593 3660 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
19:28:56.0593 3660 Fastfat - ok
19:28:56.0625 3660 [ 1B8542F338CDD86929A084A455837158 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
19:28:56.0640 3660 FastUserSwitchingCompatibility - ok
19:28:56.0671 3660 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
19:28:56.0671 3660 Fdc - ok
19:28:56.0718 3660 [ E9648254056BCE81A85380C0C3647DC4 ] FETNDIS C:\WINDOWS\system32\DRIVERS\fetnd5.sys
19:28:56.0718 3660 FETNDIS - ok
19:28:56.0734 3660 [ 31F923EB2170FC172C81ABDA0045D18C ] Fips C:\WINDOWS\system32\drivers\Fips.sys
19:28:56.0734 3660 Fips - ok
19:28:56.0734 3660 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
19:28:56.0750 3660 Flpydisk - ok
19:28:56.0796 3660 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\syste
Je te fais un copier/coller du détail
19:27:50.0421 3108 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
19:27:50.0953 3108 ============================================================
19:27:50.0953 3108 Current date / time: 2013/07/23 19:27:50.0953
19:27:50.0953 3108 SystemInfo:
19:27:50.0953 3108
19:27:50.0953 3108 OS Version: 5.1.2600 ServicePack: 3.0
19:27:50.0953 3108 Product type: Workstation
19:27:50.0953 3108 ComputerName: SA-2WL3PH0K2XL2
19:27:50.0953 3108 UserName: FOURE
19:27:50.0953 3108 Windows directory: C:\WINDOWS
19:27:50.0953 3108 System windows directory: C:\WINDOWS
19:27:50.0953 3108 Processor architecture: Intel x86
19:27:50.0953 3108 Number of processors: 2
19:27:50.0953 3108 Page size: 0x1000
19:27:50.0953 3108 Boot type: Normal boot
19:27:50.0953 3108 ============================================================
19:27:51.0953 3108 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x7E2D, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000054
19:27:52.0171 3108 ============================================================
19:27:52.0171 3108 \Device\Harddisk0\DR0:
19:27:52.0203 3108 MBR partitions:
19:27:52.0203 3108 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1000800, BlocksNum 0x1C1C4970
19:27:52.0203 3108 ============================================================
19:27:52.0234 3108 C: <-> \Device\Harddisk0\DR0\Partition1
19:27:52.0234 3108 ============================================================
19:27:52.0234 3108 Initialize success
19:27:52.0234 3108 ============================================================
19:28:01.0687 3620 ============================================================
19:28:01.0687 3620 Scan started
19:28:01.0687 3620 Mode: Manual;
19:28:01.0687 3620 ============================================================
19:28:02.0343 3620 ================ Scan system memory ========================
19:28:02.0343 3620 System memory - ok
19:28:02.0343 3620 ================ Scan services =============================
19:28:02.0562 3620 [ 4C1FD15C288B2389A154BD78043160FF ] A0380VID C:\WINDOWS\system32\DRIVERS\A0380Vid.sys
19:28:02.0671 3620 A0380VID - ok
19:28:02.0671 3620 Abiosdsk - ok
19:28:02.0687 3620 abp480n5 - ok
19:28:02.0812 3620 [ E5B8644DB3436FA4A4665E945923A54C ] AcerSyncSystemService C:\Program Files\Acer\AcerSync\AcerSyncSystemService.exe
19:28:02.0812 3620 AcerSyncSystemService - ok
19:28:02.0843 3620 [ E5E6DBFC41EA8AAD005CB9A57A96B43B ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
19:28:02.0843 3620 ACPI - ok
19:28:02.0875 3620 [ E4ABC1212B70BB03D35E60681C447210 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
19:28:02.0890 3620 ACPIEC - ok
19:28:02.0953 3620 [ 45586DC24ACF54EBB7D0D494653942E9 ] AcrSch2Svc C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
19:28:02.0953 3620 AcrSch2Svc - ok
19:28:03.0046 3620 [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
19:28:03.0046 3620 AdobeFlashPlayerUpdateSvc - ok
19:28:03.0046 3620 adpu160m - ok
19:28:03.0109 3620 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
19:28:03.0109 3620 aec - ok
19:28:03.0156 3620 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
19:28:03.0156 3620 AFD - ok
19:28:03.0156 3620 Aha154x - ok
19:28:03.0187 3620 aic78u2 - ok
19:28:03.0187 3620 aic78xx - ok
19:28:03.0218 3620 [ 758FDC60D41716EF889D849989B4B1CD ] Alerter C:\WINDOWS\system32\alrsvc.dll
19:28:03.0234 3620 Alerter - ok
19:28:03.0265 3620 [ 5E9A6658A2A69AE7EB195113B7A2E7A9 ] ALG C:\WINDOWS\System32\alg.exe
19:28:03.0265 3620 ALG - ok
19:28:03.0265 3620 AliIde - ok
19:28:03.0281 3620 amsint - ok
19:28:03.0296 3620 [ 29C537D74694DE38B07B8D0C37BC25C5 ] APL531 C:\WINDOWS\system32\Drivers\HDvid.sys
19:28:03.0312 3620 APL531 - ok
19:28:03.0390 3620 [ 4FE5C6D40664AE07BE5105874357D2ED ] Apple Mobile Device C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
19:28:03.0390 3620 Apple Mobile Device - ok
19:28:03.0406 3620 AppMgmt - ok
19:28:03.0421 3620 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
19:28:03.0421 3620 Arp1394 - ok
19:28:03.0437 3620 asc - ok
19:28:03.0453 3620 asc3350p - ok
19:28:03.0468 3620 asc3550 - ok
19:28:03.0593 3620 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
19:28:03.0609 3620 aspnet_state - ok
19:28:03.0656 3620 [ 4AF5F360BA1E8794D32B366E45A64A0A ] aswFsBlk C:\WINDOWS\system32\drivers\aswFsBlk.sys
19:28:03.0656 3620 aswFsBlk - ok
19:28:03.0718 3620 [ 4691B3FE3717F9D9C64A5282C8543D4D ] aswKbd C:\WINDOWS\system32\drivers\aswKbd.sys
19:28:03.0718 3620 aswKbd - ok
19:28:03.0734 3620 [ 1F7094D4268D46F718C51286DC189791 ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
19:28:03.0734 3620 aswMonFlt - ok
19:28:03.0781 3620 [ 7B43265F92257A21CBFD88E7A651044C ] aswRdr C:\WINDOWS\system32\drivers\aswRdr.sys
19:28:03.0781 3620 aswRdr - ok
19:28:03.0812 3620 [ B680134BA1813B78B47FDD1DFF223CA5 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
19:28:03.0812 3620 aswRvrt - ok
19:28:03.0843 3620 [ CCD565A8A72AF7D45F9A242013870926 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
19:28:03.0859 3620 aswSnx - ok
19:28:03.0890 3620 [ 937300BC7C4CDF7576BCCE44E19BBB9D ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
19:28:03.0906 3620 aswSP - ok
19:28:03.0921 3620 [ 1F71F170D90E42EFDE9633D81D5E12DC ] aswTdi C:\WINDOWS\system32\drivers\aswTdi.sys
19:28:03.0921 3620 aswTdi - ok
19:28:03.0937 3620 [ 8CFAA2B965773A653F48F1207A9CB9C4 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
19:28:03.0953 3620 aswVmm - ok
19:28:03.0984 3620 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
19:28:03.0984 3620 AsyncMac - ok
19:28:04.0000 3620 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
19:28:04.0000 3620 atapi - ok
19:28:04.0000 3620 Atdisk - ok
19:28:04.0031 3620 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
19:28:04.0031 3620 Atmarpc - ok
19:28:04.0093 3620 [ B4005AEF7873144634765B570DAC466E ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
19:28:04.0093 3620 AudioSrv - ok
19:28:04.0140 3620 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
19:28:04.0140 3620 audstub - ok
19:28:04.0203 3620 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
19:28:04.0203 3620 avast! Antivirus - ok
19:28:04.0250 3620 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
19:28:04.0250 3620 Beep - ok
19:28:04.0296 3620 [ BAA0B6E647C1AD593E9BAE5CC31BCFFB ] BITS C:\WINDOWS\system32\qmgr.dll
19:28:04.0312 3620 BITS - ok
19:28:04.0390 3620 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
19:28:04.0406 3620 Bonjour Service - ok
19:28:04.0437 3620 [ F934D1B230F84E1D19DD00AC5A7A83ED ] Bridge C:\WINDOWS\system32\DRIVERS\bridge.sys
19:28:04.0437 3620 Bridge - ok
19:28:04.0437 3620 [ F934D1B230F84E1D19DD00AC5A7A83ED ] BridgeMP C:\WINDOWS\system32\DRIVERS\bridge.sys
19:28:04.0437 3620 BridgeMP - ok
19:28:04.0484 3620 [ 952322AE7F95A21F3EEDA99C36C68663 ] Browser C:\WINDOWS\System32\browser.dll
19:28:04.0484 3620 Browser - ok
19:28:04.0531 3620 [ E156C353FCBC05DB5DEE57BE0592F2D4 ] camfilt C:\WINDOWS\system32\Drivers\camfilt.sys
19:28:04.0531 3620 camfilt - ok
19:28:04.0640 3620 catchme - ok
19:28:04.0687 3620 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
19:28:04.0687 3620 cbidf2k - ok
19:28:04.0718 3620 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
19:28:04.0718 3620 CCDECODE - ok
19:28:04.0734 3620 cd20xrnt - ok
19:28:04.0781 3620 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
19:28:04.0781 3620 Cdaudio - ok
19:28:04.0796 3620 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
19:28:04.0796 3620 Cdfs - ok
19:28:04.0843 3620 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
19:28:04.0843 3620 Cdrom - ok
19:28:04.0859 3620 Changer - ok
19:28:04.0906 3620 [ 793EF38A5FD086C3C8E48A8A861562ED ] CiSvc C:\WINDOWS\system32\cisvc.exe
19:28:04.0906 3620 CiSvc - ok
19:28:04.0953 3620 [ 8B30CBB0C07D49B2658FB190946B0E7E ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
19:28:04.0953 3620 ClipSrv - ok
19:28:05.0015 3620 [ 7FA87325900183197BC9710D1CE4C9FA ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:28:05.0093 3620 clr_optimization_v2.0.50727_32 - ok
19:28:05.0187 3620 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:28:05.0187 3620 clr_optimization_v4.0.30319_32 - ok
19:28:05.0203 3620 CmdIde - ok
19:28:05.0203 3620 COMSysApp - ok
19:28:05.0218 3620 Cpqarray - ok
19:28:05.0265 3620 [ 7A6D0B71035E123FDDA2156A25578AD3 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
19:28:05.0265 3620 CryptSvc - ok
19:28:05.0265 3620 dac2w2k - ok
19:28:05.0281 3620 dac960nt - ok
19:28:05.0328 3620 [ 0203B1AAD358F206CB0A3C1F93CCE17A ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
19:28:05.0343 3620 DcomLaunch - ok
19:28:05.0343 3620 dgderdrv - ok
19:28:05.0406 3620 [ 318F535DC05551D96DEEB90B6D6904DE ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
19:28:05.0406 3620 Dhcp - ok
19:28:05.0421 3620 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
19:28:05.0421 3620 Disk - ok
19:28:05.0421 3620 dmadmin - ok
19:28:05.0468 3620 [ F5DEADD42335FB33EDCA74ECB2F36CBA ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
19:28:05.0500 3620 dmboot - ok
19:28:05.0531 3620 [ 5A7C47C9B3F9FB92A66410A7509F0C71 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
19:28:05.0531 3620 dmio - ok
19:28:05.0562 3620 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
19:28:05.0562 3620 dmload - ok
19:28:05.0593 3620 [ 6797C23D6B79935482D7F0E8CA5E5B67 ] dmserver C:\WINDOWS\System32\dmserver.dll
19:28:05.0593 3620 dmserver - ok
19:28:05.0640 3620 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
19:28:05.0640 3620 DMusic - ok
19:28:05.0687 3620 [ 1A1E59377FB6CACD711CC5073C4A7D79 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
19:28:05.0687 3620 Dnscache - ok
19:28:05.0734 3620 [ 3FCF86F03D0302443C21CE6E5BBF7A25 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
19:28:05.0734 3620 Dot3svc - ok
19:28:05.0734 3620 dpti2o - ok
19:28:05.0875 3620 [ 0F1189883690949BA7A9F68339587E51 ] driverhardwarev2 C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
19:28:05.0875 3620 driverhardwarev2 - ok
19:28:05.0921 3620 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
19:28:05.0921 3620 drmkaud - ok
19:28:05.0953 3620 [ 651554E483712B708EDE864D0CA1AA73 ] DrvAgent32 C:\WINDOWS\system32\Drivers\DrvAgent32.sys
19:28:05.0953 3620 DrvAgent32 - ok
19:28:05.0984 3620 [ 8B5FC9087D2CAB110BC2ED5CC5E7B8AC ] EapHost C:\WINDOWS\System32\eapsvc.dll
19:28:05.0984 3620 EapHost - ok
19:28:06.0031 3620 [ 94F948CB12C4D35483F1E815DEB16C7B ] ERSvc C:\WINDOWS\System32\ersvc.dll
19:28:06.0046 3620 ERSvc - ok
19:28:06.0093 3620 [ A55DD7D8CED5D2624A9EE2DDA7BE0319 ] es1371 C:\WINDOWS\system32\drivers\es1371mp.sys
19:28:06.0093 3620 es1371 - ok
19:28:06.0171 3620 [ C3FB1D70CB88722267949694BA51759E ] Eventlog C:\WINDOWS\system32\services.exe
19:28:06.0171 3620 Eventlog - ok
19:28:06.0234 3620 [ EC16AE9B37EACF871629227A3F3913FD ] EventSystem C:\WINDOWS\System32\es.dll
19:28:06.0234 3620 EventSystem - ok
19:28:06.0281 3620 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
19:28:06.0296 3620 Fastfat - ok
19:28:06.0343 3620 [ 1B8542F338CDD86929A084A455837158 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
19:28:06.0343 3620 FastUserSwitchingCompatibility - ok
19:28:06.0375 3620 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
19:28:06.0390 3620 Fdc - ok
19:28:06.0421 3620 [ E9648254056BCE81A85380C0C3647DC4 ] FETNDIS C:\WINDOWS\system32\DRIVERS\fetnd5.sys
19:28:06.0421 3620 FETNDIS - ok
19:28:06.0453 3620 [ 31F923EB2170FC172C81ABDA0045D18C ] Fips C:\WINDOWS\system32\drivers\Fips.sys
19:28:06.0453 3620 Fips - ok
19:28:06.0468 3620 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
19:28:06.0468 3620 Flpydisk - ok
19:28:06.0515 3620 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
19:28:06.0515 3620 FltMgr - ok
19:28:06.0578 3620 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
19:28:06.0578 3620 FontCache3.0.0.0 - ok
19:28:06.0609 3620 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
19:28:06.0609 3620 Fs_Rec - ok
19:28:06.0656 3620 [ A86859B77B908C18C2657F284AA29FE3 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
19:28:06.0656 3620 Ftdisk - ok
19:28:06.0703 3620 [ 065639773D8B03F33577F6CDAEA21063 ] gameenum C:\WINDOWS\system32\DRIVERS\gameenum.sys
19:28:06.0703 3620 gameenum - ok
19:28:06.0734 3620 [ 185ADA973B5020655CEE342059A86CBB ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
19:28:06.0734 3620 GEARAspiWDM - ok
19:28:06.0765 3620 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
19:28:06.0765 3620 Gpc - ok
19:28:06.0843 3620 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
19:28:06.0843 3620 gupdate - ok
19:28:06.0859 3620 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
19:28:06.0859 3620 gupdatem - ok
19:28:06.0921 3620 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
19:28:06.0921 3620 gusvc - ok
19:28:06.0937 3620 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
19:28:06.0937 3620 HDAudBus - ok
19:28:07.0031 3620 [ 1247F83B705AF0E796330442F7967CF8 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
19:28:07.0031 3620 helpsvc - ok
19:28:07.0078 3620 [ A3B9B4A68BC839CE5A264D5908092261 ] HidServ C:\WINDOWS\System32\hidserv.dll
19:28:07.0093 3620 HidServ - ok
19:28:07.0109 3620 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
19:28:07.0109 3620 HidUsb - ok
19:28:07.0140 3620 [ 17B3C3D40CDBA40C2E331D28BE4DE27F ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
19:28:07.0156 3620 hkmsvc - ok
19:28:07.0156 3620 hpn - ok
19:28:07.0187 3620 [ 30CA91E657CEDE2F95359D6EF186F650 ] HPZid412 C:\WINDOWS\system32\DRIVERS\HPZid412.sys
19:28:07.0187 3620 HPZid412 - ok
19:28:07.0203 3620 [ EFD31AFA752AA7C7BBB57BCBE2B01C78 ] HPZipr12 C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
19:28:07.0218 3620 HPZipr12 - ok
19:28:07.0250 3620 [ 7AC43C38CA8FD7ED0B0A4466F753E06E ] HPZius12 C:\WINDOWS\system32\DRIVERS\HPZius12.sys
19:28:07.0250 3620 HPZius12 - ok
19:28:07.0281 3620 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
19:28:07.0281 3620 HTTP - ok
19:28:07.0343 3620 [ BD31CFACE38D1800ABDB43F4260AF0D5 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
19:28:07.0343 3620 HTTPFilter - ok
19:28:07.0359 3620 i2omgmt - ok
19:28:07.0375 3620 i2omp - ok
19:28:07.0406 3620 [ A09BDC4ED10E3B2E0EC27BB94AF32516 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
19:28:07.0406 3620 i8042prt - ok
19:28:07.0500 3620 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
19:28:07.0515 3620 IDriverT - ok
19:28:07.0578 3620 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
19:28:07.0609 3620 idsvc - ok
19:28:07.0703 3620 [ AD5DF6F4FBBC798636EDC66BFEC7D0DE ] IJPLMSVC C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
19:28:07.0703 3620 IJPLMSVC - ok
19:28:07.0718 3620 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
19:28:07.0718 3620 Imapi - ok
19:28:07.0781 3620 [ C4221678BBAA55239C23632875759961 ] ImapiService C:\WINDOWS\System32\imapi.exe
19:28:07.0796 3620 ImapiService - ok
19:28:07.0812 3620 [ 242B1EDC880D892A0A6C5940D38654FC ] incdrm C:\WINDOWS\system32\drivers\incdrm.sys
19:28:07.0812 3620 incdrm - ok
19:28:07.0828 3620 ini910u - ok
19:28:08.0031 3620 [ CBDDAB14249B2F05407FC09AB8FFFB88 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
19:28:08.0171 3620 IntcAzAudAddService - ok
19:28:08.0187 3620 IntelIde - ok
19:28:08.0218 3620 [ AD340800C35A42D4DE1641A37FEEA34C ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
19:28:08.0218 3620 intelppm - ok
19:28:08.0265 3620 [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys
19:28:08.0265 3620 ip6fw - ok
19:28:08.0296 3620 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
19:28:08.0296 3620 IpFilterDriver - ok
19:28:08.0312 3620 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
19:28:08.0312 3620 IpInIp - ok
19:28:08.0343 3620 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
19:28:08.0343 3620 IpNat - ok
19:28:08.0421 3620 [ FE56897B27ED266F9C4E7D90A0B5DA47 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
19:28:08.0421 3620 iPod Service - ok
19:28:08.0453 3620 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
19:28:08.0453 3620 IPSec - ok
19:28:08.0500 3620 [ EFE93361E5E2D14A403EC62235C53023 ] IpWrapper C:\Program Files\IpWrapper\nssm.exe
19:28:08.0500 3620 IpWrapper - ok
19:28:08.0531 3620 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
19:28:08.0531 3620 IRENUM - ok
19:28:08.0578 3620 [ 355836975A67B6554BCA60328CD6CB74 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
19:28:08.0578 3620 isapnp - ok
19:28:08.0687 3620 [ 9ECF00E19736054E019C532AED8228FC ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
19:28:08.0687 3620 JavaQuickStarterService - ok
19:28:08.0703 3620 JL2005C - ok
19:28:08.0734 3620 [ 16813155807C6881F4BFBF6657424659 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
19:28:08.0734 3620 Kbdclass - ok
19:28:08.0781 3620 [ 94C59CB884BA010C063687C3A50DCE8E ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
19:28:08.0781 3620 kbdhid - ok
19:28:08.0796 3620 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
19:28:08.0796 3620 kmixer - ok
19:28:08.0828 3620 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
19:28:08.0843 3620 KSecDD - ok
19:28:08.0875 3620 [ 1DB8078A32E03AC8F5EB5E6DCAC2AA34 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
19:28:08.0875 3620 lanmanserver - ok
19:28:08.0921 3620 [ AD54EAD46D92F413BE189AABC1C59490 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
19:28:08.0937 3620 lanmanworkstation - ok
19:28:08.0968 3620 Lavasoft Kernexplorer - ok
19:28:08.0968 3620 Lbd - ok
19:28:08.0968 3620 lbrtfdc - ok
19:28:09.0031 3620 [ 0F357C079AC529A844AB5B18E4EEF881 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
19:28:09.0031 3620 LmHosts - ok
19:28:09.0078 3620 [ 3137B276C48D77DC05B7592E156E2880 ] maconfservice C:\Program Files\ma-config.com\maconfservice.exe
19:28:09.0078 3620 maconfservice - ok
19:28:09.0093 3620 [ E67A66A3781C1A483F0F8992664CBE0D ] Messenger C:\WINDOWS\System32\msgsvc.dll
19:28:09.0109 3620 Messenger - ok
19:28:09.0187 3620 Microsoft SharePoint Workspace Audit Service - ok
19:28:09.0234 3620 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
19:28:09.0234 3620 mnmdd - ok
19:28:09.0281 3620 [ D3A2870CD96CDA7BCFF3DC54F64087AD ] mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe
19:28:09.0281 3620 mnmsrvc - ok
19:28:09.0328 3620 [ 510ADE9327FE84C10254E1902697E25F ] Modem C:\WINDOWS\system32\drivers\Modem.sys
19:28:09.0343 3620 Modem - ok
19:28:09.0375 3620 [ 027C01BD7EF3349AAEBC883D8A799EFB ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
19:28:09.0375 3620 Mouclass - ok
19:28:09.0406 3620 [ 124D6846040C79B9C997F78EF4B2A4E5 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
19:28:09.0406 3620 mouhid - ok
19:28:09.0453 3620 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
19:28:09.0453 3620 MountMgr - ok
19:28:09.0500 3620 MozillaMaintenance - ok
19:28:09.0531 3620 mraid35x - ok
19:28:09.0546 3620 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
19:28:09.0562 3620 MRxDAV - ok
19:28:09.0609 3620 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
19:28:09.0625 3620 MRxSmb - ok
19:28:09.0671 3620 [ 8648D670AE0D95C95E7BBB5B80661796 ] MSDTC C:\WINDOWS\System32\msdtc.exe
19:28:09.0687 3620 MSDTC - ok
19:28:09.0703 3620 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
19:28:09.0703 3620 Msfs - ok
19:28:09.0718 3620 [ 082A950191DDE602BBEA8EF4E5900251 ] msgame C:\WINDOWS\system32\DRIVERS\msgame.sys
19:28:09.0718 3620 msgame - ok
19:28:09.0734 3620 MSIServer - ok
19:28:09.0781 3620 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
19:28:09.0781 3620 MSKSSRV - ok
19:28:09.0781 3620 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
19:28:09.0796 3620 MSPCLOCK - ok
19:28:09.0812 3620 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
19:28:09.0812 3620 MSPQM - ok
19:28:09.0843 3620 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
19:28:09.0843 3620 mssmbios - ok
19:28:09.0890 3620 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
19:28:09.0890 3620 MSTEE - ok
19:28:09.0921 3620 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
19:28:09.0921 3620 Mup - ok
19:28:09.0937 3620 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
19:28:09.0937 3620 NABTSFEC - ok
19:28:09.0984 3620 [ 69E4FBBABAEEE1BFF422E091DA3171DA ] napagent C:\WINDOWS\System32\qagentrt.dll
19:28:10.0000 3620 napagent - ok
19:28:10.0046 3620 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
19:28:10.0046 3620 NDIS - ok
19:28:10.0093 3620 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
19:28:10.0109 3620 NdisIP - ok
19:28:10.0140 3620 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
19:28:10.0140 3620 NdisTapi - ok
19:28:10.0156 3620 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
19:28:10.0156 3620 Ndisuio - ok
19:28:10.0171 3620 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
19:28:10.0187 3620 NdisWan - ok
19:28:10.0218 3620 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
19:28:10.0234 3620 NDProxy - ok
19:28:10.0250 3620 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
19:28:10.0250 3620 NetBIOS - ok
19:28:10.0265 3620 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
19:28:10.0281 3620 NetBT - ok
19:28:10.0312 3620 [ 5C9B1D83755B36237B70F95DF3D46A52 ] NetDDE C:\WINDOWS\system32\netdde.exe
19:28:10.0312 3620 NetDDE - ok
19:28:10.0328 3620 [ 5C9B1D83755B36237B70F95DF3D46A52 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
19:28:10.0343 3620 NetDDEdsdm - ok
19:28:10.0375 3620 [ 91E6024D6D4DCDECDB36C43ECF9BBECB ] Netlogon C:\WINDOWS\System32\lsass.exe
19:28:10.0390 3620 Netlogon - ok
19:28:10.0437 3620 [ BE0CB143FA427D93440DED18DB8C918B ] Netman C:\WINDOWS\System32\netman.dll
19:28:10.0437 3620 Netman - ok
19:28:10.0484 3620 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
19:28:10.0484 3620 NetTcpPortSharing - ok
19:28:10.0515 3620 [ E9E47CFB2D461FA0FC75B7A74C6383EA ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys
19:28:10.0531 3620 NIC1394 - ok
19:28:10.0546 3620 [ 6F5F546A92C7B6AE45DB1D6910781EB0 ] Nla C:\WINDOWS\System32\mswsock.dll
19:28:10.0562 3620 Nla - ok
19:28:10.0578 3620 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
19:28:10.0578 3620 Npfs - ok
19:28:10.0625 3620 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
19:28:10.0640 3620 Ntfs - ok
19:28:10.0687 3620 [ 91E6024D6D4DCDECDB36C43ECF9BBECB ] NtLmSsp C:\WINDOWS\System32\lsass.exe
19:28:10.0687 3620 NtLmSsp - ok
19:28:10.0718 3620 [ 037D92B3A7853A183FCAB77FB1D13D6C ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
19:28:10.0734 3620 NtmsSvc - ok
19:28:10.0765 3620 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
19:28:10.0765 3620 Null - ok
19:28:11.0203 3620 [ 7B5A17BD54BB9142843DBE99A1CAAED8 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
19:28:11.0531 3620 nv - ok
19:28:11.0562 3620 [ FB61DB41ABB47FF893A35DCA09628D12 ] NVHDA C:\WINDOWS\system32\drivers\nvhda32.sys
19:28:11.0562 3620 NVHDA - ok
19:28:11.0609 3620 [ 5150B108EA88831E1C599603D8B89621 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe
19:28:11.0609 3620 NVSvc - ok
19:28:11.0718 3620 [ 83E8AB7BB3C8956C53FEC071C94F0BBB ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
19:28:11.0781 3620 nvUpdatusService - ok
19:28:11.0828 3620 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
19:28:11.0828 3620 NwlnkFlt - ok
19:28:11.0843 3620 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
19:28:11.0843 3620 NwlnkFwd - ok
19:28:11.0875 3620 [ CA33832DF41AFB202EE7AEB05145922F ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys
19:28:11.0890 3620 ohci1394 - ok
19:28:11.0921 3620 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE
19:28:11.0921 3620 ose - ok
19:28:12.0140 3620 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Fichiers communs\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
19:28:12.0281 3620 osppsvc - ok
19:28:12.0312 3620 [ 8FD0BDBEA875D06CCF6C945CA9ABAF75 ] Parport C:\WINDOWS\system32\drivers\Parport.sys
19:28:12.0312 3620 Parport - ok
19:28:12.0328 3620 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
19:28:12.0343 3620 PartMgr - ok
19:28:12.0375 3620 [ 9575C5630DB8FB804649A6959737154C ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
19:28:12.0375 3620 ParVdm - ok
19:28:12.0375 3620 [ 043410877BDA580C528F45165F7125BC ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
19:28:12.0390 3620 PCI - ok
19:28:12.0390 3620 PCIDump - ok
19:28:12.0421 3620 [ F4BFDE7209C14A07AAA61E4D6AE69EAC ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
19:28:12.0437 3620 PCIIde - ok
19:28:12.0468 3620 [ F0406CBC60BDB0394A0E17FFB04CDD3D ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
19:28:12.0484 3620 Pcmcia - ok
19:28:12.0484 3620 PDCOMP - ok
19:28:12.0500 3620 PDFRAME - ok
19:28:12.0515 3620 PDRELI - ok
19:28:12.0515 3620 PDRFRAME - ok
19:28:12.0531 3620 perc2 - ok
19:28:12.0531 3620 perc2hib - ok
19:28:12.0640 3620 [ 957B82EC80AD7EAD64E5E47DF6B0DC40 ] pfc C:\WINDOWS\system32\drivers\pfc.sys
19:28:12.0687 3620 pfc - ok
19:28:12.0734 3620 [ B293F05AD9120B0232C28945C1E98CD0 ] PfModNT C:\WINDOWS\system32\PfModNT.sys
19:28:12.0750 3620 PfModNT - ok
19:28:12.0765 3620 [ C3FB1D70CB88722267949694BA51759E ] PlugPlay C:\WINDOWS\system32\services.exe
19:28:12.0765 3620 PlugPlay - ok
19:28:12.0828 3620 [ D31F88C5F19EEFA366A415D6BC5F2ABC ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
19:28:12.0828 3620 Pml Driver HPZ12 - ok
19:28:12.0843 3620 [ 91E6024D6D4DCDECDB36C43ECF9BBECB ] PolicyAgent C:\WINDOWS\System32\lsass.exe
19:28:12.0859 3620 PolicyAgent - ok
19:28:12.0906 3620 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
19:28:12.0906 3620 PptpMiniport - ok
19:28:12.0921 3620 [ E19C9632AC828F6F214391E2BDDA11CB ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
19:28:12.0937 3620 Processor - ok
19:28:12.0953 3620 [ 18D9789A4664BF417EEA944D2776091A ] prodrv06 C:\WINDOWS\System32\drivers\prodrv06.sys
19:28:12.0968 3620 prodrv06 - ok
19:28:13.0000 3620 [ 8CC9671A7ED2902E747EE0892E1C8575 ] prohlp02 C:\WINDOWS\system32\drivers\prohlp02.sys
19:28:13.0000 3620 prohlp02 - ok
19:28:13.0031 3620 [ 960BCE3ED38761B446AABAC06C76BADF ] prosync1 C:\WINDOWS\system32\drivers\prosync1.sys
19:28:13.0031 3620 prosync1 - ok
19:28:13.0046 3620 [ 91E6024D6D4DCDECDB36C43ECF9BBECB ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
19:28:13.0062 3620 ProtectedStorage - ok
19:28:13.0062 3620 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
19:28:13.0062 3620 PSched - ok
19:28:13.0093 3620 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
19:28:13.0093 3620 Ptilink - ok
19:28:13.0140 3620 [ 5039A4F67F781E03B79A4FD0CAE27FC8 ] PVUSB C:\WINDOWS\system32\DRIVERS\CESG502.sys
19:28:13.0140 3620 PVUSB - ok
19:28:13.0171 3620 [ CFACAA25576D473EF7B771ECE1B24D73 ] pwdrvio C:\WINDOWS\system32\pwdrvio.sys
19:28:13.0187 3620 pwdrvio - ok
19:28:13.0218 3620 [ 0B675A61B23561C86E8710F751842276 ] pwdspio C:\WINDOWS\system32\pwdspio.sys
19:28:13.0234 3620 pwdspio - ok
19:28:13.0265 3620 [ D86B4A68565E444D76457F14172C875A ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
19:28:13.0281 3620 PxHelp20 - ok
19:28:13.0281 3620 ql1080 - ok
19:28:13.0296 3620 Ql10wnt - ok
19:28:13.0312 3620 ql12160 - ok
19:28:13.0312 3620 ql1240 - ok
19:28:13.0328 3620 ql1280 - ok
19:28:13.0375 3620 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
19:28:13.0375 3620 RasAcd - ok
19:28:13.0406 3620 [ 78DA9CCDAC683EF5AA87D1C919F6D221 ] RasAuto C:\WINDOWS\System32\rasauto.dll
19:28:13.0421 3620 RasAuto - ok
19:28:13.0453 3620 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
19:28:13.0453 3620 Rasl2tp - ok
19:28:13.0500 3620 [ 0A48DF90B4784F9B90A2671AF992C914 ] RasMan C:\WINDOWS\System32\rasmans.dll
19:28:13.0515 3620 RasMan - ok
19:28:13.0515 3620 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
19:28:13.0515 3620 RasPppoe - ok
19:28:13.0531 3620 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
19:28:13.0531 3620 Raspti - ok
19:28:13.0546 3620 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
19:28:13.0546 3620 Rdbss - ok
19:28:13.0562 3620 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
19:28:13.0562 3620 RDPCDD - ok
19:28:13.0625 3620 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
19:28:13.0625 3620 RDPWD - ok
19:28:13.0687 3620 [ 9F63D9C5B238ED1C375D417EFF3D5BE7 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
19:28:13.0687 3620 RDSessMgr - ok
19:28:13.0703 3620 [ D8EB2A7904DB6C916EB5361878DDCBAE ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
19:28:13.0718 3620 redbook - ok
19:28:13.0750 3620 [ 7DA370C31673C99497BD07068EE6E354 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
19:28:13.0750 3620 RemoteAccess - ok
19:28:13.0765 3620 [ 499C59A2584F6D4EA41E944DA571D993 ] RpcLocator C:\WINDOWS\System32\locator.exe
19:28:13.0765 3620 RpcLocator - ok
19:28:13.0812 3620 [ 0203B1AAD358F206CB0A3C1F93CCE17A ] RpcSs C:\WINDOWS\system32\rpcss.dll
19:28:13.0812 3620 RpcSs - ok
19:28:13.0843 3620 [ 414964844F4793ACB868D057E8ED997E ] RSVP C:\WINDOWS\System32\rsvp.exe
19:28:13.0875 3620 RSVP - ok
19:28:13.0921 3620 [ EE5AD71A1F576D4D58D8D014560EB856 ] rt2870 C:\WINDOWS\system32\DRIVERS\rt2870.sys
19:28:13.0968 3620 rt2870 - ok
19:28:13.0984 3620 [ 91E6024D6D4DCDECDB36C43ECF9BBECB ] SamSs C:\WINDOWS\system32\lsass.exe
19:28:14.0000 3620 SamSs - ok
19:28:14.0062 3620 [ B84BC802CCC0F2FAC78F8B8E22DAE60C ] sbpci C:\WINDOWS\system32\drivers\sbpci.sys
19:28:14.0109 3620 sbpci - ok
19:28:14.0140 3620 [ 0505DA5D357F18A5D42FC5DEDE6BC9A0 ] SBRE C:\WINDOWS\system32\drivers\SBREdrv.sys
19:28:14.0140 3620 SBRE - ok
19:28:14.0171 3620 [ 67949CC8A865296C1333C96A4E1A2D66 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
19:28:14.0203 3620 SCardSvr - ok
19:28:14.0218 3620 [ 55F5C5C1BE1A78E285033E432BA01597 ] Schedule C:\WINDOWS\system32\schedsvc.dll
19:28:14.0250 3620 Schedule - ok
19:28:14.0265 3620 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
19:28:14.0265 3620 Secdrv - ok
19:28:14.0296 3620 [ 5AC311C0AF2AF5EC221670BB8DC479D3 ] seclogon C:\WINDOWS\System32\seclogon.dll
19:28:14.0312 3620 seclogon - ok
19:28:14.0328 3620 [ 3531366F38F453D08FE72E7B32DFE786 ] SENS C:\WINDOWS\system32\sens.dll
19:28:14.0328 3620 SENS - ok
19:28:14.0359 3620 [ 93D313C31F7AD9EA2B75F26075413C7C ] Serial C:\WINDOWS\system32\drivers\Serial.sys
19:28:14.0375 3620 Serial - ok
19:28:14.0421 3620 [ 462AEE0EA0481EA8BD45CAC876A4CCC4 ] sfhlp01 C:\WINDOWS\system32\drivers\sfhlp01.sys
19:28:14.0437 3620 sfhlp01 - ok
19:28:14.0437 3620 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
19:28:14.0453 3620 Sfloppy - ok
19:28:14.0500 3620 [ F4CE708A7D17A625DE6C0FD746D50E88 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
19:28:14.0515 3620 SharedAccess - ok
19:28:14.0562 3620 [ 1B8542F338CDD86929A084A455837158 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
19:28:14.0578 3620 ShellHWDetection - ok
19:28:14.0578 3620 Simbad - ok
19:28:14.0625 3620 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
19:28:14.0625 3620 SLIP - ok
19:28:14.0687 3620 [ BCC773872041AA59BC9A6CF770FB32E2 ] snapman C:\WINDOWS\system32\DRIVERS\snapman.sys
19:28:14.0718 3620 snapman - ok
19:28:14.0765 3620 [ A1ECEEAA5C5E74B2499EB51D38185B84 ] SONYPVU1 C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
19:28:14.0765 3620 SONYPVU1 - ok
19:28:14.0781 3620 Sparrow - ok
19:28:14.0812 3620 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
19:28:14.0828 3620 splitter - ok
19:28:14.0859 3620 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
19:28:14.0875 3620 Spooler - ok
19:28:14.0906 3620 [ 68103A2B441BBF3908EBB587F0704D6C ] sptd C:\WINDOWS\System32\Drivers\sptd.sys
19:28:14.0921 3620 sptd - ok
19:28:14.0921 3620 [ 39626E6DC1FB39434EC40C42722B660A ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
19:28:14.0937 3620 sr - ok
19:28:14.0968 3620 [ 6ED29124A1C83BD0CF6B26BD01CA6F6F ] srservice C:\WINDOWS\System32\srsvc.dll
19:28:14.0984 3620 srservice - ok
19:28:15.0015 3620 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
19:28:15.0015 3620 Srv - ok
19:28:15.0046 3620 [ EA9E0DB8684CEF2FD3BADD671DF5A112 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
19:28:15.0062 3620 SSDPSRV - ok
19:28:15.0093 3620 [ D76B0E8A4ECAD1ADCC75FD14A7ACC54C ] stisvc C:\WINDOWS\system32\wiaservc.dll
19:28:15.0109 3620 stisvc - ok
19:28:15.0140 3620 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
19:28:15.0156 3620 streamip - ok
19:28:15.0171 3620 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
19:28:15.0171 3620 swenum - ok
19:28:15.0187 3620 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
19:28:15.0203 3620 swmidi - ok
19:28:15.0203 3620 SwPrv - ok
19:28:15.0218 3620 symc810 - ok
19:28:15.0234 3620 symc8xx - ok
19:28:15.0250 3620 sym_hi - ok
19:28:15.0250 3620 sym_u3 - ok
19:28:15.0281 3620 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
19:28:15.0281 3620 sysaudio - ok
19:28:15.0343 3620 [ 0899061318A6B1D9596AABFC77F45E44 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
19:28:15.0359 3620 SysmonLog - ok
19:28:15.0390 3620 [ 8E5231171AD6595FF002E848CC54FCD7 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
19:28:15.0406 3620 TapiSrv - ok
19:28:15.0468 3620 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
19:28:15.0468 3620 Tcpip - ok
19:28:15.0500 3620 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
19:28:15.0500 3620 TDPIPE - ok
19:28:15.0531 3620 [ 603D59923828C6C213B84B14CBF32083 ] tdrpman C:\WINDOWS\system32\DRIVERS\tdrpman.sys
19:28:15.0546 3620 tdrpman - ok
19:28:15.0562 3620 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
19:28:15.0578 3620 TDTCP - ok
19:28:15.0765 3620 [ 7C8DD5576695B3362202EF09B20C425E ] TeamViewer8 C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
19:28:15.0796 3620 TeamViewer8 - ok
19:28:15.0828 3620 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
19:28:15.0828 3620 TermDD - ok
19:28:15.0906 3620 [ 710BC85A8C22626EE094439E3EA0D38C ] TermService C:\WINDOWS\System32\termsrv.dll
19:28:15.0906 3620 TermService - ok
19:28:15.0937 3620 [ 1B8542F338CDD86929A084A455837158 ] Themes C:\WINDOWS\System32\shsvcs.dll
19:28:15.0953 3620 Themes - ok
19:28:16.0000 3620 [ B0B3122BFF3910E0BA97014045467778 ] tifsfilter C:\WINDOWS\system32\DRIVERS\tifsfilt.sys
19:28:16.0000 3620 tifsfilter - ok
19:28:16.0015 3620 [ 13BFE330880AC0CE8672D00AA5AFF738 ] timounter C:\WINDOWS\system32\DRIVERS\timntr.sys
19:28:16.0031 3620 timounter - ok
19:28:16.0093 3620 [ EFEF22B9577E5051057FDE1AE381B50C ] TomTomHOMEService C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
19:28:16.0109 3620 TomTomHOMEService - ok
19:28:16.0125 3620 TosIde - ok
19:28:16.0156 3620 [ E1A84A5067627407A53C2C4F8D8A1D2E ] TrkWks C:\WINDOWS\system32\trkwks.dll
19:28:16.0234 3620 TrkWks - ok
19:28:16.0312 3620 [ 800E8F1DC5F6A200B6DFCA2B3C21365E ] TryAndDecideService C:\Program Files\Fichiers communs\Acronis\Fomatik\TrueImageTryStartService.exe
19:28:16.0328 3620 TryAndDecideService - ok
19:28:16.0359 3620 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
19:28:16.0359 3620 Udfs - ok
19:28:16.0375 3620 ultra - ok
19:28:16.0437 3620 [ 4847639D852763EE39415C929470F672 ] UnlockerDriver5 C:\Program Files\Unlocker\UnlockerDriver5.sys
19:28:16.0437 3620 UnlockerDriver5 - ok
19:28:16.0484 3620 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
19:28:16.0484 3620 Update - ok
19:28:16.0546 3620 [ BD8166A495B02308F364B36249475F22 ] upnphost C:\WINDOWS\System32\upnphost.dll
19:28:16.0562 3620 upnphost - ok
19:28:16.0578 3620 [ 1EDC93D7BD731B5CA6248AE245099B60 ] UPS C:\WINDOWS\System32\ups.exe
19:28:16.0578 3620 UPS - ok
19:28:16.0640 3620 [ 6E421CCC57059B0186C6259CA3B6DFC9 ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
19:28:16.0640 3620 USBAAPL - ok
19:28:16.0671 3620 [ E919708DB44ED8543A7C017953148330 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
19:28:16.0671 3620 usbaudio - ok
19:28:16.0734 3620 [ AF9388E736AF0C325067F05EDC350010 ] usbbus C:\WINDOWS\system32\DRIVERS\lgusbbus.sys
19:28:16.0734 3620 usbbus - ok
19:28:16.0765 3620 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
19:28:16.0765 3620 usbccgp - ok
19:28:16.0812 3620 [ AE30EA96E60E823C7B525DA356283AE8 ] UsbDiag C:\WINDOWS\system32\DRIVERS\lgusbdiag.sys
19:28:16.0812 3620 UsbDiag - ok
19:28:16.0843 3620 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
19:28:16.0843 3620 usbehci - ok
19:28:16.0906 3620 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
19:28:16.0906 3620 usbhub - ok
19:28:16.0968 3620 [ 46AC66DF3D6EFE81F69BEA823A53AAB5 ] USBModem C:\WINDOWS\system32\DRIVERS\lgusbmodem.sys
19:28:16.0968 3620 USBModem - ok
19:28:17.0000 3620 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
19:28:17.0000 3620 usbprint - ok
19:28:17.0031 3620 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
19:28:17.0031 3620 usbscan - ok
19:28:17.0046 3620 [ A32426D9B14A089EAA1D922E0C5801A9 ] usbstor C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
19:28:17.0046 3620 usbstor - ok
19:28:17.0062 3620 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
19:28:17.0062 3620 usbuhci - ok
19:28:17.0078 3620 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
19:28:17.0078 3620 VgaSave - ok
19:28:17.0093 3620 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
19:28:17.0093 3620 ViaIde - ok
19:28:17.0109 3620 [ 46DE1126684369BACE4849E4FC8C43CA ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
19:28:17.0109 3620 VolSnap - ok
19:28:17.0171 3620 [ 5A4DA252B2C0550AB83D129C02CF6C19 ] VSS C:\WINDOWS\System32\vssvc.exe
19:28:17.0234 3620 VSS - ok
19:28:17.0296 3620 [ C1F726EE0B043B074A68992BC4AEF8FD ] W32Time C:\WINDOWS\System32\w32time.dll
19:28:17.0312 3620 W32Time - ok
19:28:17.0343 3620 [ 738244934C71118A21F8D678067D057D ] W8335XP C:\WINDOWS\system32\DRIVERS\WG311v3XP.sys
19:28:17.0343 3620 W8335XP - ok
19:28:17.0375 3620 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
19:28:17.0375 3620 Wanarp - ok
19:28:17.0390 3620 WDICA - ok
19:28:17.0406 3620 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
19:28:17.0406 3620 wdmaud - ok
19:28:17.0468 3620 [ 714670E64FBE6D28D99871ED9A52A334 ] WebClient C:\WINDOWS\System32\webclnt.dll
19:28:17.0484 3620 WebClient - ok
19:28:17.0578 3620 [ 5E9DEAE9980FF34BCD6DDE2E9E2BF911 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
19:28:17.0578 3620 winmgmt - ok
19:28:17.0656 3620 [ 9595464710862B17E399818AB114BD5E ] WinRM C:\WINDOWS\system32\WsmSvc.dll
19:28:17.0703 3620 WinRM - ok
19:28:17.0750 3620 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
19:28:17.0750 3620 WmdmPmSN - ok
19:28:17.0781 3620 [ 4E8E8A58F56B25D0795F484E5EB7F898 ] WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe
19:28:17.0796 3620 WmiApSrv - ok
19:28:17.0875 3620 [ C9BEA742CE225CC993C9465FDDAE4656 ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
19:28:17.0906 3620 WMPNetworkSvc - ok
19:28:17.0937 3620 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
19:28:17.0937 3620 WpdUsb - ok
19:28:18.0109 3620 [ B800EEC15851597405784126C407188C ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
19:28:18.0125 3620 WPFFontCache_v0400 - ok
19:28:18.0187 3620 [ C1FD85DB4A80A98D60ECB7A828E77FE0 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
19:28:18.0187 3620 wscsvc - ok
19:28:18.0203 3620 WSearch - ok
19:28:18.0250 3620 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
19:28:18.0250 3620 WSTCODEC - ok
19:28:18.0265 3620 [ 75D6C5C3D2C93B1F9931E5DFB693AE2A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
19:28:18.0281 3620 wuauserv - ok
19:28:18.0328 3620 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
19:28:18.0328 3620 WudfPf - ok
19:28:18.0343 3620 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
19:28:18.0359 3620 WudfRd - ok
19:28:18.0375 3620 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
19:28:18.0390 3620 WudfSvc - ok
19:28:18.0453 3620 [ C336E54EE0C291A02F004667DB1E66CB ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
19:28:18.0468 3620 WZCSVC - ok
19:28:18.0515 3620 [ F92A87FDDA0C11C8604FBC2B864FA726 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
19:28:18.0531 3620 xmlprov - ok
19:28:18.0531 3620 ZDCndis5 - ok
19:28:18.0562 3620 ================ Scan global ===============================
19:28:18.0656 3620 [ 61013AB2E38550619637AA6CC02383D4 ] C:\WINDOWS\system32\basesrv.dll
19:28:18.0703 3620 [ C95F48F2A057F886077D4C6668EDD193 ] C:\WINDOWS\system32\winsrv.dll
19:28:18.0718 3620 [ C95F48F2A057F886077D4C6668EDD193 ] C:\WINDOWS\system32\winsrv.dll
19:28:18.0750 3620 [ C3FB1D70CB88722267949694BA51759E ] C:\WINDOWS\system32\services.exe
19:28:18.0765 3620 [Global] - ok
19:28:18.0765 3620 ================ Scan MBR ==================================
19:28:18.0781 3620 [ C99C3199CFAA4CBDCD91493F6D113A50 ] \Device\Harddisk0\DR0
19:28:18.0953 3620 \Device\Harddisk0\DR0 - ok
19:28:18.0953 3620 ================ Scan VBR ==================================
19:28:18.0953 3620 [ 4D142B9F874525EDAD9537CDC7B217F2 ] \Device\Harddisk0\DR0\Partition1
19:28:18.0953 3620 \Device\Harddisk0\DR0\Partition1 - ok
19:28:18.0953 3620 ============================================================
19:28:18.0953 3620 Scan finished
19:28:18.0953 3620 ============================================================
19:28:18.0968 2656 Detected object count: 0
19:28:18.0968 2656 Actual detected object count: 0
19:28:52.0703 3660 ============================================================
19:28:52.0703 3660 Scan started
19:28:52.0703 3660 Mode: Manual;
19:28:52.0703 3660 ============================================================
19:28:53.0093 3660 ================ Scan system memory ========================
19:28:53.0093 3660 System memory - ok
19:28:53.0093 3660 ================ Scan services =============================
19:28:53.0296 3660 [ 4C1FD15C288B2389A154BD78043160FF ] A0380VID C:\WINDOWS\system32\DRIVERS\A0380Vid.sys
19:28:53.0328 3660 A0380VID - ok
19:28:53.0343 3660 Abiosdsk - ok
19:28:53.0359 3660 abp480n5 - ok
19:28:53.0453 3660 [ E5B8644DB3436FA4A4665E945923A54C ] AcerSyncSystemService C:\Program Files\Acer\AcerSync\AcerSyncSystemService.exe
19:28:53.0453 3660 AcerSyncSystemService - ok
19:28:53.0500 3660 [ E5E6DBFC41EA8AAD005CB9A57A96B43B ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
19:28:53.0500 3660 ACPI - ok
19:28:53.0531 3660 [ E4ABC1212B70BB03D35E60681C447210 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
19:28:53.0531 3660 ACPIEC - ok
19:28:53.0593 3660 [ 45586DC24ACF54EBB7D0D494653942E9 ] AcrSch2Svc C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
19:28:53.0593 3660 AcrSch2Svc - ok
19:28:53.0687 3660 [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
19:28:53.0687 3660 AdobeFlashPlayerUpdateSvc - ok
19:28:53.0703 3660 adpu160m - ok
19:28:53.0734 3660 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
19:28:53.0734 3660 aec - ok
19:28:53.0781 3660 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
19:28:53.0781 3660 AFD - ok
19:28:53.0781 3660 Aha154x - ok
19:28:53.0796 3660 aic78u2 - ok
19:28:53.0828 3660 aic78xx - ok
19:28:53.0859 3660 [ 758FDC60D41716EF889D849989B4B1CD ] Alerter C:\WINDOWS\system32\alrsvc.dll
19:28:53.0859 3660 Alerter - ok
19:28:53.0890 3660 [ 5E9A6658A2A69AE7EB195113B7A2E7A9 ] ALG C:\WINDOWS\System32\alg.exe
19:28:53.0890 3660 ALG - ok
19:28:53.0890 3660 AliIde - ok
19:28:53.0906 3660 amsint - ok
19:28:53.0968 3660 [ 29C537D74694DE38B07B8D0C37BC25C5 ] APL531 C:\WINDOWS\system32\Drivers\HDvid.sys
19:28:53.0968 3660 APL531 - ok
19:28:54.0046 3660 [ 4FE5C6D40664AE07BE5105874357D2ED ] Apple Mobile Device C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
19:28:54.0046 3660 Apple Mobile Device - ok
19:28:54.0046 3660 AppMgmt - ok
19:28:54.0078 3660 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
19:28:54.0078 3660 Arp1394 - ok
19:28:54.0078 3660 asc - ok
19:28:54.0078 3660 asc3350p - ok
19:28:54.0093 3660 asc3550 - ok
19:28:54.0203 3660 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
19:28:54.0203 3660 aspnet_state - ok
19:28:54.0234 3660 [ 4AF5F360BA1E8794D32B366E45A64A0A ] aswFsBlk C:\WINDOWS\system32\drivers\aswFsBlk.sys
19:28:54.0234 3660 aswFsBlk - ok
19:28:54.0265 3660 [ 4691B3FE3717F9D9C64A5282C8543D4D ] aswKbd C:\WINDOWS\system32\drivers\aswKbd.sys
19:28:54.0265 3660 aswKbd - ok
19:28:54.0281 3660 [ 1F7094D4268D46F718C51286DC189791 ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
19:28:54.0296 3660 aswMonFlt - ok
19:28:54.0343 3660 [ 7B43265F92257A21CBFD88E7A651044C ] aswRdr C:\WINDOWS\system32\drivers\aswRdr.sys
19:28:54.0343 3660 aswRdr - ok
19:28:54.0375 3660 [ B680134BA1813B78B47FDD1DFF223CA5 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
19:28:54.0375 3660 aswRvrt - ok
19:28:54.0421 3660 [ CCD565A8A72AF7D45F9A242013870926 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
19:28:54.0437 3660 aswSnx - ok
19:28:54.0468 3660 [ 937300BC7C4CDF7576BCCE44E19BBB9D ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
19:28:54.0484 3660 aswSP - ok
19:28:54.0515 3660 [ 1F71F170D90E42EFDE9633D81D5E12DC ] aswTdi C:\WINDOWS\system32\drivers\aswTdi.sys
19:28:54.0515 3660 aswTdi - ok
19:28:54.0546 3660 [ 8CFAA2B965773A653F48F1207A9CB9C4 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
19:28:54.0546 3660 aswVmm - ok
19:28:54.0578 3660 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
19:28:54.0593 3660 AsyncMac - ok
19:28:54.0593 3660 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
19:28:54.0593 3660 atapi - ok
19:28:54.0609 3660 Atdisk - ok
19:28:54.0640 3660 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
19:28:54.0640 3660 Atmarpc - ok
19:28:54.0671 3660 [ B4005AEF7873144634765B570DAC466E ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
19:28:54.0671 3660 AudioSrv - ok
19:28:54.0718 3660 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
19:28:54.0718 3660 audstub - ok
19:28:54.0781 3660 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
19:28:54.0781 3660 avast! Antivirus - ok
19:28:54.0812 3660 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
19:28:54.0828 3660 Beep - ok
19:28:54.0859 3660 [ BAA0B6E647C1AD593E9BAE5CC31BCFFB ] BITS C:\WINDOWS\system32\qmgr.dll
19:28:54.0875 3660 BITS - ok
19:28:54.0968 3660 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
19:28:54.0968 3660 Bonjour Service - ok
19:28:55.0000 3660 [ F934D1B230F84E1D19DD00AC5A7A83ED ] Bridge C:\WINDOWS\system32\DRIVERS\bridge.sys
19:28:55.0000 3660 Bridge - ok
19:28:55.0000 3660 [ F934D1B230F84E1D19DD00AC5A7A83ED ] BridgeMP C:\WINDOWS\system32\DRIVERS\bridge.sys
19:28:55.0000 3660 BridgeMP - ok
19:28:55.0046 3660 [ 952322AE7F95A21F3EEDA99C36C68663 ] Browser C:\WINDOWS\System32\browser.dll
19:28:55.0046 3660 Browser - ok
19:28:55.0093 3660 [ E156C353FCBC05DB5DEE57BE0592F2D4 ] camfilt C:\WINDOWS\system32\Drivers\camfilt.sys
19:28:55.0093 3660 camfilt - ok
19:28:55.0250 3660 catchme - ok
19:28:55.0281 3660 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
19:28:55.0281 3660 cbidf2k - ok
19:28:55.0296 3660 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
19:28:55.0312 3660 CCDECODE - ok
19:28:55.0312 3660 cd20xrnt - ok
19:28:55.0343 3660 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
19:28:55.0359 3660 Cdaudio - ok
19:28:55.0375 3660 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
19:28:55.0375 3660 Cdfs - ok
19:28:55.0421 3660 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
19:28:55.0421 3660 Cdrom - ok
19:28:55.0421 3660 Changer - ok
19:28:55.0468 3660 [ 793EF38A5FD086C3C8E48A8A861562ED ] CiSvc C:\WINDOWS\system32\cisvc.exe
19:28:55.0468 3660 CiSvc - ok
19:28:55.0515 3660 [ 8B30CBB0C07D49B2658FB190946B0E7E ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
19:28:55.0515 3660 ClipSrv - ok
19:28:55.0578 3660 [ 7FA87325900183197BC9710D1CE4C9FA ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:28:55.0578 3660 clr_optimization_v2.0.50727_32 - ok
19:28:55.0640 3660 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:28:55.0640 3660 clr_optimization_v4.0.30319_32 - ok
19:28:55.0640 3660 CmdIde - ok
19:28:55.0656 3660 COMSysApp - ok
19:28:55.0671 3660 Cpqarray - ok
19:28:55.0718 3660 [ 7A6D0B71035E123FDDA2156A25578AD3 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
19:28:55.0718 3660 CryptSvc - ok
19:28:55.0718 3660 dac2w2k - ok
19:28:55.0734 3660 dac960nt - ok
19:28:55.0781 3660 [ 0203B1AAD358F206CB0A3C1F93CCE17A ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
19:28:55.0796 3660 DcomLaunch - ok
19:28:55.0812 3660 dgderdrv - ok
19:28:55.0859 3660 [ 318F535DC05551D96DEEB90B6D6904DE ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
19:28:55.0859 3660 Dhcp - ok
19:28:55.0875 3660 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
19:28:55.0875 3660 Disk - ok
19:28:55.0875 3660 dmadmin - ok
19:28:55.0921 3660 [ F5DEADD42335FB33EDCA74ECB2F36CBA ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
19:28:55.0921 3660 dmboot - ok
19:28:55.0937 3660 [ 5A7C47C9B3F9FB92A66410A7509F0C71 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
19:28:55.0953 3660 dmio - ok
19:28:55.0968 3660 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
19:28:55.0968 3660 dmload - ok
19:28:56.0000 3660 [ 6797C23D6B79935482D7F0E8CA5E5B67 ] dmserver C:\WINDOWS\System32\dmserver.dll
19:28:56.0000 3660 dmserver - ok
19:28:56.0031 3660 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
19:28:56.0031 3660 DMusic - ok
19:28:56.0078 3660 [ 1A1E59377FB6CACD711CC5073C4A7D79 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
19:28:56.0093 3660 Dnscache - ok
19:28:56.0125 3660 [ 3FCF86F03D0302443C21CE6E5BBF7A25 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
19:28:56.0125 3660 Dot3svc - ok
19:28:56.0125 3660 dpti2o - ok
19:28:56.0265 3660 [ 0F1189883690949BA7A9F68339587E51 ] driverhardwarev2 C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
19:28:56.0265 3660 driverhardwarev2 - ok
19:28:56.0296 3660 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
19:28:56.0296 3660 drmkaud - ok
19:28:56.0343 3660 [ 651554E483712B708EDE864D0CA1AA73 ] DrvAgent32 C:\WINDOWS\system32\Drivers\DrvAgent32.sys
19:28:56.0343 3660 DrvAgent32 - ok
19:28:56.0359 3660 [ 8B5FC9087D2CAB110BC2ED5CC5E7B8AC ] EapHost C:\WINDOWS\System32\eapsvc.dll
19:28:56.0359 3660 EapHost - ok
19:28:56.0390 3660 [ 94F948CB12C4D35483F1E815DEB16C7B ] ERSvc C:\WINDOWS\System32\ersvc.dll
19:28:56.0406 3660 ERSvc - ok
19:28:56.0421 3660 [ A55DD7D8CED5D2624A9EE2DDA7BE0319 ] es1371 C:\WINDOWS\system32\drivers\es1371mp.sys
19:28:56.0437 3660 es1371 - ok
19:28:56.0468 3660 [ C3FB1D70CB88722267949694BA51759E ] Eventlog C:\WINDOWS\system32\services.exe
19:28:56.0484 3660 Eventlog - ok
19:28:56.0531 3660 [ EC16AE9B37EACF871629227A3F3913FD ] EventSystem C:\WINDOWS\System32\es.dll
19:28:56.0531 3660 EventSystem - ok
19:28:56.0593 3660 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
19:28:56.0593 3660 Fastfat - ok
19:28:56.0625 3660 [ 1B8542F338CDD86929A084A455837158 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
19:28:56.0640 3660 FastUserSwitchingCompatibility - ok
19:28:56.0671 3660 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
19:28:56.0671 3660 Fdc - ok
19:28:56.0718 3660 [ E9648254056BCE81A85380C0C3647DC4 ] FETNDIS C:\WINDOWS\system32\DRIVERS\fetnd5.sys
19:28:56.0718 3660 FETNDIS - ok
19:28:56.0734 3660 [ 31F923EB2170FC172C81ABDA0045D18C ] Fips C:\WINDOWS\system32\drivers\Fips.sys
19:28:56.0734 3660 Fips - ok
19:28:56.0734 3660 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
19:28:56.0750 3660 Flpydisk - ok
19:28:56.0796 3660 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\syste
Utilisateur anonyme
23 juil. 2013 à 19:38
23 juil. 2013 à 19:38
ok,
* /!\Avertissement :
Ce logiciel n'est à utiliser que prescrit par un helper qualifié.
Ne pas utiliser en dehors de ce cas de figure : dangereux!
► Télécharges ComboFix à partir de ce lien et enregistres le sur ton bureau :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
ou ici :
https://forum.pcastuces.com/combofix_renomme_au_telechargement-f31s22.htm
A lire
https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
Avant d'utiliser ComboFix :
► ferme les fenêtres de tous les programmes en cours.
► Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.
Une fois fait, sur ton bureau double-clic sur Combofix.exe.
- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.
- il se peut que Combofix ait besoin de se connecter à internet pour trouver les mises à jour, donc il faut l'autoriser.
/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.
- En fin de scan il est possible que ComboFix ait besoin de redémarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.
- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\ComboFix\ComboFix.txt)
► Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.
► Reviens sur le forum, et copie et colle la totalité du contenu de Combofix.txt dans ton prochain message.
* /!\Avertissement :
Ce logiciel n'est à utiliser que prescrit par un helper qualifié.
Ne pas utiliser en dehors de ce cas de figure : dangereux!
► Télécharges ComboFix à partir de ce lien et enregistres le sur ton bureau :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
ou ici :
https://forum.pcastuces.com/combofix_renomme_au_telechargement-f31s22.htm
A lire
https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
Avant d'utiliser ComboFix :
► ferme les fenêtres de tous les programmes en cours.
► Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.
Une fois fait, sur ton bureau double-clic sur Combofix.exe.
- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.
- il se peut que Combofix ait besoin de se connecter à internet pour trouver les mises à jour, donc il faut l'autoriser.
/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.
- En fin de scan il est possible que ComboFix ait besoin de redémarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.
- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\ComboFix\ComboFix.txt)
► Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.
► Reviens sur le forum, et copie et colle la totalité du contenu de Combofix.txt dans ton prochain message.
je n'ai pas eu de rapport. Je recommence demain.... Je me lève à 5h30. Merci en tout cas pour ton aide.
Bonne soirée
Bonne soirée
Utilisateur anonyme
23 juil. 2013 à 20:57
23 juil. 2013 à 20:57
Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\ComboFix\ComboFix.txt
@ ++
@ ++
voilà le rapport
ComboFix 13-07-24.02 - FOURE 24/07/2013 16:01:49.2.2 - x86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.33.1036.18.2750.1985 [GMT 2:00]
Lancé depuis: c:\documents and settings\FOURE\Bureau\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: avast! Antivirus *Disabled* {7591DB91-41F0-48A3-B128-1A293FD8233D}
* Un nouveau point de restauration a été créé
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2013-06-24 au 2013-07-24 ))))))))))))))))))))))))))))))))))))
.
.
2013-07-23 17:48 . 2013-07-23 17:48 -------- d--h--w- c:\documents and settings\FOURE\Voisinage d'impression
2013-07-21 17:16 . 2013-07-21 17:16 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-07-21 17:16 . 2013-04-04 12:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-07-19 18:35 . 2013-07-19 19:30 -------- d-----w- c:\program files\ZHPDiag
2013-07-19 15:40 . 2013-07-20 12:03 -------- d-----w- C:\ZHP
2013-07-18 17:03 . 2013-07-19 15:35 -------- d-----w- c:\program files\jv16 PowerTools 2013
2013-07-13 16:15 . 2013-07-17 16:07 -------- d-----w- c:\program files\SpeedFan
2013-07-11 15:12 . 2013-07-11 15:12 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-07-18 16:08 . 2012-04-01 04:53 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-07-18 16:08 . 2011-05-24 04:23 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-07-11 15:11 . 2013-03-23 06:33 867240 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-07-11 15:11 . 2010-07-04 19:11 789416 ----a-w- c:\windows\system32\deployJava1.dll
2013-07-11 15:11 . 2008-10-19 09:08 144896 ----a-w- c:\windows\system32\javacpl.cpl
2013-06-28 04:03 . 2013-03-15 20:21 175176 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-06-28 04:03 . 2011-09-27 09:42 369584 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-06-28 04:03 . 2011-09-27 09:42 770344 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-06-12 09:16 . 2013-03-13 06:16 8610696 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe
2013-06-07 21:56 . 2008-10-15 18:00 385024 ------w- c:\windows\system32\html.iec
2013-06-07 21:48 . 2003-04-24 12:00 920064 ----a-w- c:\windows\system32\wininet.dll
2013-06-07 21:48 . 2003-04-24 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2013-06-07 21:48 . 2003-04-24 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-06-05 09:08 . 2003-04-24 12:00 1876864 ----a-w- c:\windows\system32\win32k.sys
2013-06-04 07:22 . 2008-10-14 20:28 563712 ----a-w- c:\windows\system32\qedit.dll
2013-05-09 08:59 . 2013-03-15 20:21 49376 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-05-09 08:59 . 2011-09-27 09:42 56080 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-05-09 08:59 . 2013-03-15 20:21 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-05-09 08:59 . 2011-09-27 09:42 49760 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2013-05-09 08:59 . 2011-09-27 09:42 29816 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-05-09 08:58 . 2011-09-27 09:42 41664 ----a-w- c:\windows\avastSS.scr
2013-05-09 08:58 . 2011-09-27 09:42 229648 ----a-w- c:\windows\system32\aswBoot.exe
2013-05-08 09:58 . 2006-10-18 19:47 1543680 ------w- c:\windows\system32\wmvdecod.dll
2013-05-03 05:39 . 2003-04-24 12:00 2151936 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-05-03 05:39 . 2002-08-29 11:42 2030592 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-05-01 01:59 . 2013-05-01 01:59 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2013-05-01 01:59 . 2013-05-01 01:59 69632 ----a-w- c:\windows\system32\QuickTime.qts
2011-03-14 13:44 . 2011-03-14 13:44 123 ----a-w- c:\program files\ayudasoftclose.reg
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-05-09 08:58 121968 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2012-02-25 39408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean.exe
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
backup=c:\windows\pss\Microsoft Office.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^OfferBox.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\OfferBox.lnk
backup=c:\windows\pss\OfferBox.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Windows Search.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Windows Search.lnk
backup=c:\windows\pss\Windows Search.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^FOURE^Menu Démarrer^Programmes^Démarrage^GigaTribe.lnk]
path=c:\documents and settings\FOURE\Menu Démarrer\Programmes\Démarrage\GigaTribe.lnk
backup=c:\windows\pss\GigaTribe.lnkStartup
.
[HKLM\~\startupfolder\C:^Documents and Settings^FOURE^Menu Démarrer^Programmes^Démarrage^OpenOffice.org 3.0.lnk]
backup=c:\windows\pss\OpenOffice.org 3.0.lnkStartup
.
[HKLM\~\startupfolder\C:^Documents and Settings^FOURE^Menu Démarrer^Programmes^Démarrage^Wrapper.lnk]
path=c:\documents and settings\FOURE\Menu Démarrer\Programmes\Démarrage\Wrapper.lnk
backup=c:\windows\pss\Wrapper.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\A0380mon]
2007-03-22 16:51 16384 ----a-w- c:\windows\system32\A0380mon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2013-04-04 21:06 958576 ----a-w- c:\program files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
2005-05-03 16:43 69632 ----a-w- c:\windows\ALCMTR.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcWzrd]
2006-05-04 14:26 2808832 ----a-w- c:\windows\ALCWZRD.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
2013-04-21 19:43 59720 ----a-w- c:\program files\Fichiers communs\Apple\Apple Application Support\APSDaemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
2010-03-13 13:54 91520 ----a-w- c:\program files\Microsoft Office\Office14\BCSSync.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
2010-03-25 02:50 2516296 ----a-w- c:\program files\Canon\MyPrinter\BJMYPRT.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
2008-04-14 02:33 15360 ----a-w- c:\windows\system32\ctfmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2013-01-08 08:41 3674320 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM]
2006-05-16 22:58 213936 ----a-w- c:\program files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2013-05-31 09:56 152392 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 10:50 155648 ----a-r- c:\windows\system32\NeroCheck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Message Center 2]
2010-05-25 17:16 619008 ----a-w- c:\program files\Nikon\Nikon Message Center 2\NkMC2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2012-05-15 09:40 15504192 ----a-w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2012-05-15 09:40 108352 ----a-w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
2012-05-15 10:18 1634112 ----a-w- c:\program files\NVIDIA Corporation\nview\nwiz.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Omnipage]
2002-06-03 09:38 49152 ----a-w- c:\program files\ScanSoft\OmniPageSE\opware32.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Picasa Media Detector]
2008-08-21 01:18 443968 ----a-w- c:\program files\Picasa2\PicasaMediaDetector.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2013-05-01 01:59 421888 ----a-w- c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2007-03-21 12:49 16126464 ----a-w- c:\windows\RTHDCPL.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\sketchmanager]
2011-08-01 09:24 3659776 ----a-w- c:\program files\Wacom\Inkling Sketch Manager\SketchManager.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
2006-07-21 14:14 86016 ----a-w- c:\windows\SOUNDMAN.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2013-03-12 05:32 253816 ----a-w- c:\program files\Fichiers communs\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2012-02-25 05:43 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
2011-04-22 12:21 247728 ----a-w- c:\program files\TomTom HOME 2\TomTomHOMERunner.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TrueImageMonitor.exe]
2007-10-07 16:01 2620336 ----a-w- c:\program files\Acronis\TrueImageHome\TrueImageMonitor.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UnlockerAssistant]
2008-05-02 04:15 15872 ----a-w- c:\program files\Unlocker\UnlockerAssistant.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Sierra\\Empire Earth\\Empire Earth.exe"=
"c:\\Program Files\\IncrediMail\\bin\\ImApp.exe"=
"c:\\Program Files\\IncrediMail\\bin\\IncMail.exe"=
"c:\\Program Files\\IncrediMail\\bin\\ImpCnt.exe"=
"c:\\Program Files\\Hercules\\Hercules DualPix HD Webcam\\Station2.exe"=
"c:\\Program Files\\ScanSoft\\OmniPageSE\\EregFre\\NAVBrowser.exe"=
"c:\\Sierra\\Empire Earth - The Art of Conquest\\EE-AOC.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"c:\\Program Files\\adslTV\\adsltv.exe"=
"c:\\Program Files\\adslTV\\VLC\\vlc.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaws.exe"=
"c:\\Program Files\\Java\\jre6\\launch4j-tmp\\crazyloader.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\MyFreeTV.exe"=
"c:\\WINDOWS\\system32\\muzapp.exe"=
"c:\\Program Files\\IEPro\\MiniDM.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Acer\\AcerSync\\AcerSync.exe"=
"c:\\Program Files\\GigaTribe\\gigatribe.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"=
"c:\\WINDOWS\\system32\\msiexec.exe"=
"c:\\Program Files\\Microsoft Office\\Office14\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office14\\ONENOTE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office14\\OUTLOOK.EXE"=
"c:\\Program Files\\Fichiers communs\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
"c:\\Program Files\\TeamViewer\\Version8\\TeamViewer.exe"=
"c:\\Program Files\\TeamViewer\\Version8\\TeamViewer_Service.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5412:TCP"= 5412:TCP:emule
"58983:UDP"= 58983:UDP:emule
"4661:TCP"= 4661:TCP:Mule
"2010:TCP"= 2010:TCP:Port1
"2015:TCP"= 2015:TCP:Port2
"2017:TCP"= 2017:TCP:Port3
"5985:TCP"= 5985:TCP:*:Disabled:Gestion à distance de Windows
.
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [15/03/2013 22:21 49376]
R0 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [15/03/2013 22:21 175176]
R0 sptd;sptd;\SystemRoot\\SystemRoot\System32\Drivers\sptd.sys --> \SystemRoot\\SystemRoot\System32\Drivers\sptd.sys [?]
R1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [15/03/2013 22:21 21576]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [27/09/2011 11:42 770344]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [27/09/2011 11:42 369584]
R1 SBRE;SBRE;c:\windows\system32\drivers\SBREDrv.sys [05/06/2012 15:30 101720]
R2 AcerSyncSystemService;AcerSyncSystemService;c:\program files\Acer\AcerSync\AcerSyncSystemService.exe [10/10/2012 18:48 60312]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [27/09/2011 11:42 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [15/03/2013 22:21 66336]
R2 TeamViewer8;TeamViewer 8;c:\program files\TeamViewer\Version8\TeamViewer_Service.exe [07/02/2013 18:35 3574624]
R2 TomTomHOMEService;TomTomHOMEService;c:\program files\TomTom HOME 2\TomTomHOMEService.exe [22/04/2011 14:21 92592]
R3 APL531;Hercules Dualpix HD Webcam;c:\windows\system32\drivers\HDvid.sys [13/05/2009 14:14 275072]
R3 camfilt;camfilt;c:\windows\system32\drivers\camfilt.sys [13/05/2009 14:14 24192]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys --> c:\windows\system32\DRIVERS\Lbd.sys [?]
S2 IpWrapper;IpWrapper;c:\program files\IpWrapper\nssm.exe [14/04/2013 08:20 157696]
S3 A0380VID;USB2.0 PC Camera;c:\windows\system32\drivers\A0380Vid.sys [19/10/2008 11:53 3932416]
S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys --> c:\windows\system32\drivers\dgderdrv.sys [?]
S3 DrvAgent32;DrvAgent32;c:\windows\system32\drivers\DrvAgent32.sys [27/05/2012 11:18 23456]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;\??\c:\program files\Lavasoft\Ad-Aware\KernExplorer.sys --> c:\program files\Lavasoft\Ad-Aware\KernExplorer.sys [?]
S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [25/11/2011 16:36 311928]
S3 PVUSB;CESG502 USB Driver;c:\windows\system32\drivers\CESG502.sys [21/06/2010 19:21 40672]
S3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [10/10/2012 13:57 15576]
S3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [10/10/2012 13:57 10200]
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-07-13 12:20 1173456 ----a-w- c:\program files\Google\Chrome\Application\28.0.1500.72\Installer\chrmstp.exe
.
Contenu du dossier 'Tâches planifiées'
.
2013-07-24 c:\windows\Tasks\AcerSync.job
- c:\program files\Acer\AcerSync\AcerSyncLiveUpdate.exe [2012-10-10 15:03]
.
2013-07-24 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-01 16:08]
.
2013-07-19 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57]
.
2013-07-24 c:\windows\Tasks\avast! Emergency Update.job
- c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2012-07-03 08:58]
.
2013-07-24 c:\windows\Tasks\FOTA.job
- c:\program files\Acer\AcerSync\FOTA.exe [2012-10-10 15:03]
.
2013-07-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-10-18 04:22]
.
2013-07-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-10-18 04:22]
.
2013-07-24 c:\windows\Tasks\User_Feed_Synchronization-{59B448F2-991F-47B1-9C23-2E99B4542695}.job
- c:\windows\system32\msfeedssync.exe [2007-08-13 02:31]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr/
mStart Page = hxxp://www.google.com
uInternet Connection Wizard,ShellNext = iexplore
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
Trusted Zone: kuaiche.com\software
TCP: DhcpNameServer = 212.27.40.241 212.27.40.240
FF - ProfilePath - c:\documents and settings\FOURE\Application Data\Mozilla\Firefox\Profiles\76ovdcdl.default-1374245209859\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.fr/
FF - ExtSQL: 2013-07-19 16:50; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\documents and settings\FOURE\Application Data\Mozilla\Firefox\Profiles\76ovdcdl.default-1374245209859\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF - ExtSQL: 2013-07-19 16:50; {fe272bd1-5f76-4ea4-8501-a05d35d823fc}; c:\documents and settings\FOURE\Application Data\Mozilla\Firefox\Profiles\76ovdcdl.default-1374245209859\extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi
FF - ExtSQL: 2013-07-19 16:55; ***@***; c:\documents and settings\FOURE\Application Data\Mozilla\Firefox\Profiles\76ovdcdl.default-1374245209859\extensions\***@***
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-07-24 16:15
Windows 5.1.2600 Service Pack 3 NTFS
.
Recherche de processus cachés ...
.
Recherche d'éléments en démarrage automatique cachés ...
.
Recherche de fichiers cachés ...
.
Scan terminé avec succès
Fichiers cachés: 0
.
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
.
[HKEY_USERS\S-1-5-21-1801674531-1532298954-725345543-1004\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):e8,36,ea,21,a3,0c,57,77,82,81,da,f7,1d,a0,b7,55,6e,61,c1,54,2d,
8e,58,f0,4a,8e,0a,94,e5,91,b8,c4,8e,8f,1e,7f,9e,87,11,3f,00,00,00,00,00,00,\
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_8_800_94_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_8_800_94_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{efcc64b3-f41d-4993-b501-88a8f8cc903a}]
@Denied: (Full) (Everyone)
"Model"=dword:00000130
"Therad"=dword:0000001a
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs chargées dans les processus actifs ---------------------
.
- - - - - - - > 'lsass.exe'(1044)
c:\windows\system32\relog_ap.dll
.
- - - - - - - > 'explorer.exe'(4136)
c:\program files\Google\Drive\googledrivesync32.dll
c:\progra~1\FICHIE~1\MICROS~1\OFFICE14\Cultures\office.odf
c:\progra~1\MICROS~3\Office14\1036\GrooveIntlResource.dll
c:\windows\system32\mshtml.dll
c:\windows\system32\msls31.dll
c:\windows\system32\eappprxy.dll
c:\windows\system32\ImgUtil.dll
c:\windows\system32\pngfilt.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Heure de fin: 2013-07-24 16:17:45
ComboFix-quarantined-files.txt 2013-07-24 14:17
ComboFix2.txt 2013-07-23 18:29
.
Avant-CF: 107 906 297 856 octets libres
Après-CF: 107 893 653 504 octets libres
.
- - End Of File - - D85C3DAEAA53774E9F4B948DE47C5B2A
C99C3199CFAA4CBDCD91493F6D113A50
ComboFix 13-07-24.02 - FOURE 24/07/2013 16:01:49.2.2 - x86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.33.1036.18.2750.1985 [GMT 2:00]
Lancé depuis: c:\documents and settings\FOURE\Bureau\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: avast! Antivirus *Disabled* {7591DB91-41F0-48A3-B128-1A293FD8233D}
* Un nouveau point de restauration a été créé
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2013-06-24 au 2013-07-24 ))))))))))))))))))))))))))))))))))))
.
.
2013-07-23 17:48 . 2013-07-23 17:48 -------- d--h--w- c:\documents and settings\FOURE\Voisinage d'impression
2013-07-21 17:16 . 2013-07-21 17:16 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-07-21 17:16 . 2013-04-04 12:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-07-19 18:35 . 2013-07-19 19:30 -------- d-----w- c:\program files\ZHPDiag
2013-07-19 15:40 . 2013-07-20 12:03 -------- d-----w- C:\ZHP
2013-07-18 17:03 . 2013-07-19 15:35 -------- d-----w- c:\program files\jv16 PowerTools 2013
2013-07-13 16:15 . 2013-07-17 16:07 -------- d-----w- c:\program files\SpeedFan
2013-07-11 15:12 . 2013-07-11 15:12 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-07-18 16:08 . 2012-04-01 04:53 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-07-18 16:08 . 2011-05-24 04:23 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-07-11 15:11 . 2013-03-23 06:33 867240 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-07-11 15:11 . 2010-07-04 19:11 789416 ----a-w- c:\windows\system32\deployJava1.dll
2013-07-11 15:11 . 2008-10-19 09:08 144896 ----a-w- c:\windows\system32\javacpl.cpl
2013-06-28 04:03 . 2013-03-15 20:21 175176 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-06-28 04:03 . 2011-09-27 09:42 369584 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-06-28 04:03 . 2011-09-27 09:42 770344 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-06-12 09:16 . 2013-03-13 06:16 8610696 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe
2013-06-07 21:56 . 2008-10-15 18:00 385024 ------w- c:\windows\system32\html.iec
2013-06-07 21:48 . 2003-04-24 12:00 920064 ----a-w- c:\windows\system32\wininet.dll
2013-06-07 21:48 . 2003-04-24 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2013-06-07 21:48 . 2003-04-24 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-06-05 09:08 . 2003-04-24 12:00 1876864 ----a-w- c:\windows\system32\win32k.sys
2013-06-04 07:22 . 2008-10-14 20:28 563712 ----a-w- c:\windows\system32\qedit.dll
2013-05-09 08:59 . 2013-03-15 20:21 49376 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-05-09 08:59 . 2011-09-27 09:42 56080 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-05-09 08:59 . 2013-03-15 20:21 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-05-09 08:59 . 2011-09-27 09:42 49760 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2013-05-09 08:59 . 2011-09-27 09:42 29816 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-05-09 08:58 . 2011-09-27 09:42 41664 ----a-w- c:\windows\avastSS.scr
2013-05-09 08:58 . 2011-09-27 09:42 229648 ----a-w- c:\windows\system32\aswBoot.exe
2013-05-08 09:58 . 2006-10-18 19:47 1543680 ------w- c:\windows\system32\wmvdecod.dll
2013-05-03 05:39 . 2003-04-24 12:00 2151936 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-05-03 05:39 . 2002-08-29 11:42 2030592 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-05-01 01:59 . 2013-05-01 01:59 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2013-05-01 01:59 . 2013-05-01 01:59 69632 ----a-w- c:\windows\system32\QuickTime.qts
2011-03-14 13:44 . 2011-03-14 13:44 123 ----a-w- c:\program files\ayudasoftclose.reg
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-05-09 08:58 121968 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2013-06-06 21:57 578512 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2012-02-25 39408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean.exe
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
backup=c:\windows\pss\Microsoft Office.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^OfferBox.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\OfferBox.lnk
backup=c:\windows\pss\OfferBox.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Windows Search.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Windows Search.lnk
backup=c:\windows\pss\Windows Search.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^FOURE^Menu Démarrer^Programmes^Démarrage^GigaTribe.lnk]
path=c:\documents and settings\FOURE\Menu Démarrer\Programmes\Démarrage\GigaTribe.lnk
backup=c:\windows\pss\GigaTribe.lnkStartup
.
[HKLM\~\startupfolder\C:^Documents and Settings^FOURE^Menu Démarrer^Programmes^Démarrage^OpenOffice.org 3.0.lnk]
backup=c:\windows\pss\OpenOffice.org 3.0.lnkStartup
.
[HKLM\~\startupfolder\C:^Documents and Settings^FOURE^Menu Démarrer^Programmes^Démarrage^Wrapper.lnk]
path=c:\documents and settings\FOURE\Menu Démarrer\Programmes\Démarrage\Wrapper.lnk
backup=c:\windows\pss\Wrapper.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\A0380mon]
2007-03-22 16:51 16384 ----a-w- c:\windows\system32\A0380mon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2013-04-04 21:06 958576 ----a-w- c:\program files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
2005-05-03 16:43 69632 ----a-w- c:\windows\ALCMTR.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcWzrd]
2006-05-04 14:26 2808832 ----a-w- c:\windows\ALCWZRD.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
2013-04-21 19:43 59720 ----a-w- c:\program files\Fichiers communs\Apple\Apple Application Support\APSDaemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
2010-03-13 13:54 91520 ----a-w- c:\program files\Microsoft Office\Office14\BCSSync.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
2010-03-25 02:50 2516296 ----a-w- c:\program files\Canon\MyPrinter\BJMYPRT.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
2008-04-14 02:33 15360 ----a-w- c:\windows\system32\ctfmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2013-01-08 08:41 3674320 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM]
2006-05-16 22:58 213936 ----a-w- c:\program files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2013-05-31 09:56 152392 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 10:50 155648 ----a-r- c:\windows\system32\NeroCheck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Message Center 2]
2010-05-25 17:16 619008 ----a-w- c:\program files\Nikon\Nikon Message Center 2\NkMC2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2012-05-15 09:40 15504192 ----a-w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2012-05-15 09:40 108352 ----a-w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
2012-05-15 10:18 1634112 ----a-w- c:\program files\NVIDIA Corporation\nview\nwiz.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Omnipage]
2002-06-03 09:38 49152 ----a-w- c:\program files\ScanSoft\OmniPageSE\opware32.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Picasa Media Detector]
2008-08-21 01:18 443968 ----a-w- c:\program files\Picasa2\PicasaMediaDetector.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2013-05-01 01:59 421888 ----a-w- c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2007-03-21 12:49 16126464 ----a-w- c:\windows\RTHDCPL.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\sketchmanager]
2011-08-01 09:24 3659776 ----a-w- c:\program files\Wacom\Inkling Sketch Manager\SketchManager.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
2006-07-21 14:14 86016 ----a-w- c:\windows\SOUNDMAN.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2013-03-12 05:32 253816 ----a-w- c:\program files\Fichiers communs\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2012-02-25 05:43 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
2011-04-22 12:21 247728 ----a-w- c:\program files\TomTom HOME 2\TomTomHOMERunner.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TrueImageMonitor.exe]
2007-10-07 16:01 2620336 ----a-w- c:\program files\Acronis\TrueImageHome\TrueImageMonitor.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UnlockerAssistant]
2008-05-02 04:15 15872 ----a-w- c:\program files\Unlocker\UnlockerAssistant.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Sierra\\Empire Earth\\Empire Earth.exe"=
"c:\\Program Files\\IncrediMail\\bin\\ImApp.exe"=
"c:\\Program Files\\IncrediMail\\bin\\IncMail.exe"=
"c:\\Program Files\\IncrediMail\\bin\\ImpCnt.exe"=
"c:\\Program Files\\Hercules\\Hercules DualPix HD Webcam\\Station2.exe"=
"c:\\Program Files\\ScanSoft\\OmniPageSE\\EregFre\\NAVBrowser.exe"=
"c:\\Sierra\\Empire Earth - The Art of Conquest\\EE-AOC.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"c:\\Program Files\\adslTV\\adsltv.exe"=
"c:\\Program Files\\adslTV\\VLC\\vlc.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaws.exe"=
"c:\\Program Files\\Java\\jre6\\launch4j-tmp\\crazyloader.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\MyFreeTV.exe"=
"c:\\WINDOWS\\system32\\muzapp.exe"=
"c:\\Program Files\\IEPro\\MiniDM.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Acer\\AcerSync\\AcerSync.exe"=
"c:\\Program Files\\GigaTribe\\gigatribe.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"=
"c:\\WINDOWS\\system32\\msiexec.exe"=
"c:\\Program Files\\Microsoft Office\\Office14\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office14\\ONENOTE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office14\\OUTLOOK.EXE"=
"c:\\Program Files\\Fichiers communs\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
"c:\\Program Files\\TeamViewer\\Version8\\TeamViewer.exe"=
"c:\\Program Files\\TeamViewer\\Version8\\TeamViewer_Service.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5412:TCP"= 5412:TCP:emule
"58983:UDP"= 58983:UDP:emule
"4661:TCP"= 4661:TCP:Mule
"2010:TCP"= 2010:TCP:Port1
"2015:TCP"= 2015:TCP:Port2
"2017:TCP"= 2017:TCP:Port3
"5985:TCP"= 5985:TCP:*:Disabled:Gestion à distance de Windows
.
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [15/03/2013 22:21 49376]
R0 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [15/03/2013 22:21 175176]
R0 sptd;sptd;\SystemRoot\\SystemRoot\System32\Drivers\sptd.sys --> \SystemRoot\\SystemRoot\System32\Drivers\sptd.sys [?]
R1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [15/03/2013 22:21 21576]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [27/09/2011 11:42 770344]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [27/09/2011 11:42 369584]
R1 SBRE;SBRE;c:\windows\system32\drivers\SBREDrv.sys [05/06/2012 15:30 101720]
R2 AcerSyncSystemService;AcerSyncSystemService;c:\program files\Acer\AcerSync\AcerSyncSystemService.exe [10/10/2012 18:48 60312]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [27/09/2011 11:42 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [15/03/2013 22:21 66336]
R2 TeamViewer8;TeamViewer 8;c:\program files\TeamViewer\Version8\TeamViewer_Service.exe [07/02/2013 18:35 3574624]
R2 TomTomHOMEService;TomTomHOMEService;c:\program files\TomTom HOME 2\TomTomHOMEService.exe [22/04/2011 14:21 92592]
R3 APL531;Hercules Dualpix HD Webcam;c:\windows\system32\drivers\HDvid.sys [13/05/2009 14:14 275072]
R3 camfilt;camfilt;c:\windows\system32\drivers\camfilt.sys [13/05/2009 14:14 24192]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys --> c:\windows\system32\DRIVERS\Lbd.sys [?]
S2 IpWrapper;IpWrapper;c:\program files\IpWrapper\nssm.exe [14/04/2013 08:20 157696]
S3 A0380VID;USB2.0 PC Camera;c:\windows\system32\drivers\A0380Vid.sys [19/10/2008 11:53 3932416]
S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys --> c:\windows\system32\drivers\dgderdrv.sys [?]
S3 DrvAgent32;DrvAgent32;c:\windows\system32\drivers\DrvAgent32.sys [27/05/2012 11:18 23456]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;\??\c:\program files\Lavasoft\Ad-Aware\KernExplorer.sys --> c:\program files\Lavasoft\Ad-Aware\KernExplorer.sys [?]
S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [25/11/2011 16:36 311928]
S3 PVUSB;CESG502 USB Driver;c:\windows\system32\drivers\CESG502.sys [21/06/2010 19:21 40672]
S3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [10/10/2012 13:57 15576]
S3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [10/10/2012 13:57 10200]
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-07-13 12:20 1173456 ----a-w- c:\program files\Google\Chrome\Application\28.0.1500.72\Installer\chrmstp.exe
.
Contenu du dossier 'Tâches planifiées'
.
2013-07-24 c:\windows\Tasks\AcerSync.job
- c:\program files\Acer\AcerSync\AcerSyncLiveUpdate.exe [2012-10-10 15:03]
.
2013-07-24 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-01 16:08]
.
2013-07-19 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57]
.
2013-07-24 c:\windows\Tasks\avast! Emergency Update.job
- c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2012-07-03 08:58]
.
2013-07-24 c:\windows\Tasks\FOTA.job
- c:\program files\Acer\AcerSync\FOTA.exe [2012-10-10 15:03]
.
2013-07-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-10-18 04:22]
.
2013-07-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-10-18 04:22]
.
2013-07-24 c:\windows\Tasks\User_Feed_Synchronization-{59B448F2-991F-47B1-9C23-2E99B4542695}.job
- c:\windows\system32\msfeedssync.exe [2007-08-13 02:31]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr/
mStart Page = hxxp://www.google.com
uInternet Connection Wizard,ShellNext = iexplore
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
Trusted Zone: kuaiche.com\software
TCP: DhcpNameServer = 212.27.40.241 212.27.40.240
FF - ProfilePath - c:\documents and settings\FOURE\Application Data\Mozilla\Firefox\Profiles\76ovdcdl.default-1374245209859\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.fr/
FF - ExtSQL: 2013-07-19 16:50; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\documents and settings\FOURE\Application Data\Mozilla\Firefox\Profiles\76ovdcdl.default-1374245209859\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF - ExtSQL: 2013-07-19 16:50; {fe272bd1-5f76-4ea4-8501-a05d35d823fc}; c:\documents and settings\FOURE\Application Data\Mozilla\Firefox\Profiles\76ovdcdl.default-1374245209859\extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi
FF - ExtSQL: 2013-07-19 16:55; ***@***; c:\documents and settings\FOURE\Application Data\Mozilla\Firefox\Profiles\76ovdcdl.default-1374245209859\extensions\***@***
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-07-24 16:15
Windows 5.1.2600 Service Pack 3 NTFS
.
Recherche de processus cachés ...
.
Recherche d'éléments en démarrage automatique cachés ...
.
Recherche de fichiers cachés ...
.
Scan terminé avec succès
Fichiers cachés: 0
.
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
.
[HKEY_USERS\S-1-5-21-1801674531-1532298954-725345543-1004\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):e8,36,ea,21,a3,0c,57,77,82,81,da,f7,1d,a0,b7,55,6e,61,c1,54,2d,
8e,58,f0,4a,8e,0a,94,e5,91,b8,c4,8e,8f,1e,7f,9e,87,11,3f,00,00,00,00,00,00,\
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_8_800_94_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_8_800_94_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{efcc64b3-f41d-4993-b501-88a8f8cc903a}]
@Denied: (Full) (Everyone)
"Model"=dword:00000130
"Therad"=dword:0000001a
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs chargées dans les processus actifs ---------------------
.
- - - - - - - > 'lsass.exe'(1044)
c:\windows\system32\relog_ap.dll
.
- - - - - - - > 'explorer.exe'(4136)
c:\program files\Google\Drive\googledrivesync32.dll
c:\progra~1\FICHIE~1\MICROS~1\OFFICE14\Cultures\office.odf
c:\progra~1\MICROS~3\Office14\1036\GrooveIntlResource.dll
c:\windows\system32\mshtml.dll
c:\windows\system32\msls31.dll
c:\windows\system32\eappprxy.dll
c:\windows\system32\ImgUtil.dll
c:\windows\system32\pngfilt.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Heure de fin: 2013-07-24 16:17:45
ComboFix-quarantined-files.txt 2013-07-24 14:17
ComboFix2.txt 2013-07-23 18:29
.
Avant-CF: 107 906 297 856 octets libres
Après-CF: 107 893 653 504 octets libres
.
- - End Of File - - D85C3DAEAA53774E9F4B948DE47C5B2A
C99C3199CFAA4CBDCD91493F6D113A50
Utilisateur anonyme
24 juil. 2013 à 18:37
24 juil. 2013 à 18:37
tu as encore un restant de Offrebox
vas dans le emnu démarre, programmes, démarrage, vire le raccourci d'offerbox manuellement :
c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\OfferBox.lnk
puis cherche et supprime ce fichier également depuis l'explorateur de windonws :
c:\windows\pss\OfferBox.lnkCommon Startup
vas dans le emnu démarre, programmes, démarrage, vire le raccourci d'offerbox manuellement :
c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\OfferBox.lnk
puis cherche et supprime ce fichier également depuis l'explorateur de windonws :
c:\windows\pss\OfferBox.lnkCommon Startup
c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\OfferBox.lnk
Je ne trouve rien, voici le résultat :
desktop ini. avec comme contenu [.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21787
Par contre, j'ai pu le supprimer dans l'explorateur Windows
Je ne trouve rien, voici le résultat :
desktop ini. avec comme contenu [.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21787
Par contre, j'ai pu le supprimer dans l'explorateur Windows
Utilisateur anonyme
24 juil. 2013 à 19:58
24 juil. 2013 à 19:58
ok,
redémarre le pc et donne moi des nouvelles de son fonctionnement avant de continuer
redémarre le pc et donne moi des nouvelles de son fonctionnement avant de continuer
Utilisateur anonyme
Modifié par Electricien 69 le 24/07/2013 à 20:35
Modifié par Electricien 69 le 24/07/2013 à 20:35
ok, mais dans le gestionnaire de tache, as tu le processeur utilisé comme avant à
95 % ?
O.o°*Membre, Contributeur sécurité CCM o°.Oø¤º°'°º¤ø
=>>Réspire à fond, Rédige ton message en bon français et de manièr claire. Cà va bien se passer, tu verras, enfin on essaie !!! o°Oø
95 % ?
O.o°*Membre, Contributeur sécurité CCM o°.Oø¤º°'°º¤ø
=>>Réspire à fond, Rédige ton message en bon français et de manièr claire. Cà va bien se passer, tu verras, enfin on essaie !!! o°Oø
En fait, il "ronfle" doucement mais il s'emballe dès que je vais, par exemple, sur le site Ouest France (intempéries caennaises où j'habite). Voilà la capture d'écran que je viens de faire
http://cjoint.com/?CGyuQtp0hqP
http://cjoint.com/?CGyuQtp0hqP
Utilisateur anonyme
24 juil. 2013 à 20:56
24 juil. 2013 à 20:56
tu as noté que tu as déjà démonté le ventirad et mis la pâte thermique avant le remontage !
ferme tous les logiciels, même incredimail,
regarde voir si ton processeur s'emballe encore, à vide !
ouvre un seul logiciel, comme Firefox par exemple et observe le comportement du pc !
tu vas bien trouver celui qui fait affoler ton pc !
vérifie également que les orifices de devant et derrière du pc qui permettent l'aspiration et refoulement de l'air chaud par le ventirad soient bien dégagés !
ferme tous les logiciels, même incredimail,
regarde voir si ton processeur s'emballe encore, à vide !
ouvre un seul logiciel, comme Firefox par exemple et observe le comportement du pc !
tu vas bien trouver celui qui fait affoler ton pc !
vérifie également que les orifices de devant et derrière du pc qui permettent l'aspiration et refoulement de l'air chaud par le ventirad soient bien dégagés !
Mon pc est bien ventilé, pas de souci à ce propos.
Même à vide, il a une "respiration" haletante... Lorsque j'ouvre la page d'accueil (google.fr) Firefox ou IE, même chose. Il s'emballe encore plus lorsque je visualise des images ou des vidéos. Il passe de 20 % à 80 % (performances) en une fraction de seconde.
Même à vide, il a une "respiration" haletante... Lorsque j'ouvre la page d'accueil (google.fr) Firefox ou IE, même chose. Il s'emballe encore plus lorsque je visualise des images ou des vidéos. Il passe de 20 % à 80 % (performances) en une fraction de seconde.
Utilisateur anonyme
25 juil. 2013 à 22:07
25 juil. 2013 à 22:07
regarde l'état du pilote de ta carte graphique !
vérifie son état, si pas de condo gonflé ou radiateur/ ventilateur encrassé !
je pense que tu as une panne matériel ou problème du pilote :
ton processeur compense le problème, d'où son état !
sur mon pc, sous W7 pro 32 bit, je suis à 2% d'Uc et 512 de mémoire physique !
vérifie son état, si pas de condo gonflé ou radiateur/ ventilateur encrassé !
je pense que tu as une panne matériel ou problème du pilote :
ton processeur compense le problème, d'où son état !
sur mon pc, sous W7 pro 32 bit, je suis à 2% d'Uc et 512 de mémoire physique !