Services.exe s'arrête [Résolu/Fermé]

Signaler
Messages postés
8
Date d'inscription
samedi 14 juin 2014
Statut
Membre
Dernière intervention
20 juin 2014
-
Messages postés
180267
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
-
Bonjour à tous,

Je me permets de poster mon message ici car j'ai un problème, comme un certain nombre de personnes, avec un arrêt impromptu de mon ordinateur au bout de 5 minutes, avec le message "services.exe a rencontré un problème" suivi de "arrêt du système". Ci-dessous, vous trouverez le rapport d'analyse après un scan avec Hijackthis, mais je ne sais pas le déchiffrer.

En tout cas, je vous remercie d'avance pour vos réponses!



Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 10:09:26, on 15/06/2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)

FIREFOX: 29.0.1 (fr)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\PLFSetL.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
\?\C:\WINDOWS\system32\WBEM\WMIADAP.EXE
D:\récupération\Films\HijackThis(1).exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.search.ask.com/?o=APN10644A&gct=hp&d=101-0&t=4
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.search.ask.com/?o=APN10645A&gct=hp&d=406-394&t=4
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.search.ask.com/?o=APN10644A&gct=hp&d=101-0&t=4
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.search.ask.com/?o=APN10644A&gct=hp&d=101-0&t=4
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: FlashGetBHO - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Administrateur\Application Data\FlashGetBHO\FlashGetBHO3.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: QuickNet - {EA5CA8B6-9B9C-4994-A7A1-947B6C631BE7} - C:\Program Files\RegTweaker\key.dll
O2 - BHO: WebAdSystemBho - {EC8FCB46-9F27-476E-B26A-93989316D2FB} - C:\Program Files\WebAdSystem\BrowserExtensions\internetexplorer\WebAdSystemBho.dll
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: SYSTRAN Toolbar - {95daa571-4def-4a6d-97d8-98a346672a24} - mscoree.dll (file missing)
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PLFSetL] C:\WINDOWS\PLFSetL.exe
O4 - HKLM\..\Run: [snp2uvc] rundll32.exe C:\WINDOWS\system32\csnp2uvc.dll,ResetCIDS
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [WebAdSystem] "C:\Program Files\WebAdSystem\WebAdSystem.exe" background
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Startup: OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Consulter les dictionnaires (SYSTRAN) - res://C:\Program Files\SYSTRAN\6\\GUIres.dll/lookup.js
O8 - Extra context menu item: Download all by FlashGet3 - C:\Documents and Settings\Administrateur\Application Data\FlashGetBHO\GetAllUrl.htm
O8 - Extra context menu item: Download by FlashGet3 - C:\Documents and Settings\Administrateur\Application Data\FlashGetBHO\GetUrl.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Traduire (SYSTRAN) - res://C:\Program Files\SYSTRAN\6\\GUIres.dll/translate.js
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Planificateur (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Protection temps réel (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Sony Ericsson OMSI download service (OMSI download service) - Unknown owner - C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe

13 réponses

Messages postés
180267
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
23 106
Salut,

Tu as installé des adwares et programmes parasites sur ton PC.
Voici la procédure à suivre pour les supprimer :

Télécharge https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/?t=33839&start= AdwCleaner ( d'Xplode ) sur ton bureau.
Sur la page d'AdwCleaner, à droite, clic sur la disquette grise avec la flèche verte pour lancer le téléchargement.
Lance AdwCleaner, clique sur [Scanner].
Le scan peux durer plusieurs minutes, patienter.
Une fois le scan terminé, clique sur [Nettoyer]

Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.

Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt

puis réinitialise tes navigateurs:
Messages postés
8
Date d'inscription
samedi 14 juin 2014
Statut
Membre
Dernière intervention
20 juin 2014

Merci beaucoup pour ton aide Malekal_morte. Voici le rapport d'AdwCleaner:


# AdwCleaner v3.212 - Rapport créé le 19/06/2014 à 22:44:53
# Mis à jour le 05/06/2014 par Xplode
# Système d'exploitation : Microsoft Windows XP Service Pack 3 (32 bits)
# Nom d'utilisateur : Administrateur - TITANIUM
# Exécuté depuis : C:\Documents and Settings\Administrateur\Bureau\adwcleaner_3.212.exe
# Option : Nettoyer

***** [ Services ] *****


***** [ Fichiers / Dossiers ] *****

Dossier Supprimé : C:\Documents and Settings\All Users\Application Data\wincert
Dossier Supprimé : C:\Program Files\Conduit
Dossier Supprimé : C:\Program Files\DAEMON Tools Toolbar
Dossier Supprimé : C:\Program Files\Movies Toolbar
Dossier Supprimé : C:\Program Files\uTorrentBar_FR
Dossier Supprimé : C:\Program Files\WebAdSystem
Dossier Supprimé : C:\Documents and Settings\Administrateur\Local Settings\Application Data\Conduit
Dossier Supprimé : C:\Documents and Settings\Administrateur\Local Settings\Application Data\iLivid
Dossier Supprimé : C:\Documents and Settings\Administrateur\Local Settings\Application Data\KalityWeb
Dossier Supprimé : C:\Documents and Settings\Administrateur\Local Settings\Application Data\uTorrentBar_FR
Dossier Supprimé : C:\Documents and Settings\Administrateur\AppData\LocalLow\DataMngr
Dossier Supprimé : C:\Documents and Settings\Administrateur\Application Data\searchresultstb
Dossier Supprimé : C:\Documents and Settings\Administrateur\Mes documents\Updater
Dossier Supprimé : C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rrt37ty9.default\ConduitCommon
Dossier Supprimé : C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rrt37ty9.default\Extensions\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Dossier Supprimé : C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\paoponfhfdfnjgddpnpjkambkcgdaaib
Fichier Supprimé : C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WebAdSystem.lnk
Fichier Supprimé : C:\WINDOWS\system32\roboot.exe
Fichier Supprimé : C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rrt37ty9.default\searchplugins\Ask.xml
Fichier Supprimé : C:\Program Files\Mozilla Firefox\browser\searchplugins\Ask.xml
Fichier Supprimé : C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rrt37ty9.default\searchplugins\daemon-search.xml
Fichier Supprimé : C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rrt37ty9.default\user.js

***** [ Raccourcis ] *****


***** [ Registre ] *****

Valeur Supprimée : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [firefoxextensioninstaller@webadsystem.com]
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\opldoklbgkdpfmogjpheabmldkcdkokn
Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\paoponfhfdfnjgddpnpjkambkcgdaaib
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\paoponfhfdfnjgddpnpjkambkcgdaaib
Clé Supprimée : HKCU\Toolbar
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\WebAdSystemBho.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\DTToolbar.ToolBandObj
Clé Supprimée : HKLM\SOFTWARE\Classes\DTToolbar.ToolBandObj.1
Clé Supprimée : HKLM\SOFTWARE\Classes\WebAdSystemBho.WebAdSystemBhoObj
Clé Supprimée : HKLM\SOFTWARE\Classes\WebAdSystemBho.WebAdSystemBhoObj.1
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [WebAdSystem]
Valeur Supprimée : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x64]
Valeur Supprimée : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x86]
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{89637713-7F69-46BD-BF01-EF4F172D3DCE}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{2974C985-8151-4DE5-B23C-B875F0A8522F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{EC8FCB46-9F27-476E-B26A-93989316D2FB}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D9EDA72A-94DB-44CF-91C5-CBE30BB3F610}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{3E288F79-03E4-4983-A48E-0D879B51FF19}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4030C54B-D223-4798-B665-68767B0E843F}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EC8FCB46-9F27-476E-B26A-93989316D2FB}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EC8FCB46-9F27-476E-B26A-93989316D2FB}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCC21566-7D0F-4F31-BF8C-916148688EBE}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{46CC6352-53FC-4834-9275-48E0B0465312}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Valeur Supprimée : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Documents and Settings\Administrateur\Mes documents\Téléchargements\eTypeSetup.exe]
Valeur Supprimée : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Program Files\Movies Toolbar\Datamngr\SRTOOL~1\IE\dtUser.exe]
Clé Supprimée : HKCU\Software\APN DTX
Clé Supprimée : HKCU\Software\Conduit
Clé Supprimée : HKCU\Software\dt soft\daemon tools toolbar
Clé Supprimée : HKCU\Software\KalityWeb
Clé Supprimée : HKCU\Software\SmartBar
Clé Supprimée : HKCU\Software\uTorrentBar_FR
Clé Supprimée : HKLM\Software\Conduit
Clé Supprimée : HKLM\Software\dt soft\daemon tools toolbar
Clé Supprimée : HKLM\Software\KalityWeb
Clé Supprimée : HKLM\Software\uTorrentBar_FR
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\daemon tools toolbar
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentBar_FR Toolbar
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\daemon tools toolbar
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ilividmoviestoolbardlaFF
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ilividmoviestoolbardlaIE
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\uTorrentBar_FR Toolbar
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe

***** [ Navigateurs ] *****

-\\ Internet Explorer v6.0.2900.5512


-\\ Mozilla Firefox v30.0 (fr)

[ Fichier : C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rrt37ty9.default\prefs.js ]

Ligne Supprimée : user_pref("CT2851639..clientLogIsEnabled", false);
Ligne Supprimée : user_pref("CT2851639..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
Ligne Supprimée : user_pref("CT2851639..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
Ligne Supprimée : user_pref("CT2851639.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
Ligne Supprimée : user_pref("CT2851639.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Ligne Supprimée : user_pref("CT2851639.AppTrackingLastCheckTime", "Tue Aug 14 2012 14:50:14 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.BrowserCompStateIsOpen_130064413660070508", true);
Ligne Supprimée : user_pref("CT2851639.BrowserCompStateIsOpen_1359634298000", true);
Ligne Supprimée : user_pref("CT2851639.CTID", "CT2851639");
Ligne Supprimée : user_pref("CT2851639.CurrentServerDate", "30-6-2013");
Ligne Supprimée : user_pref("CT2851639.DSInstall", false);
Ligne Supprimée : user_pref("CT2851639.DialogsAlignMode", "LTR");
Ligne Supprimée : user_pref("CT2851639.DialogsGetterLastCheckTime", "Fri Jun 28 2013 17:26:17 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.DownloadReferralCookieData", "");
Ligne Supprimée : user_pref("CT2851639.EMailNotifierPollDate", "Sun Jun 30 2013 15:00:57 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedLastCount2548968607390276962", 50);
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156812186649977", "Sun Jun 30 2013 15:00:58 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156813040823546", "Sun Jun 30 2013 15:00:58 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156813130095866", "Sun Jun 30 2013 15:00:57 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156813224203613", "Sun Jun 30 2013 15:00:57 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156813230837251", "Sun Jun 30 2013 15:00:58 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156813454291735", "Sun Jun 30 2013 15:00:58 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156813729834876", "Sun Jun 30 2013 15:00:57 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156813860870021", "Sun Jun 30 2013 15:00:59 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156814264681793", "Sun Jun 30 2013 15:00:58 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156814863075366", "Sun Jun 30 2013 15:00:58 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedPollDate2429156815257761081", "Sun Jun 30 2013 15:00:58 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.FeedTTL2429156813040823546", 15);
Ligne Supprimée : user_pref("CT2851639.FeedTTL2429156813130095866", 10);
Ligne Supprimée : user_pref("CT2851639.FeedTTL2429156813454291735", 5);
Ligne Supprimée : user_pref("CT2851639.FeedTTL2429156813729834876", 5);
Ligne Supprimée : user_pref("CT2851639.FeedTTL2429156814264681793", 5);
Ligne Supprimée : user_pref("CT2851639.FirstServerDate", "29-4-2012");
Ligne Supprimée : user_pref("CT2851639.FirstTime", true);
Ligne Supprimée : user_pref("CT2851639.FirstTimeFF3", true);
Ligne Supprimée : user_pref("CT2851639.FixPageNotFoundErrors", true);
Ligne Supprimée : user_pref("CT2851639.GroupingServerCheckInterval", 1440);
Ligne Supprimée : user_pref("CT2851639.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Ligne Supprimée : user_pref("CT2851639.HPInstall", false);
Ligne Supprimée : user_pref("CT2851639.HasUserGlobalKeys", true);
Ligne Supprimée : user_pref("CT2851639.HomePageProtectorEnabled", false);
Ligne Supprimée : user_pref("CT2851639.HomepageBeforeUnload", "hxxp://my.daemon-search.com/");
Ligne Supprimée : user_pref("CT2851639.Initialize", true);
Ligne Supprimée : user_pref("CT2851639.InitializeCommonPrefs", true);
Ligne Supprimée : user_pref("CT2851639.InstallationAndCookieDataSentCount", 3);
Ligne Supprimée : user_pref("CT2851639.InstallationId", "fft453.tmp.exe");
Ligne Supprimée : user_pref("CT2851639.InstallationType", "XPE");
Ligne Supprimée : user_pref("CT2851639.InstalledDate", "Sun Apr 29 2012 13:56:57 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.IsAlertDBUpdated", true);
Ligne Supprimée : user_pref("CT2851639.IsGrouping", false);
Ligne Supprimée : user_pref("CT2851639.IsInitSetupIni", true);
Ligne Supprimée : user_pref("CT2851639.IsMulticommunity", false);
Ligne Supprimée : user_pref("CT2851639.IsOpenThankYouPage", true);
Ligne Supprimée : user_pref("CT2851639.IsOpenUninstallPage", false);
Ligne Supprimée : user_pref("CT2851639.LanguagePackLastCheckTime", "Sun Jun 30 2013 10:24:10 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.LanguagePackReloadIntervalMM", 1440);
Ligne Supprimée : user_pref("CT2851639.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
Ligne Supprimée : user_pref("CT2851639.LastLogin_3.12.0.8", "Sun Apr 29 2012 13:57:00 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.LastLogin_3.12.2.3", "Wed May 30 2012 20:05:32 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.LastLogin_3.13.0.6", "Sun Jul 15 2012 18:32:31 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.LastLogin_3.14.1.0", "Mon Aug 27 2012 15:34:15 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.LastLogin_3.15.1.0", "Wed Nov 07 2012 22:09:07 GMT+0100");
Ligne Supprimée : user_pref("CT2851639.LastLogin_3.16.0.3", "Fri Feb 08 2013 20:32:12 GMT+0100");
Ligne Supprimée : user_pref("CT2851639.LastLogin_3.18.0.7", "Sun Jun 30 2013 15:00:58 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.LatestVersion", "3.18.0.7");
Ligne Supprimée : user_pref("CT2851639.Locale", "fr");
Ligne Supprimée : user_pref("CT2851639.MCDetectTooltipHeight", "83");
Ligne Supprimée : user_pref("CT2851639.MCDetectTooltipShow", false);
Ligne Supprimée : user_pref("CT2851639.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Ligne Supprimée : user_pref("CT2851639.MCDetectTooltipWidth", "295");
Ligne Supprimée : user_pref("CT2851639.MyStuffEnabledAtInstallation", true);
Ligne Supprimée : user_pref("CT2851639.OriginalFirstVersion", "3.12.0.8");
Ligne Supprimée : user_pref("CT2851639.SHRINK_TOOLBAR", 1);
Ligne Supprimée : user_pref("CT2851639.SearchBoxWidth", 150);
Ligne Supprimée : user_pref("CT2851639.SearchCaption", "uTorrentBar_FR Customized Web Search");
Ligne Supprimée : user_pref("CT2851639.SearchEngineBeforeUnload", "chrome://browser-region/locale/region.properties");
Ligne Supprimée : user_pref("CT2851639.SearchFromAddressBarIsInit", true);
Ligne Supprimée : user_pref("CT2851639.SearchInNewTabEnabled", true);
Ligne Supprimée : user_pref("CT2851639.SearchInNewTabIntervalMM", 1440);
Ligne Supprimée : user_pref("CT2851639.SearchInNewTabLastCheckTime", "Sun Jun 30 2013 00:37:18 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID");
Ligne Supprimée : user_pref("CT2851639.SearchProtectorEnabled", false);
Ligne Supprimée : user_pref("CT2851639.SearchProtectorToolbarDisabled", false);
Ligne Supprimée : user_pref("CT2851639.SendProtectorDataViaLogin", true);
Ligne Supprimée : user_pref("CT2851639.ServiceMapLastCheckTime", "Sun Jun 30 2013 15:00:58 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.SettingsLastCheckTime", "Sun Jun 30 2013 15:00:56 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.SettingsLastUpdate", "1372579889");
Ligne Supprimée : user_pref("CT2851639.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT2851639&SearchSource=13");
Ligne Supprimée : user_pref("CT2851639.ThirdPartyComponentsInterval", 504);
Ligne Supprimée : user_pref("CT2851639.ThirdPartyComponentsLastCheck", "Sun Jun 30 2013 15:00:56 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.ThirdPartyComponentsLastUpdate", "1368739332");
Ligne Supprimée : user_pref("CT2851639.ToolbarShrinkedFromSetup", false);
Ligne Supprimée : user_pref("CT2851639.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2851639");
Ligne Supprimée : user_pref("CT2851639.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolbar.com,CommunityToolbars.com,ForumToolbar.com,MyBlogToolbar.com,MyCity[...]
Ligne Supprimée : user_pref("CT2851639.UserID", "UN39960689434531771");
Ligne Supprimée : user_pref("CT2851639.ValidationData_Search", 2);
Ligne Supprimée : user_pref("CT2851639.ValidationData_Toolbar", 2);
Ligne Supprimée : user_pref("CT2851639.WeatherNetwork", "");
Ligne Supprimée : user_pref("CT2851639.WeatherPollDate", "Sun Jun 30 2013 15:00:59 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.WeatherUnit", "C");
Ligne Supprimée : user_pref("CT2851639.alertChannelId", "1243674");
Ligne Supprimée : user_pref("CT2851639.approveUntrustedApps", false);
Ligne Supprimée : user_pref("CT2851639.autoDisableScopes", -1);
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e+x305", "247E27413334363379453A3D2A722C797A7E7A3128333B474953462D584D503D263F2D2E3135443B464E4F5B565E695B426D6265523B544243464959505B637D737B6E55217578654E675[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e,x305", "247E28412F3F3E3779453A3D2A722C797B787D3128333C4748402C574C4F3C253E2C2E2B2F433A454E59505B57676A66426D62455E69543D56444643465B525D66716C216E6B587D73675[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e-x305", "247E29327641363937333545397E3F493B2F77317E202520362D3842474A58515A5C585D505F593964595C49324B393A3F395047525C4173686B6965677B796F6D7B6E552175785926766[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e.:2z527", "247E707273373C3A3B3F42384A3F3A214C4144317933242028262139303B2D2D2D504F5955503863585B48314A3B3837373950475244444465724C776C6F5C455E4F4B505055645B665[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e.x305", "247E2A4137374434337A463B3E2B732D7A7D7C213229343F564654524C474A595A4851505E51523964595C49324B393C3B3E5047525D6C6A6B6F786D68506A6F7171742256227679664F6[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e/x305", "247E2B413536327844393C29712B787C7B773027323E4C4343534E2D585B3C253E2C302E34433A45515862695E675A416C6164513A5341454348584F5A666D7B7C7174726E702174745B2[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e06cg5el8:", "6E6D6A706F6C6F747374");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e06cg5el;8i:k", "247E2D2F226A747370767572757A797A242F4B49474F42357D5D5C3D");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e0x305", "247E2C403A407743383B28702A777C757D2F26313E41295547484D515A4E5A59325D5255422B443237303749404B585E685E706E6E6674626E696B4D786D705D465F4D524B51645B66732[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e1x305", "247E2D41313D403279453A3D2A722C7A77797E31283341473E454745482F5A4F523F2841302D2F33463D48566265685C6B675F6D70604873686B58415A4946484B5F56616F7C217D74747[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e2x305", "247E2E3542313D3D393A7B473C3F2C742E79207D3229344356554E472E594E51325E4F412A4335373231483F4A59655F5F626C5B717369756975744D786D70517E6B60496252505451675[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj3b@h5\"mbe", "247E61393F236B25727572762A212C6E414F444D327A343F4E4C54412E594E513E3540236055505853565049324B787B4E455033707361553E57494A5A515C3F6B6C75614A6[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj3gi k@c", "247E61393F236B25727477752A212C6E414F444D327A343F53552C574C4F3C333E215E534E5651544E47304976794C434E316E715F533C5543574E593C6869725E47605150635A[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj4b6l;;>lm?'rgj", "247E61393F236B2575747279782B222D6F4250454E337B35414F435948484B595A4C345F5457443B4629665B565E595C564F38512E23544B5663676E5A43625D6D7B7A6[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj5ikajf#ncf", "247E61393F236B25727679742A212C6E414F444D327A344155574D56522F5A4F523F36414E5259452E4D485866654C354E555F6D706C70647470743E217B51643F542853574[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj69c=mk:h?db(pe", "247E61393F236B2576717576722B222D6F4250454E337B354346504A5A5847554C514F355D52443B46296669574B344D3F3A5047525F636A563F5E596977765D465F667[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj7c==anbhq&nc", "247E61393F236B25737176782A212C6E414F444D327A34434F49494D5A4E545D325A4F4138432652535C48314A394C434E5B5F66523B5A5565737259425B626D432621566[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj7fk;kg#ncep@mc+vkn", "247E61393F236B25737471712A212C6E414F444D327A344352574757532F5A4F515C4C594F3762575A473E492C58545E6A4F38513C534A553864656E5A435C4B5E5[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj86gi9ladenbrq*rg", "247E61393F236B25737677732A212C6E414F444D327A344442535545584D50515A4E5E5D365E53453C472A675C575F5A5D575039522F24554C573A6667705C455E4F4[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj8<c@mhk$odg", "247E61393F236B2575747175722B222D6F4250454E337B354549504D5A5558315C5154413843266358535B5659534C354E2B205148533673766458415A455C535E6B6F7662[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj:9c5a@gc?plpd*ujm", "247E61393F236B25717679732A212C6E414F444D327A3446454F414D4C534F4B5C585C5036615659463D482B685D58605B5E58513A533025564D583B6768715D465F[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj:9cjibgci@@pd*ujm", "247E61393F236B25747071762A212C6E414F444D327A3446454F56554E534F554C4C5C5036615659463D482B685D58605B5E58513A533025564D583B6768715D465F[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj:b4@magp%peh", "247E61393F236B25747071712A212C6E414F444D327A34464E404C594D535C315C51544138432663665448314A384C434E315D5E67533C554645584F5A676B725E4766617[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj;299i=#ncf", "247E61393F236B2576717678722B222D6F4250454E337B35483F4646564A305B5053403742256265534730493B364C434E5B5F66523B5A5565737259425B626D43262156694[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj;9k?gj#k@", "247E61393F236B25757472777A2B222D6F4250454E337B354846584C545730584D3F364124615651595457514A334C297D4F465134717462563F584A435B525D6A6E75614A69[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj;;=i?\"j?", "247E61393F236B25767172747A2B222D6F4250454E337B3548484A564C2F574C3E354023606351452E4739344A414C595D64503978595464727158415A617A767A7D76797521[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj<28daj=$odg", "247E61393F236B256E7372782A212C6E414F444D327A34483E44504D5649305B5053403742256257525A5558524B344D7A7D504752357275635740594A4D5C535E706F7320[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj<<idlj#k@", "247E61393F236B25747278752A212C6E414F444D327A344848555058562F574C3E3540234F5059452E473649404B585C634F38575262706F563F585F68777C6C7C7845282358[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj=j8h<fke%eoa", "247E61393F236B25747676712A212C6E414F444D327A34495644544852575131515B4D4138432652535C48314A394C434E5B5F66523B5A5565737259425B626B7A206F207[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj>f@>@h#ncf'h=", "247E61393F236B25707878792A212C6E414F444D327A344A524C4A4C542F5A4F523354494239442753545D49324B3A4D444F5C6067533C5B566674735A435C636B787C77[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj>fe8ekk$odg", "247E61393F236B25767870747B2B222D6F4250454E337B354B535245525858315C5154413843266358535B5659534C354E2B205148533662636C58415A4B4A5D545F6C7077[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj>fj>@lahd&nc", "247E61393F236B25747870752A212C6E414F444D327A344A52564A4C584D5450325A4F413843266358535B5659534C354E2B205148533662636C58415A4B4A5D545F6C707[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj>g@j!lad", "247E61393F236B25756F71782A212C6E414F444D327A344A534C562D584D503D343F225F544F5752554F48314A277B4D444F325E5F68543D56474659505B686C735F486762457[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cj>j99afb<>n'rgj", "247E61393F236B25707178782A212C6E414F444D327A344A5645454D524E484A5A335E5356433A4528655A555D585B554E37502C32534A55387578665A435C4E495F566[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cja>hk!lad", "247E61393F236B257572777A2A212C6E414F444D327A344D4A54572D584D503D343F225F6250442D46383849404B2E5A5B645039524342554C5769686C78687B6B5F486762772[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjb;~j?b", "247E61393F236B25757379792A212C6E414F444D327A344E472B564B4E3B323D205D524D5550534D462F4875784B424D306D705E523B5442564D583B6768715D465F504F6259647[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjb<?h;;kpn&qfi", "247E61393F236B256E7379712A212C6E414F444D327A344E484B544747575C5A325D5255423944276459545C575A544D364F7C205249543774776559425B4C4F5E556043[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjc<=fbj#k@", "247E61393F236B25757674712A212C6E414F444D327A344F4849524E562F574C3E3540236055505853565049324B287C4E4550335F5B6571563F584A5A515C3F7B717E242175[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjc<=fbj#ncf", "247E61393F236B25757677712A212C6E414F444D327A344F4849524E562F5A4F523F364124504C56624730493B4B424D306C626F74716669676C7466767D7979732068614A6[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjc<=i<jom?&qfi", "247E61393F236B2575767976792B222D6F4250454E337B3550494A5649575C5A4C335E5356433A4528655A555D585B554E37502C32534A55387578665A435C4E4E5F5661[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjd=kj!lad", "247E61393F236B257577757A2A212C6E414F444D327A34504957562D584D503D343F224E4F58442D46373649404B585C634F38575262706F563F585F68777C6C7C78452823586[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cje>kjffbl?&qfi", "247E61393F236B25767070782A212C6E414F444D327A34514A575652524E584B325D52554239442764675549324B3A4D444F325E5F68543D56474659505B686C735F4867[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjei=>cj>>%mb", "247E61393F236B257671767A742B222D6F4250454E337B3552564A4B50574B4B325A4F4138432663665448314A3C374D444F325E5F68543D56474659505B686C735F482868[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjeik4!i>", "247E61393F236B257671757A2A212C6E414F444D327A34515557402D554A3C333E214D4E57432C4534473E49596D61656165503958536175705740593834285D545F6E6E6A7821[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjff@a!lad", "247E61393F236B25767570792A212C6E414F444D327A3452524C4D2D584D503D343F225F544F5752554F48314A777A4D444F326F7260543D5644584F5A3D696A735F486152516[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjggc:k@;c>&qfi", "247E61393F236B256E767929202B6D404E434C31793352524E45564B464E49315C5154413843266358535B5659534C354E2B205148533662636C58415A495C535E6B6F76[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjh9c9e<hpia=t=d+vkn", "247E61393F236B257671797A772B222D6F4250454E337B35554650465249555D564E4A614A513863585B483F4A2D6A6D5B4F3851433E544B563965666F5B445D4E4[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjh<7amail@&nc", "247E61393F236B2573747029202B6D404E434C3179335347424C584C54574B31594E403742256257525A5558524B344D2A7E5047523561626B574059485B525D6A6E75614[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjh<=b;\"ibclhp)til", "247E61393F236B25766F7571792B222D6F4250454E337B3555494A4F482F564F5059555D36615659463D482B5758614D364F403F524954666569756578685C45645F[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cji8a k@c", "247E61393F236B256F75287E2A6C3F4D424B30783253424B2A554A4D3A313C7E4B47515D422B4436463D482B5758614D364F3E514853656468746477675B4424645F74226F227D[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cji>k3?a#k@", "247E61393F236B257674287E2A6C3F4D424B3078325348553D494B2D554A3C333E215E534E5651544E473049267A4C434E315D5E67533C5544574E59666A715D466560437120[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cji>k3?a#ncf", "247E61393F236B257678287E2A6C3F4D424B3078325348553D494B2D584D503D343F224E4F58442D4635483F4A575B624E3756513462705E78696B6E625B445D4F5F5661712[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cji?ch6?>l?@'rgj", "247E61393F236B2575747629202B6D404E434C317933544A4E53414A49574A4B325D5255423944276459545C575A544D364F7C205249543763646D59425B4A5D545F6C7[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjii:d:jd$la", "247E61393F236B2575767073752B222D6F4250454E337B355656475147575131594E403742256257525A5558524B344D2A7E504752357275635740594B465C535E706F73206[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjw87d;<k>%mb", "247E61393F236B25727373742A212C6E414F444D327A34244443504748574A31594E403742256257525A5558524B344D2A7E5047523561626B5740594A495C535E6B6F7662[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e31;cjzz>h:\"mbe", "247E61393F236B2575767972782B222D6F4250454E337B3528284B55472F5A4F523F364124616452462F48374A414C595D64503958536371705740596069787D6D7D796F6F7[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e3x305", "247E2F413F3B36333F47463F7D493E412E76307E222421352C37474B59574B4A4858584E5E3762573A535E49324B3A3D3F3B504752626C625D75786D766A7C517C7174614A63525557526[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e4x305", "247E302C407642373A276F29777B74762E2530413E4F494A522B55553A233C2B2F282941384354515E5D56615F56685C426D6265523B544346494A59505B6C697A7E21702370765925797[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e5x305", "247E3136422B7743383B28702A79757A772F2631434B3D49564A50592E594E314A55402942322E332F473E495B5D595A6A5E58707262674974696C59425B4B474B51605762747C2473737[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e6x305", "247E322C3E32323238453E7C483D402D752F7E7B2424342B364953545259585A5A50524E36615659462F4838353D3C4D444F626C6D6B72716A77614D786D705D465F4F4C5451645B66797[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e7x305", "247E333D2C3F3E3F79453A3D2A722C7B7A797A31283347513F445559424C5A315C5154412A4333323037483F4A5E68565B5970606E6C666164734C776C6F5C455E4E4D4B51635A6579247[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e8x305", "247E343D3F3B35373B3F367C47472C742E7E782332293449565540472E594E513E274030323533453C475C5558636A656E625E6C616B7068734B766B6E5B445D4D4F524F6259647927767[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e9x305", "247E35332C3F327844393C29712B7B757979302732484C4F4F44504C4754585C5048345F5457442D46373135344B424D636B5D5F5F73696B4A756A6D5A435C4D474B4961586379226F742[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e:x305", "247E36333B38327844393C29712B7B76797A30273249485545442C574C4F3C253E2F2A2D2D433A455C67555B5E3F6A5F624F3851423D403F564D586F7A68786C717154207477644D66575[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e;x305", "247E373F333F3738422F7B473C3F2C742E7E7A7A22332A354D462C574C4F3C253E2F2B2B31433A455D6356575C5C5A416C6164513A5344404045584F5A7273717A786D2256227679664F6[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e<x305", "247E38343030442F463644377D493E412E7630217D2426352C37504C4757514B4F47345F5457442D4637343A3A4B424D665E705B646571634A756A6D5A435C4D4A504F6158637C7179207[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e=x305", "247E3933363F41413739357C483D402D752F207E2022342B36505459574C554F515B345F5457442D46373637384B424D676B706E606F61666B63664D786D705D465F504F5050645B66212[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e>x305", "247E3A41363F323238387B473C3F2C742E7E20217C332A35504F5346482F5A4F523F28413233342F463D48635C5D66626A436E6366533C55464748425A515C77707773202371215925797[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e?x305", "247E3B2D2F2F334134403A3A7D494C2D752F2023207E342B3652504C5249555256525C35605558452E47383B38364C434E6A706F5F65635D736F677578684C65706B54207477644D66575[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7e@x305", "247E3C40422B7743383B28702A7B767E782F26314E52543D2A554A2D46513C253E302B332C433A45626756516259655F5F436E63465F6A553E5749444C445C535E7B21747C7821745A267[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7eax305", "247E3D3D37387743383B28702A7B7A757E2F26314F4B524B4445494B49485450585952535F513863585B48314A3C3B363D4F46516F6B6E6D63776D687666507B707360496254534E54675[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7ebe3g=;d9n9=d", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D334B57");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7ebx305", "247E3E393141303D33454036327E4A3F422F77317B7D23352C37565949484E4F51525C4E4C55535B54605A5A3E695E614E37503B3D41544B567575656D7367796D6D7C55217578654E675[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7ecx305", "247E3F3D303043312E7A463B3E2B732D7B207E3128335351565551575A4F584C5E335E5356432C4534383649404B6B59566C686B46716669563F58474B485C535E7E6C6956227679664F6[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7edx305", "247E4035422A363879453A3D2A722C7D202F26315247543C484A2C574C2F48533E27403233433A45665B68505C5E406B6E4F38514343544B56776C79616D6F517C71547873634C6557566[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b+7etx305", "247E6E2F2E3B323342357B44392B732D7A7B7B7C32293423524C5457474A4E50565D4A61515F5D575255643D685D604D364F3D3E3E3D544B5645486A736D696F527D7275624B645253535[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b-0?3g>d", "3A6D406C6D6E426D7A7075717520774D4A7E2523237C7E2A2352212726272626292B2A2E");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b-0?3g@6:5;", "");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b-0?3gfa7ef", "2B2E2C3D");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b-3=3eccja=f>", "247E333D2C452F4135276F292A212C393D44307832332A354448584C3A232E333E58604F6456604F6852645858635E604E376B7167617059");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b/>01=9a6k6<im;krie@pdawm", "6A696B7273747576");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b3=>@44i48?", "372C2D326975763342363341484775213F3E484F4E4D4648502B564B4E2E5959595F4C564F3764535750");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b5ba==9cjag", "67703E3C6A6C41427A4674447977494B7A4F4D7B7C");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b6b11g4c56b>f;p;anr@p", "6E6D6A706F6C6F747377707375");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b9643g3/9e", "6A");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b;45>:bi9i7ie", "2B2E2C3D");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b<:222h64<", "393F352F3E");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b<:222h64<l8daj", "6D70706F7674737975712A7978727C7E757E7A");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b=+03eh8h8j?:", "4443");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b?+e2a52d8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9b?b0d:8aj62<h", "6D");
Ligne Supprimée : user_pref("CT2851639.backendstorage./9ba@0<0bi6a7gn:6@l?", "6C");
Ligne Supprimée : user_pref("CT2851639.backendstorage.cb_experience_000", "313935");
Ligne Supprimée : user_pref("CT2851639.backendstorage.cb_firstuse0100", "31");
Ligne Supprimée : user_pref("CT2851639.backendstorage.cb_user_id_000", "434235333938383234323135335F46697265666F78");
Ligne Supprimée : user_pref("CT2851639.backendstorage.cbcountry_000", "4652");
Ligne Supprimée : user_pref("CT2851639.backendstorage.cbcountry_001", "4652");
Ligne Supprimée : user_pref("CT2851639.backendstorage.cbfirsttime", "53756E2041707220323920323031322031333A35373A303520474D542B30323030");
Ligne Supprimée : user_pref("CT2851639.backendstorage.cbopenmamsettings", "30");
Ligne Supprimée : user_pref("CT2851639.backendstorage.facebook_mode", "32");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_appsdata", "7B2261707073223A5B7B226964223A225072696365476F6E67222C2275726C223A22687474703A2F2F7072696365676F6E672E636F6E64756974617070732E636F6D2F4D414D2F763[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_appsdefaultenabled", "6E756C6C");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_appstate_couponbuddy", "6F6E");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_appstate_pricegong", "6F6E");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_appstatereporttime", "31333732353830323830363332");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_configuration", "7B22636F6E66696775726174696F6E223A5B7B226964223A2245617379746F626F6F6B5F7461726765746564222C22637269746572696173223A5B7B22637269746572696149[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_currentbadgevalue", "31");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_currentversion", "312E382E302E34");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_first_time", "31");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_lastlogintime", "31333732353830323835383736");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_localization", "7B22646D626F7831223A7B2254657874223A2250726F6D6F5C6E6475206A6F7572227D2C22646D626F7832223A7B2254657874223A224C6976726169736F6E5C6E67726174756[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_newapps", "5B5D");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_settings1.4.0.4", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2236315F2D31222C2269735465737422[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_settings1.4.3.1", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2236315F2D31222C2269735465737422[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_settings1.4.3.2", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2236315F2D31222C2269735465737422[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_settings1.4.4.6", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A223231355F2D31222C22697354657374[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_settings1.6.0.1", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A223231355F2D31222C22697354657374[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_settings1.8.0.4", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2234365F30222C22697354657374223A[...]
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_showclosebutton", "74727565");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_showwelcomegadget", "66616C7365");
Ligne Supprimée : user_pref("CT2851639.backendstorage.mam_gk_userid", "35366339656361362D666134302D343663612D616366332D393866623636623632336566");
Ligne Supprimée : user_pref("CT2851639.backendstorage.pg_enable", "74727565");
Ligne Supprimée : user_pref("CT2851639.backendstorage.scriptsource", "687474703A2F2F3132372E302E302E313A31303030302F6775692F");
Ligne Supprimée : user_pref("CT2851639.backendstorage.searchappstate", "33");
Ligne Supprimée : user_pref("CT2851639.backendstorage.searchapptracking", "31");
Ligne Supprimée : user_pref("CT2851639.backendstorage.sf_just_installed", "46414C5345");
Ligne Supprimée : user_pref("CT2851639.backendstorage.sf_status", "454E41424C4544");
Ligne Supprimée : user_pref("CT2851639.backendstorage.sf_user_id", "6369645F32353332303133343437343032373039363230");
Ligne Supprimée : user_pref("CT2851639.backendstorage.url_history0001", "6A6176617363726970743A2532307375626D6974666F726D28293A3A3A636C69636B68616E646C65723A3A3A313337323538353539313132392C2C2C6A6176617363726970743A253[...]
Ligne Supprimée : user_pref("CT2851639.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdown[...]
Ligne Supprimée : user_pref("CT2851639.globalFirstTimeInfoLastCheckTime", "Thu Jun 20 2013 17:09:39 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.homepageProtectorEnableByLogin", true);
Ligne Supprimée : user_pref("CT2851639.initDone", true);
Ligne Supprimée : user_pref("CT2851639.isAppTrackingManagerOn", false);
Ligne Supprimée : user_pref("CT2851639.myStuffEnabled", true);
Ligne Supprimée : user_pref("CT2851639.myStuffPublihserMinWidth", 400);
Ligne Supprimée : user_pref("CT2851639.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
Ligne Supprimée : user_pref("CT2851639.myStuffServiceIntervalMM", 1440);
Ligne Supprimée : user_pref("CT2851639.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
Ligne Supprimée : user_pref("CT2851639.navigateToUrlOnSearch", false);
Ligne Supprimée : user_pref("CT2851639.oldAppsList", "129351529700431300,129351529700743801,1000234,129791404828153723,1000034,129422840102831305,129351529701212556,2548968607390276962,129351529703087570,12935152970308[...]
Ligne Supprimée : user_pref("CT2851639.revertSettingsEnabled", true);
Ligne Supprimée : user_pref("CT2851639.searchProtectorDialogDelayInSec", 10);
Ligne Supprimée : user_pref("CT2851639.searchProtectorEnableByLogin", true);
Ligne Supprimée : user_pref("CT2851639.testingCtid", "");
Ligne Supprimée : user_pref("CT2851639.toolbarAppMetaDataLastCheckTime", "Sat Jun 29 2013 17:26:17 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.toolbarContextMenuLastCheckTime", "Mon Jun 17 2013 17:16:02 GMT+0200");
Ligne Supprimée : user_pref("CT2851639.usagesFlag", 2);
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2851639/CT2851639", "\"9c0db8b96d15e5057d23f3eb3a6e39d93\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2851639", "\"1361967766\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=fr", "wmxT3la3WNnJ27QoSsYNHQ==");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=fr&ctid=CT2851639", "wmxT3la3WNnJ27QoSsYNHQ==");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=fr", "baZTA2tXV7T4AAbft31aCw==");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=fr&ctid=CT2851639", "baZTA2tXV7T4AAbft31aCw==");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=fr", "jKoBOjdPF2fwBUlNTkZHzw==");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=fr&ctid=CT2851639", "jKoBOjdPF2fwBUlNTkZHzw==");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=fr", "TG4z5eYloz+CZo4B4Z12PQ==");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=fr&ctid=CT2851639", "TG4z5eYloz+CZo4B4Z12PQ==");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"0ea11bd291bce1:0\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12.0.8", "\"4ead38b3e6bcd1:0\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12.2.3", "\"4ead38b3e6bcd1:0\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13.0.6", "\"0d648794549cd1:0\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"0343677cfb1cd1:0\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.16.0.3", "\"0343677cfb1cd1:0\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.18.0.7", "\"0343677cfb1cd1:0\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://newtab.conduit-hosting.com/newtab/?ctid=CT2851639", "\"2a84ff-82f-49024409b8900\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2851639", "\"dbe4460d95840339477519b3f77dc11a\"");
Ligne Supprimée : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=fr", "\"aca7113bf82fdb06e9e1e5012caa58a2\"");
Ligne Supprimée : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Documents and Settings\\Administrateur\\Application Data\\Mozilla\\Firefox\\Profiles\\rrt37ty9.default\\conduitCommon\\modules\\3.18.0.7");
Ligne Supprimée : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.18.0.7");
Ligne Supprimée : user_pref("CommunityToolbar.MiniIPageGadgetPosition.hxxp://cdn.triplegames.com/shared/apps/gamearcade/arcade.htm?ctId=CT2851639", "66x36");
Ligne Supprimée : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://cdn.triplegames.com/shared/apps/gamearcade/arcade.htm?ctId=CT2851639", "744x568");
Ligne Supprimée : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://facebook.conduitapps.com/v3.13/gadget.html", "409x468");
Ligne Supprimée : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://youtube.conduitapps.com/v115/gadget.php?appMode=standard ", "483x563");
Ligne Supprimée : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "");
Ligne Supprimée : user_pref("CommunityToolbar.ToolbarsList", "CT2851639");
Ligne Supprimée : user_pref("CommunityToolbar.ToolbarsList2", "CT2851639");
Ligne Supprimée : user_pref("CommunityToolbar.ToolbarsList4", "CT2851639");
Ligne Supprimée : user_pref("CommunityToolbar.globalUserId", "61902811-4c67-4ab3-98d2-ddb630dd7047");
Ligne Supprimée : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Ligne Supprimée : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Ligne Supprimée : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT2851639");
Ligne Supprimée : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Fri Jun 21 2013 05:52:51 GMT+0200");
Ligne Supprimée : user_pref("CommunityToolbar.notifications.alertEnabled", false);
Ligne Supprimée : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");
Ligne Supprimée : user_pref("CommunityToolbar.notifications.locale", "");
Ligne Supprimée : user_pref("CommunityToolbar.notifications.loginIntervalMin", 0);
Ligne Supprimée : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Sun Jun 30 2013 15:00:59 GMT+0200");
Ligne Supprimée : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "");
Ligne Supprimée : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
Ligne Supprimée : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");
Ligne Supprimée : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
Ligne Supprimée : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
Ligne Supprimée : user_pref("CommunityToolbar.notifications.userId", "1c06a0bd-0f7c-4d28-88af-6740a959ace9");
Ligne Supprimée : user_pref("CommunityToolbar.originalHomepage", "hxxp://my.daemon-search.com/");
Ligne Supprimée : user_pref("CommunityToolbar.originalSearchEngine", "chrome://browser-region/locale/region.properties");

-\\ Google Chrome v

*************************

AdwCleaner[R0].txt - [50521 octets] - [19/06/2014 22:39:08]
AdwCleaner[S0].txt - [50348 octets] - [19/06/2014 22:44:53]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [50409 octets] ##########
Messages postés
180267
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
23 106
Passe un coup de TDSSKiller : https://forum.malekal.com/viewtopic.php?t=28637&start=
Fais skip sur les détections.
Clic en haut à droite sur reports.
Vas sur http://pjjoint.malekal.com et copie/colle le contenu du rapport TDSSKiller en bas, fais envoyer.
Donne le lien du rapport pjjoint ici dans un nouveau message.


puis:


Faire un Scan OTL - Temps : Environ 40min
=====================
OTL permet de diagnostiquer les programmes qui tournent et déceler des infections - Le programme va générer deux rapports OTL.txt et Extras.txt
Fournir les deux rapports :

Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/

* Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
(Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)


* Lance OTL
* En haut à droite de Analyse rapide, coche "tous les utilisateurs"
* Sur OTL, sous Personnalisation, copie-colle le script ci-dessous :



netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%ALLUSERSPROFILE%\Application Data\*.dll /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%temp%\*.exe /s
%SYSTEMDRIVE%\*.exe
%systemroot%\*. /mp /s
%systemroot%\system32\consrv.dll
%systemroot%\system32\*.dll /lockedfiles
%windir%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
/md5start
explorer.exe
winlogon.exe
services.exe
wininit.exe
/md5stop
HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32 /s
HKEY_LOCAL_MACHINE\SYSTEM\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters /s
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems /s
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls /s
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList /s
HKEY_LOCAL_MACHINE\Software\Microsoft\Command Processor /s
HKEY_CURRENT_USER\Software\Microsoft\Command Processor /s
CREATERESTOREPOINT
nslookup www.google.fr /c
SAVEMBR:0
hklm\software\clients\startmenuinternet|command /rs
hklm\software\clients\startmenuinternet|command /64 /rs



* Clique sur le bouton Analyse.

**** Si durant le scan - OTL ne répond pas, ne touche à rien et laisse le scan se poursuivre ****

* Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport OTL.txt (et Extra.txt si présent).
Donne le ou les liens pjjoint qui pointent vers ces rapports ici dans une réponse.
Je répète : donne le lien du rapport pjjoint ici en réponse.

NE PAS COPIER/COLLER LE RAPPORT ICI - DONNER LE LIEN PJJOINT DANS UN NOUVEAU MESSAGE


Messages postés
8
Date d'inscription
samedi 14 juin 2014
Statut
Membre
Dernière intervention
20 juin 2014

Voici le lien du rapport pjjoint (TDSSKiller):

https://pjjoint.malekal.com/files.php?read=20140619_k7f6r5t6x9
Messages postés
8
Date d'inscription
samedi 14 juin 2014
Statut
Membre
Dernière intervention
20 juin 2014

Messages postés
180267
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
23 106
P'tain la vieille infection :

23:29:06.0625 0x1e2d0 VolSnap ( Rootkit.Win32.TDSS.tdl3 ) - skipped by user
23:29:06.0625 0x1e2d0 VolSnap ( Rootkit.Win32.TDSS.tdl3 ) - User select action: Skip


Faut que tu fasses cure là dessus.
Donne le rapport TDSSKiller puis :

Relance OTL.
o sous Personnalisation (Custom Scan), copie_colle le contenu du cadre ci dessous (bien prendre :OTL en début).
Clic Correction (Fix), un rapport apparraitra, copie/colle le contenu ici:



:OTL
O2 - BHO: (QuickNet BHO) - {EA5CA8B6-9B9C-4994-A7A1-947B6C631BE7} - C:\Program Files\RegTweaker\key.dll (QuickNet)
[2013/01/22 14:05:01 | 000,082,861 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\wqhidxcspprcxfx
[2012/09/19 12:55:15 | 000,082,861 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\itatwuckumltecv
[2012/01/26 19:07:54 | 000,000,008 | ---- | C] () -- C:\Documents and Settings\Administrateur\Application Data\k7b3qhkb6xkn7u1h.dat
[2011/12/26 11:54:38 | 000,000,137 | ---- | C] () -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\fusioncache.dat
[2011/05/28 18:00:09 | 000,000,352 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\18800420
[2013/04/13 14:56:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrateur\Application Data\Wovee
[2013/04/08 10:50:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrateur\Application Data\Ymep
[2013/04/13 18:42:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrateur\Application Data\Iseqi


* poste le rapport ici



Redémarre l'ordinateur

Messages postés
8
Date d'inscription
samedi 14 juin 2014
Statut
Membre
Dernière intervention
20 juin 2014

Rapport DTSSKiller:

13:53:41.0156 0x1e1cc TDSS rootkit removing tool 3.0.0.39 Jun 5 2014 20:35:54
13:53:44.0171 0x1e1cc ============================================================
13:53:44.0171 0x1e1cc Current date / time: 2014/06/20 13:53:44.0171
13:53:44.0171 0x1e1cc SystemInfo:
13:53:44.0171 0x1e1cc
13:53:44.0171 0x1e1cc OS Version: 5.1.2600 ServicePack: 3.0
13:53:44.0171 0x1e1cc Product type: Workstation
13:53:44.0171 0x1e1cc ComputerName: TITANIUM
13:53:44.0171 0x1e1cc UserName: Administrateur
13:53:44.0171 0x1e1cc Windows directory: C:\WINDOWS
13:53:44.0171 0x1e1cc System windows directory: C:\WINDOWS
13:53:44.0171 0x1e1cc Processor architecture: Intel x86
13:53:44.0171 0x1e1cc Number of processors: 2
13:53:44.0171 0x1e1cc Page size: 0x1000
13:53:44.0171 0x1e1cc Boot type: Normal boot
13:53:44.0171 0x1e1cc ============================================================
13:53:47.0062 0x1e1cc KLMD registered as C:\WINDOWS\system32\drivers\79859978.sys
13:53:47.0281 0x1e1cc System UUID: {C60B2C27-8CF1-0D92-FCC6-95B4D1DD372C}
13:53:48.0593 0x1e1cc Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 ( 232.89 Gb ), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
13:53:48.0593 0x1e1cc ============================================================
13:53:48.0593 0x1e1cc \Device\Harddisk0\DR0:
13:53:48.0593 0x1e1cc MBR partitions:
13:53:48.0593 0x1e1cc \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x61A7927
13:53:48.0609 0x1e1cc \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x61A79A5, BlocksNum 0x17018D1B
13:53:48.0609 0x1e1cc ============================================================
13:53:48.0656 0x1e1cc D: <-> \Device\Harddisk0\DR0\Partition2
13:53:48.0687 0x1e1cc C: <-> \Device\Harddisk0\DR0\Partition1
13:53:48.0703 0x1e1cc ============================================================
13:53:48.0703 0x1e1cc Initialize success
13:53:48.0703 0x1e1cc ============================================================
13:54:03.0328 0x1e590 ============================================================
13:54:03.0328 0x1e590 Scan started
13:54:03.0328 0x1e590 Mode: Manual;
13:54:03.0328 0x1e590 ============================================================
13:54:03.0328 0x1e590 KSN ping started
13:54:05.0921 0x1e590 KSN ping finished: true
13:54:07.0015 0x1e590 ================ Scan system memory ========================
13:54:07.0015 0x1e590 System memory - ok
13:54:07.0015 0x1e590 ================ Scan services =============================
13:54:07.0140 0x1e590 92042 - ok
13:54:07.0156 0x1e590 Abiosdsk - ok
13:54:07.0156 0x1e590 abp480n5 - ok
13:54:07.0218 0x1e590 [ E5E6DBFC41EA8AAD005CB9A57A96B43B, A02A0EDC9F646406CA136ACE5A21E9FC7B70D21EC1440BDA4F98A95804EFCBD4 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
13:54:07.0234 0x1e590 ACPI - ok
13:54:07.0484 0x1e590 [ E4ABC1212B70BB03D35E60681C447210, 8EB16B67A6D44DA7A4C2090195F1A24A58CA97DA66F66958F5CD6C5695648F2F ] ACPIEC C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
13:54:07.0484 0x1e590 ACPIEC - ok
13:54:07.0546 0x1e590 [ 8B46D5A1D3EF08232C04D0EAFB871FB2, 5306F8452EF675851CB0015F9E5C5EB750137D6D65C9CB7E47F8EF5B10A44D10 ] Adobe LM Service C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
13:54:07.0578 0x1e590 Adobe LM Service - ok
13:54:07.0640 0x1e590 [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
13:54:07.0687 0x1e590 AdobeFlashPlayerUpdateSvc - ok
13:54:07.0703 0x1e590 adpu160m - ok
13:54:07.0734 0x1e590 [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec C:\WINDOWS\system32\drivers\aec.sys
13:54:07.0781 0x1e590 aec - ok
13:54:07.0828 0x1e590 [ 7618D5218F2A614672EC61A80D854A37, A125ED9BE19F851A30AA107A15DD1CB6C471CEB4A7C275AA0783C6C4CD0EFE79 ] AFD C:\WINDOWS\System32\drivers\afd.sys
13:54:07.0859 0x1e590 AFD - ok
13:54:07.0859 0x1e590 Aha154x - ok
13:54:07.0875 0x1e590 aic78u2 - ok
13:54:07.0875 0x1e590 aic78xx - ok
13:54:07.0921 0x1e590 [ 758FDC60D41716EF889D849989B4B1CD, 87D1D86D10ADADEB70F8F1AED738D31EFD30BF78886C4A33A9FA571B469A9F0F ] Alerter C:\WINDOWS\system32\alrsvc.dll
13:54:07.0921 0x1e590 Alerter - ok
13:54:07.0953 0x1e590 [ 5E9A6658A2A69AE7EB195113B7A2E7A9, AE32F1EB1BCA48D69FCD8C8739A8FAB2B9433B0765510D2A0AFDFB7E9D911A68 ] ALG C:\WINDOWS\System32\alg.exe
13:54:07.0953 0x1e590 ALG - ok
13:54:07.0968 0x1e590 AliIde - ok
13:54:08.0140 0x1e590 [ 267FC636801EDC5AB28E14036349E3BE, CFEF5DF5F9BE820283376BB86DB3CF6609C02D316A742E17459A2BFA42E724E0 ] Ambfilt C:\WINDOWS\system32\drivers\Ambfilt.sys
13:54:08.0328 0x1e590 Ambfilt - ok
13:54:08.0343 0x1e590 amsint - ok
13:54:08.0609 0x1e590 [ 0BF3BE441B226D018767C28F92830D34, F4737DB09D2CDF1AD3516711E6A7B230D02630D7A7481CCAD046D99AF165CA23 ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
13:54:08.0687 0x1e590 AntiVirSchedulerService - ok
13:54:08.0750 0x1e590 [ 0BF3BE441B226D018767C28F92830D34, F4737DB09D2CDF1AD3516711E6A7B230D02630D7A7481CCAD046D99AF165CA23 ] AntiVirService C:\Program Files\Avira\AntiVir Desktop\avguard.exe
13:54:08.0812 0x1e590 AntiVirService - ok
13:54:08.0968 0x1e590 [ 79B51474A666EB49F8541C4E3258928B, 3BC40A5EB7B8C186EF0A2F5DADFBF9DBCC38C9881CD125C383CE8B9E380AEAC8 ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
13:54:09.0140 0x1e590 AntiVirWebService - ok
13:54:09.0218 0x1e590 [ 20F6F19FE9E753F2780DC2FA083AD597, 5106F0F9BA8A7DE49260A9B13BF8EC45ACA6A166FA8B10B4F69C3BB54F6840A1 ] Apple Mobile Device C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
13:54:09.0234 0x1e590 Apple Mobile Device - ok
13:54:09.0296 0x1e590 [ F36C9F78FC902C8DCE4D3B576BB0435A, A7D62852C60E31910D9A82EDCCFD38D901D8FEB9D243A6EF75EC3BD162DCA2C6 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
13:54:09.0359 0x1e590 AppMgmt - ok
13:54:09.0562 0x1e590 [ 864A4047208C02E5B3B2D907C920597D, 5DB86B9BB7D14BB3B1655A0F508E6AF4CD9A3E09399185C10146187566EF6748 ] AR5416 C:\WINDOWS\system32\DRIVERS\athw.sys
13:54:09.0656 0x1e590 AR5416 - ok
13:54:09.0656 0x1e590 asc - ok
13:54:09.0671 0x1e590 asc3350p - ok
13:54:09.0671 0x1e590 asc3550 - ok
13:54:09.0781 0x1e590 [ 0E5E4957549056E2BF2C49F4F6B601AD, F7F19FDC906B719A3516D30A9B4A2262C8CC5B36B94E3D4195C345EC4610FF2B ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
13:54:09.0812 0x1e590 aspnet_state - ok
13:54:09.0828 0x1e590 [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
13:54:09.0843 0x1e590 AsyncMac - ok
13:54:09.0859 0x1e590 [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
13:54:09.0875 0x1e590 atapi - ok
13:54:09.0875 0x1e590 Atdisk - ok
13:54:09.0906 0x1e590 [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
13:54:09.0921 0x1e590 Atmarpc - ok
13:54:09.0953 0x1e590 [ B4005AEF7873144634765B570DAC466E, 57D16C46EF3E94718E4789EDE3F7AE6477B8D1960C044C9A893D4C2F544BFE4B ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
13:54:09.0968 0x1e590 AudioSrv - ok
13:54:10.0000 0x1e590 [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
13:54:10.0000 0x1e590 audstub - ok
13:54:10.0046 0x1e590 [ 06740B4CA398D0D00A49CB1D22FC2BC3, CCE1A4D7C24124687324FB904BADA3E289472FA4C0594031952F5F4577322AE0 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
13:54:10.0078 0x1e590 avgntflt - ok
13:54:10.0093 0x1e590 [ 05AF7CBF0BDA1571BBADC36703EB9CA4, 3925AD58053769D317D3CF0DDDF7371B010F2F4C839CF7B44F327AE9D0AB5442 ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
13:54:10.0125 0x1e590 avipbb - ok
13:54:10.0250 0x1e590 [ 43B18BAA433FD79DFC7D4B25AF6EB2F9, 2CA46242FCB188A5CFF1D674D623958C6F65E072F69E75FCA372CD517C9CEA78 ] Avira.OE.ServiceHost C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
13:54:10.0281 0x1e590 Avira.OE.ServiceHost - ok
13:54:10.0328 0x1e590 [ D8C712305F73CD34D1B344810E522728, 49A474FF6CA44E8427D7A8290B47395125B0148AF384CF2B3B1FA495A4718CBA ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
13:54:10.0343 0x1e590 avkmgr - ok
13:54:10.0375 0x1e590 [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep C:\WINDOWS\system32\drivers\Beep.sys
13:54:10.0390 0x1e590 Beep - ok
13:54:10.0468 0x1e590 [ BAA0B6E647C1AD593E9BAE5CC31BCFFB, B88506D2FE38238DCC2159996D167DABE3FF9B14192193E1DA72DA8E3872F4A4 ] BITS C:\WINDOWS\system32\qmgr.dll
13:54:10.0562 0x1e590 BITS - ok
13:54:10.0625 0x1e590 [ 06B54A7B1EF7CB16BFD0E208D343FA71, 4766768ECD5B81A9464A25C66C1F5C77AADF637E266D53161A6D0A84AB8AE225 ] Browser C:\WINDOWS\System32\browser.dll
13:54:10.0656 0x1e590 Browser - ok
13:54:10.0687 0x1e590 [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
13:54:10.0703 0x1e590 cbidf2k - ok
13:54:10.0734 0x1e590 [ 0BE5AEF125BE881C4F854C554F2B025C, 1770DD70B3F115A0EF460907DEDC1E4B7241C08615A98F194D61A49C3E2BAA54 ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
13:54:10.0750 0x1e590 CCDECODE - ok
13:54:10.0750 0x1e590 cd20xrnt - ok
13:54:10.0781 0x1e590 [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
13:54:10.0796 0x1e590 Cdaudio - ok
13:54:10.0828 0x1e590 [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
13:54:10.0843 0x1e590 Cdfs - ok
13:54:10.0875 0x1e590 [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
13:54:10.0906 0x1e590 Cdrom - ok
13:54:10.0921 0x1e590 Changer - ok
13:54:10.0953 0x1e590 [ 793EF38A5FD086C3C8E48A8A861562ED, D30E90FAEB2D583B92B17E3A8AE14B1ACD8BA876F1FB9331D019AD36EFC8B12F ] CiSvc C:\WINDOWS\system32\cisvc.exe
13:54:10.0968 0x1e590 CiSvc - ok
13:54:11.0000 0x1e590 [ 8B30CBB0C07D49B2658FB190946B0E7E, 23D4B368FA215DEF31E927D087260FC81DAB1AB7BBB995892990FE4A5CB5CDC0 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
13:54:11.0015 0x1e590 ClipSrv - ok
13:54:11.0046 0x1e590 [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:54:11.0093 0x1e590 clr_optimization_v2.0.50727_32 - ok
13:54:11.0156 0x1e590 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:54:11.0187 0x1e590 clr_optimization_v4.0.30319_32 - ok
13:54:11.0203 0x1e590 [ 0F6C187D38D98F8DF904589A5F94D411, DB987093446216CEE913AC27503BF7E23E5A62DF169B355730285DAB64F6ED28 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys
13:54:11.0203 0x1e590 CmBatt - ok
13:54:11.0218 0x1e590 CmdIde - ok
13:54:11.0234 0x1e590 [ 6E4C9F21F0FAE8940661144F41B13203, 731202A0DD021FCF9287FEA631212603AAAC23F9E7F76B2882F913B18A971F1C ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys
13:54:11.0250 0x1e590 Compbatt - ok
13:54:11.0250 0x1e590 COMSysApp - ok
13:54:11.0265 0x1e590 Cpqarray - ok
13:54:11.0296 0x1e590 [ 7A6D0B71035E123FDDA2156A25578AD3, 4893ADB1983E6C8E3BD94A1E29136C4BB60EE49017DF062FFD3701397413197C ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
13:54:11.0328 0x1e590 CryptSvc - ok
13:54:11.0328 0x1e590 dac2w2k - ok
13:54:11.0343 0x1e590 dac960nt - ok
13:54:11.0406 0x1e590 [ 0203B1AAD358F206CB0A3C1F93CCE17A, 1FA6D7713CA597F751CD84BD6694914273F297D5664AF9BE70875C3321C6C740 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
13:54:11.0437 0x1e590 DcomLaunch - ok
13:54:11.0484 0x1e590 [ 318F535DC05551D96DEEB90B6D6904DE, 77856DFB059C1BD6D6B91120A66F0BDE960D78B135EB9DA2D704B73229A9779A ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
13:54:11.0515 0x1e590 Dhcp - ok
13:54:11.0531 0x1e590 [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
13:54:11.0546 0x1e590 Disk - ok
13:54:11.0546 0x1e590 dmadmin - ok
13:54:11.0640 0x1e590 [ F5DEADD42335FB33EDCA74ECB2F36CBA, CCCCC041EFE49AEDE02A4EF05282EC3D2417D4B95511F8C5FB455A10AB9E9D78 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
13:54:11.0765 0x1e590 dmboot - ok
13:54:11.0812 0x1e590 [ 5A7C47C9B3F9FB92A66410A7509F0C71, 484612038BF8CF868D6EEBDA4EB0AB56EE317E78A33C9C1C0E8EA19D97F206E4 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
13:54:11.0843 0x1e590 dmio - ok
13:54:11.0875 0x1e590 [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload C:\WINDOWS\system32\drivers\dmload.sys
13:54:11.0890 0x1e590 dmload - ok
13:54:11.0921 0x1e590 [ 6797C23D6B79935482D7F0E8CA5E5B67, 3DBFD7A5261D2838453E85D20CBD1C599E9EB1AD5889AF9DBD51CC9E59230F2F ] dmserver C:\WINDOWS\System32\dmserver.dll
13:54:11.0937 0x1e590 dmserver - ok
13:54:11.0953 0x1e590 [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
13:54:11.0968 0x1e590 DMusic - ok
13:54:12.0000 0x1e590 [ 1A1E59377FB6CACD711CC5073C4A7D79, B586A60EB61D10E7503B8C02E4C19B8061AE731B281983D5455A8D4310DB1838 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
13:54:12.0015 0x1e590 Dnscache - ok
13:54:12.0078 0x1e590 [ 3FCF86F03D0302443C21CE6E5BBF7A25, C5F714B05BEF187804DD72910096870C613E6513CD876FAABA60F1E13F1A42A6 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
13:54:12.0093 0x1e590 Dot3svc - ok
13:54:12.0109 0x1e590 dpti2o - ok
13:54:12.0125 0x1e590 [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
13:54:12.0125 0x1e590 drmkaud - ok
13:54:12.0171 0x1e590 [ 555E54AC2F601A8821CEF58961653991, C094E4BE6903D73C45BEEA21B8E0B65FB94178FF99927640C2C2792F46D543A0 ] dtsoftbus01 C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys
13:54:12.0187 0x1e590 dtsoftbus01 - ok
13:54:12.0203 0x1e590 EagleXNt - ok
13:54:12.0234 0x1e590 [ 8B5FC9087D2CAB110BC2ED5CC5E7B8AC, 7C1A295C283D98D25309CB78817A53ADC5509DCA75A3F390F286CA35F2F74A4F ] EapHost C:\WINDOWS\System32\eapsvc.dll
13:54:12.0265 0x1e590 EapHost - ok
13:54:12.0296 0x1e590 [ 94F948CB12C4D35483F1E815DEB16C7B, 87FC37F604FC27B8370B4383394559E249D9CFCF723D04533A78DC014C0361FB ] ERSvc C:\WINDOWS\System32\ersvc.dll
13:54:12.0312 0x1e590 ERSvc - ok
13:54:12.0359 0x1e590 [ 49A36D4A3D0F70DD0B1C287A2C16DCA9, BCDCA966A2DFF6B92ABA1423D6B2D6EEAC9DA998F5F759033F853E6CCD6233AE ] EUCR C:\WINDOWS\system32\DRIVERS\EUCR6SK.SYS
13:54:12.0375 0x1e590 EUCR - ok
13:54:12.0421 0x1e590 [ C3FB1D70CB88722267949694BA51759E, 8CD60F76A91502A718E5371D4E94BF21ECA59F50307C783C27E316891504172D ] Eventlog C:\WINDOWS\system32\services.exe
13:54:12.0437 0x1e590 Eventlog - ok
13:54:12.0500 0x1e590 [ EC16AE9B37EACF871629227A3F3913FD, 522EB80A04ED2B42BC74509D796CC81B9279C862075B3FB9E6FC6A9BA9B2DF4A ] EventSystem C:\WINDOWS\system32\es.dll
13:54:12.0531 0x1e590 EventSystem - ok
13:54:12.0593 0x1e590 [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
13:54:12.0625 0x1e590 Fastfat - ok
13:54:12.0671 0x1e590 [ 1B8542F338CDD86929A084A455837158, 91259E37DA2F8B0170E48D7880CF1B67B42B1486609417806E9D503899E1DEFA ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
13:54:12.0703 0x1e590 FastUserSwitchingCompatibility - ok
13:54:12.0718 0x1e590 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
13:54:12.0734 0x1e590 Fdc - ok
13:54:12.0750 0x1e590 [ 31F923EB2170FC172C81ABDA0045D18C, 6201C05443ABCF4F16F1AA76B0C10C4A796C839DAA7BFEA903E2FBECD43ABD3D ] Fips C:\WINDOWS\system32\drivers\Fips.sys
13:54:12.0765 0x1e590 Fips - ok
13:54:12.0796 0x1e590 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
13:54:12.0812 0x1e590 Flpydisk - ok
13:54:12.0859 0x1e590 [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
13:54:12.0890 0x1e590 FltMgr - ok
13:54:12.0937 0x1e590 [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
13:54:12.0968 0x1e590 FontCache3.0.0.0 - ok
13:54:13.0000 0x1e590 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
13:54:13.0015 0x1e590 Fs_Rec - ok
13:54:13.0031 0x1e590 [ A86859B77B908C18C2657F284AA29FE3, EB571928AC961B143A5A8D2DC95BFCFDC1DF35A9098401944F299DB98209E543 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
13:54:13.0078 0x1e590 Ftdisk - ok
13:54:13.0125 0x1e590 [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
13:54:13.0140 0x1e590 Gpc - ok
13:54:13.0156 0x1e590 [ 573C7D0A32852B48F3058CFD8026F511, BC384BBA394AFDCDA1A9ABC858C692AA84A1F0A31AF3DDF7F38D120C027927FB ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
13:54:13.0171 0x1e590 HDAudBus - ok
13:54:13.0234 0x1e590 [ 1247F83B705AF0E796330442F7967CF8, 3BD60DCD92AE83947BD8E2EE6A6B1AF9B5B32BFAAE25BB7C6529ECA11B0E99CF ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
13:54:13.0250 0x1e590 helpsvc - ok
13:54:13.0265 0x1e590 HidServ - ok
13:54:13.0312 0x1e590 [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
13:54:13.0328 0x1e590 HidUsb - ok
13:54:13.0359 0x1e590 [ 17B3C3D40CDBA40C2E331D28BE4DE27F, 5B42F04392EDF09F03BACE8A254D8AC20E24C0327615E92E5A2027E2809AC19F ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
13:54:13.0390 0x1e590 hkmsvc - ok
13:54:13.0406 0x1e590 hpn - ok
13:54:13.0453 0x1e590 [ F80A415EF82CD06FFAF0D971528EAD38, 524D9E9201572929522F6805011783711B7C0F76308B924C89CF75F4B7A1FDF3 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
13:54:13.0468 0x1e590 HTTP - ok
13:54:13.0500 0x1e590 [ BD31CFACE38D1800ABDB43F4260AF0D5, 244C853FCB6701CF1DB1496DDE8674C997FC8BE45EA0732332B3109F9886E0D0 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
13:54:13.0515 0x1e590 HTTPFilter - ok
13:54:13.0515 0x1e590 i2omgmt - ok
13:54:13.0531 0x1e590 i2omp - ok
13:54:13.0562 0x1e590 [ A09BDC4ED10E3B2E0EC27BB94AF32516, E6542BCAE854B23F76A476F529D12CCCA3B4681C56CFAE35D22736C257BF85FE ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
13:54:13.0578 0x1e590 i8042prt - ok
13:54:14.0109 0x1e590 [ 1832E58852AD2AC231ABC02C1DDB1309, DB94535BCEBA0695F8BC95E3C7904A852E4737D85D4D634352496788CDB68359 ] ialm C:\WINDOWS\system32\DRIVERS\igxpmp32.sys
13:54:14.0656 0x1e590 ialm - ok
13:54:14.0781 0x1e590 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
13:54:14.0828 0x1e590 IDriverT - ok
13:54:14.0921 0x1e590 [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:54:15.0046 0x1e590 idsvc - ok
13:54:15.0062 0x1e590 igfx - ok
13:54:15.0109 0x1e590 [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
13:54:15.0125 0x1e590 Imapi - ok
13:54:15.0171 0x1e590 [ C4221678BBAA55239C23632875759961, 1229CF35731FDBB67974BCE9BDD09B9FC1B79D2A35DCE9CEF8AB3B17D714D97D ] ImapiService C:\WINDOWS\system32\imapi.exe
13:54:15.0203 0x1e590 ImapiService - ok
13:54:15.0218 0x1e590 ini910u - ok
13:54:15.0656 0x1e590 [ F574D00AB0319D8AB38FFF0739C8659B, AABCDC33CCCE699E38D7F191E69086BEF5EDB5BD226ECB1D111FCDA55ED05B4E ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
13:54:16.0000 0x1e590 IntcAzAudAddService - ok
13:54:16.0015 0x1e590 IntelIde - ok
13:54:16.0093 0x1e590 [ AD340800C35A42D4DE1641A37FEEA34C, 646EF8143C38D8CE937DD83FBFB3099B583F242B53B3DF85CFA20DE09263C7CC ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
13:54:16.0093 0x1e590 intelppm - ok
13:54:16.0125 0x1e590 [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
13:54:16.0140 0x1e590 Ip6Fw - ok
13:54:16.0156 0x1e590 [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
13:54:16.0171 0x1e590 IpInIp - ok
13:54:16.0203 0x1e590 [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
13:54:16.0218 0x1e590 IpNat - ok
13:54:16.0234 0x1e590 [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
13:54:16.0265 0x1e590 IPSec - ok
13:54:16.0296 0x1e590 [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
13:54:16.0296 0x1e590 IRENUM - ok
13:54:16.0328 0x1e590 [ 355836975A67B6554BCA60328CD6CB74, 3B9A6E9F40A025D393B7F7226716909087D495B4B0E8472BB857F14D489D479D ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
13:54:16.0343 0x1e590 isapnp - ok
13:54:16.0453 0x1e590 [ A5937B2A94424CF1B13A4AD503AF6B2E, E96CE4E526E053FB410987BD444627BC7B26FCE48DC0A61916ADD0A69EFA6941 ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
13:54:16.0500 0x1e590 JavaQuickStarterService - ok
13:54:16.0515 0x1e590 [ 16813155807C6881F4BFBF6657424659, 5C0A3630E29B7FB9C1A8E9F06AD91A152CB189B0A4CBB2BA2557D937CA4B0AD6 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
13:54:16.0531 0x1e590 Kbdclass - ok
13:54:16.0562 0x1e590 [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
13:54:16.0609 0x1e590 kmixer - ok
13:54:16.0656 0x1e590 [ B467646C54CC746128904E1654C750C1, 3BD71BE3663EA23463D236D8A2A2E42DFA10C502BDB4B6E131FAF0FBA748219E ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
13:54:16.0687 0x1e590 KSecDD - ok
13:54:16.0718 0x1e590 [ CD914F1286A0E656DCCFE5AF90DA4E9F, AEC0C3091608A99E7DB2580070F9DF0439FD00BAEEF0F22651D56253D6FBBF49 ] L1c C:\WINDOWS\system32\DRIVERS\l1c51x86.sys
13:54:16.0718 0x1e590 L1c - ok
13:54:16.0765 0x1e590 [ 1DB8078A32E03AC8F5EB5E6DCAC2AA34, F795899595D4217322E9945ACCC99CA0DD2D6009354A4198092D706627EA2A1D ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
13:54:16.0796 0x1e590 lanmanserver - ok
13:54:16.0843 0x1e590 [ AD54EAD46D92F413BE189AABC1C59490, B73605718E40D5EA9323AD1DDEF4EC5827D3C71105FF8EA07E725DB1BD30678F ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
13:54:16.0875 0x1e590 lanmanworkstation - ok
13:54:16.0875 0x1e590 lbrtfdc - ok
13:54:16.0921 0x1e590 [ 0F357C079AC529A844AB5B18E4EEF881, D1CF1AB2ABEA672AC1607608390A57C177EC0B9586115CA6A0CD919C7BC86E65 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
13:54:16.0937 0x1e590 LmHosts - ok
13:54:16.0968 0x1e590 [ F0435FE3C1EC2659D2BBF073CA0752EE, BFC17ABFEF83316E2BE2FC6CBFEB5E143281AA588C5F071D96122AD67701717B ] massfilter C:\WINDOWS\system32\drivers\massfilter.sys
13:54:16.0968 0x1e590 massfilter - ok
13:54:17.0000 0x1e590 [ E67A66A3781C1A483F0F8992664CBE0D, 9C90AB5CCB677E7E81C42A03526547F2ED29B009E0832E87EAC10E814F55FAB6 ] Messenger C:\WINDOWS\System32\msgsvc.dll
13:54:17.0015 0x1e590 Messenger - ok
13:54:17.0046 0x1e590 [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
13:54:17.0046 0x1e590 mnmdd - ok
13:54:17.0093 0x1e590 [ D3A2870CD96CDA7BCFF3DC54F64087AD, FF649A85E4EB9651D3B08C6B5B3EDD40569F22FD322A891E86345157DB053D3F ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
13:54:17.0109 0x1e590 mnmsrvc - ok
13:54:17.0140 0x1e590 [ 510ADE9327FE84C10254E1902697E25F, 2CDCE41F52BF4FC73C7689C371C401C2306FF128E8881C1B5CAAB3F8019F839A ] Modem C:\WINDOWS\system32\drivers\Modem.sys
13:54:17.0171 0x1e590 Modem - ok
13:54:17.0312 0x1e590 [ C7D9F9717916B34C1B00DD4834AF485C, A9512A03E8142C83534189963F90ADA6FA425BD606928C40C3D724177105A658 ] Monfilt C:\WINDOWS\system32\drivers\Monfilt.sys
13:54:17.0531 0x1e590 Monfilt - ok
13:54:17.0562 0x1e590 [ 027C01BD7EF3349AAEBC883D8A799EFB, 33EF2BF037B650C6EFC271EABAB241AF76B6826DA30B5FA158CC1B8E12DD52DE ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
13:54:17.0578 0x1e590 Mouclass - ok
13:54:17.0609 0x1e590 [ 124D6846040C79B9C997F78EF4B2A4E5, 2C0FA3B5F57D757CB4487F523CAB944E470256685F1C4AF4F06D0D27B67D5BEB ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
13:54:17.0609 0x1e590 mouhid - ok
13:54:17.0640 0x1e590 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
13:54:17.0656 0x1e590 MountMgr - ok
13:54:17.0718 0x1e590 [ 26EA1DAD601EE3ACAC301D66F07BA219, C9594BB15D53D4AC2156CCCD2DB65B2C20620F1F60DA85F48D1586FC10028096 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
13:54:17.0765 0x1e590 MozillaMaintenance - ok
13:54:17.0765 0x1e590 mraid35x - ok
13:54:17.0796 0x1e590 [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
13:54:17.0859 0x1e590 MRxDAV - ok
13:54:17.0906 0x1e590 [ 0EA4D8ED179B75F8AFA7998BA22285CA, CAE7820899B53AB6D2652A23E837113420BE49315DA3132349683D7A93474AF9 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
13:54:18.0015 0x1e590 MRxSmb - ok
13:54:18.0046 0x1e590 [ 8648D670AE0D95C95E7BBB5B80661796, 9CECF01E6D4A223E19676DC6C63A6396076FAFAC3502DB236096B04D8E38F0E5 ] MSDTC C:\WINDOWS\system32\msdtc.exe
13:54:18.0062 0x1e590 MSDTC - ok
13:54:18.0093 0x1e590 [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
13:54:18.0109 0x1e590 Msfs - ok
13:54:18.0109 0x1e590 MSIServer - ok
13:54:18.0140 0x1e590 [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
13:54:18.0156 0x1e590 MSKSSRV - ok
13:54:18.0171 0x1e590 [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
13:54:18.0171 0x1e590 MSPCLOCK - ok
13:54:18.0203 0x1e590 [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
13:54:18.0218 0x1e590 MSPQM - ok
13:54:18.0250 0x1e590 [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
13:54:18.0250 0x1e590 mssmbios - ok
13:54:18.0281 0x1e590 [ E53736A9E30C45FA9E7B5EAC55056D1D, 38602F280BF69EBA3706AD175AFC1AEB561A8302B4B61E3FECB3C27D7A9BDB41 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
13:54:18.0296 0x1e590 MSTEE - ok
13:54:18.0328 0x1e590 [ 2F625D11385B1A94360BFC70AAEFDEE1, 23E4974120233CF1A7BEE48977706A0A55418699379D1450502ABEB24191AC80 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
13:54:18.0375 0x1e590 Mup - ok
13:54:18.0390 0x1e590 [ 5B50F1B2A2ED47D560577B221DA734DB, C16A554B6E1A7F5F98C94DFA88163E0F7426506BF2F51FD351B1A05FC0DB3BC5 ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
13:54:18.0421 0x1e590 NABTSFEC - ok
13:54:18.0484 0x1e590 [ 69E4FBBABAEEE1BFF422E091DA3171DA, DEA178FF8245C41B603C20069846D928381825DF7F29FE12899C0B68FBBE1A2C ] napagent C:\WINDOWS\System32\qagentrt.dll
13:54:18.0546 0x1e590 napagent - ok
13:54:18.0593 0x1e590 [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
13:54:18.0656 0x1e590 NDIS - ok
13:54:18.0671 0x1e590 [ 7FF1F1FD8609C149AA432F95A8163D97, 18CD1FF5AC1EF8A38D1EC53014F2BADD28D9CDF4ECE2EBC2313D08903776F323 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
13:54:18.0687 0x1e590 NdisIP - ok
13:54:18.0703 0x1e590 [ 1AB3D00C991AB086E69DB84B6C0ED78F, 1F881FCCF5557C44C078D99CA2DD38D635413D6212DBEDC06A428EDAC7F8B04E ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
13:54:18.0718 0x1e590 NdisTapi - ok
13:54:18.0734 0x1e590 [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
13:54:18.0734 0x1e590 Ndisuio - ok
13:54:18.0781 0x1e590 [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
13:54:18.0812 0x1e590 NdisWan - ok
13:54:18.0828 0x1e590 [ 9282BD12DFB069D3889EB3FCC1000A9B, 09A46F1712BD9165068D8E153585FE3E6E5CBF4F1DDEC142115555D3A91AEC09 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
13:54:18.0843 0x1e590 NDProxy - ok
13:54:18.0875 0x1e590 [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
13:54:18.0875 0x1e590 NetBIOS - ok
13:54:18.0906 0x1e590 [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
13:54:18.0984 0x1e590 NetBT - ok
13:54:19.0031 0x1e590 [ 5C9B1D83755B36237B70F95DF3D46A52, D69F971102C6FBCC0BA2A043D31BBEAD6ADFC606A3E402436EF1A24240D0543A ] NetDDE C:\WINDOWS\system32\netdde.exe
13:54:19.0062 0x1e590 NetDDE - ok
13:54:19.0078 0x1e590 [ 5C9B1D83755B36237B70F95DF3D46A52, D69F971102C6FBCC0BA2A043D31BBEAD6ADFC606A3E402436EF1A24240D0543A ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
13:54:19.0093 0x1e590 NetDDEdsdm - ok
13:54:19.0125 0x1e590 [ 91E6024D6D4DCDECDB36C43ECF9BBECB, D288C5CD69B8E4612B689FB33B9CCD5594634D14C14D53A842DB742264A64D6B ] Netlogon C:\WINDOWS\system32\lsass.exe
13:54:19.0140 0x1e590 Netlogon - ok
13:54:19.0171 0x1e590 [ BE0CB143FA427D93440DED18DB8C918B, 9522756F22E37A2AAF443F486F7BB34C05A0788D213092C09A49EE44C47D79CA ] Netman C:\WINDOWS\System32\netman.dll
13:54:19.0218 0x1e590 Netman - ok
13:54:19.0265 0x1e590 [ D34612C5D02D026535B3095D620626AE, 1BBCCCBF49EB8807240A77DCB43C25C21682073CC5356594E2C4F53EF36BF657 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
13:54:19.0328 0x1e590 NetTcpPortSharing - ok
13:54:19.0359 0x1e590 [ 6F5F546A92C7B6AE45DB1D6910781EB0, DB7BB1E58DCE13F23DD6DA4A56FC55306389A8CE30D68C57B6C92796601CF337 ] Nla C:\WINDOWS\System32\mswsock.dll
13:54:19.0390 0x1e590 Nla - ok
13:54:19.0421 0x1e590 [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
13:54:19.0437 0x1e590 Npfs - ok
13:54:19.0515 0x1e590 [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
13:54:19.0625 0x1e590 Ntfs - ok
13:54:19.0640 0x1e590 [ 91E6024D6D4DCDECDB36C43ECF9BBECB, D288C5CD69B8E4612B689FB33B9CCD5594634D14C14D53A842DB742264A64D6B ] NtLmSsp C:\WINDOWS\system32\lsass.exe
13:54:19.0640 0x1e590 NtLmSsp - ok
13:54:19.0703 0x1e590 [ 037D92B3A7853A183FCAB77FB1D13D6C, 941CAD5CFB1EFFBD997A5694E281E8D63D007FC39907A1840FA966BDF77975A9 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
13:54:19.0796 0x1e590 NtmsSvc - ok
13:54:19.0812 0x1e590 [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null C:\WINDOWS\system32\drivers\Null.sys
13:54:19.0812 0x1e590 Null - ok
13:54:19.0843 0x1e590 [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
13:54:19.0843 0x1e590 NwlnkFlt - ok
13:54:19.0875 0x1e590 [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
13:54:19.0890 0x1e590 NwlnkFwd - ok
13:54:20.0000 0x1e590 [ 84DE1DD996B48B05ACE31AD015FA108A, 4B9D1E4EF83ECED6C77F23D9879C124534F7053D7423E3A2D0F67A4A720CEA94 ] odserv C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE
13:54:20.0093 0x1e590 odserv - ok
13:54:20.0171 0x1e590 [ DA345DE3B450E9E1691E7B9956D8FFC3, 23115188E82F7D2681D697D306F64B3CC4AF43F0AFDFAB73E1BB570115B9D84E ] OMSI download service C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
13:54:20.0203 0x1e590 OMSI download service - ok
13:54:20.0234 0x1e590 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE
13:54:20.0281 0x1e590 ose - ok
13:54:20.0328 0x1e590 [ 8FD0BDBEA875D06CCF6C945CA9ABAF75, 54964CD4C15B7EC4A037AA5E1200BD5C0B23B44EF12BABDA53D491AA23BA1FE6 ] Parport C:\WINDOWS\system32\drivers\Parport.sys
13:54:20.0359 0x1e590 Parport - ok
13:54:20.0375 0x1e590 [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
13:54:20.0390 0x1e590 PartMgr - ok
13:54:20.0421 0x1e590 [ 9575C5630DB8FB804649A6959737154C, B73094C0043CC5CB97D7DF1243D30DF3E41C453F0721C7265F20B735AEF8E723 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
13:54:20.0421 0x1e590 ParVdm - ok
13:54:20.0437 0x1e590 [ 043410877BDA580C528F45165F7125BC, 80B6997166866529F562135D333BA4787EBE466173C82958B28FAF9AD654090C ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
13:54:20.0468 0x1e590 PCI - ok
13:54:20.0468 0x1e590 PCIDump - ok
13:54:20.0500 0x1e590 [ F4BFDE7209C14A07AAA61E4D6AE69EAC, B67D87F22169572AD41884080FA9CBD5BABC248F40B71EA7297E516576982DD3 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
13:54:20.0515 0x1e590 PCIIde - ok
13:54:20.0546 0x1e590 [ F0406CBC60BDB0394A0E17FFB04CDD3D, 8167B46B5DD39E6CB1D49C64D9E88AD2A9C46D6C57B3A3A3F41B3BE18A4706CE ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
13:54:20.0578 0x1e590 Pcmcia - ok
13:54:20.0593 0x1e590 PDCOMP - ok
13:54:20.0609 0x1e590 PDFRAME - ok
13:54:20.0609 0x1e590 PDRELI - ok
13:54:20.0625 0x1e590 PDRFRAME - ok
13:54:20.0625 0x1e590 perc2 - ok
13:54:20.0640 0x1e590 perc2hib - ok
13:54:20.0750 0x1e590 [ C3FB1D70CB88722267949694BA51759E, 8CD60F76A91502A718E5371D4E94BF21ECA59F50307C783C27E316891504172D ] PlugPlay C:\WINDOWS\system32\services.exe
13:54:20.0750 0x1e590 PlugPlay - ok
13:54:20.0796 0x1e590 [ D31F88C5F19EEFA366A415D6BC5F2ABC, ED998680048286454B92AF0E5917B2BC79A3ADA2632A1DB21D478B0597167F5C ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
13:54:20.0828 0x1e590 Pml Driver HPZ12 - ok
13:54:20.0843 0x1e590 [ 91E6024D6D4DCDECDB36C43ECF9BBECB, D288C5CD69B8E4612B689FB33B9CCD5594634D14C14D53A842DB742264A64D6B ] PolicyAgent C:\WINDOWS\system32\lsass.exe
13:54:20.0843 0x1e590 PolicyAgent - ok
13:54:20.0890 0x1e590 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
13:54:20.0906 0x1e590 PptpMiniport - ok
13:54:20.0921 0x1e590 [ 91E6024D6D4DCDECDB36C43ECF9BBECB, D288C5CD69B8E4612B689FB33B9CCD5594634D14C14D53A842DB742264A64D6B ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
13:54:20.0921 0x1e590 ProtectedStorage - ok
13:54:20.0937 0x1e590 [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
13:54:20.0953 0x1e590 PSched - ok
13:54:20.0984 0x1e590 [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
13:54:21.0000 0x1e590 Ptilink - ok
13:54:21.0046 0x1e590 [ E42E3433DBB4CFFE8FDD91EAB29AEA8E, 20ABD8372B242FD356AC143E7EB56F93CFEA4988ED1B0C4434CB64C387D7F66C ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
13:54:21.0062 0x1e590 PxHelp20 - ok
13:54:21.0078 0x1e590 ql1080 - ok
13:54:21.0093 0x1e590 Ql10wnt - ok
13:54:21.0093 0x1e590 ql12160 - ok
13:54:21.0109 0x1e590 ql1240 - ok
13:54:21.0109 0x1e590 ql1280 - ok
13:54:21.0140 0x1e590 [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
13:54:21.0156 0x1e590 RasAcd - ok
13:54:21.0187 0x1e590 [ 78DA9CCDAC683EF5AA87D1C919F6D221, C564185A684BAB97FBA7320273764DB8961B18D5AD5F1D6B741A6C385FC8717B ] RasAuto C:\WINDOWS\System32\rasauto.dll
13:54:21.0234 0x1e590 RasAuto - ok
13:54:21.0250 0x1e590 [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
13:54:21.0281 0x1e590 Rasl2tp - ok
13:54:21.0328 0x1e590 [ 0A48DF90B4784F9B90A2671AF992C914, CA3696C6688F97D55E5302E5D3040899081FF48E41DF2138B48F405DDDE8AEA0 ] RasMan C:\WINDOWS\System32\rasmans.dll
13:54:21.0375 0x1e590 RasMan - ok
13:54:21.0390 0x1e590 [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
13:54:21.0406 0x1e590 RasPppoe - ok
13:54:21.0421 0x1e590 [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
13:54:21.0437 0x1e590 Raspti - ok
13:54:21.0468 0x1e590 [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
13:54:21.0515 0x1e590 Rdbss - ok
13:54:21.0531 0x1e590 [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
13:54:21.0531 0x1e590 RDPCDD - ok
13:54:21.0562 0x1e590 [ 15CABD0F7C00C47C70124907916AF3F1, 66B5C978B7FB6359AD8BAC9F568FE9D469E358FEAB07B1F129BA9E85F1DF723E ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
13:54:21.0609 0x1e590 rdpdr - ok
13:54:21.0656 0x1e590 [ 6728E45B66F93C08F11DE2E316FC70DD, EA63ECD4F84CAE08BD2BF843C48AF505B1B9D7B61349A63536C9C6FEBEF23452 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
13:54:21.0703 0x1e590 RDPWD - ok
13:54:21.0750 0x1e590 [ 9F63D9C5B238ED1C375D417EFF3D5BE7, 168BEA4CDE9A1C6A10998B4217626525C3C3F248956B946F1A2D51E807B0FEE4 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
13:54:21.0796 0x1e590 RDSessMgr - ok
13:54:21.0828 0x1e590 [ C1AD738D9734C33F3813712FE7FBF262, 0009D33B2991F34DA95D164CCBFC27A8127B0163D24BB239E096FE8B78FBC38E ] RDUMMY C:\WINDOWS\system32\drivers\RDUMMY.sys
13:54:21.0843 0x1e590 RDUMMY - ok
13:54:21.0859 0x1e590 [ D8EB2A7904DB6C916EB5361878DDCBAE, 3C6B04E18D5CE52777E349EFC213B8A570281F3192C491CCB6FA0593CC33B2A4 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
13:54:21.0875 0x1e590 redbook - ok
13:54:21.0906 0x1e590 [ 7DA370C31673C99497BD07068EE6E354, 159B25D0C4AF6C55658364B8DF74ADAE4DECA1B19D1F27D878C607AE29E47CB1 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
13:54:21.0937 0x1e590 RemoteAccess - ok
13:54:21.0968 0x1e590 [ E598D81197E2E0EC42A0C55772BB00E8, 18218A7B6D4BDE2AFE78C000F02252D5D661929E8CBFB014CAA79762E33CC489 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
13:54:22.0000 0x1e590 RemoteRegistry - ok
13:54:22.0031 0x1e590 [ 499C59A2584F6D4EA41E944DA571D993, 45291CBDCCA2B6217C442B788BDEB2202A11C9A51D08AA867F44008471A9C759 ] RpcLocator C:\WINDOWS\system32\locator.exe
13:54:22.0062 0x1e590 RpcLocator - ok
13:54:22.0109 0x1e590 [ 0203B1AAD358F206CB0A3C1F93CCE17A, 1FA6D7713CA597F751CD84BD6694914273F297D5664AF9BE70875C3321C6C740 ] RpcSs C:\WINDOWS\system32\rpcss.dll
13:54:22.0125 0x1e590 RpcSs - ok
13:54:22.0171 0x1e590 [ 414964844F4793ACB868D057E8ED997E, 843E0C7761AC001BF1169251167B08DA24E227F041F80586F2A54197A166FD13 ] RSVP C:\WINDOWS\system32\rsvp.exe
13:54:22.0218 0x1e590 RSVP - ok
13:54:22.0265 0x1e590 [ 20EB79FD0A13A18B70B6731A1285CA94, E316812891A2B6160499910C1AF3F3BEF9D59D0D983A5F5FD520F128369CE7A6 ] s1039bus C:\WINDOWS\system32\DRIVERS\s1039bus.sys
13:54:22.0281 0x1e590 s1039bus - ok
13:54:22.0296 0x1e590 [ 58780C6C3AD51DA84B57D6AE42DC49CA, 4CBCE9A5DD7FB6519F28F32F645CBE1C4228C4D6217FB198EF6C4017BF316BCA ] s1039mdfl C:\WINDOWS\system32\DRIVERS\s1039mdfl.sys
13:54:22.0312 0x1e590 s1039mdfl - ok
13:54:22.0343 0x1e590 [ 1FF8B42D1346133A945B52876376ED40, 0197A29F58A404C12CD6A332BBE4CAC1B48A45240FD0925876C9AF5DB759FD0D ] s1039mdm C:\WINDOWS\system32\DRIVERS\s1039mdm.sys
13:54:22.0375 0x1e590 s1039mdm - ok
13:54:22.0406 0x1e590 [ F64C13C549CB4732FE99C771FA35D038, FDA5D60B4185032A7FABC0AEB36204696860F459B8254E2950A27B6F8CA8A5FF ] s1039mgmt C:\WINDOWS\system32\DRIVERS\s1039mgmt.sys
13:54:22.0437 0x1e590 s1039mgmt - ok
13:54:22.0453 0x1e590 [ EC22D9BAA464A892C0637982B67292E6, 0D1BBA75A9E910982333C96520A353F399ACDEB1032F8A21A4ED7C62611F61DE ] s1039nd5 C:\WINDOWS\system32\DRIVERS\s1039nd5.sys
13:54:22.0468 0x1e590 s1039nd5 - ok
13:54:22.0500 0x1e590 [ 69E9CE002E7249E61FF2EA1336C71D89, 8F0283BBBB262530FB07DC8B2E86809E3C0301F984271B7818A1A8721FC24281 ] s1039obex C:\WINDOWS\system32\DRIVERS\s1039obex.sys
13:54:22.0531 0x1e590 s1039obex - ok
13:54:22.0562 0x1e590 [ 482DFB3721A0DE11CC22B439D17C348C, 07853051DE6B57459974922CA1AE4EE0430304F6F98D2A179ED6B1EECCB26819 ] s1039unic C:\WINDOWS\system32\DRIVERS\s1039unic.sys
13:54:22.0609 0x1e590 s1039unic - ok
13:54:22.0625 0x1e590 [ 91E6024D6D4DCDECDB36C43ECF9BBECB, D288C5CD69B8E4612B689FB33B9CCD5594634D14C14D53A842DB742264A64D6B ] SamSs C:\WINDOWS\system32\lsass.exe
13:54:22.0625 0x1e590 SamSs - ok
13:54:22.0671 0x1e590 [ 67949CC8A865296C1333C96A4E1A2D66, 89BD385E3D6634557AE76D427A791A0D9DC4E3DD7DBE923A0A031F124BBC0ED6 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
13:54:22.0687 0x1e590 SCardSvr - ok
13:54:22.0734 0x1e590 [ 55F5C5C1BE1A78E285033E432BA01597, 6844EE76BF36FD88C61F7B312BB53C4C8F5BF328985E9D629CFF4D526C404DD3 ] Schedule C:\WINDOWS\system32\schedsvc.dll
13:54:22.0781 0x1e590 Schedule - ok
13:54:22.0812 0x1e590 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
13:54:22.0828 0x1e590 Secdrv - ok
13:54:22.0859 0x1e590 [ 5AC311C0AF2AF5EC221670BB8DC479D3, C064CDDE7EAD4D387A7A78BF8AF6B47F1D028D5E57D1BAE3E74D4826B4C38F56 ] seclogon C:\WINDOWS\System32\seclogon.dll
13:54:22.0875 0x1e590 seclogon - ok
13:54:22.0890 0x1e590 [ 3531366F38F453D08FE72E7B32DFE786, F040CE3C2D3E8A67D72DBD7A1BB0AB10576944CBAD930B24A5DA00225365EEFB ] SENS C:\WINDOWS\system32\sens.dll
13:54:22.0921 0x1e590 SENS - ok
13:54:22.0937 0x1e590 [ 93D313C31F7AD9EA2B75F26075413C7C, 7CBC2C8852D671100AE2EB6F09C416D30C2E65F5FF5D777E4AC133E4F7ACBA7B ] Serial C:\WINDOWS\system32\drivers\Serial.sys
13:54:22.0968 0x1e590 Serial - ok
13:54:23.0000 0x1e590 [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
13:54:23.0015 0x1e590 Sfloppy - ok
13:54:23.0062 0x1e590 [ F4CE708A7D17A625DE6C0FD746D50E88, 9531A52B5049C9993930704BAAE2A15376274CAC4E98EBF6EA4C8AE3663957CD ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
13:54:23.0093 0x1e590 SharedAccess - ok
13:54:23.0125 0x1e590 [ 1B8542F338CDD86929A084A455837158, 91259E37DA2F8B0170E48D7880CF1B67B42B1486609417806E9D503899E1DEFA ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
13:54:23.0125 0x1e590 ShellHWDetection - ok
13:54:23.0140 0x1e590 Simbad - ok
13:54:23.0171 0x1e590 [ 866D538EBE33709A5C9F5C62B73B7D14, BC94BEB7C17B4FCAC8B5D0D5006A203BC209E0504EECE149651D8691935696CD ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
13:54:23.0171 0x1e590 SLIP - ok
13:54:23.0359 0x1e590 [ C792610F7D2009352721C1AE38DA0619, 6391F31D49BE300E19340BC110BAA17CF3EE1FCAF96F845E4B49779331033B9E ] SNP2UVC C:\WINDOWS\system32\DRIVERS\snp2uvc.sys
13:54:23.0562 0x1e590 SNP2UVC - ok
13:54:23.0578 0x1e590 Sparrow - ok
13:54:23.0593 0x1e590 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter C:\WINDOWS\system32\drivers\splitter.sys
13:54:23.0609 0x1e590 splitter - ok
13:54:23.0640 0x1e590 [ 60784F891563FB1B767F70117FC2428F, E0B07F08E60FFBAD36C2E58180F4B2A16DCA47716044CBE0213DF7B74D742F1F ] Spooler C:\WINDOWS\system32\spoolsv.exe
13:54:23.0671 0x1e590 Spooler - ok
13:54:23.0687 0x1e590 [ 39626E6DC1FB39434EC40C42722B660A, 4FB99976F0BFA14A176C25B47E55DA448773530018DA4C25DC237C4121DC0EFA ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
13:54:23.0718 0x1e590 sr - ok
13:54:23.0765 0x1e590 [ 6ED29124A1C83BD0CF6B26BD01CA6F6F, B88211872F43A0781EB5F12E19DEA319FEAC8C7F635774C6B59D73C16BF25B5D ] srservice C:\WINDOWS\system32\srsvc.dll
13:54:23.0796 0x1e590 srservice - ok
13:54:23.0859 0x1e590 [ 47DDFC2F003F7F9F0592C6874962A2E7, 17C643BD4EB09B5666FE41817DC785BE04A6E491CE79E8E5A702CDBD98E1BDD7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
13:54:23.0937 0x1e590 Srv - ok
13:54:23.0984 0x1e590 [ EA9E0DB8684CEF2FD3BADD671DF5A112, D822BE0278A8FF7DDD14428F6AA557EC581C2D33121777451D86920245FFC6F5 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
13:54:24.0015 0x1e590 SSDPSRV - ok
13:54:24.0031 0x1e590 [ A36EE93698802CD899F98BFD553D8185, 224CFED921EA230FF8025D259E34968FD2C0FD34BB3A918FB4B9B8BA42BEA5D3 ] ssmdrv C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
13:54:24.0046 0x1e590 ssmdrv - ok
13:54:24.0078 0x1e590 [ E57B778208C783D8DEBAB320C16A1B82, D9B0ACAF219D377E91737337466137F1AC78731659C1F0531BA3D9191DADC483 ] StarOpen C:\WINDOWS\system32\drivers\StarOpen.sys
13:54:24.0093 0x1e590 StarOpen - ok
13:54:24.0140 0x1e590 [ D76B0E8A4ECAD1ADCC75FD14A7ACC54C, 9203AD97A96794DD93F7EEF8273CC9C421CDF7941937C6DDA82C1E14F697A7E0 ] stisvc C:\WINDOWS\system32\wiaservc.dll
13:54:24.0218 0x1e590 stisvc - ok
13:54:24.0265 0x1e590 [ 77813007BA6265C4B6098187E6ED79D2, 93939120E803C46FBFD577C8FC2E6C7E71C0460E01D25CB29579490640AB50C7 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
13:54:24.0265 0x1e590 streamip - ok
13:54:24.0296 0x1e590 [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
13:54:24.0312 0x1e590 swenum - ok
13:54:24.0328 0x1e590 [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
13:54:24.0343 0x1e590 swmidi - ok
13:54:24.0343 0x1e590 SwPrv - ok
13:54:24.0359 0x1e590 symc810 - ok
13:54:24.0375 0x1e590 symc8xx - ok
13:54:24.0375 0x1e590 sym_hi - ok
13:54:24.0390 0x1e590 sym_u3 - ok
13:54:24.0406 0x1e590 [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
13:54:24.0421 0x1e590 sysaudio - ok
13:54:24.0468 0x1e590 [ 0899061318A6B1D9596AABFC77F45E44, A331BD7AC6A7542DEE6478928D756E2E5BA6F957A369F830979A76ACB5E8D612 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
13:54:24.0531 0x1e590 SysmonLog - ok
13:54:24.0640 0x1e590 [ 8E5231171AD6595FF002E848CC54FCD7, C13AF616046C31BCC514B72160A366B0FFA376851C6F76445F03A86B81769670 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
13:54:24.0687 0x1e590 TapiSrv - ok
13:54:24.0718 0x1e590 [ 4AFB3B0919649F95C1964AA1FAD27D73, 19D5F8FB1898BE1C2FC0EF7E3A57454FE20F3D714637D3C53FA69DA16DECF6E9 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
13:54:24.0765 0x1e590 Tcpip - ok
13:54:24.0812 0x1e590 [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
13:54:24.0812 0x1e590 TDPIPE - ok
13:54:24.0843 0x1e590 [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
13:54:24.0843 0x1e590 TDTCP - ok
13:54:24.0875 0x1e590 [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
13:54:24.0875 0x1e590 TermDD - ok
13:54:24.0937 0x1e590 [ 710BC85A8C22626EE094439E3EA0D38C, B48ED980DBFADDA941170F54D62D6C4B1787435CC97E45D3B2DED9B73FE8F887 ] TermService C:\WINDOWS\System32\termsrv.dll
13:54:24.0984 0x1e590 TermService - ok
13:54:25.0000 0x1e590 [ 1B8542F338CDD86929A084A455837158, 91259E37DA2F8B0170E48D7880CF1B67B42B1486609417806E9D503899E1DEFA ] Themes C:\WINDOWS\System32\shsvcs.dll
13:54:25.0015 0x1e590 Themes - ok
13:54:25.0062 0x1e590 [ D859A9D2F026CE5804485068FFD6EAF2, DAF6136B69D0F31ECD41ECDE38437DB21B9259A150026F9BC3A03B87B3956929 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
13:54:25.0078 0x1e590 TlntSvr - ok
13:54:25.0093 0x1e590 TosIde - ok
13:54:25.0125 0x1e590 [ E1A84A5067627407A53C2C4F8D8A1D2E, 23A082FEBB83F9211D63727A94499652CF03A3EE16B782EDFF3947978BC7685A ] TrkWks C:\WINDOWS\system32\trkwks.dll
13:54:25.0140 0x1e590 TrkWks - ok
13:54:25.0171 0x1e590 [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
13:54:25.0187 0x1e590 Udfs - ok
13:54:25.0203 0x1e590 ultra - ok
13:54:25.0250 0x1e590 [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
13:54:25.0328 0x1e590 Update - ok
13:54:25.0359 0x1e590 [ BD8166A495B02308F364B36249475F22, 62D71C84858CF8EC57A1A1899ABA0FC261880BA6D17B3685DD47BF560E14D11C ] upnphost C:\WINDOWS\System32\upnphost.dll
13:54:25.0406 0x1e590 upnphost - ok
13:54:25.0437 0x1e590 [ 1EDC93D7BD731B5CA6248AE245099B60, 1E2BEA04488C89BA45D54AC80DC44F7096946D325590B2BF774D86DE2CE2382C ] UPS C:\WINDOWS\System32\ups.exe
13:54:25.0453 0x1e590 UPS - ok
13:54:25.0468 0x1e590 [ 173F317CE0DB8E21322E71B7E60A27E8, 7042441BA63AE38AE9D7BE0BC5CA7404FC9EE5BB3F084604A68F01E82769652A ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
13:54:25.0484 0x1e590 usbccgp - ok
13:54:25.0515 0x1e590 [ 2825E0E294686A26506690059E1F437A, 58FA57DA9077312142237DC8ADB5371B291255E9806CE76DB09380D767BC4114 ] USBCCID C:\WINDOWS\system32\DRIVERS\usbccid.sys
13:54:25.0531 0x1e590 USBCCID - ok
13:54:25.0546 0x1e590 [ 65DCF09D0E37D4C6B11B5B0B76D470A7, 90EBA8BAF45932B453D905EDF2BDDDF3A432BFD50B9F7DF58CDEAE98D11C2E2F ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
13:54:25.0546 0x1e590 usbehci - ok
13:54:25.0578 0x1e590 [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
13:54:25.0593 0x1e590 usbhub - ok
13:54:25.0640 0x1e590 [ A717C8721046828520C9EDF31288FC00, 1530BBE832EDBB0974AD89D723A03FF7A0094B368992D73C2C3E62A181DF1E0A ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
13:54:25.0640 0x1e590 usbprint - ok
13:54:25.0671 0x1e590 [ A0B8CF9DEB1184FBDD20784A58FA75D4, D8AFD45BD9CF7B02F2554AA6085194DE82893AF794EDF479BC9B9E9C1758DC75 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
13:54:25.0687 0x1e590 usbscan - ok
13:54:25.0718 0x1e590 [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] usbstor C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
13:54:25.0718 0x1e590 usbstor - ok
13:54:25.0734 0x1e590 [ 26496F9DEE2D787FC3E61AD54821FFE6, 8BE7FF647470B9A951CBB478FAF83D657A15CC78037F42348A6B738F21D523DA ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
13:54:25.0750 0x1e590 usbuhci - ok
13:54:25.0781 0x1e590 [ 63BBFCA7F390F4C49ED4B96BFB1633E0, AEB89CF43376709CDD715D844E8CBB8F2BE24D39795F45F7C84F21962F3A52AB ] usbvideo C:\WINDOWS\system32\Drivers\usbvideo.sys
13:54:25.0812 0x1e590 usbvideo - ok
13:54:25.0828 0x1e590 [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
13:54:25.0843 0x1e590 VgaSave - ok
13:54:25.0843 0x1e590 ViaIde - ok
13:54:25.0875 0x1e590 [ 46DE1126684369BACE4849E4FC8C43CA, 7D7B9B9C38D5E07D941B06DCDA8DC1CFFB80D2DD7717209E27A6AF7A9ACC51D4 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
13:54:25.0890 0x1e590 VolSnap - ok
13:54:25.0953 0x1e590 [ 5A4DA252B2C0550AB83D129C02CF6C19, FADE9EB68A47539F647BB5733836ABE73B69C8C43EA5AE4933A43343E459DD5D ] VSS C:\WINDOWS\System32\vssvc.exe
13:54:26.0000 0x1e590 VSS - ok
13:54:26.0031 0x1e590 [ C1F726EE0B043B074A68992BC4AEF8FD, 17C1AA49903E081CEF9DC240A8F897D6C97DAE1DE2CF1FD43D05DC6D46EAAA60 ] W32Time C:\WINDOWS\system32\w32time.dll
13:54:26.0062 0x1e590 W32Time - ok
13:54:26.0078 0x1e590 [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
13:54:26.0093 0x1e590 Wanarp - ok
13:54:26.0109 0x1e590 WDICA - ok
13:54:26.0156 0x1e590 [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
13:54:26.0171 0x1e590 wdmaud - ok
13:54:26.0218 0x1e590 [ 714670E64FBE6D28D99871ED9A52A334, BDC9681A6BCF786C0AD9D999FE0AC16299D8F2486B2DF03962396942964CCCCB ] WebClient C:\WINDOWS\System32\webclnt.dll
13:54:26.0234 0x1e590 WebClient - ok
13:54:26.0312 0x1e590 [ 5E9DEAE9980FF34BCD6DDE2E9E2BF911, 1F6EACA551F4BB222A56CB450A529C001188F1DA46C9E59D9C2F12FA40B6B1E6 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
13:54:26.0328 0x1e590 winmgmt - ok
13:54:26.0375 0x1e590 [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
13:54:26.0390 0x1e590 WmdmPmSN - ok
13:54:26.0468 0x1e590 [ 31C1FD0BBDC5B81C21EDBA4331EDAE55, 75CFE10110C51F2CD3EFCE0548E487ADEE36D8D80EB7AE7D6F281F8771B4A0EB ] Wmi C:\WINDOWS\System32\advapi32.dll
13:54:26.0515 0x1e590 Wmi - ok
13:54:26.0531 0x1e590 [ C42584FD66CE9E17403AEBCA199F7BDB, E3F2E1066F36AE5D33D4482239B2E556BE0C137923C9A120DFB36EC82F2E77B0 ] WmiAcpi C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
13:54:26.0546 0x1e590 WmiAcpi - ok
13:54:26.0593 0x1e590 [ 4E8E8A58F56B25D0795F484E5EB7F898, 32F8EC10A5992185C13304AAA532C638ECB709EF9D9D883F88032BB30E3AE098 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
13:54:26.0609 0x1e590 WmiApSrv - ok
13:54:26.0640 0x1e590 [ CF4DEF1BF66F06964DC0D91844239104, CC1D9CECE2056D29A9651D51BB57C3F4F9BF9E90A4808CF7496C683C874FBD51 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys
13:54:26.0656 0x1e590 WpdUsb - ok
13:54:26.0765 0x1e590 [ DCF3E3EDF5109EE8BC02FE6E1F045795, 4B8E14B1CFB095982D34DAEC336114F5039D7793080FB787DC95A63B6B945DD0 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
13:54:26.0875 0x1e590 WPFFontCache_v0400 - ok
13:54:26.0921 0x1e590 [ 6ABE6E225ADB5A751622A9CC3BC19CE8, 4061C5D0F051DFF1730E2A3BFC1CCA97B29602FC50F10F6B44D93B0D28F42024 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
13:54:26.0937 0x1e590 WS2IFSL - ok
13:54:26.0968 0x1e590 [ C1FD85DB4A80A98D60ECB7A828E77FE0, CFDADDD4C5355C9052431BFA579B8697A3F46A211E22EA03FDDD44C0D3F0A0CB ] wscsvc C:\WINDOWS\system32\wscsvc.dll
13:54:26.0984 0x1e590 wscsvc - ok
13:54:27.0015 0x1e590 [ C98B39829C2BBD34E454150633C62C78, 71B60EA3AD0E2637917D528C6A9E7ECF2949E3E5E91036AA5BBADA95BD725511 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
13:54:27.0031 0x1e590 WSTCODEC - ok
13:54:27.0046 0x1e590 [ 75D6C5C3D2C93B1F9931E5DFB693AE2A, 793A4417D919EAC190428C3F29D387E67A62E120829463AE9FAF57D1ABCA75A7 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
13:54:27.0062 0x1e590 wuauserv - ok
13:54:27.0093 0x1e590 [ F15FEAFFFBB3644CCC80C5DA584E6311, 79B3E9AF35976CE49921E9BEA3BA3B4A8AF762FD3F284B62954038B5FFB32471 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
13:54:27.0109 0x1e590 WudfPf - ok
13:54:27.0140 0x1e590 [ 28B524262BCE6DE1F7EF9F510BA3985B, AEFF02B899801A63CBB262757C3D4369E38BFF0690BD085DE60E873DFBE3C3F4 ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
13:54:27.0171 0x1e590 WudfRd - ok
13:54:27.0203 0x1e590 [ 05231C04253C5BC30B26CBAAE680ED89, 5C03C2D7E0B573646D32F4093E2FF2C3BA391C39F5BA37D67F69D38E357FCC3D ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
13:54:27.0250 0x1e590 WudfSvc - ok
13:54:27.0343 0x1e590 [ C336E54EE0C291A02F004667DB1E66CB, 4D5486D2CA53A331E84624351474D61E9BD4744A2BDC5034B86B0AE57E59D8E4 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
13:54:27.0421 0x1e590 WZCSVC - ok
13:54:27.0453 0x1e590 [ F92A87FDDA0C11C8604FBC2B864FA726, 84FCD77D690D1D0591C1A0D452F7C8630382C02A8A0187E0A1E68AD6A6E3D575 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
13:54:27.0500 0x1e590 xmlprov - ok
13:54:27.0546 0x1e590 [ B8B466103280E45E391E876F05122607, F211C5DF93A7EE761490E9D4BC833715DD5980FED1C11995E0BAB75D3B2CBBC0 ] ZTEusbmdm6k C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys
13:54:27.0578 0x1e590 ZTEusbmdm6k - ok
13:54:27.0593 0x1e590 [ 911BA85906BC7602C73441502ABFB565, 3AE12A44D1A8C933F9F6B59A7F14A946CDAD4DA6ED356ECCDD28F872A9BF54DD ] ZTEusbnet C:\WINDOWS\system32\DRIVERS\ZTEusbnet.sys
13:54:27.0625 0x1e590 ZTEusbnet - ok
13:54:27.0656 0x1e590 [ 69774B89725DDC4781E0EEB9809F3B20, 21DA0859F0D4B4DF7B17EC99ABF5C21D78C006D8C5E48448AA8D04D98DC3A015 ] ZTEusbnmea C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys
13:54:27.0687 0x1e590 ZTEusbnmea - ok
13:54:27.0703 0x1e590 [ B8B466103280E45E391E876F05122607, F211C5DF93A7EE761490E9D4BC833715DD5980FED1C11995E0BAB75D3B2CBBC0 ] ZTEusbser6k C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys
13:54:27.0734 0x1e590 ZTEusbser6k - ok
13:54:27.0781 0x1e590 [ B8B466103280E45E391E876F05122607, F211C5DF93A7EE761490E9D4BC833715DD5980FED1C11995E0BAB75D3B2CBBC0 ] ZTEusbvoice C:\WINDOWS\system32\DRIVERS\ZTEusbvoice.sys
13:54:27.0812 0x1e590 ZTEusbvoice - ok
13:54:27.0828 0x1e590 ================ Scan global ===============================
13:54:27.0859 0x1e590 [ 61013AB2E38550619637AA6CC02383D4, BE246809E56C134901A3A4DF1EF2240ABDBFD6876A2B7094DCACB16D1B4929F8 ] C:\WINDOWS\system32\basesrv.dll
13:54:27.0937 0x1e590 [ 21FB9BA345A065068BCC783C18392CEE, BC2A3BD9F6C66AFD9442092D6DA116CECB026C28081779FAD61D88CAC45D62E5 ] C:\WINDOWS\system32\winsrv.dll
13:54:28.0015 0x1e590 [ 21FB9BA345A065068BCC783C18392CEE, BC2A3BD9F6C66AFD9442092D6DA116CECB026C28081779FAD61D88CAC45D62E5 ] C:\WINDOWS\system32\winsrv.dll
13:54:28.0046 0x1e590 [ C3FB1D70CB88722267949694BA51759E, 8CD60F76A91502A718E5371D4E94BF21ECA59F50307C783C27E316891504172D ] C:\WINDOWS\system32\services.exe
13
Messages postés
8
Date d'inscription
samedi 14 juin 2014
Statut
Membre
Dernière intervention
20 juin 2014

Rapport OTL après correction:

========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA5CA8B6-9B9C-4994-A7A1-947B6C631BE7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EA5CA8B6-9B9C-4994-A7A1-947B6C631BE7}\ deleted successfully.
C:\Program Files\RegTweaker\key.dll moved successfully.
C:\Documents and Settings\All Users\Application Data\wqhidxcspprcxfx moved successfully.
C:\Documents and Settings\All Users\Application Data\itatwuckumltecv moved successfully.
C:\Documents and Settings\Administrateur\Application Data\k7b3qhkb6xkn7u1h.dat moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\fusioncache.dat moved successfully.
C:\Documents and Settings\All Users\Application Data\18800420 moved successfully.
C:\Documents and Settings\Administrateur\Application Data\Wovee folder moved successfully.
C:\Documents and Settings\Administrateur\Application Data\Ymep folder moved successfully.
C:\Documents and Settings\Administrateur\Application Data\Iseqi folder moved successfully.

OTL by OldTimer - Version 3.2.69.0 log created on 06202014_135922
Messages postés
180267
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
23 106
il manque la fin du rapport TDSSKiller.
Tu peux le faire passer par pjjoint ?
Messages postés
8
Date d'inscription
samedi 14 juin 2014
Statut
Membre
Dernière intervention
20 juin 2014

Messages postés
180267
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
23 106
ok ça doit etre plus stable là, tu confirmes ?

Aussi il faudrait que tu changes tous tes mots de passe WEB (mail, facebook etc), ils ont été volés.
Messages postés
8
Date d'inscription
samedi 14 juin 2014
Statut
Membre
Dernière intervention
20 juin 2014

Oui, exactement, plus aucun message d'arrêt intempestif du système ne s'affiche.
D'accord, je m'occupe des mots de passe.
Vraiment, merci encore Malekal, tu me sauves!
Messages postés
180267
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
23 106
PAs de problème :)


Sécurise ton PC - surtout désactive bien java de tes navigateurs WEB !

Important - ton infection est venue par un exploit sur site web :

Un exploit sur site WEB permet l'infection de ton ordinateur de manière automatiquement à la visite d'un site WEB qui a été hacké, il tire partie du fait que tu as des logiciels (Java, Adobe Reader etc) qui sont pas à jour et possèdent des vulnérabilités qui permettent l'execution de code (malicieux dans notre cas) à ton insu.
Le fait de ne pas avoir des logiciels à jour et qui ont potentiellement des vulnérabilités permettent donc d'infecter ton système.
Exemple avec : Exploit Java

Il faut donc impérativement maintenir tes logiciels à jour afin de ne pas voir ces portes d'entrée sur ton système.
Tant que ces logiciels ne seront pas à jour, ton PC est vulnérable et les infections peuvent s'installer facilement.

IMPORTANT : mettre à jour tes programmes notamment Java/Adobe Reader et Flash :
/faq/13362-mettre-a-jour-son-pc-contre-les-failles-de-securite
https://forum.malekal.com/viewtopic.php?t=15960&start=

Désactive Java de tes navigateurs WEB : https://www.commentcamarche.net/faq/35621-desactiver-java-sur-ses-navigateurs-web


Passe le mot à tes amis !


~~

Le reste de la sécurité : http://forum.malekal.com/comment-securiser-son-ordinateur.html