Virus bizarre

falafala Messages postés 21 Statut Membre -  
lhionna Messages postés 363 Statut Membre -
Bonjour tout le monde.

J'ai l'impression d etre infecté par un virus.

Mes symptomes:
. Windows ne se lançait plus au démarrage mais c est réglé (je crois). Il disait détecter un disque de boot alors qu'il n'y avait rien dans le lecteur CD ni nulle part
. Le clavier ne répond pas toujours: certaine touches ne fonctionnent pas, parfois c est tout le clavier qui ne répond plus
. La souris déconne aussi: les boutons sont inversés parfois, ma molette a des réactions bizarres.

A un moment j'ai cru que c était le clavier qui faisait tout planter et il faut que j'en achete un autre pour tester. Mais il se trouve que toutes mes tentatives pour faire un scan en ligne (kaspersky, trendmicro, bitdefender....) ne se lancent pas (avec IE), la mise à jour ne va jamais jusqu'au bout et donc l'analyse ne commence même pas.

Ce que j'ai fait:
J'ai essayé de suivre le guide du lien suivant.

http://www.commentcamarche.net/faq/sujet 3174 virus methode preliminaire de desinfection version fr

Ccleaner c est fait.
J'ai utilisé adaware à la place de avg antispyware.
Mais impossible de lancer un scan en ligne.

J'ai téléchargé antivir et avg: aucun virus détecté.

Voilà mon pb.

Est ce que quelqu'un peut m'aider?

MErci d'avance.

Fala fala
A voir également:

9 réponses

lhionna Messages postés 363 Statut Membre 54
 
Coucou

tu as oublié de faire la partie hijackthis qui est nécessaire au diagnostic

Télécharger HijackThis V2.02 sur cette page http://www.commentcamarche.net/telecharger/telechargement 159 hijackthis

Utilisation :
L'installer dans un dossier prévu à cet effet.
Par exemple, C:\HijackThis
Choisis l'option "do a system scan and save a logfile"; un rapport va être généré…
Copier/coller le rapport sur le forum virus/sécurité.

Tutoriel d'utilisation, section "Générer un rapport" ici
(Merci à balltrap34 pour cette réalisation)
0
fala fala
 
voila

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:26:27, on 07/05/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16643)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\rundll32.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Philips\Philips PhotoFrame\PhotoManager.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\hp\kbd\kbd.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Windows\system32\SearchFilterHost.exe
C:\HijackThis\HijackThis.exe
C:\Windows\system32\DllHost.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/...
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [CCUTRAYICON] FactoryMode
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Auto Run Software for Photo Frame] "C:\Program Files\Philips\Philips PhotoFrame\PhotoManager.exe" /autorun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - https://www.f-secure.com/en/home/support
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Intel DH Service (IntelDHSvcConf) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Tools\IntelDHSvcConf.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe
O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe
0
lhionna Messages postés 363 Statut Membre 54
 
Tu as un antivirus et un pare-feu ?
car là moi je n'en voit pas !

Il est malheureusement impossible de surfer sur internet sans risque sans un antivirus, un parefeu et un antispyware !!!
Si tu n'en a pas

antivirus
telecharge celui ci : http://www.commentcamarche.net/telecharger/telechargement 55 antivir
installe le, met le a jour

Parefeu

telecharge celui ci http://www.commentcamarche.net/telecharger/telechargement 34055041 comodo firewall pro
Installe le et accepte s'il propose une mise a jour
Mode d'emploi ici : https://www.malekal.com/tutorial-comodo-firewall/

Antispyware

télecharge celui ci http://www.commentcamarche.net/telecharger/telechargement 83 ad aware 2007 free
Installe le et met le a jour

Lance un scanne avec l'antivirus ( Antivir), s'il trouve quelquechose dit lui de mettre en quarantaine, copie et colle le rapport
Une fois fini, scanne avec l'antispyware copie et colle le rapport
0
falafala Messages postés 21 Statut Membre
 
J'ai norton (antivirus et firewall)

Quand j'ai eu mon virus, j'ai installé antivir puis AVG(j'ai scanné il a rien trouvé).

Et j'ai installé adaware, il a trouvé que des choses bénines.
0
lhionna Messages postés 363 Statut Membre 54
 
Sinon ton log hijackthis est clean selon moi.
J'avais un petit doute sur une ligne :
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe

Les avis sont partagés mais il ya plus de personnes qui disent qu'il faut le laisser. Donc on le laisse.

Sinon as tu reussi a installer et mettre a jour les logiciels que je t'ai demandé ?

Tiens fait un petit coup de ça aussi dès fois que :
http://www.commentcamarche.net/telecharger/telechargement 34055015 avg anti rootkit

car franchement là, je ne voit pas d'infection.

Pour t'aider, j'ai vraiment besoin des rapports (pas hijackthis) mais antivirus, antispyware et anti rootkit
0
falafala Messages postés 21 Statut Membre
 
Je relance tout ça ce soir, et je les posterais.

Mais franchement, y'avait rien de spécial.
0
falafala Messages postés 21 Statut Membre
 
Voilà mon rapport antivir

Avira AntiVir Personal
Report file date: mercredi 7 mai 2008 19:25

Scanning for 1255449 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows Vista
Windows version: (plain) [6.0.6000]
Boot mode: Normally booted
Username: SYSTEM
Computer name: PC-DE-BOO

Version information:
BUILD.DAT : 8.1.00.295 16479 Bytes 09/04/2008 16:24:00
AVSCAN.EXE : 8.1.2.12 311553 Bytes 07/05/2008 17:24:09
AVSCAN.DLL : 8.1.1.0 53505 Bytes 07/05/2008 17:24:09
LUKE.DLL : 8.1.2.9 151809 Bytes 07/05/2008 17:24:10
LUKERES.DLL : 8.1.2.1 12033 Bytes 07/05/2008 17:24:10
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 13:27:15
ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 07/03/2008 17:24:10
ANTIVIR2.VDF : 7.0.4.0 1554432 Bytes 05/05/2008 17:24:11
ANTIVIR3.VDF : 7.0.4.13 55808 Bytes 07/05/2008 17:24:11
Engineversion : 8.1.0.39
AEVDF.DLL : 8.1.0.5 102772 Bytes 07/05/2008 17:24:11
AESCRIPT.DLL : 8.1.0.28 233851 Bytes 07/05/2008 17:24:11
AESCN.DLL : 8.1.0.16 119156 Bytes 07/05/2008 17:24:11
AERDL.DLL : 8.1.0.20 418165 Bytes 07/05/2008 17:24:11
AEPACK.DLL : 8.1.1.4 364918 Bytes 07/05/2008 17:24:11
AEOFFICE.DLL : 8.1.0.18 192890 Bytes 07/05/2008 17:24:11
AEHEUR.DLL : 8.1.0.21 1196407 Bytes 07/05/2008 17:24:11
AEHELP.DLL : 8.1.0.14 115063 Bytes 07/05/2008 17:24:11
AEGEN.DLL : 8.1.0.20 299380 Bytes 07/05/2008 17:24:11
AEEMU.DLL : 8.1.0.6 430451 Bytes 07/05/2008 17:24:11
AECORE.DLL : 8.1.0.28 168310 Bytes 07/05/2008 17:24:11
AVWINLL.DLL : 1.0.0.7 14593 Bytes 07/05/2008 17:24:09
AVPREF.DLL : 8.0.0.1 25857 Bytes 07/05/2008 17:24:09
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 12:16:24
AVREG.DLL : 8.0.0.0 30977 Bytes 07/05/2008 17:24:09
AVARKT.DLL : 1.0.0.23 307457 Bytes 07/05/2008 17:24:07
AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 07/05/2008 17:24:08
SQLITE3.DLL : 3.3.17.1 339968 Bytes 07/05/2008 17:24:10
SMTPLIB.DLL : 1.2.0.19 28929 Bytes 07/05/2008 17:24:10
NETNT.DLL : 8.0.0.1 7937 Bytes 07/05/2008 17:24:10
RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 07/05/2008 17:24:01
RCTEXT.DLL : 8.0.32.0 86273 Bytes 07/05/2008 17:24:01

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: mercredi 7 mai 2008 19:25

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'TrustedInstaller.exe' - '1' Module(s) have been scanned
Scan process 'lpksetup.exe' - '1' Module(s) have been scanned
Scan process 'lpremove.exe' - '1' Module(s) have been scanned
Scan process 'taskeng.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'VSSVC.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'kbd.exe' - '1' Module(s) have been scanned
Scan process 'hpqste08.exe' - '1' Module(s) have been scanned
Scan process 'iPodService.exe' - '1' Module(s) have been scanned
Scan process 'ehmsas.exe' - '1' Module(s) have been scanned
Scan process 'unsecapp.exe' - '1' Module(s) have been scanned
Scan process 'hpqtra08.exe' - '1' Module(s) have been scanned
Scan process 'ehtray.exe' - '1' Module(s) have been scanned
Scan process 'PhotoManager.exe' - '1' Module(s) have been scanned
Scan process 'PicasaMediaDetector.exe' - '1' Module(s) have been scanned
Scan process 'sidebar.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'avgtray.exe' - '1' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned
Scan process 'RtHDVCpl.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'WmiPrvSE.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'IAAnotif.exe' - '1' Module(s) have been scanned
Scan process 'OSD.exe' - '1' Module(s) have been scanned
Scan process 'hpsysdrv.exe' - '1' Module(s) have been scanned
Scan process 'MSASCui.exe' - '1' Module(s) have been scanned
Scan process 'taskeng.exe' - '1' Module(s) have been scanned
Scan process 'avgrsx.exe' - '1' Module(s) have been scanned
Scan process 'WUDFHost.exe' - '1' Module(s) have been scanned
Scan process 'SearchIndexer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'AluSchedulerSvc.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'mdm.exe' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'IAANTmon.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'DQLWinService.exe' - '1' Module(s) have been scanned
Scan process 'ccSvcHst.exe' - '1' Module(s) have been scanned
Scan process 'avgwdsvc.exe' - '1' Module(s) have been scanned
Scan process 'guard.exe' - '1' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'taskeng.exe' - '1' Module(s) have been scanned
Scan process 'aawservice.exe' - '1' Module(s) have been scanned
Scan process 'AppSvc32.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'dwm.exe' - '1' Module(s) have been scanned
Scan process 'ccSvcHst.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'SLsvc.exe' - '1' Module(s) have been scanned
Scan process 'audiodg.exe' - '0' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'lsm.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'wininit.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
80 processes with 80 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!
[WARNING] Le périphérique n'est pas prêt.
[INFO] Please restart the search with Administrator rights
Master boot sector HD2
[INFO] No virus was found!
[WARNING] Le périphérique n'est pas prêt.
[INFO] Please restart the search with Administrator rights
Master boot sector HD3
[INFO] No virus was found!
[WARNING] Le périphérique n'est pas prêt.
[INFO] Please restart the search with Administrator rights
Master boot sector HD4
[INFO] No virus was found!
[WARNING] Le périphérique n'est pas prêt.
[INFO] Please restart the search with Administrator rights

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '18' files ).

Starting the file scan:

Begin scan in 'C:\' <HP>
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcrst.dll
[WARNING] The file could not be opened!
C:\Program Files\Panda Security\ActiveScan 2.0\pskavs.dll
[DETECTION] Contains detection pattern of the Windows virus W95/Blumblebee.1738
[NOTE] The file was deleted!
C:\Windows\System32\drivers\sptd.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\' <Recovery>

End of the scan: mercredi 7 mai 2008 20:36
Used time: 1:11:24 min

The scan has been done completely.

17012 Scanning directories
450932 Files were scanned
1 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
1 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
4 Files cannot be scanned
450931 Files not concerned
3074 Archives were scanned
8 Warnings
1 Notes
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
lhionna Messages postés 363 Statut Membre 54
 
est ce que ton pc a toujours des symptomes ?

pense a faire le scan avec l'antispyware et l'anti rootkit
0
lhionna Messages postés 363 Statut Membre 54
 
une question très bête à laquelle j'aurais du pensé plus tôt

As tu verifié que tu n'ai pas inversé les branchements clavier et souris ?
J'espère que tu ne te vexera pas, je tente juste de trouver la solution
0
falafala Messages postés 21 Statut Membre
 
Je ne me vexe pas et je te remercie pour ton aide.

tout est bien branché
0
falafala Messages postés 21 Statut Membre
 
Mon scan adawre

Ad-Aware 2007 Build
Log File Created on: 2008-05-07 21:50:03
Using Definitions File: C:\ProgramData\Lavasoft\Ad-Aware 2007\core.aawdef
Computer name: PC-DE-BOO
Name of user performing scan: SYSTEM

System information
===========================
Number of processors: 2
Processor type: Intel(R) Core(TM)2 CPU 4400 @ 2.00GHz
Memory Available: 59%
Total Physical Memory: -1075974144 Bytes
Available Physical Memory: 1872023552 Bytes
Total Page File Size: 6631669760 Bytes
Available On Page File: 5254782976 Bytes
Total Virtual Memory: 2147352576 Bytes
Available Virtual Memory: 1932570624 Bytes
OS: Microsoft Windows Vista (Build 6000)

Ad-Aware 2007 Settings
===========================
Skipping files larger than 1048576 kB
Ignoring infections with lower TAI than: 3

Extended Ad-Aware 2007 Settings
===========================
Unloading known modules during scan
Ignoring spanned files when scanning cab archives
Reanalyzing results after scanning before displaying results
Trying to unload modules prior to removal
Let Windows remove files currently in use at next reboot
Removing quarantined objects after restore
Deactivating Ad-Watch during scans
Writeprotecting system files after repairs
Include info about ignored objects in log file
Including basic settings in log file
Including advanced settings in log file
Including user and computer name in log file
Create and save WebUpdate log file

Databaseinfo
===========================
Version number: 77
Build Number: 0
Build Date and Time: 2008/05/07 14:30:03

Scan Statistics
===========================
Method: Full
Scan tracking cookies.............................: On
Scan ADS filestreams..............................: Off

Item Scanned: 363446
Infections Detected: 19
Infections Ignored: 0

Scan detailed statistics
===========================
Type Critical Total
Process Scan....: 0 0
Registry Scan...: 0 0
Registry PE Scan: 0 0
Hosts File Scan.: 0 0
File Scan.......: 0 0
Folder Scan.....: 0 0
LSP Scan........: 0 0
ADS Scan........: 0 0
Cookie Scan.....: 19 19
File Hash Scan..: 0 0

Infections Found
===========================
Family Id: 725 Name: Tracking Cookie Category: DataMiner TAI:3
Item Id: 600000068 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt statse.webtrendslive.com ACOOKIE /
Item Id: 600000083 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt 247realmedia.com ingban /
Item Id: 600000225 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt cetelem.solution.weborama.fr _adpp /
Item Id: 600000225 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt weborama.fr AFFICHE_W /
Item Id: 600000144 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt doubleclick.net id /
Item Id: 600000083 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt 247realmedia.com RMID /
Item Id: 600000083 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt 247realmedia.com RMFD /
Item Id: 600000083 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt 247realmedia.com ingpave /
Item Id: 600000225 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt cetelem.solution.weborama.fr _adpc /
Item Id: 600000225 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt cetelem.solution.weborama.fr _adpcr /
Item Id: 600000225 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt cetelem.solution.weborama.fr _adpe /
Item Id: 600000234 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt tradedoubler.com TD_UNIQUE_IMP /
Item Id: 600000001 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt smartadserver.com TestIfCookieP /
Item Id: 600000142 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt stat.onestat.com 209681 /
Item Id: 600000142 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt stat.onestat.com ONESTAT /
Item Id: 600000187 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt advertising.com BASE /
Item Id: 600000187 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt advertising.com ACID /
Item Id: 600000187 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt advertising.com F1 /
Item Id: 600000190 Value: Browser: Firefox Cookie: C:\Users\Boo\AppData\Roaming\Mozilla\Firefox\Profiles/7ncnc0mk.default\cookies.txt www.googleadservices.com Conversion /pagead/conversion/1064380966/

Items Ignored During Scan
===========================

Listing of running processes
===========================
C:\WINDOWS\SYSTEM32\SMSS.EXE
c:\windows\system32\smss.exe

c:\windows\system32\ntdll.dll

C:\WINDOWS\SYSTEM32\CSRSS.EXE
c:\windows\system32\csrss.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\csrsrv.dll

c:\windows\system32\basesrv.dll

c:\windows\system32\winsrv.dll

c:\windows\system32\user32.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\sxs.dll

c:\windows\system32\csrss.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\csrsrv.dll

c:\windows\system32\basesrv.dll

c:\windows\system32\winsrv.dll

c:\windows\system32\user32.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\sxs.dll

C:\WINDOWS\SYSTEM32\WININIT.EXE
c:\windows\system32\wininit.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\userenv.dll

c:\windows\system32\secur32.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\apphelp.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\mswsock.dll

c:\windows\system32\wshtcpip.dll

c:\windows\system32\wship6.dll

c:\windows\system32\credssp.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\schannel.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\psapi.dll

C:\WINDOWS\SYSTEM32\SERVICES.EXE
c:\windows\system32\services.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\userenv.dll

c:\windows\system32\secur32.dll

c:\windows\system32\scesrv.dll

c:\windows\system32\authz.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\psapi.dll

c:\windows\system32\ncobjapi.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\credssp.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\schannel.dll

c:\windows\system32\apphelp.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\samlib.dll

c:\windows\system32\ole32.dll

c:\windows\system32\mswsock.dll

c:\windows\system32\wshtcpip.dll

c:\windows\system32\wship6.dll

C:\WINDOWS\SYSTEM32\LSASS.EXE
c:\windows\system32\lsass.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\lsasrv.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\secur32.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\samsrv.dll

c:\windows\system32\cryptdll.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\psapi.dll

c:\windows\system32\samlib.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\ntdsapi.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\feclient.dll

c:\windows\system32\mpr.dll

c:\windows\system32\userenv.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\slc.dll

c:\windows\system32\sysntfy.dll

c:\windows\system32\wevtapi.dll

c:\windows\system32\iphlpapi.dll

c:\windows\system32\dhcpcsvc.dll

c:\windows\system32\winnsi.dll

c:\windows\system32\dhcpcsvc6.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\cngaudit.dll

c:\windows\system32\authz.dll

c:\windows\system32\ncrypt.dll

c:\windows\system32\bcrypt.dll

c:\windows\system32\credssp.dll

c:\windows\system32\msprivs.dll

c:\windows\system32\kerberos.dll

c:\windows\system32\mswsock.dll

c:\windows\system32\wship6.dll

c:\windows\system32\msv1_0.dll

c:\windows\system32\netlogon.dll

c:\windows\system32\winbrand.dll

c:\windows\system32\schannel.dll

c:\windows\system32\wdigest.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\tspkg.dll

c:\windows\system32\gpapi.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\ole32.dll

c:\windows\system32\scecli.dll

c:\windows\system32\wshtcpip.dll

c:\windows\system32\dssenh.dll

C:\WINDOWS\SYSTEM32\LSM.EXE
c:\windows\system32\lsm.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\sysntfy.dll

c:\windows\system32\wmsgapi.dll

c:\windows\system32\secur32.dll

c:\windows\system32\credssp.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\userenv.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\schannel.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\psapi.dll

C:\WINDOWS\SYSTEM32\WINLOGON.EXE
c:\windows\system32\winlogon.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\secur32.dll

c:\windows\system32\winsta.dll

c:\windows\system32\psapi.dll

c:\windows\system32\userenv.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\apphelp.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\samlib.dll

c:\windows\system32\ole32.dll

c:\windows\system32\shsvcs.dll

c:\windows\system32\uxtheme.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\windowscodecs.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\slc.dll

c:\windows\system32\mpr.dll

C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\umpnpmgr.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\userenv.dll

c:\windows\system32\secur32.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\powrprof.dll

c:\windows\system32\gpapi.dll

c:\windows\system32\slc.dll

c:\windows\system32\rpcss.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\firewallapi.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\ole32.dll

c:\windows\system32\version.dll

c:\windows\system32\credssp.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\schannel.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\psapi.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\cabinet.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\samlib.dll

c:\windows\system32\winsta.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\apphelp.dll

c:\windows\system32\wtsapi32.dll

c:\windows\system32\svchost.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\rpcss.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\secur32.dll

c:\windows\system32\firewallapi.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\ole32.dll

c:\windows\system32\version.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\credssp.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\userenv.dll

c:\windows\system32\schannel.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\psapi.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\mswsock.dll

c:\windows\system32\wshtcpip.dll

c:\windows\system32\wship6.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\fwpuclnt.dll

c:\windows\system32\msi.dll

c:\windows\system32\msiltcfg.dll

c:\windows\system32\sxs.dll

c:\windows\system32\sfc.dll

c:\windows\system32\sfc_os.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\wtsapi32.dll

c:\windows\system32\winsta.dll

c:\windows\system32\svchost.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\program files\windows defender\mpsvc.dll

c:\windows\system32\version.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\userenv.dll

c:\windows\system32\secur32.dll

c:\windows\system32\wintrust.dll

c:\windows\system32\imagehlp.dll

c:\program files\windows defender\mpclient.dll

c:\windows\system32\shell32.dll

c:\windows\system32\shlwapi.dll

c:\windows\system32\ole32.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\windows\system32\gpapi.dll

c:\windows\system32\slc.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\psapi.dll

c:\windows\system32\samlib.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\ncrypt.dll

c:\windows\system32\bcrypt.dll

c:\programdata\microsoft\windows defender\definition updates\{4c3af59f-7e70-454d-a966-12fdcbfcced4}\mpengine.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\ktmw32.dll

c:\windows\system32\dbghelp.dll

c:\windows\system32\iphlpapi.dll

c:\windows\system32\dhcpcsvc.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\winnsi.dll

c:\windows\system32\dhcpcsvc6.dll

c:\program files\windows defender\mprtplug.dll

c:\windows\system32\tdh.dll

c:\windows\system32\credssp.dll

c:\windows\system32\schannel.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\svchost.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\wevtsvc.dll

c:\windows\system32\userenv.dll

c:\windows\system32\secur32.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\version.dll

c:\windows\system32\gpapi.dll

c:\windows\system32\slc.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\credssp.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\schannel.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\psapi.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\mswsock.dll

c:\windows\system32\wshtcpip.dll

c:\windows\system32\wship6.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\ole32.dll

c:\windows\system32\audiosrv.dll

c:\windows\system32\mmdevapi.dll

c:\windows\system32\shlwapi.dll

c:\windows\system32\wtsapi32.dll

c:\windows\system32\winsta.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\wintrust.dll

c:\windows\system32\imagehlp.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\audioses.dll

c:\windows\system32\audioeng.dll

c:\windows\system32\avrt.dll

c:\windows\system32\lmhsvc.dll

c:\windows\system32\iphlpapi.dll

c:\windows\system32\dhcpcsvc.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\winnsi.dll

c:\windows\system32\dhcpcsvc6.dll

c:\windows\system32\wscsvc.dll

c:\windows\system32\firewallapi.dll

c:\windows\system32\wbem\wbemprox.dll

c:\windows\system32\wbem\wbemcomn.dll

c:\windows\system32\wbem\wbemsvc.dll

c:\windows\system32\wbem\fastprox.dll

c:\windows\system32\ntdsapi.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\wuapi.dll

c:\windows\system32\cabinet.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\comctl32.dll

c:\windows\system32\svchost.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\psapi.dll

c:\windows\system32\samlib.dll

c:\windows\system32\ole32.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\audiosrv.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\mmdevapi.dll

c:\windows\system32\shlwapi.dll

c:\windows\system32\wtsapi32.dll

c:\windows\system32\winsta.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\wintrust.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\userenv.dll

c:\windows\system32\secur32.dll

c:\windows\system32\imagehlp.dll

c:\windows\system32\uxsms.dll

c:\windows\system32\wudfsvc.dll

c:\windows\system32\wudfplatform.dll

c:\windows\system32\version.dll

c:\windows\system32\wevtapi.dll

c:\windows\system32\tabsvc.dll

c:\windows\system32\hid.dll

c:\windows\system32\slc.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\apphelp.dll

c:\windows\system32\emdmgmt.dll

c:\windows\system32\wdscore.dll

c:\windows\system32\shell32.dll

c:\windows\system32\slwga.dll

c:\windows\system32\urlmon.dll

c:\windows\system32\iertutil.dll

c:\windows\system32\pcasvc.dll

c:\windows\system32\sysmain.dll

c:\windows\system32\wpdbusenum.dll

c:\windows\system32\gpapi.dll

c:\windows\system32\trkwks.dll

c:\windows\system32\portabledeviceapi.dll

c:\windows\system32\umb.dll

c:\windows\system32\atl.dll

c:\windows\system32\credssp.dll

c:\windows\system32\schannel.dll

c:\windows\system32\wdi.dll

c:\windows\system32\pcadm.dll

c:\windows\system32\netman.dll

c:\windows\system32\rasapi32.dll

c:\windows\system32\rasman.dll

c:\windows\system32\tapi32.dll

c:\windows\system32\rtutils.dll

c:\windows\system32\winmm.dll

c:\windows\system32\oleacc.dll

c:\windows\system32\winnsi.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\netshell.dll

c:\windows\system32\iphlpapi.dll

c:\windows\system32\dhcpcsvc.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\dhcpcsvc6.dll

c:\windows\system32\nlaapi.dll

c:\windows\system32\rasdlg.dll

c:\windows\system32\mprapi.dll

c:\windows\system32\activeds.dll

c:\windows\system32\adsldpc.dll

c:\windows\system32\credui.dll

c:\windows\system32\radardt.dll

c:\windows\system32\svchost.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\psapi.dll

c:\windows\system32\samlib.dll

c:\windows\system32\ole32.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\mmcss.dll

c:\windows\system32\avrt.dll

c:\windows\system32\gpsvc.dll

c:\windows\system32\secur32.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\ntdsapi.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\wtsapi32.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\userenv.dll

c:\windows\system32\gpapi.dll

c:\windows\system32\slc.dll

c:\windows\system32\authz.dll

c:\windows\system32\sysntfy.dll

c:\windows\system32\winsta.dll

c:\windows\system32\nlaapi.dll

c:\windows\system32\iphlpapi.dll

c:\windows\system32\dhcpcsvc.dll

c:\windows\system32\winnsi.dll

c:\windows\system32\dhcpcsvc6.dll

c:\windows\system32\profsvc.dll

c:\windows\system32\atl.dll

c:\windows\system32\shsvcs.dll

c:\windows\system32\sens.dll

c:\windows\system32\uxtheme.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\propsys.dll

c:\windows\system32\sxs.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\comctl32.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\wintrust.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\imagehlp.dll

c:\windows\system32\wiarpc.dll

c:\windows\system32\schedsvc.dll

c:\windows\system32\ktmw32.dll

c:\windows\system32\shlwapi.dll

c:\windows\system32\wevtapi.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\windows\system32\credssp.dll

c:\windows\system32\schannel.dll

c:\windows\system32\taskcomp.dll

c:\windows\system32\version.dll

c:\windows\system32\mswsock.dll

c:\windows\system32\wshtcpip.dll

c:\windows\system32\wship6.dll

c:\windows\system32\apphelp.dll

c:\windows\system32\tschannel.dll

c:\windows\system32\srvsvc.dll

c:\windows\system32\sscore.dll

c:\windows\system32\firewallapi.dll

c:\windows\system32\clusapi.dll

c:\windows\system32\activeds.dll

c:\windows\system32\adsldpc.dll

c:\windows\system32\credui.dll

c:\windows\system32\shell32.dll

c:\windows\system32\resutils.dll

c:\windows\system32\winspool.drv

c:\windows\system32\browser.dll

c:\windows\system32\aelupsvc.dll

c:\windows\system32\ikeext.dll

c:\windows\system32\fwpuclnt.dll

c:\windows\system32\ncrypt.dll

c:\windows\system32\bcrypt.dll

c:\windows\system32\seclogon.dll

c:\windows\system32\wbem\wmisvc.dll

c:\windows\system32\wbem\wbemcomn.dll

c:\windows\system32\iphlpsvc.dll

c:\windows\system32\rtutils.dll

c:\windows\system32\sqmapi.dll

c:\windows\system32\cabinet.dll

c:\windows\system32\vssapi.dll

c:\windows\system32\vsstrace.dll

c:\windows\system32\xmllite.dll

c:\windows\system32\mpr.dll

c:\windows\system32\wbem\wbemcore.dll

c:\windows\system32\wbem\esscli.dll

c:\windows\system32\wbem\fastprox.dll

c:\windows\system32\wbem\wbemsvc.dll

c:\windows\system32\wbem\wmiutils.dll

c:\windows\system32\wbem\repdrvfs.dll

c:\windows\system32\wbem\wmiprvsd.dll

c:\windows\system32\ncobjapi.dll

c:\windows\system32\wbem\wbemess.dll

c:\windows\system32\winrnr.dll

c:\windows\system32\napinsp.dll

c:\windows\system32\pnrpnsp.dll

c:\windows\system32\rasadhlp.dll

c:\windows\system32\appinfo.dll

c:\windows\system32\wbem\ncprov.dll

c:\windows\system32\wscapi.dll

c:\windows\system32\urlmon.dll

c:\windows\system32\iertutil.dll

c:\windows\system32\qmgr.dll

c:\windows\system32\shfolder.dll

c:\windows\system32\winhttp.dll

c:\windows\system32\bitsperf.dll

c:\windows\system32\bitsigd.dll

c:\windows\system32\upnp.dll

c:\windows\system32\ssdpapi.dll

c:\windows\system32\wuaueng.dll

c:\windows\system32\esent.dll

c:\windows\system32\mspatcha.dll

c:\windows\system32\wmsgapi.dll

c:\windows\system32\msxml3.dll

c:\windows\system32\advpack.dll

c:\windows\system32\msi.dll

c:\windows\system32\wups2.dll

c:\windows\system32\dssenh.dll

c:\windows\system32\rasapi32.dll

c:\windows\system32\rasman.dll

c:\windows\system32\tapi32.dll

c:\windows\system32\winmm.dll

c:\windows\system32\oleacc.dll

c:\windows\system32\rasmans.dll

c:\windows\system32\cryptdll.dll

c:\windows\system32\rastapi.dll

c:\windows\system32\rasppp.dll

c:\windows\system32\mprapi.dll

c:\windows\system32\kerberos.dll

c:\windows\system32\rasqec.dll

c:\windows\system32\qutil.dll

c:\windows\system32\raschap.dll

c:\windows\system32\rastls.dll

c:\windows\system32\cryptui.dll

c:\windows\system32\msimg32.dll

c:\windows\system32\winscard.dll

C:\WINDOWS\SYSTEM32\SLSVC.EXE
c:\windows\system32\slsvc.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\slc.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\shell32.dll

c:\windows\system32\shlwapi.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\windows\system32\ole32.dll

c:\windows\system32\userenv.dll

c:\windows\system32\secur32.dll

C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\psapi.dll

c:\windows\system32\samlib.dll

c:\windows\system32\ole32.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\es.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\propsys.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\nsisvc.dll

c:\windows\system32\mswsock.dll

c:\windows\system32\wshtcpip.dll

c:\windows\system32\wship6.dll

c:\windows\system32\secur32.dll

c:\windows\system32\credssp.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\userenv.dll

c:\windows\system32\schannel.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\sxs.dll

c:\windows\system32\webclnt.dll

c:\windows\system32\winhttp.dll

c:\windows\system32\shlwapi.dll

c:\windows\system32\urlmon.dll

c:\windows\system32\iertutil.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\windows\system32\shell32.dll

c:\windows\system32\wininet.dll

c:\windows\system32\normaliz.dll

c:\windows\system32\wkssvc.dll

c:\windows\system32\iphlpapi.dll

c:\windows\system32\dhcpcsvc.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\winnsi.dll

c:\windows\system32\dhcpcsvc6.dll

c:\windows\system32\ntdsapi.dll

c:\windows\system32\winbrand.dll

c:\windows\system32\fdrespub.dll

c:\windows\system32\wsdapi.dll

c:\windows\system32\httpapi.dll

c:\windows\system32\wintrust.dll

c:\windows\system32\imagehlp.dll

c:\windows\system32\xmllite.dll

c:\windows\system32\firewallapi.dll

c:\windows\system32\version.dll

c:\windows\system32\fundisc.dll

c:\windows\system32\atl.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\msxml3.dll

c:\windows\system32\w32time.dll

c:\windows\system32\cryptdll.dll

c:\windows\system32\gpapi.dll

c:\windows\system32\slc.dll

c:\windows\system32\netprofm.dll

c:\windows\system32\nlaapi.dll

c:\windows\system32\npmproxy.dll

c:\windows\system32\winrnr.dll

c:\windows\system32\napinsp.dll

c:\windows\system32\pnrpnsp.dll

c:\windows\system32\rasadhlp.dll

c:\windows\system32\ssdpsrv.dll

c:\windows\system32\svchost.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\psapi.dll

c:\windows\system32\samlib.dll

c:\windows\system32\ole32.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\dnsrslvr.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\dhcpcsvc.dll

c:\windows\system32\secur32.dll

c:\windows\system32\winnsi.dll

c:\windows\system32\dhcpcsvc6.dll

c:\windows\system32\iphlpapi.dll

c:\windows\system32\mswsock.dll

c:\windows\system32\wship6.dll

c:\windows\system32\wshtcpip.dll

c:\windows\system32\cryptsvc.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\vssapi.dll

c:\windows\system32\atl.dll

c:\windows\system32\vsstrace.dll

c:\windows\system32\authz.dll

c:\windows\system32\xmllite.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\mpr.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\userenv.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\es.dll

c:\windows\system32\propsys.dll

c:\windows\system32\nlasvc.dll

c:\windows\system32\wevtapi.dll

c:\windows\system32\ncsi.dll

c:\windows\system32\winhttp.dll

c:\windows\system32\shlwapi.dll

c:\windows\system32\wtsapi32.dll

c:\windows\system32\bcrypt.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\windows\system32\credssp.dll

c:\windows\system32\schannel.dll

c:\windows\system32\ssdpapi.dll

c:\windows\system32\winsta.dll

c:\windows\system32\termsrv.dll

c:\windows\system32\icaapi.dll

c:\windows\system32\wintrust.dll

c:\windows\system32\imagehlp.dll

c:\windows\system32\shell32.dll

c:\windows\system32\nlaapi.dll

c:\windows\system32\winrnr.dll

c:\windows\system32\napinsp.dll

c:\windows\system32\pnrpnsp.dll

c:\windows\system32\rasadhlp.dll

c:\windows\system32\esent.dll

c:\windows\system32\msdtckrm.dll

c:\windows\system32\version.dll

c:\windows\system32\ktmw32.dll

c:\windows\system32\tapisrv.dll

c:\windows\system32\activeds.dll

c:\windows\system32\adsldpc.dll

c:\windows\system32\credui.dll

c:\windows\system32\rtutils.dll

c:\windows\system32\winmm.dll

c:\windows\system32\oleacc.dll

c:\windows\system32\unimdm.tsp

c:\windows\system32\uniplat.dll

c:\windows\system32\kmddsp.tsp

c:\windows\system32\ndptsp.tsp

c:\windows\system32\hidphone.tsp

c:\windows\system32\hid.dll

C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCSVCHST.EXE
c:\program files\common files\symantec shared\ccsvchst.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\ole32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\user32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\msvcp71.dll

c:\windows\system32\msvcr71.dll

c:\program files\common files\symantec shared\ccl60u.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\dbghelp.dll

c:\windows\system32\version.dll

c:\windows\system32\shlwapi.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\windows\system32\secur32.dll

c:\windows\system32\userenv.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\program files\common files\symantec shared\ccvrtrst.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\wsock32.dll

c:\windows\system32\wintrust.dll

c:\windows\system32\imagehlp.dll

c:\program files\common files\symantec shared\ccsvc.dll

c:\windows\system32\credssp.dll

c:\windows\system32\schannel.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\psapi.dll

c:\program files\common files\symantec shared\ccset.dll

c:\progra~1\common~1\symant~1\ccsetplg.dll

c:\progra~1\norton~1\norton~1\avpsvc32.dll

c:\windows\system32\shell32.dll

c:\progra~1\norton~1\norton~1\avpsvc32.loc

c:\program files\norton internet security\norton antivirus\avsubmit.dll

c:\program files\norton internet security\norton antivirus\avsubmit.loc

c:\progra~1\norton~1\isdatasv.dll

c:\progra~1\common~1\symant~1\npc\npcwmimn.dll

c:\progra~1\common~1\symant~1\sndsvc.dll

c:\windows\system32\iphlpapi.dll

c:\windows\system32\dhcpcsvc.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\winnsi.dll

c:\windows\system32\dhcpcsvc6.dll

c:\program files\common files\symantec shared\ccl60.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\wbem\wbemprox.dll

c:\windows\system32\wbem\wbemcomn.dll

c:\progra~1\common~1\symant~1\submis~1\subeng.dll

c:\progra~1\common~1\symant~1\submis~1\subres.loc

c:\progra~1\common~1\symant~1\spbbc\tprocplg.dll

c:\windows\system32\msi.dll

c:\windows\system32\rasapi32.dll

c:\windows\system32\rasman.dll

c:\windows\system32\tapi32.dll

c:\windows\system32\rtutils.dll

c:\windows\system32\winmm.dll

c:\windows\system32\oleacc.dll

c:\progra~1\common~1\symant~1\ccevtplg.dll

c:\progra~1\common~1\symant~1\ids\ipsplug.dll

c:\progra~1\common~1\symant~1\pif\{b8e1d~1\pifeng.dll

c:\program files\common files\symantec shared\ccevtcli.dll

c:\progra~1\common~1\symant~1\srtsp\srtsp32.dll

c:\progra~1\common~1\symant~1\firewall\fwagent.dll

c:\program files\common files\symantec shared\ccprosub.dll

c:\windows\system32\rsaenh.dll

c:\progra~1\common~1\symant~1\spbbc\spbbcevt.dll

c:\windows\system32\ncrypt.dll

c:\windows\system32\bcrypt.dll

c:\progra~1\common~1\symant~1\symneti.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\samlib.dll

c:\windows\system32\gpapi.dll

c:\windows\system32\slc.dll

c:\progra~1\common~1\symant~1\ccsetevt.dll

c:\windows\system32\atl71.dll

c:\progra~1\norton~1\issvc.dll

c:\progra~1\norton~1\norton~1\navevent.dll

c:\program files\norton internet security\isdatacl.dll

c:\program files\common files\symantec shared\antivirus\avifc.dll

c:\program files\common files\symantec shared\appcore\appmgr32.dll

c:\program files\common files\symantec shared\firewall\fwhelper.dll

c:\program files\norton internet security\setevthp.dll

c:\program files\common files\symantec shared\antivirus\avexclu.dll

c:\program files\common files\symantec shared\ncoitf.dll

c:\program files\norton internet security\fwplugin.dll

c:\program files\norton internet security\fwevent.dll

c:\windows\system32\wbem\wbemsvc.dll

c:\windows\system32\wbem\fastprox.dll

c:\windows\system32\ntdsapi.dll

c:\program files\common files\symantec shared\npc\npcwmidt.dll

c:\program files\norton internet security\imcfg.dll

c:\program files\common files\symantec shared\spbbc\bbrgen.dll

c:\progra~1\common~1\symant~1\pif\{b8e1d~1\pollmgr.dll

c:\windows\system32\wininet.dll

c:\windows\system32\normaliz.dll

c:\windows\system32\iertutil.dll

C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\APPCORE\APPSVC32.EXE
c:\program files\common files\symantec shared\appcore\appsvc32.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\user32.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\shell32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\shlwapi.dll

c:\windows\system32\ole32.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\atl71.dll

c:\windows\system32\msvcp71.dll

c:\windows\system32\msvcr71.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\program files\common files\symantec shared\ccl60u.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\dbghelp.dll

c:\windows\system32\version.dll

c:\program files\common files\symantec shared\ccvrtrst.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\wsock32.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\userenv.dll

c:\windows\system32\secur32.dll

c:\windows\system32\wintrust.dll

c:\windows\system32\imagehlp.dll

c:\program files\common files\symantec shared\appcore\appmgr32.dll

c:\program files\common files\symantec shared\appcore\appset32.dll

c:\program files\common files\symantec shared\ccset.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\rsaenh.dll

c:\program files\common files\symantec shared\ccsvc.dll

c:\program files\common files\symantec shared\antivirus\avscan.dll

c:\program files\common files\symantec shared\antivirus\av.loc

c:\program files\common files\symantec shared\antivirus\avdefmgr.dll

c:\windows\system32\iphlpapi.dll

c:\windows\system32\dhcpcsvc.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\winnsi.dll

c:\windows\system32\dhcpcsvc6.dll

c:\windows\system32\mswsock.dll

c:\windows\system32\rasadhlp.dll

c:\program files\common files\symantec shared\antivirus\avmodule.dll

c:\program files\common files\symantec shared\qbackup.dll

c:\windows\system32\psapi.dll

c:\windows\system32\ncrypt.dll

c:\windows\system32\bcrypt.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\samlib.dll

c:\windows\system32\gpapi.dll

c:\windows\system32\slc.dll

c:\program files\common files\symantec shared\antivirus\avexclu.dll

c:\program files\common files\symantec shared\srtsp\srtsp32.dll

c:\program files\common files\symantec shared\ccprosub.dll

c:\progra~1\common~1\symant~1\ccevtcli.dll

c:\windows\system32\credssp.dll

c:\windows\system32\schannel.dll

c:\windows\system32\netapi32.dll

c:\program files\common files\symantec shared\spbbc\spbbccli.dll

c:\program files\common files\symantec shared\ccscanw.dll

c:\program files\common files\symantec shared\ecmldr32.dll

c:\program files\common files\symantec shared\msl\msl.dll

C:\WINDOWS\SYSTEM32\DWM.EXE
c:\windows\system32\dwm.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\user32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\ole32.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\uxtheme.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\dwmredir.dll

c:\windows\system32\slwga.dll

c:\windows\system32\urlmon.dll

c:\windows\system32\shlwapi.dll

c:\windows\system32\iertutil.dll

c:\windows\system32\wtsapi32.dll

c:\windows\system32\slc.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\psapi.dll

c:\windows\system32\samlib.dll

c:\windows\system32\milcore.dll

c:\windows\system32\d3d9.dll

c:\windows\system32\version.dll

c:\windows\system32\d3d8thk.dll

c:\windows\system32\dwmapi.dll

c:\windows\system32\nvd3dum.dll

c:\windows\system32\udwm.dll

c:\windows\system32\windowscodecs.dll

C:\WINDOWS\EXPLORER.EXE
c:\windows\explorer.exe

c:\windows\system32\ntdll.dll

c:\windows\system32\kernel32.dll

c:\windows\system32\advapi32.dll

c:\windows\system32\rpcrt4.dll

c:\windows\system32\gdi32.dll

c:\windows\system32\user32.dll

c:\windows\system32\msvcrt.dll

c:\windows\system32\shlwapi.dll

c:\windows\system32\shell32.dll

c:\windows\system32\ole32.dll

c:\windows\system32\oleaut32.dll

c:\windows\system32\shdocvw.dll

c:\windows\system32\uxtheme.dll

c:\windows\system32\powrprof.dll

c:\windows\system32\dwmapi.dll

c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll

c:\windows\system32\slc.dll

c:\windows\system32\propsys.dll

c:\windows\system32\browseui.dll

c:\windows\system32\imm32.dll

c:\windows\system32\msctf.dll

c:\windows\system32\duser.dll

c:\windows\system32\lpk.dll

c:\windows\system32\usp10.dll

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll

c:\windows\system32\windowscodecs.dll

c:\windows\system32\iconcodecservice.dll

c:\windows\system32\secur32.dll

c:\windows\system32\clbcatq.dll

c:\windows\system32\rsaenh.dll

c:\windows\system32\timedate.cpl

c:\windows\system32\atl.dll

c:\windows\system32\netapi32.dll

c:\windows\system32\psapi.dll

c:\windows\system32\oleacc.dll

c:\windows\system32\actxprxy.dll

c:\windows\system32\userenv.dll

c:\windows\system32\msutb.dll

c:\windows\system32\linkinfo.dll

c:\windows\system32\winbrand.dll

c:\windows\system32\shacct.dll

c:\windows\system32\samlib.dll

c:\windows\system32\apphelp.dll

c:\windows\system32\msshsq.dll

c:\windows\system32\naturallanguage6.dll

c:\windows\system32\crypt32.dll

c:\windows\system32\msasn1.dll

c:\windows\system32\nlsdata000c.dll

c:\windows\system32\nlslexicons000c.dll

c:\windows\system32\authui.dll

c:\windows\system32\msimg32.dll

c:\windows\system32\urlmon.dll

c:\windows\system32\iertutil.dll

c:\windows\system32\ntmarta.dll

c:\windows\system32\wldap32.dll

c:\windows\system32\ws2_32.dll

c:\windows\system32\nsi.dll

c:\windows\system32\ieframe.dll

c:\windows\system32\winmm.dll

c:\windows\system32\thumbcache.dll

c:\windows\system32\wdmaud.drv

c:\windows\system32\ksuser.dll

c:\windows\system32\avrt.dll

c:\windows\system32\mmdevapi.dll

c:\windows\system32\setupapi.dll

c:\windows\system32\ntshrui.dll

c:\windows\system32\cscapi.dll

c:\windows\system32\wintrust.dll

c:\windows\system32\imagehlp.dll

c:\windows\system32\msiltcfg.dll

c:\windows\system32\version.dll

c:\windows\system32\msi.dll

c:\windows\system32\explorerframe.dll

c:\windows\system32\wininet.dll

c:\windows\system32\normaliz.dll

c:\windows\system32\audioses.dll

c:\windows\system32\audioeng.dll

c:\windows\system32\msacm32.drv

c:\windows\system32\msacm32.dll

c:\windows\system32\midimap.dll

c:\windows\system32\stobject.dll

c:\windows\system32\batmeter.dll

c:\windows\system32\wtsapi32.dll

c:\windows\system32\winsta.dll

c:\windows\system32\es.dll

c:\windows\system32\sndvolsso.dll

c:\windows\ehome\ehsso.dll

c:\windows\system32\hid.dll

c:\windows\system32\netshell.dll

c:\windows\system32\iphlpapi.dll

c:\windows\system32\dhcpcsvc.dll

c:\windows\system32\dnsapi.dll

c:\windows\system32\winnsi.dll

c:\windows\system32\dhcpcsvc6.dll

c:\windows\system32\nlaapi.dll

c:\windows\system32\pnidui.dll

c:\windows\system32\qutil.dll

c:\windows\system32\wevtapi.dll

c:\windows\system32\wlanutil.dll

c:\windows\system32\firewallapi.dll

c:\windows\system32\mlang.dll

c:\windows\system32\npmproxy.dll

c:\windows\system32\wlanapi.dll

c:\windows\system32\onex.dll

c:\windows\system32\eappprxy.dll

c:\windows\system32\eappcfg.dll

c:\windows\system32\bcrypt.dll

c:\windows\system32\alttab.dll

c:\windows\system32\wpdshserviceobj.dll

c:\windows\system32\winhttp.dll

c:\windows\system32\srchadmin.dll

c:\windows\system32\webcheck.dll

c:\windows\system32\synccenter.dll

c:\windows\system32\mssprxy.dll

c:\program files\filezilla ftp client\fzshellext.dll

c:\windows\system32\imapi2.dll

c:\windows\system32\sxs.dll

c:\windows\system32\wscntfy.dll

c:\windows\system32\wscapi.dll

c:\windows\system32\qagent.dll

c:\windows\system32\fwpuclnt.dll

c:\windows\system32\wbem\wbemprox.dll

c:\windows\system32\wbem\wbemcomn.dll

c:\windows\system32\wbem\wbemsvc.dll

c:\program files\winscp3\dragext.dll

c:\windows\system32\wbem\fastprox.dll

c:\windows\system32\ntdsapi.dll

c:\windows\system32\portabledevicetypes.dll

c:\windows\system32\portabledeviceapi.dll

c:\windows\system32\bthprops.cpl

c:\windows\system32\oobefldr.dll

c:\windows\system32\msvcp71.dll

c:\windows\system32\msvcr71.dll

c:\program files\common files\symantec shared\ccl60u.dll

c:\progra~1\spybot~1\sdhelper.dll

c:\windows\system32\wer.dll

c:\windows\system32\sensapi.dll

c:\windows\system32\faultrep.dll

c:\windows\system32\olepro32.dll

c:\windows\system32\winsatapi.dll

c:\windows\system32\cabinet.dll

c:\windows\system32\mscms.dll

c:\windows\system32\winspool.drv

c:\windows\system32\ncrypt.dll

0
lhionna Messages postés 363 Statut Membre 54
 
Bon ca m'a l'air ok, pas de virus

As tu eu un virus recement ?
Si oui lequel ? et comment t'en es tu débarrassé ?

Telecharge MalwareBytes' Anti-Malware ici:
https://www.majorgeeks.com/files/details/malwarebytes_anti_malware.html

- Enregistre le fichier nommé Download_mbam-setup.exe
- Double-clique sur le fichier téléchargé puis sélectionne le choix Download
- Patiente pendant le telechargement
- Installe et laisse le se mettre a jour

Redémarre en mode sans echec ( Tapotes F6 ou F8, au démarrage de l'ordinateur jusqu'à ce que tu obtiens une liste de choix ( blanc sur fond noir) , choisis Mode sans echec pus entrée)

Lance MalwareBytes' Anti-Malware ( icone rouge avec un M blanc)
choisis :
- scan complet,
- clique sur recherche, verifie que tout est bien coché
- cliques sur lancer l'examen

Patientes jusqu'à la fin du scan, click ok puis afficher les resultats
choisis Supprimer la sélection, une fenetre va apparaitre, ferme là

Il est possible que certains objets ne pourront être supprimés qu'apres un redemarrage, donc si il te le propose accepte

Relance maintenant le programme. Rendez-vous dans la section Rapports/logs.
Ouvre le rapport correspondant à la date de ton scan
Le rapport de scan s'ouvre. Copie l'intégralité du rapport afin de le poster dans ta prochaine réponse sur le forum

(Merci à Angerldark pour ce tutoriel)
0
falafala Messages postés 21 Statut Membre
 
Désolé de ne pas avoir répondu plus tôt et merci pour ton aide.

Mon ordi ne démarre plus. Il s'allume mais Windows ne se lance pas.

J'ai un écran noir avec inscrit dessus:

BIOS ROM checksum error

Detecting IDE ATAPI device...

Found CDROM, try to Boot from it... FAIL

Detecting floppy drive A media...


Et là ca reste bloqué.

Je n'ai aucun CD dans le lecteur CD et je n'ai pas de lecteur de disquettes.

Est ce que quelqu'un peut venir à mon secours??????

MErci d'avance...
0
lhionna Messages postés 363 Statut Membre 54
 
salut

Ce n'est plus de mon ressort, ca dépasse largement mes connaissances, je vais essayer de trouver quelqu'un de plus balaise pour t'aider
0