Au secours !!! vundo/virtumonde

linec'M Messages postés 5 Statut Membre -  
linec'M Messages postés 5 Statut Membre -
Bonjour anthony5151,
J'ouvre un autre sujet comme tu me l'a demandé car ce n'est pas apparemment le meme problème.
Je t'envois une nouvelle fois le rapport Hijackthis :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 07:34:52, on 11/07/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS\Explorer.EXE
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\CA\eTrust Antivirus\InoRpc.exe
C:\Program Files\CA\eTrust Antivirus\InoRT.exe
C:\Program Files\CA\eTrust Antivirus\InoTask.exe
C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\Apps\Powercinema\PCMService.exe
C:\apps\ABoard\ABoard.exe
C:\apps\ABoard\AOSD.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\NETGEAR\WG111T\wlan111t.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {4596013b-6c31-408b-a266-deae5c086dc2} - (no file)
O3 - Toolbar: PBFRV2 - {4E7BD74F-2B8D-469E-A0E8-ED6AB685FA7D} - C:\WINDOWS\system32\pbfrv2.dll (file missing)
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: (no name) - {4596013b-6c31-408b-a266-deae5c086dc2} - (no file)
O3 - Toolbar: sqvgnrpx - {9437C997-89E6-4B84-A745-BEFD3A910FF5} - C:\WINDOWS\sqvgnrpx.dll (file missing)
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe
O4 - HKLM\..\Run: [Realtime Monitor] C:\PROGRA~1\CA\ETRUST~1\realmon.exe -s
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [10c725e6] rundll32.exe "C:\WINDOWS\system32\oriwgsnx.dll",b
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: NETGEAR WG111T Smart Wizard.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {BA162249-F2C5-4851-8ADC-FC58CB424243} (Image Uploader Control) - http://copainsdavant.linternaute.com/html_include_bibliotheque/objimageuploader/ImageUploader5.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DDD212E8-E0BC-47DA-A15E-3AD4D1EE12FC}: NameServer = 212.27.53.252,212.27.54.252
O21 - SSODL: fsrpknov - {BE593D80-F0BE-4136-80B1-BCAE7E7BCB36} - C:\WINDOWS\fsrpknov.dll (file missing)
O21 - SSODL: fdxbameg - {D4CEE219-A914-474A-B6BC-9E968D7CFC22} - C:\WINDOWS\fdxbameg.dll (file missing)
O21 - SSODL: StatAlrt - {de3588ca-b53c-4ab6-9e13-4303071926da} - C:\WINDOWS\Resources\StatAlrt.dll (file missing)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Client de licence CA (CA_LIC_CLNT) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmt.exe
O23 - Service: Serveur de licence CA (CA_LIC_SRVR) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmtd.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: eTrust Antivirus RPC Server (InoRPC) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Antivirus\InoRpc.exe
O23 - Service: eTrust Antivirus Realtime Server (InoRT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Antivirus\InoRT.exe
O23 - Service: eTrust Antivirus Job Server (InoTask) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Antivirus\InoTask.exe
O23 - Service: Event Log Watch (LogWatch) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

8 réponses

Frappe Misere Messages postés 2702 Statut Membre 568
 
1) Télécharge Malwarebytes' Anti-Malware.

*Télécharge et installe Malwarebyte's Anti-Malware
*https://www.commentcamarche.net/telecharger/ 34055379 malwarebyte s anti malware
*A la fin de l'installation, veille à ce que l'option « mettre a jour Malwarebyte's Anti-Malware » soit cochée. >>> clique sur OK
*Lance Malwarebyte's Anti-Malware en double-cliquant sur l'icône sur ton Bureau.
*Au premier lancement, une fenêtre t'annonce que la version est Free >>> clique sur OK
*Laisse les Mises à jour se télécharger

*** Referme le programme ***

2) Redémarre en "Mode sans échec"

Au redémarrage de l'ordinateur, une fois le chargement du BIOS terminé, il y a un écran noir qui apparaît rapidement, appuie sur la touche [F8] (ou [F5] sur certains pc) jusqu'à l'affichage du menu des options avancées de Windows.
Sélectionner "Mode sans échec" et appuie sur [Entrée]
Il faudra choisir ta session habituelle, pas le compte "Administrateur" ou une autre.
Regarde ici si besoin : http://pageperso.aol.fr/loraline60/mode_sans_echec.htm

Ouvre le fichier texte sauvegardé sur le Bureau afin de suivre les instructions comme il faut.

3) Scan avec Malwarebyte's Anti-Malware

*Lance Malwarebyte's Anti-Malware
*Puis vs dans l'onglet "Recherche" puis coche "Exécuter un examen complet" puis "Rechercher sélectionne tes disques durs" puis clique sur "Lancer l’examen"
*A la fin du scan >>> clique sur Afficher les résultats puis sur Enregistrer le rapport
*Suppression des éléments détectés >>>> clique sur Supprimer la sélection
*S'il t'es demandé de redémarrer >>> clique sur "Yes"

*--> Un rapport de scan s'ouvre, enregistre sur ton Bureau et poste ce rapport en réponse.
0
linec'M Messages postés 5 Statut Membre
 
j'ai ais ce ke tu m'a demendé voici le rapport :
(Wed Jul 09 18:49:21 2008.291453) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:21 2008.291453) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:21 2008.291531) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:21 2008.291531) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:21 2008.291640) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:21 2008.291640) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.291734) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.291734) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.291843) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.291843) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.291937) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.291937) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292046) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292046) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292140) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292156) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292250) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292250) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292359) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292359) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292453) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292453) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292562) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292562) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292656) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:22 2008.292656) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.292765) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.292765) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.292859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.292875) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.292968) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.292968) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293078) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293078) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293171) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293171) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293281) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293281) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293375) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293375) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293578) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293593) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293687) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:23 2008.293687) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.293781) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.293796) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.293890) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.293890) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294000) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294000) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294093) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294093) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294312) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294406) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294406) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294500) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294515) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294609) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:24 2008.294609) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.294718) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.294718) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.294812) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.294812) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.294921) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.294921) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.295015) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.295015) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.295125) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.295125) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.295234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:25 2008.295234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:49:56 2008.326375) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:57:53 2008.803312) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 18:57:54 2008.804171) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:02:42 2008.1092343) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:03:19 2008.1129437) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:03:22 2008.1132218) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:03:23 2008.1133015) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:03:24 2008.1133921) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:04:32 2008.1202125) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:04:32 2008.1202390) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:05:12 2008.1241890) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 19:05:12 2008.1241921) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 19:05:12 2008.1241968) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Wed Jul 09 19:08:01 2008.136125) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:01 2008.136343) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:01 2008.136343) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:01 2008.136343) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:02 2008.137109) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:08 2008.143000) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:13 2008.147937) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:13 2008.148625) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:14 2008.149484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:44 2008.178984) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:55 2008.190656) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:08:58 2008.192781) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:09:09 2008.203781) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:09:10 2008.205359) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:09:21 2008.216468) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:09:23 2008.218484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:09:25 2008.220593) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:09:27 2008.222000) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:11:41 2008.356687) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:13:03 2008.438125) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 19:13:03 2008.438125) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 19:13:03 2008.438125) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Wed Jul 09 19:13:03 2008.438125) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 19:13:03 2008.438125) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 19:13:03 2008.438125) : Failed the second attempt to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
This event is dropped for this consumer.
(Wed Jul 09 19:13:03 2008.438125) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 19:13:03 2008.438125) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 19:13:03 2008.438218) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 19:13:03 2008.438234) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 19:13:03 2008.438250) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Wed Jul 09 19:15:09 2008.106921) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:15:09 2008.106984) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:15:09 2008.106984) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:15:09 2008.106984) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:15:09 2008.106984) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:15:11 2008.109046) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:15:14 2008.112296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:15:21 2008.119296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:15:22 2008.120203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:19:46 2008.384156) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 19:19:46 2008.384156) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 19:19:46 2008.384156) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Wed Jul 09 19:19:46 2008.384171) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 19:19:46 2008.384171) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 19:19:46 2008.384171) : Failed the second attempt to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
This event is dropped for this consumer.
(Wed Jul 09 19:19:46 2008.384171) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 19:19:46 2008.384171) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 19:19:46 2008.384171) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 19:19:46 2008.384171) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 19:19:46 2008.384171) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 19:19:46 2008.384250) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 19:19:46 2008.384265) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 19:19:46 2008.384265) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Wed Jul 09 19:23:30 2008.121265) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:23:30 2008.121296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:23:30 2008.121312) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:23:30 2008.121312) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:23:30 2008.121312) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:23:31 2008.121937) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:23:32 2008.123156) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:23:42 2008.133375) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:23:42 2008.133500) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:30:07 2008.518062) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:44:12 2008.1362968) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:44:14 2008.1365625) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:44:17 2008.1368015) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:44:18 2008.1369468) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:44:26 2008.1376859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:44:27 2008.1378625) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:44:28 2008.1379296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:44:29 2008.1380562) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:52:27 2008.47437) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:52:27 2008.47437) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:52:37 2008.57234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:52:37 2008.57234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:52:57 2008.76828) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:52:57 2008.77078) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:53:09 2008.88875) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 19:58:45 2008.424968) : ESS unable to load consumer provider NTEventLogEventConsumer from provider subsystem: 0x80041013
(Wed Jul 09 19:58:45 2008.424968) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041013.
WMI will reload and retry.
(Wed Jul 09 20:00:35 2008.90250) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:00:35 2008.90296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:00:35 2008.90296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:00:35 2008.90296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:00:35 2008.90296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:00:38 2008.93093) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:00:42 2008.96937) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:00:42 2008.97203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:00:51 2008.105984) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:04:24 2008.318968) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:15:03 2008.135468) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:15:03 2008.135500) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:15:03 2008.135500) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:15:03 2008.135500) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:15:03 2008.135500) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:15:08 2008.140234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:15:15 2008.147093) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:15:16 2008.148531) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:15:16 2008.148625) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:17:56 2008.308015) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:23:31 2008.643203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:23:31 2008.643625) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:25:44 2008.776218) : ESS unable to load consumer provider NTEventLogEventConsumer from provider subsystem: 0x80041013
(Wed Jul 09 20:25:44 2008.776218) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041013.
WMI will reload and retry.
(Wed Jul 09 20:28:40 2008.154218) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:28:40 2008.154250) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:28:41 2008.154953) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:28:42 2008.156203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:28:43 2008.157046) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:28:44 2008.158125) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:28:45 2008.159531) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:28:45 2008.159531) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:28:46 2008.160218) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:35:13 2008.547265) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 20:35:13 2008.547265) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 20:35:13 2008.547265) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Wed Jul 09 20:35:13 2008.547265) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 20:35:13 2008.547281) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 20:35:13 2008.547281) : Failed the second attempt to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
This event is dropped for this consumer.
(Wed Jul 09 20:35:13 2008.547281) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 20:35:13 2008.547375) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 20:45:24 2008.100609) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:45:25 2008.101171) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:45:25 2008.101312) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:45:26 2008.102296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:45:27 2008.102812) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:45:28 2008.104375) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 20:45:29 2008.105218) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 21:07:14 2008.1410531) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 21:07:32 2008.1428281) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 21:08:29 2008.1485234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 21:39:34 2008.3349718) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 21:39:36 2008.3351968) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 21:39:37 2008.3353453) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 21:39:38 2008.3354125) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:36 2008.5512296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:36 2008.5512296) : Failed to log an event: 1F
(Wed Jul 09 22:15:36 2008.5512296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:36 2008.5512296) : Failed to log an event: 1F
(Wed Jul 09 22:15:36 2008.5512296) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:36 2008.5512296) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:36 2008.5512296) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:36 2008.5512328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:36 2008.5512328) : Failed to log an event: 1F
(Wed Jul 09 22:15:36 2008.5512328) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:36 2008.5512328) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:36 2008.5512328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:36 2008.5512328) : Failed to log an event: 1F
(Wed Jul 09 22:15:36 2008.5512328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:36 2008.5512328) : Failed to log an event: 1F
(Wed Jul 09 22:15:36 2008.5512328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:36 2008.5512328) : Failed to log an event: 1F
(Wed Jul 09 22:15:36 2008.5512328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:36 2008.5512328) : Failed to log an event: 1F
(Wed Jul 09 22:15:36 2008.5512328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:36 2008.5512328) : Failed to log an event: 1F
(Wed Jul 09 22:15:36 2008.5512328) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:36 2008.5512328) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:36 2008.5512328) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:36 2008.5512328) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:36 2008.5512328) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:36 2008.5512328) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:37 2008.5513453) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513468) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:37 2008.5513484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513484) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513484) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513484) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513484) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513484) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513484) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513484) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513484) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513484) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:37 2008.5513484) : Failed to log an event: 6B5
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:37 2008.5513484) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:38 2008.5514234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:38 2008.5514234) : Failed to log an event: 6B5
(Wed Jul 09 22:15:38 2008.5514234) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:38 2008.5514234) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:38 2008.5514234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:38 2008.5514234) : Failed to log an event: 6B5
(Wed Jul 09 22:15:38 2008.5514234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:38 2008.5514234) : Failed to log an event: 6B5
(Wed Jul 09 22:15:38 2008.5514234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:38 2008.5514234) : Failed to log an event: 6B5
(Wed Jul 09 22:15:38 2008.5514234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:38 2008.5514234) : Failed to log an event: 6B5
(Wed Jul 09 22:15:38 2008.5514234) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:38 2008.5514234) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:38 2008.5514234) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:38 2008.5514234) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:38 2008.5514234) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:38 2008.5514406) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:38 2008.5514406) : Failed to log an event: 6B5
(Wed Jul 09 22:15:38 2008.5514406) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:38 2008.5514406) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:40 2008.5515718) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:40 2008.5515718) : Failed to log an event: 6B5
(Wed Jul 09 22:15:40 2008.5515718) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:40 2008.5515718) : Failed to log an event: 6B5
(Wed Jul 09 22:15:40 2008.5515718) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:40 2008.5515734) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:40 2008.5515734) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:40 2008.5515953) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:40 2008.5515953) : Failed to log an event: 6B5
(Wed Jul 09 22:15:40 2008.5515953) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:40 2008.5515953) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:40 2008.5516656) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:40 2008.5516656) : Failed to log an event: 6B5
(Wed Jul 09 22:15:40 2008.5516656) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:40 2008.5516656) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:41 2008.5517156) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:41 2008.5517156) : Failed to log an event: 6B5
(Wed Jul 09 22:15:41 2008.5517156) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:41 2008.5517156) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:15:41 2008.5517562) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:15:41 2008.5517562) : Failed to log an event: 6B5
(Wed Jul 09 22:15:41 2008.5517562) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 22:15:41 2008.5517562) : Failed to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 0x80041001. Dropping event.
(Wed Jul 09 22:40:11 2008.105859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:40:11 2008.106453) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:40:11 2008.106453) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:40:12 2008.107062) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:40:13 2008.108406) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:40:14 2008.109531) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:40:15 2008.109968) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:40:44 2008.139515) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:41:00 2008.154781) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:42:07 2008.221906) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:43:49 2008.323703) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 22:43:51 2008.325953) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 23:01:54 2008.1409625) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Wed Jul 09 23:03:26 2008.1501656) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 23:03:26 2008.1501656) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 23:03:26 2008.1501656) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Wed Jul 09 23:03:27 2008.1501703) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Wed Jul 09 23:03:27 2008.1501750) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Wed Jul 09 23:03:27 2008.1501750) : Failed the second attempt to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
This event is dropped for this consumer.
(Wed Jul 09 23:03:27 2008.1501750) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 23:03:27 2008.1501750) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 23:03:27 2008.1501750) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 23:03:27 2008.1501750) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 23:03:27 2008.1501750) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 23:03:27 2008.1501750) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 23:03:27 2008.1501750) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Wed Jul 09 23:03:27 2008.1501750) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 09:33:20 2008.113203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:33:20 2008.113250) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:33:21 2008.113718) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:33:21 2008.113718) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:33:24 2008.117187) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:33:25 2008.117921) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:33:25 2008.118546) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:33:26 2008.119046) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:33:43 2008.135765) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:34:34 2008.187515) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:37:39 2008.372312) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:37:41 2008.374687) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:38:21 2008.414125) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 09:38:22 2008.415687) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:42:26 2008.89781) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:42:26 2008.89812) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:42:26 2008.89828) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:42:27 2008.91265) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:42:28 2008.91906) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:42:29 2008.93187) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:42:30 2008.93875) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:42:30 2008.94171) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:43:58 2008.182703) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Thu Jul 10 14:43:58 2008.182703) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Thu Jul 10 14:43:59 2008.182718) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Thu Jul 10 14:43:59 2008.182734) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Thu Jul 10 14:43:59 2008.182734) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Thu Jul 10 14:43:59 2008.182734) : Failed the second attempt to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
This event is dropped for this consumer.
(Thu Jul 10 14:43:59 2008.182750) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 14:43:59 2008.183296) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 14:43:59 2008.183296) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 14:43:59 2008.183296) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 14:43:59 2008.183296) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 14:43:59 2008.183296) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 14:43:59 2008.183296) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 14:43:59 2008.183343) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Thu Jul 10 14:43:59 2008.183359) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Thu Jul 10 14:43:59 2008.183359) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Thu Jul 10 14:46:55 2008.136593) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:46:56 2008.137578) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:46:56 2008.137593) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:46:56 2008.138484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:47:00 2008.141953) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:47:01 2008.143062) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:47:04 2008.145859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:47:04 2008.145937) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:47:05 2008.146718) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:47:35 2008.177156) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:53:55 2008.557359) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:54:05 2008.567328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:56:36 2008.718218) : ESS unable to load consumer provider NTEventLogEventConsumer from provider subsystem: 0x80041013
(Thu Jul 10 14:56:36 2008.718218) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041013.
WMI will reload and retry.
(Thu Jul 10 14:59:12 2008.130828) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:59:12 2008.130859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:59:12 2008.130859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:59:12 2008.130859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:59:12 2008.130859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 14:59:12 2008.130859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 18:44:28 2008.13647171) : NCProv: Didn't find function info for index 30(Thu Jul 10 18:44:28 2008.13647187) : NCProv: Didn't find function info for index 30(Thu Jul 10 18:44:28 2008.13647281) : NCProv: Didn't find function info for index 30(Thu Jul 10 18:44:28 2008.13647281) : NCProv: Didn't find function info for index 30(Thu Jul 10 18:44:28 2008.13647281) : NCProv: Didn't find function info for index 30(Thu Jul 10 18:44:29 2008.13647765) : NCProv: Didn't find function info for index 30(Thu Jul 10 18:46:14 2008.83750) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 18:46:14 2008.83812) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 18:46:14 2008.84453) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 18:46:14 2008.84671) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 18:46:16 2008.85875) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 18:46:17 2008.87406) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 18:46:18 2008.88078) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 18:48:16 2008.205734) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 18:48:31 2008.220843) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 18:50:27 2008.337140) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:21:36 2008.136140) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:21:36 2008.136171) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:21:36 2008.136500) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:21:37 2008.137515) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:21:38 2008.137984) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:21:39 2008.139328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:21:43 2008.143328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:21:43 2008.143484) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:21:44 2008.143937) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:25:37 2008.377046) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 21:59:45 2008.2425250) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Thu Jul 10 21:59:45 2008.2425281) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Thu Jul 10 21:59:45 2008.2425328) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Thu Jul 10 21:59:45 2008.2425343) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Thu Jul 10 21:59:45 2008.2425343) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Thu Jul 10 21:59:45 2008.2425343) : Failed the second attempt to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
This event is dropped for this consumer.
(Thu Jul 10 21:59:45 2008.2425343) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 21:59:45 2008.2425359) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 21:59:46 2008.2425625) : Dropping event destined for event consumer NTEventLogEventConsumer="SCM Event Log Consumer" in namespace //./root/subscription
(Thu Jul 10 21:59:46 2008.2426375) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Thu Jul 10 21:59:46 2008.2426421) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Thu Jul 10 21:59:46 2008.2426421) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Thu Jul 10 22:02:48 2008.120968) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:02:48 2008.120984) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:02:48 2008.121171) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:02:50 2008.122765) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:02:50 2008.123390) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:02:51 2008.124078) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:02:52 2008.125234) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:02:52 2008.125343) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:02:53 2008.126031) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:04:58 2008.250953) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:19:54 2008.1147281) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Thu Jul 10 22:20:56 2008.1209437) : Unable to register event source 'Service Control Manager' on server ''. Error code: 6B5
(Thu Jul 10 22:20:56 2008.1209437) : Event consumer provider is unable to instantiate event consumer NTEventLogEventConsumer="SCM Event Log Consumer": error code 0x80041001
(Thu Jul 10 22:20:56 2008.1209437) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041001.
WMI will reload and retry.
(Fri Jul 11 07:11:11 2008.127781) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:11:11 2008.127796) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:11:11 2008.127859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:11:12 2008.129109) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:11:12 2008.129218) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:11:13 2008.130609) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:11:14 2008.131312) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:11:14 2008.131421) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:11:15 2008.132187) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:12:38 2008.215421) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:48:20 2008.130781) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:48:20 2008.130796) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:48:20 2008.130796) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:48:20 2008.130796) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:48:20 2008.130796) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:48:20 2008.130796) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:49:17 2008.187796) : NCProv: Didn't find function info for index 30(Fri Jul 11 07:49:17 2008.187796) : NCProv: Didn't find function info for index 30(Fri Jul 11 07:49:17 2008.187796) : NCProv: Didn't find function info for index 30(Fri Jul 11 07:49:17 2008.187796) : NCProv: Didn't find function info for index 30(Fri Jul 11 07:49:17 2008.188062) : NCProv: Didn't find function info for index 30(Fri Jul 11 07:49:17 2008.188062) : NCProv: Didn't find function info for index 30(Fri Jul 11 07:51:01 2008.84625) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:51:02 2008.84796) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:51:02 2008.84796) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:51:02 2008.85328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:51:03 2008.86421) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:51:04 2008.87062) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 07:51:04 2008.87328) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:47:36 2008.3479375) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:49:49 2008.3611843) : ESS unable to load consumer provider NTEventLogEventConsumer from provider subsystem: 0x80041013
(Fri Jul 11 08:49:49 2008.3611843) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041013.
WMI will reload and retry.
(Fri Jul 11 08:52:37 2008.96125) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:52:37 2008.96171) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:52:37 2008.96421) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:52:38 2008.96953) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:52:39 2008.98171) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:52:40 2008.99109) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:52:40 2008.99109) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:53:17 2008.136421) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:53:31 2008.150562) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 08:54:30 2008.209468) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 12:25:27 2008.12865984) : ESS unable to load consumer provider NTEventLogEventConsumer from provider subsystem: 0x80041013
(Fri Jul 11 12:25:27 2008.12866046) : Failed the first attempt to retrieve the sink to deliver an event to event consumer NTEventLogEventConsumer="SCM Event Log Consumer" with error code 80041013.
WMI will reload and retry.
(Fri Jul 11 12:28:35 2008.139187) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 12:28:35 2008.139203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 12:28:35 2008.139203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 12:28:35 2008.139203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 12:28:35 2008.139203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 12:28:35 2008.139203) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 13:21:12 2008.3296515) : NCProv: Didn't find function info for index 30(Fri Jul 11 13:21:12 2008.3296531) : NCProv: Didn't find function info for index 30(Fri Jul 11 13:21:13 2008.3296625) : NCProv: Didn't find function info for index 30(Fri Jul 11 13:21:13 2008.3296625) : NCProv: Didn't find function info for index 30(Fri Jul 11 13:21:13 2008.3296625) : NCProv: Didn't find function info for index 30(Fri Jul 11 13:21:13 2008.3297312) : NCProv: Didn't find function info for index 30(Fri Jul 11 13:24:05 2008.151218) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 13:24:05 2008.151296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 13:24:05 2008.151296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 13:24:05 2008.151296) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 13:24:05 2008.151421) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 13:24:20 2008.165859) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 13:24:22 2008.168250) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 13:24:27 2008.173656) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 13:24:28 2008.174218) : NT Event Log Consumer: could not retrieve sid, 0x80041002
(Fri Jul 11 13:25:32 2008.238062) : NT Event Log Consumer: could not retrieve sid, 0x80041002



(Wed Nov 28 22:22:04 2007.291421) : NTLMLogin resulted in hr = 0x8004100e
(Thu Nov 29 09:26:17 2007.69093) : NTLMLogin resulted in hr = 0x8004100e
(Fri Nov 30 18:10:20 2007.897156) : NTLMLogin resulted in hr = 0x8004100e
(Sun Dec 02 22:09:14 2007.47913250) : NTLMLogin resulted in hr = 0x8004100e
(Tue Dec 04 00:13:47 2007.19298218) : NTLMLogin resulted in hr = 0x8004100e
(Sat Dec 08 23:17:41 2007.9670578) : ConnectViaDCOM, CoCreateInstanceEx resulted in hr = 0x8007045b
(Sat Dec 08 23:17:41 2007.9670593) : ConnectViaDCOM, CoCreateInstanceEx resulted in hr = 0x8007045b
(Sun Dec 09 23:52:43 2007.54719609) : ConnectViaDCOM, CoCreateInstanceEx resulted in hr = 0x80004002
(Sun Dec 09 23:52:44 2007.54719781) : ConnectViaDCOM, CoCreateInstanceEx resulted in hr = 0x80004002
(Sun Dec 09 23:52:47 2007.54722781) : ConnectViaDCOM, CoCreateInstanceEx resulted in hr = 0x80004002
(Mon Dec 10 22:59:13 2007.14410140) : ConnectViaDCOM, CoCreateInstanceEx resulted in hr = 0x80004002
(Mon Dec 10 22:59:13 2007.14410250) : ConnectViaDCOM, CoCreateInstanceEx resulted in hr = 0x80004002
(Mon Dec 10 22:59:13 2007.14410312) : ConnectViaDCOM, CoCreateInstanceEx resulted in hr = 0x80004002
(Wed Dec 12 07:48:02 2007.3731765) : ConnectViaDCOM, CoCreateInstanceEx resulted in hr = 0x80004002
(Wed Dec 12
0
Frappe Misere Messages postés 2702 Statut Membre 568
 
peux tu poster un nouveau rapport hijackthis, mais apres avoir renommé l'executable et l avaoir déplacé.
utilise le clic droit et couper/coller pour le deplacer et clic droit renommer.
donné lui n'importe quel nom, marguerite.exe par exemple.
0
line'cM
 
Voici le rapport Hijackthis :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:19:45, on 12/07/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\CA\eTrust Antivirus\InoRpc.exe
C:\Program Files\CA\eTrust Antivirus\InoRT.exe
C:\Program Files\CA\eTrust Antivirus\InoTask.exe
C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avscan.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\Apps\Powercinema\PCMService.exe
C:\apps\ABoard\ABoard.exe
C:\PROGRA~1\CA\ETRUST~1\realmon.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\apps\ABoard\AOSD.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\NETGEAR\WG111T\wlan111t.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {4596013b-6c31-408b-a266-deae5c086dc2} - (no file)
O2 - BHO: (no name) - {410E4251-5940-4283-9CEA-1B4E67EAD8C3} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {653A039B-0814-4796-9C2B-07AC0708B263} - (no file)
O2 - BHO: (no name) - {6E5E39A7-50CC-4127-BD25-B0AFE1775F27} - (no file)
O2 - BHO: (no name) - {73984FE0-9702-4C55-9C7B-9BA3C5861F25} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: {76e4e745-37fe-7ecb-3034-f4d79e3ad0ee} - {ee0da3e9-7d4f-4303-bce7-ef73547e4e67} - C:\WINDOWS\system32\hwhfxm.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: (no name) - {4596013b-6c31-408b-a266-deae5c086dc2} - (no file)
O3 - Toolbar: sqvgnrpx - {9437C997-89E6-4B84-A745-BEFD3A910FF5} - C:\WINDOWS\sqvgnrpx.dll (file missing)
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe
O4 - HKLM\..\Run: [Realtime Monitor] C:\PROGRA~1\CA\ETRUST~1\realmon.exe -s
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: NETGEAR WG111T Smart Wizard.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {BA162249-F2C5-4851-8ADC-FC58CB424243} (Image Uploader Control) - http://copainsdavant.linternaute.com/html_include_bibliotheque/objimageuploader/ImageUploader5.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DDD212E8-E0BC-47DA-A15E-3AD4D1EE12FC}: NameServer = 212.27.53.252,212.27.54.252
O21 - SSODL: StatAlrt - {de3588ca-b53c-4ab6-9e13-4303071926da} - C:\WINDOWS\Resources\StatAlrt.dll (file missing)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Client de licence CA (CA_LIC_CLNT) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmt.exe
O23 - Service: Serveur de licence CA (CA_LIC_SRVR) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmtd.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: eTrust Antivirus RPC Server (InoRPC) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Antivirus\InoRpc.exe
O23 - Service: eTrust Antivirus Realtime Server (InoRT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Antivirus\InoRT.exe
O23 - Service: eTrust Antivirus Job Server (InoTask) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Antivirus\InoTask.exe
O23 - Service: Event Log Watch (LogWatch) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
0
Frappe Misere Messages postés 2702 Statut Membre 568
 
tu as plusieurs antivirus sur ton poste ?
je vois etrust et antivir dans le log ?

avec hijackthis, fixe les lignes suivantes :
R3 - URLSearchHook: (no name) - {4596013b-6c31-408b-a266-deae5c086dc2} - (no file)
O2 - BHO: (no name) - {410E4251-5940-4283-9CEA-1B4E67EAD8C3} - (no file) O2 - BHO: (no name) - {653A039B-0814-4796-9C2B-07AC0708B263} - (no file)
O2 - BHO: (no name) - {6E5E39A7-50CC-4127-BD25-B0AFE1775F27} - (no file)
O2 - BHO: (no name) - {73984FE0-9702-4C55-9C7B-9BA3C5861F25} - (no file)
O2 - BHO: {76e4e745-37fe-7ecb-3034-f4d79e3ad0ee} - {ee0da3e9-7d4f-4303-bce7-ef73547e4e67} - C:\WINDOWS\system32\hwhfxm.dll
O3 - Toolbar: (no name) - {4596013b-6c31-408b-a266-deae5c086dc2} - (no file)
O3 - Toolbar: sqvgnrpx - {9437C997-89E6-4B84-A745-BEFD3A910FF5} - C:\WINDOWS\sqvgnrpx.dll (file missing)
O21 - SSODL: StatAlrt - {de3588ca-b53c-4ab6-9e13-4303071926da} - C:\WINDOWS\Resources\StatAlrt.dll (file missing)
0
E..T Messages postés 6565 Statut Contributeur 428
 
Salut,
En passant frappemisère ton lien pour MBAM n'est pas bon.
Et pour moi ce n'est pas un rapport de Malwarebyte's qui a été posté ?
Et ce n'est pas en fixant l'infection qu'elle va disparaitre !
Et de plus java n'est pas à jour.

@line'cM,
Désinstalle ce que tu as installé au début pour ton premier rapport, mais laisse hijackthis.

Fais ce qui suit :

* Télécharge MalwareByte's Anti-Malware (by RubbeR DuckY) :
*http://www.commentcamarche.net/telecharger/telecharger 34055379 malwarebyte s anti malware
* Installe le programme sur le bureau :

o S'il manque le fichier COMCTL32.OCX, télécharge le ici

* Fais les mises à jour (clic sur Mises à jour puis Recherche de mises à jour)

* Démarre en mode sans échec

* Lance le MalwareByte's Anti-Malware, clique sur Exécuter un examen complet puis Rechercher et sélectionnez tous tes disques durs

* Une fois le scan terminé, clique sur supprimer (si un message te demande de redémarrer le PC, accepte.)

* Un rapport sera généré, enregistre le de manière à le retrouver et poste le ici.

@++
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Frappe Misere Messages postés 2702 Statut Membre 568
 
j'aurais aimé savoir avant pour les antivirus...
mais puisque apparement ce n'est pas necessaire, je laisserais la prochaine fois.
0
E..T Messages postés 6565 Statut Contributeur 428
 
j'aurais aimé savoir avant pour les antivirus... pour ça j'ai rien dit, je pense que le membre as du en désinstaller un ?

Dis nous quoi linec'M ?

@++
0
Frappe Misere Messages postés 2702 Statut Membre 568
 
n'ayant pas de réponse depuis 2 semaines, je n'ai pas approfondi.
les vacances...
0
linec'M Messages postés 5 Statut Membre
 
Désolé, pas en vacances mais enceinte et très fatiguée alors j'ai un peu lachée l'affaire !!!
Merci de vos réponses et de votre aide mais étant donné que ça me prenais trop la tete j'ai refais entierement mon ordi comme ça y a plus rien dessus et depuis tout va bien, je touche du bois !!!
En ce qui concerne les deux antivirus ils étaients tous les deux installer mais l'un était éteint mais depuis j'ai instalé antivir qui est nettement mieux que Avast !!
Par contre si vous y connaissez j'ai un autre probleme depuis peu : probleme de cle wifi alors si vous pouvez m'aidez j'en serais ravie !!
A +
et merci encore ....
Céline
0