Fenêtres intempestives, pro scanner 2009

Fermé
Loonilys Messages postés 4 Date d'inscription jeudi 4 décembre 2008 Statut Membre Dernière intervention 4 décembre 2008 - 4 déc. 2008 à 18:22
Loonilys Messages postés 4 Date d'inscription jeudi 4 décembre 2008 Statut Membre Dernière intervention 4 décembre 2008 - 4 déc. 2008 à 19:39
Bonjour,
J'ai comme qui dirait un petit soucis. Et j'ai vu que je n'étais pas la seule à l'avoir sur ce forum. Mais comme chaque problème est unique...

J'utilise Firefox sans aucun soucis jusqu'à présent. Mais là, depuis ce week-end, j'ai des fenêtres intempestives (adblock + installé). Ces fenêtres me proposent "pro scanner 2009", entre autre chose.
J'ai fait tourné Malwarebytes je ne sais combien de fois. AVGRootkit, un scan avec Avast...
Rootkit ne trouve rien. Avast pas grand chose. Et Malware me trouve des fichiers infectés que je supprime à chaque fois. Quelques heures de tranquillité avant que cela recommence... Je n'en peux plus. Entre ces fenêtres qui me gonflent et la lenteur qui s'ensuit... >___<

Avez-vous besoin d'un rapport ? Celui de Hijackthis ou de Malware ?
(j'avoue, je suis un peu novice là-dedans...)

Je vous remercie par avance.
Bonne soirée
A voir également:

5 réponses

manyguess Messages postés 149 Date d'inscription jeudi 20 novembre 2008 Statut Membre Dernière intervention 8 mars 2014
4 déc. 2008 à 18:32
SPYWARE SPYWARE SPYWARE SPYWARE SPYWARE SPYWARE SPYWARE SPYWARE SPYWARE.................
0
Loonilys Messages postés 4 Date d'inscription jeudi 4 décembre 2008 Statut Membre Dernière intervention 4 décembre 2008
4 déc. 2008 à 18:48
Oui, c'est bien ce que je pense...
0
Loonilys Messages postés 4 Date d'inscription jeudi 4 décembre 2008 Statut Membre Dernière intervention 4 décembre 2008
4 déc. 2008 à 18:49
Je rajoute le rapport de Hijackthis.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:15:08, on 04/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\utorrent\utorrent.exe
C:\Program Files\Veoh Networks\Veoh\VeohClient.exe
C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\WINDOWS\system32\RAMASST.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Club-Internet\Dr Club Internet\bin\mpbtn.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\satellite m70-169\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Mega Manager IE Click Monitor - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: (no name) - {cf9982f1-efed-4c36-b3c4-998c5393abd9} - C:\WINDOWS\system32\bupudofa.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [guruzuyafa] Rundll32.exe "C:\WINDOWS\system32\mifolole.dll",s
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [Pando] "C:\Program Files\Pando Networks\Pando\pando.exe" /Automation
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [toscdspd] TOSCDSPD.EXE
O4 - HKCU\..\Run: [µTorrent] "C:\Program Files\utorrent\utorrent.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [RayV] C:\Program Files\RayV\RayV\RayV.exe /background
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash
O4 - HKCU\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [guruzuyafa] Rundll32.exe "C:\WINDOWS\system32\mifolole.dll",s (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: BlueSoleil.lnk = C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
O4 - Global Startup: Bluetooth Monitor.lnk = ?
O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Liens de téléchargement avec Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://www.genoom.com/js/photoUploader/control/ImageUploader5.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CFCBEE6F-BE54-4682-84F6-0E3FCDFAE3E2} (NowCAFE Control) - http://www.clubbox.co.kr/neo.fld/NowCAFE.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O16 - DPF: {F6E361B4-40F3-4C90-8A95-D95E0D8CBCD4} (MultiUpload Control) - http://www.clubbox.co.kr/neo.fld/MultiUpload.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs: c:\windows\system32\yoyamama.dll C:\WINDOWS\system32\laraletu.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Unknown owner - C:\Program Files\Fichiers communs\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SessionLauncher - Unknown owner - C:\DOCUME~1\SATELL~1\LOCALS~1\Temp\DX9\SessionLauncher.exe (file missing)
0
manyguess Messages postés 149 Date d'inscription jeudi 20 novembre 2008 Statut Membre Dernière intervention 8 mars 2014
4 déc. 2008 à 18:54
ouai c'est bien se que je pensais aussi vas ici...

https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/41933.html


telecharge le et fais une analyse...
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Loonilys Messages postés 4 Date d'inscription jeudi 4 décembre 2008 Statut Membre Dernière intervention 4 décembre 2008
4 déc. 2008 à 19:39
Tiens, une question d'ailleurs. Vu qu'il y a deux ordis en réseau, il faut également faire les manip' sur l'autre ? (a priori, il n'y a rien sur l'autre, Malware ne trouve rien du tout contrairement au mien)

J'ai fait l'analyse avec Spyware Terminator.

Logfile of Spyware Terminator v2.5.0.567

(db:2.012.004.000)
Scan Time: 04/12/2008 19:00:39 length: 2203 s
Platform: WXP (5.1.0.2600)
User: Admin
Boot Mode: Normal
Scan type: Full_Spyware_Scan
Scanned Objects: 81833 (Critical:13)
Filter: No System items, No Safe items, No

Invalid items

Running Processes
S24EvMon.exe [Intel Corporation ] : C:\Program

Files\Intel\Wireless\Bin\S24EvMon.exe
CFSvcs.exe [TOSHIBA CORPORATION] : C:\Program

Files\TOSHIBA\ConfigFree\CFSvcs.exe
DVDRAMSV.exe [Matsushita Electric Industrial

Co., Ltd.] : C:\WINDOWS\system32\DVDRAMSV.exe
EvtEng.exe [Intel Corporation] : C:\Program

Files\Intel\Wireless\Bin\EvtEng.exe
RegSrvc.exe [Intel Corporation] : C:\Program

Files\Intel\Wireless\Bin\RegSrvc.exe
CFSServ.exe [TOSHIBA CORPORATION] : C:\Program

Files\TOSHIBA\ConfigFree\CFSServ.exe
NDSTray.exe [TOSHIBA CORPORATION] : C:\Program

Files\TOSHIBA\ConfigFree\NDSTray.exe
igfxpers.exe [Intel Corporation] :

C:\WINDOWS\system32\igfxpers.exe
ZCfgSvc.exe [Intel Corporation] : C:\Program

Files\Intel\Wireless\bin\ZCfgSvc.exe
GrooveMonitor.exe [Microsoft Corporation] :

C:\Program Files\Microsoft Office\Office12

\GrooveMonitor.exe
SearchSettings.exe [Vendio Services, Inc.] :

C:\Program Files\Search

Settings\SearchSettings.exe
UnlockerAssistant.exe : C:\Program

Files\Unlocker\UnlockerAssistant.exe
VeohClient.exe [Veoh Networks] : C:\Program

Files\Veoh Networks\Veoh\VeohClient.exe
PrintScreen.exe [Gadwin Systems, Inc] :

C:\Program Files\Gadwin

Systems\PrintScreen\PrintScreen.exe
BlueSoleil.exe [IVT Corporation.] : C:\Program

Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
BtMon2.exe [TOSHIBA] : C:\Program

Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
WinCinemaMgr.exe [InterVideo Inc.] : C:\Program

Files\InterVideo\Common\Bin\WinCinemaMgr.exe
RAMASST.exe [Matsushita Electric Industrial Co.,

Ltd.] : C:\WINDOWS\system32\RAMASST.exe
mpbtn.exe : C:\Program Files\Club-Internet\Dr

Club Internet\bin\mpbtn.exe
MegaManager.exe [Megaupload Limited] :

C:\Program Files\Megaupload\Mega

Manager\MegaManager.exe

Internet Settings
R - HKCU\Software\Microsoft\Internet

Explorer\Main, Search Bar =

http://www.google.com/toolbar/ie8/sidebar.html
R - HKLM\Software\Microsoft\Internet

Explorer\Main, Start Page =

https://www.msn.com/fr-fr/?ocid=iehp
R - HKLM\Software\Microsoft\Internet

Explorer\Search, SearchAssistant =

http://www.google.com/toolbar/ie8/sidebar.html
R - HKLM\Software\Microsoft\Internet

Explorer\Search, CustomizeSearch =

https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89

{SUB_RFC1766}/srchasst/srchcust.htm
R -

HKCU\Software\Microsoft\Windows\CurrentVersion\I

nternet Settings, ProxyOverride =

127.0.0.1;localhost
R -

HKLM\System\CurrentControlSet\Services\Tcpip\Par

ameters, Domain =
R -

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\T

elephony, DomainName =

BHO
02 - BHO: RealPlayer Download and Record Plugin

for Internet Explorer - {3049C3E9-B461-4BC5-

8870-4C09146192CA} - [RealPlayer] : C:\Program

Files\Real\RealPlayer\rpbrowserrecordplugin.dll
02 - BHO: Groove GFS Browser Helper - {72853161

-30C5-4D22-B7F9-0BBC1D38A37E} - [Microsoft

Corporation] : C:\Program Files\Microsoft

Office\Office12\GrooveShellExtensions.dll
02 - BHO: Google Toolbar Helper - {AA58ED58-

01DD-4d91-8333-CF10577473F7} - [Google Inc.] :

C:\Program Files\google\googletoolbar4.dll
02 - BHO: IeMonitorBho Class - {bf00e119-21a3-

4fd1-b178-3b8537e75c92} - [Megaupload Limited]

: C:\Program Files\Megaupload\Mega

Manager\MegaIEMn.dll
02 - BHO: - {cf9982f1-efed-4c36-b3c4-

998c5393abd9} - : C:\WINDOWS\system32

\bupudofa.dll
02 - BHO: SearchSettings Class - {E312764E-7706

-43F1-8DAB-FCDD2B1E416D} - [Vendio Services,

Inc.] : C:\Program Files\Search Settings\kb127

\SearchSettings.dll

Toolbars
03 - Toolbar: &Google - {2318C2B1-4965-11d4-

9B18-009027A5CD4F} - [Google Inc.] : C:\Program

Files\google\googletoolbar4.dll
03 - Toolbar: Veoh Browser Plug-in - {D0943516-

5076-4020-A3B5-AEFAF26AB263} - [Veoh Networks

Inc] : C:\Program Files\Veoh

Networks\Veoh\Plugins\reg\VeohToolbar.dll

StartUps
04 -

HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un, Veoh : [Veoh Networks] : C:\Program

Files\Veoh Networks\Veoh\VeohClient.exe
04 -

HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un, Gadwin PrintScreen : [Gadwin Systems, Inc]

: C:\Program Files\Gadwin

Systems\PrintScreen\PrintScreen.exe
04 -

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un, MSPY2002 : : C:\WINDOWS\system32

\IME\PINTLGNT\IMSCINST.EXE
04 -

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un, Persistence : [Intel Corporation] :

C:\WINDOWS\system32\igfxpers.exe
04 -

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un, IntelZeroConfig : [Intel Corporation] :

C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
04 -

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un, GrooveMonitor : [Microsoft Corporation] :

C:\Program Files\Microsoft Office\Office12

\GrooveMonitor.exe
04 -

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un, SearchSettings : [Vendio Services, Inc.] :

C:\Program Files\Search

Settings\SearchSettings.exe
04 -

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un, UnlockerAssistant : : C:\Program

Files\Unlocker\UnlockerAssistant.exe
04 - Startup: %STARTUPALL%\BlueSoleil.lnk [IVT

Corporation.] : C:\Program Files\IVT

Corporation\BlueSoleil\BlueSoleil.exe
04 - Startup: %STARTUPALL%\Bluetooth Monitor.lnk

[TOSHIBA] : C:\Program Files\TOSHIBA\Bluetooth

Monitor\BtMon2.exe
04 - Startup: %STARTUPALL%\Docteur Club

Internet.lnk [Motive Communications, Inc.] :

C:\Program Files\Club-Internet\Dr Club

Internet\bin\matcli.exe
04 - Startup: %STARTUPALL%\InterVideo WinCinema

Manager.lnk [InterVideo Inc.] : C:\Program

Files\InterVideo\Common\Bin\WinCinemaMgr.exe
04 - Startup: %STARTUPALL%\Lancement rapide

d'Adobe Reader.lnk [Adobe Systems Incorporated]

: C:\Program Files\Adobe\Acrobat 7.0

\Reader\reader_sl.exe
04 - Startup: %STARTUPALL%\RAMASST.lnk

[Matsushita Electric Industrial Co., Ltd.] :

C:\WINDOWS\system32\RAMASST.exe

Shell Extensions
TouchPad PropSheet Class - {9ED66769-A198-41FE-

8615-601691C68846} - [COMPAL ELECTRONIC INC.] :

C:\WINDOWS\system32\TPprop.dll
RecordNow! SendToExt - {DEE12703-6333-4D4E-8F34

-738C4DCC2E04} - : C:\Program

Files\Sonic\RecordNow!\shlext.dll
RecordNow! ContextMenuExt - {E91B2703-013E-4A99

-AD33-2B6FB00AA356} - : C:\Program

Files\Sonic\RecordNow!\shlext.dll
IZArc DragDrop Menu - {CA5FEE26-14C1-4B5A-86E9-

233FC0EE2682} - : C:\Program

Files\IZArc\IZArcCM.dll
IZArc Shell Context Menu - {8D9D4D0D-FDDD-44CB-

AAB2-6161FA0757C5} - : C:\Program

Files\IZArc\IZArcCM.dll
RealOne Player Context Menu Class - {F0CB00CD-

5A07-4D91-97F5-A8C92CDA93E4} - [RealNetworks,

Inc.] : C:\Program

Files\Real\RealPlayer\rpshell.dll
My Logitech Pictures - {400CFEE2-39D0-46DC-96DF

-E0BB5A4324B3} - [Logitech Inc.] : C:\Program

Files\Logitech\Video\Namespc2.dll
Mes dossiers de partage - {FC9FB64A-1EB2-4CCF-

AF5E-1A497A9B5C2D} - [Microsoft Corporation] :

C:\Program Files\Windows

Live\Messenger\fsshext.8.5.1302.1018.dll
- {06A2568A-CED6-4187-BB20-400B8C02BE5A} -

[Microsoft Corporation] : C:\Program

Files\Windows Live\Photo

Gallery\WLXPhotoAcquireWizard.exe
Page de propriétés sans fil - {20082881-FC36-

4E47-9A7A-644C95FF749F} - [Microsoft

Corporation] : C:\Program Files\MICROSOFT

INTELLIPOINT\IPCPLWIR.DLL
Page des propriétés de la roulette - {AF90F543-

6A3A-4C1B-8B16-ECEC073E69BE} - [Microsoft

Corporation] : C:\Program Files\MICROSOFT

INTELLIPOINT\IPCPLWHL.DLL
Page des propriétés des activités - {653DCCC2-

13DB-45B2-A389-427885776CFE} - [Microsoft

Corporation] : C:\Program Files\MICROSOFT

INTELLIPOINT\IPCPLACT.DLL
Page des propriétés des boutons - {124597D8-

850A-41AE-849C-017A4FA99CA2} - [Microsoft

Corporation] : C:\Program Files\MICROSOFT

INTELLIPOINT\IPCPLBTN.DLL
Groove GFS Browser Helper - {72853161-30C5-4D22

-B7F9-0BBC1D38A37E} - [Microsoft Corporation] :

C:\Program Files\Microsoft Office\Office12

\GrooveShellExtensions.dll
Groove Folder Synchronization - {2A541AE1-5BF6-

4665-A8A3-CFA9672E4291} - [Microsoft

Corporation] : C:\Program Files\Microsoft

Office\Office12\GrooveShellExtensions.dll
Groove GFS Stub Icon Handler - {A449600E-1DC6-

4232-B948-9BD794D62056} - [Microsoft

Corporation] : C:\Program Files\Microsoft

Office\Office12\GrooveShellExtensions.dll
Groove GFS Stub Execution Hook - {B5A7F190-DDA6

-4420-B3BA-52453494E6CD} - [Microsoft

Corporation] : C:\Program Files\Microsoft

Office\Office12\GrooveShellExtensions.dll
Groove GFS Context Menu Handler - {6C467336-

8281-4E60-8204-430CED96822D} - [Microsoft

Corporation] : C:\Program Files\Microsoft

Office\Office12\GrooveShellExtensions.dll
Groove XML Icon Handler - {387E725D-DC16-4D76-

B310-2C93ED4752A0} - [Microsoft Corporation] :

C:\Program Files\Microsoft Office\Office12

\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 3 (GFS Folder) -

{16F3DD56-1AF5-4347-846D-7C10C4192619} -

[Microsoft Corporation] : C:\Program

Files\Microsoft Office\Office12

\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 2 (GFS Stub) -

{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} -

[Microsoft Corporation] : C:\Program

Files\Microsoft Office\Office12

\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 4 (GFS Unread Mark)

- {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} -

[Microsoft Corporation] : C:\Program

Files\Microsoft Office\Office12

\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 1 (GFS Unread Stub)

- {99FD978C-D287-4F50-827F-B2C658EDA8E7} -

[Microsoft Corporation] : C:\Program

Files\Microsoft Office\Office12

\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 2.5 (GFS Unread

Folder) - {920E6DB1-9907-4370-B3A0-BAFC03D81399}

- [Microsoft Corporation] : C:\Program

Files\Microsoft Office\Office12

\GrooveShellExtensions.dll
Microsoft Office OneNote Namespace Extension for

Windows Desktop Search - {5858A72C-C2B4-4dd7-

B2BF-B76DB1BD9F6C} - [Microsoft Corporation] :

C:\Program Files\Microsoft Office\Office12

\ONFILTER.DLL

Shell Extecute Hooks
Groove GFS Stub Execution Hook - {{B5A7F190-

DDA6-4420-B3BA-52453494E6CD}} - [Microsoft

Corporation] : C:\Program Files\Microsoft

Office\Office12\GrooveShellExtensions.dll

Protocol Handler
BackWeb GA Pluggable Protocol - {9462A756-7B47-

47BC-8C80-C34B9B80B32B} - [Logitech Inc.] :

C:\Program Files\Logitech\Desktop

Messenger\8876480\Program\GAPlugProtocol-

8876480.dll
Local Groove Web Services Protocol - {88FED34C-

F0CA-4636-A375-3CB6248B04CD} - [Microsoft

Corporation] : C:\Program Files\Microsoft

Office\Office12\GrooveSystemServices.dll
- {828030A1-22C1-4009-854F-8E305202313F} -

[Microsoft Corporation] : C:\Program

Files\Windows

Live\Messenger\msgrapp.8.5.1302.1018.dll
- {828030A1-22C1-4009-854F-8E305202313F} -

[Microsoft Corporation] : C:\Program

Files\Windows

Live\Messenger\msgrapp.8.5.1302.1018.dll

Services
23 - [Cisco Systems, Inc.] :

C:\WINDOWS\system32\DRIVERS\AegisP.sys
23 - [Agere Systems] : C:\WINDOWS\system32

\DRIVERS\AGRSM.sys
23 - [Realtek Semiconductor Corp.] :

C:\WINDOWS\system32\drivers\ALCXWDM.SYS
23 - [Alps Electric Co., Ltd.] :

C:\WINDOWS\system32\DRIVERS\Apfiltr.sys
23 - [GRISOFT, s.r.o.] : C:\WINDOWS\system32

\DRIVERS\avgarkt.sys
23 - [GRISOFT, s.r.o.] : C:\WINDOWS\system32

\DRIVERS\AvgArCln.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32

\DRIVERS\blueletaudio.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32

\DRIVERS\BlueletSCOAudio.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32

\DRIVERS\btnetdrv.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32

\Drivers\vbtenum.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32

\Drivers\BTHidMgr.sys
23 - [TOSHIBA CORPORATION] : C:\Program

Files\TOSHIBA\ConfigFree\CFSvcs.exe
23 - [Sonic Solutions] : C:\WINDOWS\system32

\drivers\drvmcdb.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\drivers\drvnddm.sys
23 - [Matsushita Electric Industrial Co., Ltd.]

: C:\WINDOWS\system32\DVDRAMSV.exe
23 - [Intel Corporation] : C:\Program

Files\Intel\Wireless\Bin\EvtEng.exe
23 - [Intel Corporation] : C:\WINDOWS\system32

\DRIVERS\igxpmp32.sys
23 - [InterVideo, Inc.] : C:\WINDOWS\system32

\drivers\iviaspi.sys
23 - [Matsushita Electric Industrial Co.,Ltd.] :

C:\WINDOWS\system32\Drivers\meiudf.sys
23 - [TOSHIBA Corporation.] :

C:\WINDOWS\system32\DRIVERS\netdevio.sys
23 - [VSO Software] : C:\WINDOWS\system32

\Drivers\pcouffin.sys
23 - [Intel Corporation] : C:\Program

Files\Intel\Wireless\Bin\RegSrvc.exe
23 - [Realtek Semiconductor Corporation] :

C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
23 - [Intel Corporation] : C:\Program

Files\Intel\Wireless\Bin\S24EvMon.exe
23 - [Intel Corporation] : C:\WINDOWS\system32

\DRIVERS\s24trans.sys
23 - [COMPAL ELECTRONIC INC.] :

C:\WINDOWS\system32\Drivers\SSIoMngr.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\drivers\sscdbhk5.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\drivers\ssrtln.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\dla\tfsnboio.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\dla\tfsncofs.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\dla\tfsndrct.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\dla\tfsndres.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\dla\tfsnifs.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\dla\tfsnopio.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\dla\tfsnpool.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\dla\tfsnudf.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32

\dla\tfsnudfa.sys
23 - [Texas Instruments] : C:\WINDOWS\system32

\drivers\tifm21.sys
23 - [TOSHIBA] : C:\WINDOWS\system32

\Drivers\TPwSav.sys
23 - [TOSHIBA Corporation] :

C:\WINDOWS\system32\DRIVERS\Tvs.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32

\DRIVERS\VComm.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32

\Drivers\VcommMgr.sys

Winlogon Notify
HKLM\Software\Microsoft\Windows

NT\CurrentVersion\Winlogon\Notify\igfxcui,

DLLName : [Intel Corporation] :

C:\WINDOWS\system32\igfxdev.dll

IE URL Search Hooks
SearchSettings Class - {{E312764E-7706-43F1-

8DAB-FCDD2B1E416D}} - [Vendio Services, Inc.] :

C:\Program Files\Search Settings\kb127

\SearchSettings.dll

Threat Files
<WhenU.SaveNow> : C:\Program Files\vvsn\vvsn.cfg
<Ircfast> : C:\Documents and Settings\satellite

m70-169\Favoris\Jeux.url
<Ircfast> : C:\Documents and Settings\satellite

m70-169\Favoris\Traducteur.url
<AdTool.MyWebSearch.bm> : C:\Documents and

Settings\satellite m70-169\Local

Settings\Temp\NERO13356\Toolbar.exe
<Trojan.Downloader.Agent.aaar> : C:\Program

Files\Fichiers

communs\Real\GToolbar\GoogleToolbarInstaller.exe

Advanced Files Report
%SYSDIR%\laraletu.dll

MD5=56BF6D960F4C8AAFC030DAD9E7741075 SIZE=63029
%SYSDIR%\netprovcredman.dll [Intel Corporation]

[NetProvCredMan Dynamic Link Library]

MD5=0A11C88BDBAD54B8FA4EBDB62CB916F7 SIZE=212992
%PROGRAMFILES%\Intel\Wireless\Bin\S24EvMon.exe

[Intel Corporation] [Intel(R) PROSet/Wireless

Service] MD5=E087728D371709C1817EF6487F3E2E73

SIZE=1187840
%PROGRAMFILES%\Intel\Wireless\Bin\TraceAPI.DLL

[Intel Corporation] [TraceAPI Module]

MD5=327C7AC2F1CAED6670F4726C50278B8B SIZE=585728
%PROGRAMFILES%\Intel\Wireless\Bin\PsRegApi.dll

[Intel Corporation] [PsRegApi]

MD5=2E9DD9CEDF15C4C2938D52863BF766DA SIZE=679936
%PROGRAMFILES%\Intel\Wireless\Bin\LIBEAY32.dll

[The OpenSSL Project, https://www.openssl.org/]

[The OpenSSL Toolkit]

MD5=11ADD8816D61A6025844EB5123EC92D3

SIZE=1089536
%PROGRAMFILES%\Intel\Wireless\Bin\IntStngs.dll

[Intel Corporation] [IntelSettings Dynamic Link

Library] MD5=3A8FF9C6CC9F1007A8B44A4AB09A2BD9

SIZE=507904
%PROGRAMFILES%\Intel\Wireless\Bin\IWMSPROV.DLL

MD5=F30158BC4314AE5638747205C505725C SIZE=245760
%PROGRAMFILES%\Alwil Software\Avast4

\French\Base.dll [ALWIL Software] [avast!

Antivirus] MD5=5F97B49F7C30A99AAF138F598625CF0D

SIZE=98304
%SYSDIR%\tbtmon.dll [Toshiba America Business

Solutions, Inc.] [Toshiba Bluetooth Port

Monitor] MD5=D6385B6A3C92085BF603397A602FEA4B

SIZE=167936
%SYSDIR%\TosBtHcrpAPI.dll

MD5=353DE1DEFD41B1E4A1B668320135200B SIZE=94208
%SYSDIR%\TosBtAPI.dll [TOSHIBA CORPORATION.]

[Bluetooth Stack for Windows by TOSHIBA]

MD5=4F623CB89FEAF45DB76CE062F1DA0AE6 SIZE=172104
%SYSDIR%\TosBdAPI.dll [TOSHIBA CORPORATION.]

[Bluetooth Stack for Windows by TOSHIBA]

MD5=3D8F7CB3824F6F83E22E7873230C0112 SIZE=98304
%SYSDIR%\tbtmon98Language.dll [Toshiba] [Toshiba

Test] MD5=E3E76EC6BC1104D067B7C60A3573EAE9

SIZE=36864
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFSvcs.exe

[TOSHIBA CORPORATION] [ConfigFree(TM)]

MD5=3CB0CC8879956C187E87E18634EE5164 SIZE=40960
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSAPI.dll

[TOSHIBA CORPORATION] [ConfigFree(TM)]

MD5=3B6C054AB0CB4EA03B184DC39E0EC28C SIZE=196608
%PROGRAMFILES%\TOSHIBA\ConfigFree\IpAdrSet.dll

[TOSHIBA CORPORATION] [ConfigFree(TM)]

MD5=05E97E1B4A2793B3451DAA903A031877 SIZE=98304
%SYSDIR%\DVDRAMSV.exe [Matsushita Electric

Industrial Co., Ltd.]

MD5=C9FFBD6B8EDC46CD3D13E3C6DB914FB7 SIZE=110592
%PROGRAMFILES%\Intel\Wireless\Bin\EvtEng.exe

[Intel Corporation] [Intel(R) PROSet/Wireless

Event Log] MD5=A2CA7C9169F5781A261310DFADC52514

SIZE=823296
%PROGRAMFILES%\Intel\Wireless\Bin\PfMgrApi.dll

[Intel Corporation] [ProfileMgrApi Dynamic Link

Library] MD5=CDBF865495B59C2E40B3FF52F4A3141C

SIZE=1241088
%PROGRAMFILES%\Intel\Wireless\Bin\DbEngine.dll

[Intel Corporation] [Secure Database Egnine]

MD5=1629CD0F29E53A2632AC886BBAA7D888 SIZE=524288
%PROGRAMFILES%\Intel\Wireless\Bin\MurocApi.dll

[Intel Corporation] [MurocApi Dynamic Link

Library] MD5=32EEF5AC23570B2295618A694B5D8741

SIZE=790528
%PROGRAMFILES%\Intel\Wireless\Bin\S24MUDLL.dll

[Intel Corporation] [Intel Mobile Unit Support

Service] MD5=45AF88F3FA53BB8933263C2A630ADB89

SIZE=172032
%PROGRAMFILES%\Intel\Wireless\Bin\RegSrvc.exe

[Intel Corporation] [Intel(R) PROSet/Wireless

Registry Service]

MD5=8477D7C3EE18513911547785A06EAF70 SIZE=483328
%PROGRAMFILES%\Unlocker\UnlockerHook.dll

MD5=78D62115F51B641A9F12AFDF50A352FC SIZE=4608
%PROGRAMFILES%\Malwarebytes' Anti-

Malware\mbamext.dll [Malwarebytes Corporation]

[Malwarebytes' Anti-Malware]

MD5=43169E9B8121AB037F49DAC91EE5DC66 SIZE=73360
%PROGRAMFILES%\IZArc\IZArcCM.dll

MD5=39DFCB1FDA8EC938E90C2CAD4AEF0E2B SIZE=617472
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFSServ.exe

[TOSHIBA CORPORATION] [ConfigFree(TM)]

MD5=49976054F72480E7BD7DD7F3A0451ED5 SIZE=798720
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSParts.dll

[TOSHIBA CORPORATION] [ConfigFree(TM)]

MD5=0A28BB98E81FE2B4D06475B323B6F826

SIZE=1859584
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSNLS.dll

[TOSHIBA CORPORATION] [ConfigFree(TM)]

MD5=060090C882B05E15A21090FAC0C4ECA4 SIZE=32768
%PROGRAMFILES%\TOSHIBA\ConfigFree\VENAPI.dll

[TOSHIBA] [TOSHIBA VENAPI]

MD5=68E922CAF28C5AC75713C38EB1A43C50 SIZE=139264
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFDropEx.dll

[TOSHIBA] [ConfigFree(TM)]

MD5=F83CEDC0BDE4EA183498A7B396856EF2 SIZE=57344
%SYSDIR%\TosBtAerialAPI.dll [TOSHIBA

CORPORATION.] [Bluetooth(TM) Stack for Windows

(R) by Toshiba]

MD5=635BE51F73CAA14ADA66AB1B8B470C0A SIZE=73728
%SYSDIR%\TosBtECCAPI.dll [TOSHIBA CORPORATION.]

[Bluetooth(TM) Stack for Windows(R) by Toshiba]

MD5=6860098EBDF05DA68F71F5A9C0AF0099 SIZE=69632
%PROGRAMFILES%\TOSHIBA\ConfigFree\TWLMAPI.dll

[TOSHIBA] [twlmapi Dynamic Link Library]

MD5=CEA174EA30D95B03E296B8906DD4F3ED

SIZE=1159168
%PROGRAMFILES%\TOSHIBA\ConfigFree\OpenProp.dll

[TOSHIBA CORPORATION] [ConfigFree(TM)]

MD5=F88259E28C954C73F1E7394BA6B55CDC SIZE=57344
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFXFER.dll

[TOSHIBA CORPORATION] [ConfigFree]

MD5=F5ACC9CA2FF209BC409B315BA33E4BC9 SIZE=57344
%SYSDIR%\TSBWLS.dll [COMPAL ELECTRONIC INC.]

[TSBWLS Dynamic Link Library]

MD5=BA8DF1E786B30A5BC188D65486E95645 SIZE=24576
%SYSDIR%\EKECioCtl.dll [EKECioCtl Dynamic Link

Library] MD5=BD0B062A9FD4398E51EAD110F503A007

SIZE=24576
%SYSDIR%\EBLib.dll [EBLib Dynamic Link Library]

MD5=21FD368F8BA632D6D4522C5F8430CB61 SIZE=28672
%PROGRAMFILES%\Alwil Software\Avast4

\French\Lang.dll [ALWIL Software] [avast!

Antivirus] MD5=68D17141D79B4EFA70412DAE5DB68543

SIZE=2572288
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSTray.exe

[TOSHIBA CORPORATION] [ConfigFree(TM) Tray]

MD5=947625435C542A62B2703A61F9665B85 SIZE=978944
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFWAN.dll

[TOSHIBA CORPORATION] [ConfigFree(TM) WAN DLL]

MD5=0544108FA6859BEF5F29137F2FBCBA22 SIZE=974848
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFUPNP.dll

[TOSHIBA CORPORATION] [ConfigFree]

MD5=74ED6C7EDF2B5508B25B890454AC7B35 SIZE=32768
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFP2API.dll

[TOSHIBA CORPORATION] [ConfigFree(TM)]

MD5=5186927C4F740FB6D683BBB406DCC4D5 SIZE=69632
%PROGRAMFILES%\TOSHIBA\ConfigFree\QCDPJ.dll

[Toshiba] [Toshiba QCDPJ]

MD5=EA872F0D31C9A5C5F8BF2B1A3A28D3D5 SIZE=172032
%SYSDIR%\hccutils.DLL [Intel Corporation]

[Intel(R) Common User Interface]

MD5=D0127023AF6070D5B479B1AE65B107A2 SIZE=102400
%SYSDIR%\igfxsrvc.dll [Intel Corporation]

[Intel(R) Common User Interface]

MD5=09A350F25D94D18190A8988E25671844 SIZE=46080
%SYSDIR%\igfxres.dll [Intel Corporation] [Intel

(R) Common User Interface]

MD5=AAF3461B06C18C6855B1ECF521C2494C SIZE=184320
%PROGRAMFILES%\Intel\Wireless\Bin\ZcSvcFRA.dll

[Intel Corporation] [ZeroCfgSvc Application]

MD5=4A34FF5CD0D7D27097563A66BF5F30F3 SIZE=65536
%PROGRAMFILES%\Intel\Wireless\Bin\FrWrkFRA.dll

[Intel Corporation] [Intel(R) PROSet/Wireless]

MD5=7A570A8B794E6CD716AF875F3F3084F7 SIZE=53248
%PROGRAMFILES%

\Intel\Wireless\Bin\FrameworkPlugins\ConnMgr.dll

[Intel Corporation] [Intel PROSet/Wireless]

MD5=512523E2A65778727A7A838F774B9A2F

SIZE=1548288
%PROGRAMFILES%\Intel\Wireless\Bin\IntWAFRA.dll

[Intel Corporation] [Intel PROSet/Wireless]

MD5=3A4EB6050C6664D204AB6027C0AAFB60 SIZE=401408
%PROGRAMFILES%\Search Settings\kb127

\SearchSettingsRes409.dll [Vendio Services,

Inc.] [Search Settings]

MD5=547BD4D968137ECCA42598A983E0D2D0 SIZE=50528
%PROGRAMFILES%

\Google\GoogleToolbarNotifier\3.1.807.1746

\gtn.dll [Google Inc.] [GoogleToolbarNotifier]

MD5=C287432FD819BB1E3A6AF2D3B73DF084 SIZE=130544
%PROGRAMFILES%\Veoh Networks\Veoh\BugSplat.dll

[BugSplat, LLC] [BugSplat Dynamic Link Library]

MD5=50A0A49F1901B56FC940B7A8076A8AD3 SIZE=227408
%PROGRAMFILES%\IVT

Corporation\BlueSoleil\BlueSoleil.exe [IVT

Corporation.] [BlueSoleil]

MD5=39C3E3FDB5DDC7506110C77BFF262403 SIZE=661776
%PROGRAMFILES%\IVT

Corporation\BlueSoleil\setup.dll [IVT

Corporation.] [BlueSoleil]

MD5=1B915385A08CAAA460E586130CB61188 SIZE=114761
%PROGRAMFILES%\IVT

Corporation\BlueSoleil\btpcfg.dll [IVT

Corporation.] [BlueSoleil]

MD5=F03B517A820A6A184E9326DEA7FEE75B SIZE=299108
%PROGRAMFILES%\IVT

Corporation\BlueSoleil\btwin.dll [IVT

Corporation.] [BlueSoleil]

MD5=7A5195733D7D7728822EB881BCB1E248 SIZE=131147
%PROGRAMFILES%\IVT

Corporation\BlueSoleil\versit.dll [IVT

Corporation.] [BlueSoleil]

MD5=A9A1434C4B94351196DE168E47342EA2 SIZE=110661
%PROGRAMFILES%\IVT

Corporation\BlueSoleil\btpres.dll [IVT

Corporation.] [BlueSoleil]

MD5=10062C12329C01522AF783113F7A96BF

SIZE=2338816
%PROGRAMFILES%\IVT

Corporation\BlueSoleil\Driver\USB\btcusb.dll

[IVT Corporation.] [IVT usb driver for Bluetooth

device] MD5=CEED0EA62631CD5FB964DAE7FACC7248

SIZE=51984
%SYSDIR%\lameACM.acm http://www.mp3dev.org/

[Lame MP3 codec]

MD5=22722B4E887BB95AB071542DE5A42C80 SIZE=839680
%SYSDIR%\ac3acm.acm [fccHandler] [AC-3 ACM

Codec] MD5=D95393B383FB3DB265836C84B53892A3

SIZE=118784
%PROGRAMFILES%\TOSHIBA\Bluetooth

Monitor\BtMon2.exe [TOSHIBA] [Bluetooth Monitor

2.0] MD5=547DE23D8D36FD1BBA618EE6A179674C

SIZE=65536
%PROGRAMFILES%

\InterVideo\Common\Bin\WinCinemaMgr.exe

[InterVideo Inc.] [WinCinema Manager for

InterVideo WinCinema products]

MD5=8A19ADA7FDA64C31AACB51A891C27BCB SIZE=278528
%PROGRAMFILES%\Logitech\Desktop

Messenger\8876480\8.1.1.50-

8876480SL\Program\backWeb.dll [BackWeb

Technologies Inc.] [BackWeb]

MD5=84AFB4711D4109F29D881EA7CFC69F47

SIZE=2293804
%PROGRAMFILES%\Logitech\Desktop

Messenger\8876480\8.1.1.50-

8876480SL\Program\bwsec.dll [BackWeb

Technologies Inc.] [BackWeb bwsec]

MD5=BB8BC9BC13D87B2C855B2BD50FBD1DCF SIZE=225335
%PROGRAMFILES%\Logitech\Desktop

Messenger\8876480\8.1.1.50-

8876480SL\Program\clntutil.dll

MD5=F2D0AD019503C48D85C5F70771288B63 SIZE=61496
%PROGRAMFILES%\Logitech\Desktop

Messenger\8876480\8.1.1.50-

8876480SL\Program\EN\ClientRc.dll [BackWeb

Technologies Inc.] [BackWeb]

MD5=9E2C13A26926EBB05015B8B41B4298C5 SIZE=172032
%PROGRAMFILES%\Logitech\Desktop

Messenger\8876480\Program\BWfiles-8876480.dll

[Logitech Inc.] [Logitech Desktop Messenger]

MD5=8C620F16E1D024049046F93B12E38855 SIZE=28711
%PROGRAMFILES%\Logitech\Desktop

Messenger\8876480\8.1.1.50-

8876480SL\Program\BWfiles.dll [BackWeb

Technologies Inc.] [BackWeb]

MD5=DAC29AD3DE12E0CAC510DE0FB1CBEC3B SIZE=159781
%PROGRAMFILES%\Logitech\Desktop

Messenger\8876480\Program\SyncExt.dll [Logitech]

[Logitech Desktop Messenger]

MD5=13965F4C5201DB7FCB34EF8CC05E47B5 SIZE=149008
%SYSDIR%\RAMASST.exe [Matsushita Electric

Industrial Co., Ltd.]

MD5=5648152AD2CCAB0265EAB9711755F484 SIZE=155648
%PROGRAMFILES%\Alwil Software\Avast4

\French\langmai.dll [ALWIL Software] [avast!

Antivirus] MD5=2D1F08241B5B85920FD430054166C2CB

SIZE=61440
%PROGRAMFILES%\Club-Internet\Dr Club

Internet\bin\mpbtn.exe

MD5=056B62587DCCE5E9480745BE84A0B765 SIZE=192512
%PROGRAMFILES%\Club-Internet\Dr Club

Internet\bin\clientutil52.dll [Motive

Communications, Inc.] [Motive System]

MD5=2FBA68B1B780B5A16CAA07EA9FE44D45 SIZE=282624
%PROGRAMFILES%\Club-Internet\Dr Club

Internet\bin\AsstCatalog.dll

MD5=B92BFEA21487CFFF3619CC5E61260F8A SIZE=57344
%PROGRAMFILES%\Club-Internet\Dr Club

Internet\bin\resource.dll [Motive

Communications, Inc.] [Motive System]

MD5=85EF775E01F1B5003DEFEF0B03EEF65C SIZE=45056
%SYSDIR%\Macromed\Flash\NPSWF32.dll [Adobe

Systems, Inc.] [Shockwave Flash]

MD5=58F41CA8F9C2014709F9547B2B81A468

SIZE=3695008
%PROGRAMFILES%\Megaupload\Mega

Manager\MegaManager.exe [Megaupload Limited]

[Mega Manager]

MD5=4D5FFF2E8C2484E4C5DC335F6CBE8314

SIZE=1945600
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwutils.dll

MD5=06C8170366F01AEEB9B9D3FDBCAB309D SIZE=36864
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwcore.dll

MD5=2BACE2D1D25F234FF6012B4C5CDCB3D7 SIZE=151552
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwinit.dll

MD5=1920437AE454F93C530F255CDC3565D6 SIZE=16384
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwfile.dll

MD5=F5801D5AD4AE071F1ADF0A09D8B47707 SIZE=28672
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwtrans.dll

MD5=B40B2CAAC0B333EA48F0467CD38122D9 SIZE=18432
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwdir.dll

MD5=7913A2F0B249A5C9F27886FE0CC611C0 SIZE=18944
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwhtml.dll

MD5=81759E98C869E04175B26C0515015089 SIZE=61440
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwapp.dll

MD5=555A1D991A209D77F449768D24278B6B SIZE=61440
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwstream.dll

MD5=36904038C2B9510E95B632BA83C1CD0F SIZE=23552
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwhttp.dll

MD5=EE8AD16F8CB832F7C537DBC7833D72EA SIZE=81920
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwmime.dll

MD5=F5DEACFB135891C8351B03E59D3CD15D SIZE=30208
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwcache.dll

MD5=EB790CED0AAF138F48520B8A4140B5EA SIZE=24576
%PROGRAMFILES%\Megaupload\Mega

Manager\HS_REGEX.dll

MD5=2BCD870B3E27818D725C90663A553448 SIZE=62464
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwftp.dll

MD5=8361DEF4B7392110D7613FD8A87AC000 SIZE=33280
%PROGRAMFILES%\Megaupload\Mega

Manager\wwwssl.dll

MD5=0A7EC2AE589CFE093342A96022E3F16E SIZE=13312
%PROGRAMFILES%\Megaupload\Mega

Manager\SSLEAY32.dll

MD5=9E7AA75F2ABB7B182E3572A3BD13093F SIZE=159744
%PROGRAMFILES%\Megaupload\Mega

Manager\LIBEAY32.dll

MD5=DB4BA0130D2A4727ABE171750CF7031D SIZE=839680
%PROGRAMFILES%\Megaupload\Mega Manager\res.dll

[Megaupload Limited] [Mega Manager]

MD5=9502F45E2CFDA937B321FA3AC55B39AC SIZE=307200
%SYSDIR%\Macromed\Flash\Flash9f.ocx [Adobe

Systems, Inc.] [Shockwave Flash]

MD5=48FDF435B8595604E54125B321924510

SIZE=2991488
%PROGRAMFILES%\PANDO NETWORKS\PANDO\PANDO.EXE
TOSCDSPD.EXE
%PROGRAMFILES%\RayV\RayV\RayV.exe \background
CFSServ.exe -NoClient
NDSTray.exe
%SYSDIR%\mifolole.dll
%PROGRAMFILES%\Club-Internet\Dr Club

Internet\bin\matcli.exe [Motive Communications,

Inc.] [Motive System]

MD5=90AEBCCB2E6AB9180113F21792D11C32 SIZE=217088
%PROGRAMFILES%\Adobe\Acrobat 7.0

\Reader\reader_sl.exe [Adobe Systems

Incorporated] [Adobe Acrobat]

MD5=DFCB9ADE94A4F8A7C42EEF41101A30AD SIZE=29696
%PROGRAMFILES%\google\googletoolbar4.dll [Google

Inc.] [Barre d'outils Google pour IE]

MD5=6D44E0C3B43D27484FBB355E470C4188

SIZE=2436160
deskpan.dll
%SYSDIR%\TPprop.dll [COMPAL ELECTRONIC INC.]

[TPprop Module]

MD5=CEE772DE5965CFA8DDE9A04D130351A3 SIZE=94208
%PROGRAMFILES%\Sonic\RecordNow!\shlext.dll

[RecordNow!]

MD5=D19305A60C4E181F1CE1DAA8F45638BA SIZE=73728
%PROGRAMFILES%\Real\RealPlayer\rpshell.dll

[RealNetworks, Inc.] [RealPlayer]

MD5=D3EA9C1687A12608BF4D505EDAC585D6 SIZE=63040
%PROGRAMFILES%\Logitech\Video\Namespc2.dll

[Logitech Inc.] [Logitech QuickCam]

MD5=2263BE04A864489E2828A9C4A1EAA5E1 SIZE=135168
%PROGRAMFILES%\Windows

Live\Messenger\fsshext.8.5.1302.1018.dll

[Microsoft Corporation] [Messenger]

MD5=8BDE1F61DFBAAE7A2916170E8B75FE0F SIZE=329240
%PROGRAMFILES%\Windows Live\Photo

Gallery\WLXPhotoAcquireWizard.exe [Microsoft

Corporation] [Windows Live Photo Gallery]

MD5=47851C6AFE59E6B850D14E347A2FA4FC SIZE=229920
%SYSDIR%\rundll32.exe "C:\Program Files\Windows

Live\Photo

Gallery\WLXPhotoViewer.dll",PhotoViewerComServer

{2BE99FD4-A181-4996-BFA9-58C5FFD11F6C}
%SYSDIR%\rundll32.exe "C:\Program Files\Windows

Live\Photo

Gallery\WLXPhotoViewer.dll",PhotoViewerComServer

{00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C}
%SYSDIR%\rundll32.exe "C:\Program Files\Windows

Live\Photo

Gallery\WLXPhotoViewer.dll",PhotoViewerComServer

{00F374B7-B390-4884-B372-2FC349F2172B}
%PROGRAMFILES%\MICROSOFT

INTELLIPOINT\IPCPLWIR.DLL [Microsoft

Corporation] [Microsoft IntelliPoint]

MD5=17412817CCA4D5CF610ADFF3FFC9E341 SIZE=777048
%PROGRAMFILES%\MICROSOFT

INTELLIPOINT\IPCPLWHL.DLL [Microsoft

Corporation] [Microsoft IntelliPoint]

MD5=24B70851DDF6D620E8680C6BC69FD020 SIZE=416600
%PROGRAMFILES%\MICROSOFT

INTELLIPOINT\IPCPLACT.DLL [Microsoft

Corporation] [Microsoft IntelliPoint]

MD5=E6B021E49A1027CA6CAF953128ABFFD2 SIZE=363352
%PROGRAMFILES%\MICROSOFT

INTELLIPOINT\IPCPLBTN.DLL [Microsoft

Corporation] [Microsoft IntelliPoint]

MD5=949B4467D13E025E0B0672C042673FC7 SIZE=629592
%PROGRAMFILES%\Microsoft Office\Office12

\ONFILTER.DLL [Microsoft Corporation] [Microsoft

Office OneNote]

MD5=23CD837C3E94BAF99C0B327C660D1DA6 SIZE=74800
%SYSDIR%\igfxdev.dll [Intel Corporation] [Intel

(R) Common User Interface]

MD5=58C8809D7486DB2D9C6A24A8630A5478 SIZE=204800
%SYSDIR%\DRIVERS\AegisP.sys [Cisco Systems,

Inc.] [AEGIS Protocol 3.7.5.0]

MD5=023867B6606FBABCDD52E089C4A507DA SIZE=21361
%SYSDIR%\DRIVERS\AGRSM.sys [Agere Systems]

[Agere SoftModem Driver]

MD5=029E01CB2938BEC5AF31BF47B6AF0159

SIZE=1066278
%SYSDIR%\drivers\ALCXWDM.SYS [Realtek

Semiconductor Corp.] [Windows (R) WDM driver for

Realtek AC'97 Audio(HRTF data Copyright 1994 by

MIT Media Lab)]

MD5=35045A23957A71BA649740741E69408C

SIZE=2324480
%SYSDIR%\DRIVERS\Apfiltr.sys [Alps Electric Co.,

Ltd.] [Alps Pointing-device Driver for Windows

2000/XP] MD5=87EC3FDCAF6C5052E2E72B861DEDD3D3

SIZE=101874
%SYSDIR%\svchost.exe -k netsvcs
%SYSDIR%\DRIVERS\avgarkt.sys [GRISOFT, s.r.o.]

[AVG Anti-Rootkit]

MD5=E8054A423E5D2BDAE6062BAB6DA159C4 SIZE=5632
%SYSDIR%\DRIVERS\AvgArCln.sys [GRISOFT, s.r.o.]

[AVG7 Clean Driver]

MD5=EC08D1625F5C6CF2A57B79EB35186F8C SIZE=3968
%SYSDIR%\DRIVERS\blueletaudio.sys [IVT

Corporation.] [Bluelet Audio Driver]

MD5=852A1BD08E7DFEB9E30B5440881C0501 SIZE=34704
%SYSDIR%\DRIVERS\BlueletSCOAudio.sys [IVT

Corporation.] [Bluelet Audio Driver]

MD5=8FC27B12A02B43947787F0EF1885DF9B SIZE=27792
%SYSDIR%\DRIVERS\btnetdrv.sys [IVT Corporation.]

[Bluetooth PAN Network Adapter Driver]

MD5=C5CCE2B26F73F8CF7F3C82159E79AA08 SIZE=18320
%SYSDIR%\Drivers\vbtenum.sys [IVT Corporation.]

[Bluetooth HID Enumerator Driver]

MD5=CE643D0918123D76A5CAAB008FCA9663 SIZE=20880
%SYSDIR%\Drivers\BTHidMgr.sys [IVT Corporation.]

[Bluetooth HID Manager Device Driver]

MD5=DFCA4FE4C8AEC786B4D0F432EB730F48 SIZE=35600
%SYSDIR%\svchost -k DcomLaunch
%SYSDIR%\svchost.exe -k NetworkService
%SYSDIR%\drivers\drvmcdb.sys [Sonic Solutions]

MD5=96BC8F872F0270C10EDC3931F1C03776 SIZE=88352
%SYSDIR%\drivers\drvnddm.sys [Sonic Solutions]

MD5=5AFBEC7A6AC61B211633DFDB1D9E0C89 SIZE=40544
%SYSDIR%\DRIVERS\igxpmp32.sys [Intel

Corporation] [Intel Graphics Accelerator Drivers

for Windows NT(R)]

MD5=2AAE7BE67911F4AEC9AD28E9CFB9096F

SIZE=5672032
%SYSDIR%\drivers\iviaspi.sys [InterVideo, Inc.]

[InterVideo ASPI Shell]

MD5=F59C3569A2F2C464BB78CB1BDCDCA55E SIZE=21060
%SYSDIR%\svchost.exe -k LocalService
%SYSDIR%\Drivers\meiudf.sys [Matsushita Electric

Industrial Co.,Ltd.]

MD5=7EFAC183A25B30FB5D64CC9D484B1EB6 SIZE=102384
%SYSDIR%\DRIVERS\netdevio.sys [TOSHIBA

Corporation.] [TOSHIBA Network Device Usermode

I/O protocol]

MD5=1265EB253ED4EBE4ACB3BD5F548FF796 SIZE=12032
%SYSDIR%\Drivers\pcouffin.sys [VSO Software]

[Patin couffin engine]

MD5=5B6C11DE7E839C05248CED8825470FEF SIZE=47360
%SYSDIR%\svchost -k rpcss
%SYSDIR%\DRIVERS\Rtlnicxp.sys [Realtek

Semiconductor Corporation] [Realtek 10/100/1000

NIC Family all in one NDIS Driver]

MD5=7F0413BDD7D53EB4C7A371E7F6F84DF1 SIZE=74496
%SYSDIR%\DRIVERS\s24trans.sys [Intel

Corporation] [Intel Wireless LAN Packet Driver]

MD5=15F598DDAAFAE02102438F09D4D14461 SIZE=12288
%SYSDIR%\Drivers\SSIoMngr.sys [COMPAL ELECTRONIC

INC.] [Compal IoManager Application]

MD5=79B7AF340D55861DF1D69E7BAC975FCC SIZE=6400
%SYSDIR%\drivers\sscdbhk5.sys [Sonic Solutions]

MD5=98625722AD52B40305E74AAA83C93086 SIZE=5627
%SYSDIR%\drivers\ssrtln.sys [Sonic Solutions]

MD5=D79412E3942C8A257253487536D5A994 SIZE=23545
%SYSDIR%\svchost.exe -k imgsvc
%SYSDIR%\dla\tfsnboio.sys [Sonic Solutions]

MD5=D0177776E11B0B3F272EEBD262A69661 SIZE=25725
%SYSDIR%\dla\tfsncofs.sys [Sonic Solutions]

MD5=599804BC938B8305A5422319774DA871 SIZE=34845
%SYSDIR%\dla\tfsndrct.sys [Sonic Solutions]

MD5=A1902C00ADC11C4D83F8E3ED947A6A32 SIZE=4125
%SYSDIR%\dla\tfsndres.sys [Sonic Solutions]

MD5=E2260A2BB1B24526BFAA7DF426B69B20 SIZE=2273
%SYSDIR%\dla\tfsnifs.sys [Sonic Solutions]

MD5=C4F2DEA75300971CDAEE311007DE138D SIZE=86876
%SYSDIR%\dla\tfsnopio.sys [Sonic Solutions]

MD5=272925BE0EA919F08286D2EE6F102B0F SIZE=15069
%SYSDIR%\dla\tfsnpool.sys [Sonic Solutions]

MD5=7B7D955E5CEBC2FB88B03EF875D52A2F SIZE=6365
%SYSDIR%\dla\tfsnudf.sys [Sonic Solutions]

MD5=E3D01263109D800C1967C12C10A0B018 SIZE=98716
%SYSDIR%\dla\tfsnudfa.sys [Sonic Solutions]

MD5=B9E9C377906E3A65BC74598FFF7F7458 SIZE=100605
%SYSDIR%\drivers\tifm21.sys [Texas Instruments]

[Texas Instruments PCIxx21/PCIxx12 Integrated

FlashMedia Controller]

MD5=0EDC3CF7B38F4260EB006C38E4A44DE4 SIZE=162176
%SYSDIR%\Drivers\TPwSav.sys [TOSHIBA]

MD5=F163E994D26C2B17FEE748FA84FBDBA5 SIZE=9600
%SYSDIR%\DRIVERS\Tvs.sys [TOSHIBA Corporation]

[Audio Filter]

MD5=925B851B10EEFECE7ED6B9A1C8873135 SIZE=30592
%SYSDIR%\DRIVERS\VComm.sys [IVT Corporation.]

[Bluetooth Serial Port Driver]

MD5=51750B0539986186C6931FC40D171521 SIZE=34448
%SYSDIR%\Drivers\VcommMgr.sys [IVT Corporation.]

[Bluetooth VcommMgr Driver]

MD5=6D9C891C0A761AFED1F3609C2E56F2B9 SIZE=44304
%SYSDIR%\svchost.exe -k WudfServiceGroup
%PROGRAMFILES%\Logitech\Desktop

Messenger\8876480\Program\GAPlugProtocol-

8876480.dll [Logitech Inc.] [Logitech Desktop

Messenger] MD5=8C620F16E1D024049046F93B12E38855

SIZE=28711
%PROGRAMFILES%\Microsoft Office\Office12

\GrooveSystemServices.dll [Microsoft

Corporation] [GrooveSystemServices Module]

MD5=C48CBBD38D7FBB0E86F4364062EBC66E SIZE=224128
%PROGRAMFILES%\Windows

Live\Messenger\msgrapp.8.5.1302.1018.dll

[Microsoft Corporation] [Messenger]

MD5=56319E6B4D190A2DEB4463A9CE4D4F74 SIZE=66072
%WINDIR%\AGRSMMSG.exe [Agere Systems] [Agere

SoftModem Messaging Applet]

MD5=B2ED4020EE2A9446649CE6B0A918C91C SIZE=88358
%PROGRAMFILES%\Lavasoft\Ad-Aware SE Personal\Ad

-Aware.exe [Lavasoft Sweden] [Lavasoft Ad-Aware

SE] MD5=1B0EDBF799B57EAD6EF68A82906C2097

SIZE=824832
%SYSDIR%\pxcpyi64.exe [Sonic Solutions]

MD5=81647023B248DE7880FAB1FC4185E6E4 SIZE=120304
%SYSDIR%\vxblock.dll [Sonic Solutions]

MD5=E9DECCCF20DEB7D5E904F35A7C483EAD SIZE=88560
%WINDIR%

\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e

3b_8.0.50727.762_x-ww_91481303\mfc80ITA.dll

[Microsoft Corporation] [Microsoft® Visual

Studio® 2005]

MD5=CB23B162AC655F24C6711A5F5DF348C6 SIZE=61440
%WINDIR%

\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_

8.0.50727.762_x-ww_3bf8fa05\mfc80.dll [Microsoft

Corporation] [Microsoft® Visual Studio® 2005]

MD5=1B7524806D0270B81360C63A2FA047CB

SIZE=1101824
%PROGRAMFILES%\Java\jre1.6.0_07\bin\JdbcOdbc.dll

[Sun Microsystems, Inc.] [Java(TM) Platform SE 6

U7] MD5=F708430AE09C4102933E24CD6D12780D

SIZE=36352
%PROGRAMFILES%\Java\jre1.6.0_07\bin\dcpr.dll

[Sun Microsystems, Inc.] [Java(TM) Platform SE 6

U7] MD5=D6E7FFCD38ECDFE4BD8DCE29D8D1A654

SIZE=143360
%PROGRAMFILES%\Java\jre1.6.0_07\bin\ioser12.dll

[Sun Microsystems, Inc.] [Java(TM) Platform SE 6

U7] MD5=5CF15BC4493299F6645DB27B51278D2A

SIZE=12800
%PROGRAMFILES%\Java\jre1.6.0_07\bin\javacpl.cpl

[Sun Microsystems, Inc.] [Java(TM) Platform SE 6

U7] MD5=370716E3CA99E6A4346F272DA56017C1

SIZE=73728
%PROGRAMFILES%\Java\jre1.6.0_07

\bin\policytool.exe [Sun Microsystems, Inc.]

[Java(TM) Platform SE 6 U7]

MD5=1C0C6888952D9EC22A7B5C6FAD0E8160 SIZE=25600
%SYSDIR%\MFC71DEU.DLL [Microsoft Corporation]

[Microsoft® Visual Studio .NET]

MD5=C94D9D5B96D385586063093BAAD8F206 SIZE=65536
%COMMONFILES%\Microsoft

Shared\GRPHFLT\CGMIMP32.FLT [Microsoft

Corporation] [2007 Microsoft Office system]

MD5=ED6FD771408178CECC82E1D84BEBF196 SIZE=290680
%COMMONFILES%\Microsoft Shared\MODI\12.0

\BINDER.DLL [ScanSoft, Inc.] [ScanSoft API]

MD5=623BFFC21F6258855673B751CC81E2DA SIZE=22936
%COMMONFILES%\Microsoft Shared\MODI\12.0

\FORM.DLL [Tsinghua/Wintone and ScanSoft, Inc.]

[Asian OCR for ScanSoft API]

MD5=51B3711D0BC33C6BD9AD3461DC7551C4 SIZE=78728
%COMMONFILES%\Microsoft Shared\MODI\12.0

\REVERSE.DLL [Tsinghua/Wintone and ScanSoft,

Inc.] [Asian OCR for ScanSoft API]

MD5=4EFF9C4F83DFCC7D902C588AF2CB4349 SIZE=22416
%COMMONFILES%\Microsoft Shared\MODI\12.0

\THOCR.PSP [ScanSoft, Inc.] [ScanSoft API]

MD5=FDD07C0A5B579645EFECBC304D9DA32B SIZE=190464
%COMMONFILES%\Microsoft Shared\OFFICE12

\ACECORE.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=77B7089D98E0CFABBB2EE56B8579CF18

SIZE=1754536
%COMMONFILES%\Microsoft Shared\OFFICE12

\ACEES.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=9584476B8082C208B6206D9B5B810538 SIZE=193992
%COMMONFILES%\Microsoft Shared\OFFICE12

\ACEODDBS.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=63D501D1AAF0B91BF66CF7DD203AC5D3 SIZE=17800
%COMMONFILES%\Microsoft Shared\OFFICE12

\ACEODEXL.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=6014430D5B1406BE794AA8FD6EE756C9 SIZE=17800
%COMMONFILES%\Microsoft Shared\OFFICE12

\ACEODTXT.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=E41A3724A30C92353FD9151A8F687DEC SIZE=17800
%COMMONFILES%\Microsoft Shared\OFFICE12

\ACEPDE.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=3569A008EF6EA8A713E37C2AE508FFAF SIZE=394688
%COMMONFILES%\Microsoft Shared\OFFICE12

\ACER2X.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=C9EA14E222E1193AD172838EE493D601 SIZE=263616
%COMMONFILES%\Microsoft Shared\OFFICE12

\ACEREP.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=9C82A5B565FFEB99F98F85370BF13124 SIZE=554440
%COMMONFILES%\Microsoft Shared\OFFICE12

\ACEWDAT.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=B574E857BA27BD814D4B1DCD76A8375B SIZE=826232
%COMMONFILES%\Microsoft Shared\OFFICE12

\ACEWSS.DLL [Microsoft Corporation] [Microsoft

Office System 2007]

MD5=FA7748447F93D72F4DC5A0F12AD9C452 SIZE=201664
%COMMONFILES%\Microsoft Shared\OFFICE12

\LBGHOST.DLL [Microsoft Corporation] [Microsoft

Office Program Recovery]

MD5=1634146F136AD3CCA799C1E5137A82AE SIZE=70976
%COMMONFILES%\Microsoft Shared\OFFICE12

\MSOMSE.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=7D03DEF7CD3597DAF8EA663DC4F3B463 SIZE=66368
%COMMONFILES%\Microsoft Shared\OFFICE12\MSSH.DLL

[Microsoft Corporation] [2007 Microsoft Office

system] MD5=7F8223AE42E47C9EAD7B1EDEE3806DEE

SIZE=43832
%COMMONFILES%\Microsoft Shared\OFFICE12

\MSSOAP30.DLL [Microsoft Corporation] [Microsoft

Office Soap SDK]

MD5=8E72F01D9B2C5F120486B3A8C5491D93 SIZE=507768
%COMMONFILES%\Microsoft Shared\OFFICE12

\OFFLB.EXE [Microsoft Corporation] [Microsoft

Office Program Recovery]

MD5=64865C2D27EFA61AF879B665ED676966 SIZE=556424
%COMMONFILES%\Microsoft Shared\OFFICE12

\WISC30.DLL [Microsoft Corporation] [Microsoft

Office Soap SDK 3.0]

MD5=9E8A7DABAF456A67798929A4C4F06218 SIZE=123720
%COMMONFILES%\Microsoft Shared\PROOF\MSHY3ES.DLL

[Spanish Hyphenation Engine]

MD5=E6B933E95B55D65A64FB8AFF60FD42E9 SIZE=919696
%COMMONFILES%\Microsoft Shared\Smart

Tag\FPERSON.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=F1D0AF8645A1B9AB82470F409F42CE6E SIZE=149816
%COMMONFILES%\System\Ole DB\msmgdsrv.dll

[Microsoft Corporation] [Microsoft SQL Server

Analysis Services]

MD5=30982CC1E54A6D33C84010415289007F

SIZE=6040432
%PROGRAMFILES%\Microsoft Office\Office12

\ACCVDT.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=CCA024C8B032EFEE7E8AC932ED1BA63D

SIZE=3135304
%PROGRAMFILES%\Microsoft Office\Office12

\CDLMSO.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=BA9EC8513C365E999FA1E9F823D2FA68 SIZE=402784
%PROGRAMFILES%\Microsoft Office\Office12

\GREN50.OLB [Microsoft Corporation] [Microsoft

Graph] MD5=998732254D8D7E19EB75083657756635

SIZE=57344
%PROGRAMFILES%\Microsoft Office\Office12

\MLCFG32.CPL [Microsoft Corporation] [Microsoft

Office Outlook]

MD5=CD2E930E206F5D6647C12C0BCB614101 SIZE=83264
%PROGRAMFILES%\Microsoft Office\Office12

\MSCAL.OCX [Microsoft Corporation] [Contrôle

Calendrier Microsoft]

MD5=C76EC546CB449D19D2EBEE8E4BDFF728 SIZE=113024
%PROGRAMFILES%\Microsoft Office\Office12

\MSODCW.DLL [Microsoft Corporation] [Microsoft

Office Disk Cleanup Wizard]

MD5=AED71BD7CFE150290A53B8E3B6F3E0D1 SIZE=431456
%PROGRAMFILES%\Microsoft Office\Office12

\MSPST32.DLL [Microsoft Corporation] [Microsoft

Office Outlook]

MD5=4909A838F2BD9C4ED7CF7EFFDF3F1E15

SIZE=1110112
%PROGRAMFILES%\Microsoft Office\Office12

\NAME.DLL [Microsoft Corporation] [2007

Microsoft Office system]

MD5=1C7A4288196FE72EF9AB885CF047C67C SIZE=68464
%PROGRAMFILES%\Microsoft Office\Office12\OIS.EXE

[Microsoft Corporation] [Microsoft Office

Picture Manager]

MD5=34331352E23FE6219F517C1709E63C61 SIZE=277384
%PROGRAMFILES%\Microsoft Office\Office12

\OUTLPH.DLL [Microsoft Corporation] [Microsoft

Office Outlook]

MD5=F63AD09A21D6FD6E1E14D6666799380D SIZE=180800
%PROGRAMFILES%\Microsoft Office\Office12

\RECALL.DLL [Microsoft Corporation] [Microsoft

Office Outlook]

MD5=4F296FD5CF0F0790E221CFBFCAD800E2 SIZE=39208
%PROGRAMFILES%\Microsoft Office\Office12

\VPREVIEW.EXE [Microsoft Corporation] [2007

Microsoft Office system]

MD5=16110CC8422078F4707895CAAB470BFE SIZE=33080
%PROGRAMFILES%\Microsoft Office\Office12

\VVIEWDWG.DLL [Microsoft Corporation]

[Microsoft® Office Visio® 2007]

MD5=46C669646C7BE721D1C73D08FC70772A

SIZE=1846160
%PROGRAMFILES%\Microsoft Office\Office12

\WINWORD.EXE [Microsoft Corporation] [2007

Microsoft Office system]

MD5=55A949AB657322ED818F8BFD786D8573 SIZE=349720
%PROGRAMFILES%\Microsoft Office\Office12

\XLCALL32.DLL [Microsoft Corporation] [Microsoft

Office Excel]

MD5=F1446D85469492DEEC3D4E91C7028911 SIZE=13368
%PROGRAMFILES%\Microsoft Office\Office12

\nlsdata0000.dll [Microsoft Corporation]

[Natural Language Components]

MD5=4BE858FC7835BEFE6A5A6AB669805016

SIZE=1512304
%PROGRAMFILES%\Microsoft Works\ltkrn13n.dll

[LEAD Technologies, Inc.] [LEADTOOLS(r) DLL for

Win32] MD5=9F55BFD2C68DDD94F261B4E7A177042B

SIZE=468568
%SYSDIR%\SCP32.DLL [Microsoft Corporation]

[Microsoft Visual Basic for Applications]

MD5=781BB5095E39817469AB034138C07EBE SIZE=15872
%SYSDIR%\THREED32.OCX [Sheridan Software

Systems, Inc.] [Microsoft Visual Basic]

MD5=A9A7BA22719F38BC03A914F6EE59AF2F SIZE=200704
%SYSDIR%\tabctl32.ocx [Microsoft Corporation]

[TabCtl32 Object Library]

MD5=DC925B6D77BA9ECB532E2F6750BE943B SIZE=224016

End of Report


Suppression:

Préparation…
Création d'un point de restauration
Supprimer WhenU.SaveNow
Les fichiers sélectionnés ont été supprimés.:

C:\Program Files\vvsn\vvsn.cfg
Supprimer le répertoire: C:\Program

Files\vvsn\
Supprimer Ircfast
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\Favoris\Jeux.url
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\Favoris\Traducteur.url
Supprimer Trojan.Downloader.Agent.aaar
Les fichiers sélectionnés ont été supprimés.:

C:\Program Files\Fichiers

communs\Real\GToolbar\GoogleToolbarInstaller.exe
Supprimer Affiliate tracking cookie
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\cookies\satellite_m70-169@2o7[1].txt
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\cookies\satellite_m70-169@ads.pointroll[2].txt
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\cookies\satellite_m70-169@advertising[1].txt
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\cookies\satellite_m70-169@apmebf[1].txt
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\cookies\satellite_m70-169@atdmt[2].txt
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\cookies\satellite_m70-169@doubleclick[2].txt
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\cookies\satellite_m70-169@mediaplex[1].txt
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\cookies\satellite_m70-169@serving-sys[2].txt
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\cookies\satellite_m70-169@spaces.live[1].txt
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\cookies\satellite_m70-169@statse.webtrendslive

[2].txt
Supprimer AdTool.MyWebSearch.bm
Les fichiers sélectionnés ont été supprimés.:

C:\Documents and Settings\satellite m70-169

\Local Settings\Temp\NERO13356\Toolbar.exe
Supprimer Invalid Startup Items
Suppression de la clé registre :

HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un Pando
Suppression de la clé registre :

HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un toscdspd
Suppression de la clé registre :

HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un BgMonitor_{79662E04-7C6C-4d9f-84C7-

88D8A56B10AA}
Suppression de la clé registre :

HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un RayV
Suppression de la clé registre :

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un CFSServ.exe
Suppression de la clé registre :

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un NDSTray.exe
Suppression de la clé registre :

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R

un guruzuyafa
Fermeture du point de restauration système
Analyse(s) terminée(s)
0