Prob. installation ATI/Carte graphique
Jall
-
Destrio5 Messages postés 99820 Statut Modérateur -
Destrio5 Messages postés 99820 Statut Modérateur -
Bonjour,
J'ai récemment acheté une nouvelle carte graphique pour pouvoir jouer convenablement à Gears of War mais j'ai un soucis pendant l'installation...
J'ai désinstallé tous les programmes ATI, changé la carte graphique et utilisé le CD fourni avec pour tenter d'installer les pilotes, mais pendant l'installation d'ATI Catalyst center une erreur apparait qui dit : "La compatibilité avec Window n'est pas vérifiée, vous n'aurez pas le logo window si vous continuez l'installation et ca pourra causer des problèmes a votre système d'exploitation" (un truc comme ca du moins)
Effectivement je ne peux plus jouer a GoW et le PC redémarre quand je lance certains programmes :s
Je ne sais pas si le problème vient de là.
J'ai téléchargé les derniers drivers pour ma carte graphique pourtant. Mais j'ai toujours le même problème qui revient pour ATI.
Je n'ai pas l'icône ATI dans la barre des tâches ni dans le panneau de configuration.
Carte graphique : Asus EAH3450
Merci d'avance pour vos réponses j'espère que j'ai mis assez de détails
J'ai récemment acheté une nouvelle carte graphique pour pouvoir jouer convenablement à Gears of War mais j'ai un soucis pendant l'installation...
J'ai désinstallé tous les programmes ATI, changé la carte graphique et utilisé le CD fourni avec pour tenter d'installer les pilotes, mais pendant l'installation d'ATI Catalyst center une erreur apparait qui dit : "La compatibilité avec Window n'est pas vérifiée, vous n'aurez pas le logo window si vous continuez l'installation et ca pourra causer des problèmes a votre système d'exploitation" (un truc comme ca du moins)
Effectivement je ne peux plus jouer a GoW et le PC redémarre quand je lance certains programmes :s
Je ne sais pas si le problème vient de là.
J'ai téléchargé les derniers drivers pour ma carte graphique pourtant. Mais j'ai toujours le même problème qui revient pour ATI.
Je n'ai pas l'icône ATI dans la barre des tâches ni dans le panneau de configuration.
Carte graphique : Asus EAH3450
Merci d'avance pour vos réponses j'espère que j'ai mis assez de détails
A voir également:
- Prob. installation ATI/Carte graphique
- Carte d'identité - Accueil - Services publics
- Changer carte graphique - Guide
- Pile carte mere - Guide
- Installation windows 10 sans compte microsoft - Guide
- Ventilateur carte graphique ne tourne pas - Forum Carte graphique
45 réponses
Je viens de tester, même problème : "Le logiciel n'a pas été validé pendant le test permettant d'obtenir le logo windows" et gnagnagna peut entrainer des erreurs tout ça...
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
---> Télécharge et installe Everest Ultimate :
http://www.clubic.com/lancer-le-telechargement-25730-0-everest-ultimate.html
---> Lance-le, va dans "Ordinateur" puis "Résumé" et donne-nous le résumé. Pour prendre le résumé, utilise la fonction Rapport en haut de ton écran :
http://sd-1.archive-host.com/membres/up/3288717712384394/Config.jpg
PS : Supprime ton adresse mail si elle apparaît dans le rapport.
http://www.clubic.com/lancer-le-telechargement-25730-0-everest-ultimate.html
---> Lance-le, va dans "Ordinateur" puis "Résumé" et donne-nous le résumé. Pour prendre le résumé, utilise la fonction Rapport en haut de ton écran :
http://sd-1.archive-host.com/membres/up/3288717712384394/Config.jpg
PS : Supprime ton adresse mail si elle apparaît dans le rapport.
Voilà voilà :
--------[ EVEREST Ultimate Edition ]------------------------------------------------------------------------------------
Version EVEREST v4.50.1330/fr
Module de benchmark 2.3.224.0
Site web http://www.lavalys.com/
Type de rapport Rapport rapide [ TRIAL VERSION ]
Ordinateur HP25207153182
Générateur Administrateur
Système d'exploitation Microsoft Windows XP Professional 5.1.2600 (WinXP Retail)
Date 2008-12-14
Heure 12:14
--------[ Résumé ]------------------------------------------------------------------------------------------------------
Ordinateur:
Type de système PC multiprocesseur ACPI
Système d'exploitation Microsoft Windows XP Professional
Service Pack du système [ TRIAL VERSION ]
Internet Explorer 7.0.5730.13 (IE 7.0)
DirectX 4.09.00.0904 (DirectX 9.0c)
Nom du système HP25207153182
Nom de l'utilisateur Administrateur
Domaine de connexion [ TRIAL VERSION ]
Date / Heure 2008-12-14 / 12:14
Carte mère:
Type de processeur DualCore Intel Pentium D 945, 3400 MHz (17 x 200)
Nom de la carte mère Hewlett-Packard HP Compaq dc7600 Convertible Minitower
Chipset de la carte mère Intel Lakeport-G i945G
Mémoire système [ TRIAL VERSION ]
DIMM1: Apacer Tech. 78.01GA0.9K5 1 Go DDR2-800 DDR2 SDRAM (5-5-5-18 @ 400 MHz) (4-4-4-12 @ 266 MHz) (3-3-3-9 @ 200 MHz)
DIMM3: Samsung M3 78T6553CZ3-CD5 [ TRIAL VERSION ]
DIMM4: Samsung M3 78T6553CZ3-CD5 [ TRIAL VERSION ]
Type de BIOS Compaq (04/24/06)
Port de communication Port de communication (COM1)
Port de communication Port imprimante ECP (LPT1)
Moniteur:
Carte vidéo ATI Radeon HD 3400 Series (512 Mo)
Carte vidéo ATI Radeon HD 3400 Series (512 Mo)
Accélérateur 3D ATI Radeon HD 3450 (RV620)
Moniteur AOC LM720 [17" LCD] (11249JA083474)
Multimédia:
Carte audio ATI Radeon HDMI @ ATI RV620 - High Definition Audio Controller
Carte audio Realtek ALC260 @ Intel 82801GB ICH7 - High Definition Audio Controller [A-1]
Stockage:
Contrôleur IDE Intel(R) 82801GB Serial ATA Storage Controllers - 27C0
Contrôleur IDE Intel(R) 82801GB Ultra ATA Storage Controllers - 27DF
Disque dur ST3250824AS (250 Go, 7200 RPM, SATA-II)
Lecteur optique HL-DT-ST DVD+-RW GSA-H21L (DVD+R9:8x, DVD+RW:16x/8x, DVD-RW:16x/6x, DVD-ROM:16x, CD:48x/32x/48x DVD+RW/DVD-RW)
Lecteur optique HL-DT-ST DVD-ROM GDR8164B (16x/52x DVD-ROM)
État des disques durs SMART OK
Partitions:
C: (NTFS) [ TRIAL VERSION ]
Taille totale [ TRIAL VERSION ]
Entrée:
Clavier Clavier standard 101/102 touches ou clavier Microsoft Natural Keyboard PS/2
Souris Souris compatible PS/2
Réseau:
Adresse IP principale [ TRIAL VERSION ]
Adresse MAC principale 00-17-A4-43-79-E5
Carte réseau Broadcom NetXtreme Gigabit Ethernet (192. [ TRIAL VERSION ])
Modem Modem 56000 bps Standard
Périphériques:
Imprimante Canon MP150 Series Printer
Contrôleur USB1 Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Contrôleur USB1 Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Contrôleur USB1 Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Contrôleur USB1 Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Contrôleur USB2 Intel 82801GB ICH7 - Enhanced USB2 Controller [A-1]
DMI:
Distributeur du BIOS Hewlett-Packard
Version du BIOS 786D1 v01.56
Fabricant du système Hewlett-Packard
Nom du système HP Compaq dc7600 Convertible Minitower
Version du système
Numéro de série du système [ TRIAL VERSION ]
UUID du système [ TRIAL VERSION ]
Fabricant de la carte mère Hewlett-Packard
Nom de la carte mère 09F0h
Version de la carte mère
Numéro de série de la carte mère [ TRIAL VERSION ]
Fabricant du châssis Hewlett-Packard
Version du châssis
Numéro de série du châssis [ TRIAL VERSION ]
Identifiant du châssis [ TRIAL VERSION ]
Type du châssis Mini Tower
--------[ Debug - PCI ]-------------------------------------------------------------------------------------------------
B00 D00 F00: Intel 82945G Memory Controller Hub [A-2]
Offset 000: 86 80 70 27 06 01 90 20 02 00 00 06 00 00 00 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 E0 00 00 00 00 00 00 00 00 00 00 00
Offset 040: 01 90 D1 FE 01 40 D1 FE 05 00 00 F0 01 80 D1 FE
Offset 050: 00 00 02 00 03 00 00 10 00 00 00 00 00 00 00 00
Offset 060: 01 30 D1 FE 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 10 11 11 11 11 11 33 00 FF 03 00 00 80 1A B8 00
Offset 0A0: 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00
Offset 0E0: 09 00 09 51 02 E1 9B 88 06 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 03 00 00 00 00 00
B00 D01 F00: Intel 82945G PCI Express Root Port [A-2]
Offset 000: 86 80 71 27 07 01 10 00 02 00 04 06 10 00 01 00
Offset 010: 00 00 00 00 00 00 00 00 00 01 01 00 10 10 00 20
Offset 020: 50 E0 70 E0 01 D0 11 E0 00 00 00 00 00 00 00 00
Offset 030: 00 00 00 00 88 00 00 00 00 00 00 00 10 01 0A 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02
Offset 080: 01 90 02 C8 00 00 00 00 0D 80 00 00 86 80 00 00
Offset 090: 05 A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 10 00 41 01 00 00 00 00 00 00 00 00 01 25 01 02
Offset 0B0: 40 00 01 11 80 25 08 00 C0 01 48 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00 00
Offset 0F0: 00 00 01 00 00 00 00 00 86 0F 03 00 00 00 00 00
B00 D1B F00: Intel 82801GB ICH7 - High Definition Audio Controller [A-1]
Offset 000: 86 80 D8 27 06 01 10 00 01 00 03 04 10 00 00 00
Offset 010: 04 00 A0 E0 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 50 00 00 00 00 00 00 00 15 01 00 00
Offset 040: 01 00 00 03 07 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 01 60 42 C8 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 05 70 80 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 10 00 91 00 00 00 00 00 00 08 10 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1C F00: Intel 82801GB ICH7 - PCI Express Root Port 1 [A-1]
Offset 000: 86 80 D0 27 07 01 10 00 01 00 04 06 10 00 81 00
Offset 010: 00 00 00 00 00 00 00 00 00 20 20 00 F0 00 00 20
Offset 020: F0 FF 00 00 F1 FF 01 00 00 00 00 00 00 00 00 00
Offset 030: 00 00 00 00 40 00 00 00 00 00 00 00 FF 00 06 00
Offset 040: 10 80 41 01 C0 0F 00 00 00 00 10 00 11 4C 11 01
Offset 050: 00 00 01 10 60 05 10 00 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 05 90 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 0D A0 00 00 3C 10 10 30 00 00 00 00 00 00 00 00
Offset 0A0: 01 00 02 C8 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 11 80 00 00 00 00
Offset 0E0: 00 00 C7 00 06 07 08 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1C F01: Intel 82801GB ICH7 - PCI Express Root Port 2 [A-1]
Offset 000: 86 80 D2 27 07 01 10 00 01 00 04 06 10 00 81 00
Offset 010: 00 00 00 00 00 00 00 00 00 3F 3F 00 F0 00 00 00
Offset 020: 20 E0 40 E0 F1 FF 01 00 00 00 00 00 00 00 00 00
Offset 030: 00 00 00 00 40 00 00 00 00 00 00 00 11 02 06 00
Offset 040: 10 80 41 01 C0 0F 00 00 00 00 10 00 11 2C 11 02
Offset 050: 40 00 11 30 60 05 18 00 00 00 48 01 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 05 90 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 0D A0 00 00 3C 10 10 30 00 00 00 00 00 00 00 00
Offset 0A0: 01 00 02 C8 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 11 80 00 00 00 00
Offset 0E0: 00 00 C7 00 06 07 08 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1D F00: Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Offset 000: 86 80 C8 27 05 00 80 02 01 00 03 0C 00 00 80 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 01 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 14 01 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 2F 00 00 03 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1D F01: Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Offset 000: 86 80 C9 27 05 00 80 02 01 00 03 0C 00 00 00 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 21 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 12 02 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 2F 00 00 03 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1D F02: Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Offset 000: 86 80 CA 27 05 00 80 02 01 00 03 0C 00 00 00 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 41 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 15 03 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 2F 00 00 03 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1D F03: Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Offset 000: 86 80 CB 27 05 00 80 02 01 00 03 0C 00 00 00 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 61 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 16 04 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 2F 00 00 03 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1D F07: Intel 82801GB ICH7 - Enhanced USB2 Controller [A-1]
Offset 000: 86 80 CC 27 06 01 90 02 01 20 03 0C 00 00 00 00
Offset 010: 00 40 A0 E0 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 50 00 00 00 00 00 00 00 14 01 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 01 58 C2 C9 00 00 00 00 0A 00 A0 20 00 00 00 00
Offset 060: 20 20 FF 01 00 00 00 00 01 00 00 00 00 00 00 C0
Offset 070: 00 00 D7 3F 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 AA FF 00 FF 00 FF 00 20 00 00 88
Offset 0E0: 00 00 00 00 DB B6 6D 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 80 00 09 88 85 40 00 86 0F 01 00 06 17 02 20
B00 D1E F00: Intel 82801GB I/O Controller Hub 7 (ICH7) [A-1]
Offset 000: 86 80 4E 24 07 01 10 00 E1 01 04 06 00 00 01 00
Offset 010: 00 00 00 00 00 00 00 00 00 05 05 20 F0 00 80 22
Offset 020: F0 FF 00 00 F1 FF 01 00 00 00 00 00 00 00 00 00
Offset 030: 00 00 00 00 50 00 00 00 00 00 00 00 FF 00 06 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 12 00 00
Offset 050: 0D 00 00 00 3C 10 10 30 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1F F00: Intel 82801GB ICH7 - LPC Bridge [A-1]
Offset 000: 86 80 B8 27 07 01 10 02 01 00 01 06 00 00 80 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 E0 00 00 00 00 00 00 00 00 00 00 00
Offset 040: 01 F8 00 00 80 00 00 00 01 FA 00 00 10 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 8A 8A 8A 85 D0 00 00 00 85 8B 8B 80 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 10 00 0D 14 01 04 7C 00 81 04 0C 00 B1 0C 0C 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 10 06 00 00 01 00 00 00 13 00 00 00 00 13 00 00
Offset 0B0: 00 00 F0 00 00 00 00 00 00 00 00 04 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 33 22 11 00 67 45 00 00 C0 C0 00 00 02 00 00 00
Offset 0E0: 09 00 0C 10 A8 00 24 00 00 00 00 00 00 00 00 00
Offset 0F0: 01 C0 D1 FE 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1F F01: Intel 82801GB ICH7 - ATA-100 IDE Controller [A-1]
Offset 000: 86 80 DF 27 05 00 80 02 01 8A 01 01 00 00 00 00
Offset 010: C1 20 00 00 E1 20 00 00 C9 20 00 00 E5 20 00 00
Offset 020: A1 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 0A 01 00 00
Offset 040: 33 E3 22 C0 0B 00 00 00 03 00 21 00 00 00 00 00
Offset 050: 00 00 00 00 31 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 03 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1F F02: Intel 82801GB ICH7 - SATA Controller [A-1]
Offset 000: 86 80 C0 27 05 00 B0 02 01 8F 01 01 00 00 00 00
Offset 010: D1 20 00 00 E9 20 00 00 D9 20 00 00 ED 20 00 00
Offset 020: B1 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 70 00 00 00 00 00 00 00 13 02 00 00
Offset 040: 27 E3 22 C0 00 00 00 00 01 00 01 00 00 00 00 00
Offset 050: 00 00 00 00 10 10 00 00 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 01 00 02 40 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 05 70 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 11 00 80 01 00 40 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 05 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1F F03: Intel 82801GB ICH7 - SMBus Controller [A-1]
Offset 000: 86 80 DA 27 01 00 80 02 01 00 05 0C 00 00 00 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 01 FC 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 05 02 00 00
Offset 040: 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B01 D00 F00: Asus EAH3450 Video Adapter
Offset 000: 02 10 C5 95 07 00 10 00 00 00 00 03 10 00 80 00
Offset 010: 0C 00 00 D0 00 00 00 00 04 00 50 E0 00 00 00 00
Offset 020: 01 10 00 00 00 00 00 00 00 00 00 00 43 10 D4 01
Offset 030: 01 00 58 E0 50 00 00 00 00 00 00 00 10 01 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 43 10 D4 01
Offset 050: 01 58 03 06 00 00 00 00 10 A0 12 00 A0 8F 2C 01
Offset 060: 14 09 00 00 01 0D 00 00 40 00 01 11 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 05 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
B01 D00 F01: ATI RV620 - High Definition Audio Controller
Offset 000: 02 10 28 AA 07 00 10 00 00 00 03 04 10 00 80 00
Offset 010: 04 00 51 E0 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 00 00 00 00 43 10 28 AA
Offset 030: 00 00 00 00 50 00 00 00 00 00 00 00 11 02 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 43 10 28 AA
Offset 050: 01 58 03 06 00 00 00 00 10 A0 12 00 A0 8F 2C 01
Offset 060: 14 08 00 00 01 0D 00 00 00 00 01 11 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 05 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
B3F D00 F00: Broadcom NetXtreme Gigabit Ethernet Controller
Offset 000: E4 14 00 16 06 00 10 00 01 00 00 02 10 00 00 00
Offset 010: 04 00 40 E0 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 07 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 48 00 00 00 00 00 00 00 11 01 00 00
Offset 040: 00 00 00 00 00 00 00 00 01 50 02 C0 00 20 00 64
Offset 050: 03 58 00 00 04 01 20 82 05 D0 86 00 20 2A 80 40
Offset 060: 01 01 82 50 20 00 00 00 98 02 01 60 00 00 1B 76
Offset 070: 92 10 00 00 20 00 00 00 2C 00 00 00 08 02 00 00
Offset 080: 3C 10 10 30 00 00 00 00 34 00 13 04 82 00 08 14
Offset 090: 41 B8 00 01 00 00 00 C4 00 00 00 00 D2 00 00 00
Offset 0A0: 00 00 00 00 0A 00 00 00 00 00 00 00 C4 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 4B 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 80 00 00 0E 00 00 00 00 00 00 00
Offset 0D0: 10 00 01 00 A2 0F 28 00 00 50 10 00 11 6C 03 00
Offset 0E0: 40 00 11 10 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
PCI-8086-2770: Intel i945/955/975/E7230 MCHBAR
Offset 100: 20 20 20 20 00 00 00 00 03 00 00 00 07 00 05 00
Offset 110: E8 28 50 B9 22 89 61 02 5F 02 00 80 FF 01 FF 03
Offset 120: 06 0A 00 40 00 05 00 E2 F0 01 00 00 00 00 00 00
Offset 130: C4 06 00 00 6D 06 1A 87 08 01 02 00 00 00 00 00
Offset 140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 160: 00 00 00 00 20 00 00 00 00 49 62 33 98 87 21 E0
Offset 170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 180: 10 10 20 20 00 00 00 00 03 03 00 00 3F 00 00 00
Offset 190: E8 28 50 B9 22 89 61 03 5F 02 00 80 FF 01 FF 03
Offset 1A0: 06 0A 00 40 00 05 00 E2 00 00 00 00 00 00 00 00
PCI-8086-2770: Intel i945/955/975/E7230 MCHBAR
Offset 200: 02 02 0F 00 00 00 00 00 02 04 01 00 00 00 00 00
Offset 210: 01 00 00 00 00 C6 8F 00 88 CD 39 04 88 CD 39 04
PCI-8086-2770: Intel i945/955/975/E7230 MCHBAR
Offset C00: 22 00 00 00 01 01 01 01 00 00 00 00 00 00 00 00
Offset C10: 00 00 00 00 03 02 80 00 0B 0E 07 07 07 66 23 32
Offset C20: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C30: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C40: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C50: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C60: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C70: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C80: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C90: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset CA0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset CB0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset CC0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset CD0: 01 01 01 01 00 00 00 00 01 00 00 FF 00 00 00 00
Offset CE0: 00 00 00 00 00 00 80 00 00 00 00 00 00 00 00 00
Offset CF0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
--------[ Debug - Video BIOS ]------------------------------------------------------------------------------------------
C000:0000 U............................IBM............... 761295520......
C000:0040 ................08/12/08 01:00..1................c..4c......C...
C000:0080 PA`P.*..............113-AB37400-104.RV620.PCI_EXPRESS.DDR2...95C
C000:00C0 5.10.75.0.2.AS07 ..
C000:0100 ... ...(C) 1988-2005, ATI Technologies Inc. .ATOMBIOS
C000:0140 BK-ATI VER010.075.000.002.027510.SV27510.bin .382855 .58643 .
C000:0180 .B35004\config.h....$...ATOM..o.a...........C.....:.....
C000:01C0 PCIR.............K.....ATI ATOMBIOS.\. K..........+vl...;L...}.
C000:0200 2....V.......LP. .^..fPfQfRfSfUfVfW.............6....f......f.(.
C000:0240 .....2.......)..)..)....z..G).[).|).S........DP. u......c..d....
C000:0280 v..LP........f.......fP. .....fXt.. f.J.......f_f^f]f[fZfYfX....
C000:02C0 .....F.f3..F...F..R......CZ..........f........f.\.f.L.;.u...f.^.
C000:0300 f.N............>...u........w...f....e.....@.....B.............
C000:0340 |."l..~.....5p.........f............f..f..f...PMID...K.........
C000:0380 .............f.........................fPfR.1f...f....fZfX.fPfR.
C000:03C0 1f...f....fZfX........t..:&..u$<.u .W....:&..u..K.....Ou...F....
------------------------------------------------------------------------------------------------------------------------
The names of actual companies and products mentioned herein may be the trademarks of their respective owners.
--------[ EVEREST Ultimate Edition ]------------------------------------------------------------------------------------
Version EVEREST v4.50.1330/fr
Module de benchmark 2.3.224.0
Site web http://www.lavalys.com/
Type de rapport Rapport rapide [ TRIAL VERSION ]
Ordinateur HP25207153182
Générateur Administrateur
Système d'exploitation Microsoft Windows XP Professional 5.1.2600 (WinXP Retail)
Date 2008-12-14
Heure 12:14
--------[ Résumé ]------------------------------------------------------------------------------------------------------
Ordinateur:
Type de système PC multiprocesseur ACPI
Système d'exploitation Microsoft Windows XP Professional
Service Pack du système [ TRIAL VERSION ]
Internet Explorer 7.0.5730.13 (IE 7.0)
DirectX 4.09.00.0904 (DirectX 9.0c)
Nom du système HP25207153182
Nom de l'utilisateur Administrateur
Domaine de connexion [ TRIAL VERSION ]
Date / Heure 2008-12-14 / 12:14
Carte mère:
Type de processeur DualCore Intel Pentium D 945, 3400 MHz (17 x 200)
Nom de la carte mère Hewlett-Packard HP Compaq dc7600 Convertible Minitower
Chipset de la carte mère Intel Lakeport-G i945G
Mémoire système [ TRIAL VERSION ]
DIMM1: Apacer Tech. 78.01GA0.9K5 1 Go DDR2-800 DDR2 SDRAM (5-5-5-18 @ 400 MHz) (4-4-4-12 @ 266 MHz) (3-3-3-9 @ 200 MHz)
DIMM3: Samsung M3 78T6553CZ3-CD5 [ TRIAL VERSION ]
DIMM4: Samsung M3 78T6553CZ3-CD5 [ TRIAL VERSION ]
Type de BIOS Compaq (04/24/06)
Port de communication Port de communication (COM1)
Port de communication Port imprimante ECP (LPT1)
Moniteur:
Carte vidéo ATI Radeon HD 3400 Series (512 Mo)
Carte vidéo ATI Radeon HD 3400 Series (512 Mo)
Accélérateur 3D ATI Radeon HD 3450 (RV620)
Moniteur AOC LM720 [17" LCD] (11249JA083474)
Multimédia:
Carte audio ATI Radeon HDMI @ ATI RV620 - High Definition Audio Controller
Carte audio Realtek ALC260 @ Intel 82801GB ICH7 - High Definition Audio Controller [A-1]
Stockage:
Contrôleur IDE Intel(R) 82801GB Serial ATA Storage Controllers - 27C0
Contrôleur IDE Intel(R) 82801GB Ultra ATA Storage Controllers - 27DF
Disque dur ST3250824AS (250 Go, 7200 RPM, SATA-II)
Lecteur optique HL-DT-ST DVD+-RW GSA-H21L (DVD+R9:8x, DVD+RW:16x/8x, DVD-RW:16x/6x, DVD-ROM:16x, CD:48x/32x/48x DVD+RW/DVD-RW)
Lecteur optique HL-DT-ST DVD-ROM GDR8164B (16x/52x DVD-ROM)
État des disques durs SMART OK
Partitions:
C: (NTFS) [ TRIAL VERSION ]
Taille totale [ TRIAL VERSION ]
Entrée:
Clavier Clavier standard 101/102 touches ou clavier Microsoft Natural Keyboard PS/2
Souris Souris compatible PS/2
Réseau:
Adresse IP principale [ TRIAL VERSION ]
Adresse MAC principale 00-17-A4-43-79-E5
Carte réseau Broadcom NetXtreme Gigabit Ethernet (192. [ TRIAL VERSION ])
Modem Modem 56000 bps Standard
Périphériques:
Imprimante Canon MP150 Series Printer
Contrôleur USB1 Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Contrôleur USB1 Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Contrôleur USB1 Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Contrôleur USB1 Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Contrôleur USB2 Intel 82801GB ICH7 - Enhanced USB2 Controller [A-1]
DMI:
Distributeur du BIOS Hewlett-Packard
Version du BIOS 786D1 v01.56
Fabricant du système Hewlett-Packard
Nom du système HP Compaq dc7600 Convertible Minitower
Version du système
Numéro de série du système [ TRIAL VERSION ]
UUID du système [ TRIAL VERSION ]
Fabricant de la carte mère Hewlett-Packard
Nom de la carte mère 09F0h
Version de la carte mère
Numéro de série de la carte mère [ TRIAL VERSION ]
Fabricant du châssis Hewlett-Packard
Version du châssis
Numéro de série du châssis [ TRIAL VERSION ]
Identifiant du châssis [ TRIAL VERSION ]
Type du châssis Mini Tower
--------[ Debug - PCI ]-------------------------------------------------------------------------------------------------
B00 D00 F00: Intel 82945G Memory Controller Hub [A-2]
Offset 000: 86 80 70 27 06 01 90 20 02 00 00 06 00 00 00 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 E0 00 00 00 00 00 00 00 00 00 00 00
Offset 040: 01 90 D1 FE 01 40 D1 FE 05 00 00 F0 01 80 D1 FE
Offset 050: 00 00 02 00 03 00 00 10 00 00 00 00 00 00 00 00
Offset 060: 01 30 D1 FE 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 10 11 11 11 11 11 33 00 FF 03 00 00 80 1A B8 00
Offset 0A0: 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00
Offset 0E0: 09 00 09 51 02 E1 9B 88 06 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 03 00 00 00 00 00
B00 D01 F00: Intel 82945G PCI Express Root Port [A-2]
Offset 000: 86 80 71 27 07 01 10 00 02 00 04 06 10 00 01 00
Offset 010: 00 00 00 00 00 00 00 00 00 01 01 00 10 10 00 20
Offset 020: 50 E0 70 E0 01 D0 11 E0 00 00 00 00 00 00 00 00
Offset 030: 00 00 00 00 88 00 00 00 00 00 00 00 10 01 0A 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02
Offset 080: 01 90 02 C8 00 00 00 00 0D 80 00 00 86 80 00 00
Offset 090: 05 A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 10 00 41 01 00 00 00 00 00 00 00 00 01 25 01 02
Offset 0B0: 40 00 01 11 80 25 08 00 C0 01 48 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00 00
Offset 0F0: 00 00 01 00 00 00 00 00 86 0F 03 00 00 00 00 00
B00 D1B F00: Intel 82801GB ICH7 - High Definition Audio Controller [A-1]
Offset 000: 86 80 D8 27 06 01 10 00 01 00 03 04 10 00 00 00
Offset 010: 04 00 A0 E0 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 50 00 00 00 00 00 00 00 15 01 00 00
Offset 040: 01 00 00 03 07 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 01 60 42 C8 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 05 70 80 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 10 00 91 00 00 00 00 00 00 08 10 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1C F00: Intel 82801GB ICH7 - PCI Express Root Port 1 [A-1]
Offset 000: 86 80 D0 27 07 01 10 00 01 00 04 06 10 00 81 00
Offset 010: 00 00 00 00 00 00 00 00 00 20 20 00 F0 00 00 20
Offset 020: F0 FF 00 00 F1 FF 01 00 00 00 00 00 00 00 00 00
Offset 030: 00 00 00 00 40 00 00 00 00 00 00 00 FF 00 06 00
Offset 040: 10 80 41 01 C0 0F 00 00 00 00 10 00 11 4C 11 01
Offset 050: 00 00 01 10 60 05 10 00 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 05 90 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 0D A0 00 00 3C 10 10 30 00 00 00 00 00 00 00 00
Offset 0A0: 01 00 02 C8 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 11 80 00 00 00 00
Offset 0E0: 00 00 C7 00 06 07 08 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1C F01: Intel 82801GB ICH7 - PCI Express Root Port 2 [A-1]
Offset 000: 86 80 D2 27 07 01 10 00 01 00 04 06 10 00 81 00
Offset 010: 00 00 00 00 00 00 00 00 00 3F 3F 00 F0 00 00 00
Offset 020: 20 E0 40 E0 F1 FF 01 00 00 00 00 00 00 00 00 00
Offset 030: 00 00 00 00 40 00 00 00 00 00 00 00 11 02 06 00
Offset 040: 10 80 41 01 C0 0F 00 00 00 00 10 00 11 2C 11 02
Offset 050: 40 00 11 30 60 05 18 00 00 00 48 01 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 05 90 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 0D A0 00 00 3C 10 10 30 00 00 00 00 00 00 00 00
Offset 0A0: 01 00 02 C8 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 11 80 00 00 00 00
Offset 0E0: 00 00 C7 00 06 07 08 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1D F00: Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Offset 000: 86 80 C8 27 05 00 80 02 01 00 03 0C 00 00 80 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 01 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 14 01 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 2F 00 00 03 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1D F01: Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Offset 000: 86 80 C9 27 05 00 80 02 01 00 03 0C 00 00 00 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 21 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 12 02 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 2F 00 00 03 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1D F02: Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Offset 000: 86 80 CA 27 05 00 80 02 01 00 03 0C 00 00 00 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 41 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 15 03 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 2F 00 00 03 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1D F03: Intel 82801GB ICH7 - USB Universal Host Controller [A-1]
Offset 000: 86 80 CB 27 05 00 80 02 01 00 03 0C 00 00 00 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 61 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 16 04 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 2F 00 00 03 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1D F07: Intel 82801GB ICH7 - Enhanced USB2 Controller [A-1]
Offset 000: 86 80 CC 27 06 01 90 02 01 20 03 0C 00 00 00 00
Offset 010: 00 40 A0 E0 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 50 00 00 00 00 00 00 00 14 01 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 01 58 C2 C9 00 00 00 00 0A 00 A0 20 00 00 00 00
Offset 060: 20 20 FF 01 00 00 00 00 01 00 00 00 00 00 00 C0
Offset 070: 00 00 D7 3F 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 AA FF 00 FF 00 FF 00 20 00 00 88
Offset 0E0: 00 00 00 00 DB B6 6D 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 80 00 09 88 85 40 00 86 0F 01 00 06 17 02 20
B00 D1E F00: Intel 82801GB I/O Controller Hub 7 (ICH7) [A-1]
Offset 000: 86 80 4E 24 07 01 10 00 E1 01 04 06 00 00 01 00
Offset 010: 00 00 00 00 00 00 00 00 00 05 05 20 F0 00 80 22
Offset 020: F0 FF 00 00 F1 FF 01 00 00 00 00 00 00 00 00 00
Offset 030: 00 00 00 00 50 00 00 00 00 00 00 00 FF 00 06 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 00 12 00 00
Offset 050: 0D 00 00 00 3C 10 10 30 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1F F00: Intel 82801GB ICH7 - LPC Bridge [A-1]
Offset 000: 86 80 B8 27 07 01 10 02 01 00 01 06 00 00 80 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 E0 00 00 00 00 00 00 00 00 00 00 00
Offset 040: 01 F8 00 00 80 00 00 00 01 FA 00 00 10 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 8A 8A 8A 85 D0 00 00 00 85 8B 8B 80 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 10 00 0D 14 01 04 7C 00 81 04 0C 00 B1 0C 0C 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 10 06 00 00 01 00 00 00 13 00 00 00 00 13 00 00
Offset 0B0: 00 00 F0 00 00 00 00 00 00 00 00 04 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 33 22 11 00 67 45 00 00 C0 C0 00 00 02 00 00 00
Offset 0E0: 09 00 0C 10 A8 00 24 00 00 00 00 00 00 00 00 00
Offset 0F0: 01 C0 D1 FE 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1F F01: Intel 82801GB ICH7 - ATA-100 IDE Controller [A-1]
Offset 000: 86 80 DF 27 05 00 80 02 01 8A 01 01 00 00 00 00
Offset 010: C1 20 00 00 E1 20 00 00 C9 20 00 00 E5 20 00 00
Offset 020: A1 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 0A 01 00 00
Offset 040: 33 E3 22 C0 0B 00 00 00 03 00 21 00 00 00 00 00
Offset 050: 00 00 00 00 31 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 03 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1F F02: Intel 82801GB ICH7 - SATA Controller [A-1]
Offset 000: 86 80 C0 27 05 00 B0 02 01 8F 01 01 00 00 00 00
Offset 010: D1 20 00 00 E9 20 00 00 D9 20 00 00 ED 20 00 00
Offset 020: B1 20 00 00 00 00 00 00 00 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 70 00 00 00 00 00 00 00 13 02 00 00
Offset 040: 27 E3 22 C0 00 00 00 00 01 00 01 00 00 00 00 00
Offset 050: 00 00 00 00 10 10 00 00 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 01 00 02 40 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 05 70 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 11 00 80 01 00 40 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 05 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B00 D1F F03: Intel 82801GB ICH7 - SMBus Controller [A-1]
Offset 000: 86 80 DA 27 01 00 80 02 01 00 05 0C 00 00 00 00
Offset 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 01 FC 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 030: 00 00 00 00 00 00 00 00 00 00 00 00 05 02 00 00
Offset 040: 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 86 0F 01 00 00 00 00 00
B01 D00 F00: Asus EAH3450 Video Adapter
Offset 000: 02 10 C5 95 07 00 10 00 00 00 00 03 10 00 80 00
Offset 010: 0C 00 00 D0 00 00 00 00 04 00 50 E0 00 00 00 00
Offset 020: 01 10 00 00 00 00 00 00 00 00 00 00 43 10 D4 01
Offset 030: 01 00 58 E0 50 00 00 00 00 00 00 00 10 01 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 43 10 D4 01
Offset 050: 01 58 03 06 00 00 00 00 10 A0 12 00 A0 8F 2C 01
Offset 060: 14 09 00 00 01 0D 00 00 40 00 01 11 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 05 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
B01 D00 F01: ATI RV620 - High Definition Audio Controller
Offset 000: 02 10 28 AA 07 00 10 00 00 00 03 04 10 00 80 00
Offset 010: 04 00 51 E0 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 00 00 00 00 43 10 28 AA
Offset 030: 00 00 00 00 50 00 00 00 00 00 00 00 11 02 00 00
Offset 040: 00 00 00 00 00 00 00 00 00 00 00 00 43 10 28 AA
Offset 050: 01 58 03 06 00 00 00 00 10 A0 12 00 A0 8F 2C 01
Offset 060: 14 08 00 00 01 0D 00 00 00 00 01 11 00 00 00 00
Offset 070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0A0: 05 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
B3F D00 F00: Broadcom NetXtreme Gigabit Ethernet Controller
Offset 000: E4 14 00 16 06 00 10 00 01 00 00 02 10 00 00 00
Offset 010: 04 00 40 E0 00 00 00 00 00 00 00 00 00 00 00 00
Offset 020: 00 00 00 00 00 00 00 00 07 00 00 00 3C 10 10 30
Offset 030: 00 00 00 00 48 00 00 00 00 00 00 00 11 01 00 00
Offset 040: 00 00 00 00 00 00 00 00 01 50 02 C0 00 20 00 64
Offset 050: 03 58 00 00 04 01 20 82 05 D0 86 00 20 2A 80 40
Offset 060: 01 01 82 50 20 00 00 00 98 02 01 60 00 00 1B 76
Offset 070: 92 10 00 00 20 00 00 00 2C 00 00 00 08 02 00 00
Offset 080: 3C 10 10 30 00 00 00 00 34 00 13 04 82 00 08 14
Offset 090: 41 B8 00 01 00 00 00 C4 00 00 00 00 D2 00 00 00
Offset 0A0: 00 00 00 00 0A 00 00 00 00 00 00 00 C4 00 00 00
Offset 0B0: 00 00 00 00 00 00 00 4B 00 00 00 00 00 00 00 00
Offset 0C0: 00 00 00 00 00 80 00 00 0E 00 00 00 00 00 00 00
Offset 0D0: 10 00 01 00 A2 0F 28 00 00 50 10 00 11 6C 03 00
Offset 0E0: 40 00 11 10 00 00 00 00 00 00 00 00 00 00 00 00
Offset 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
PCI-8086-2770: Intel i945/955/975/E7230 MCHBAR
Offset 100: 20 20 20 20 00 00 00 00 03 00 00 00 07 00 05 00
Offset 110: E8 28 50 B9 22 89 61 02 5F 02 00 80 FF 01 FF 03
Offset 120: 06 0A 00 40 00 05 00 E2 F0 01 00 00 00 00 00 00
Offset 130: C4 06 00 00 6D 06 1A 87 08 01 02 00 00 00 00 00
Offset 140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 160: 00 00 00 00 20 00 00 00 00 49 62 33 98 87 21 E0
Offset 170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset 180: 10 10 20 20 00 00 00 00 03 03 00 00 3F 00 00 00
Offset 190: E8 28 50 B9 22 89 61 03 5F 02 00 80 FF 01 FF 03
Offset 1A0: 06 0A 00 40 00 05 00 E2 00 00 00 00 00 00 00 00
PCI-8086-2770: Intel i945/955/975/E7230 MCHBAR
Offset 200: 02 02 0F 00 00 00 00 00 02 04 01 00 00 00 00 00
Offset 210: 01 00 00 00 00 C6 8F 00 88 CD 39 04 88 CD 39 04
PCI-8086-2770: Intel i945/955/975/E7230 MCHBAR
Offset C00: 22 00 00 00 01 01 01 01 00 00 00 00 00 00 00 00
Offset C10: 00 00 00 00 03 02 80 00 0B 0E 07 07 07 66 23 32
Offset C20: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C30: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C40: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C50: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C60: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C70: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C80: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset C90: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset CA0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset CB0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset CC0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Offset CD0: 01 01 01 01 00 00 00 00 01 00 00 FF 00 00 00 00
Offset CE0: 00 00 00 00 00 00 80 00 00 00 00 00 00 00 00 00
Offset CF0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
--------[ Debug - Video BIOS ]------------------------------------------------------------------------------------------
C000:0000 U............................IBM............... 761295520......
C000:0040 ................08/12/08 01:00..1................c..4c......C...
C000:0080 PA`P.*..............113-AB37400-104.RV620.PCI_EXPRESS.DDR2...95C
C000:00C0 5.10.75.0.2.AS07 ..
C000:0100 ... ...(C) 1988-2005, ATI Technologies Inc. .ATOMBIOS
C000:0140 BK-ATI VER010.075.000.002.027510.SV27510.bin .382855 .58643 .
C000:0180 .B35004\config.h....$...ATOM..o.a...........C.....:.....
C000:01C0 PCIR.............K.....ATI ATOMBIOS.\. K..........+vl...;L...}.
C000:0200 2....V.......LP. .^..fPfQfRfSfUfVfW.............6....f......f.(.
C000:0240 .....2.......)..)..)....z..G).[).|).S........DP. u......c..d....
C000:0280 v..LP........f.......fP. .....fXt.. f.J.......f_f^f]f[fZfYfX....
C000:02C0 .....F.f3..F...F..R......CZ..........f........f.\.f.L.;.u...f.^.
C000:0300 f.N............>...u........w...f....e.....@.....B.............
C000:0340 |."l..~.....5p.........f............f..f..f...PMID...K.........
C000:0380 .............f.........................fPfR.1f...f....fZfX.fPfR.
C000:03C0 1f...f....fZfX........t..:&..u$<.u .W....:&..u..K.....Ou...F....
------------------------------------------------------------------------------------------------------------------------
The names of actual companies and products mentioned herein may be the trademarks of their respective owners.
C'est le bon pilote pourtant.
Installe ceci :
http://downloadcenter.intel.com/confirm.aspx?httpDown=http://downloadmirror.intel.com/16023/a08/infinst_autol.exe&agr=&ProductID=2115&DwnldId=16023&strOSs=&OSFullName=&lang=eng
Installe ceci :
http://downloadcenter.intel.com/confirm.aspx?httpDown=http://downloadmirror.intel.com/16023/a08/infinst_autol.exe&agr=&ProductID=2115&DwnldId=16023&strOSs=&OSFullName=&lang=eng
Peut-être avec HijackThis.
- Télécharge HijackThis v2.0.2 sur ton Bureau.
- Double-clique sur HJTInstall afin de lancer l'installation.
- Clique sur Install ensuite sur I Accept.
- Clique sur Do a system scan and save a logfile.
- Le bloc-notes s'ouvrira, fais un copier/coller de tout son contenu ici dans ton prochain message.
- Télécharge HijackThis v2.0.2 sur ton Bureau.
- Double-clique sur HJTInstall afin de lancer l'installation.
- Clique sur Install ensuite sur I Accept.
- Clique sur Do a system scan and save a logfile.
- Le bloc-notes s'ouvrira, fais un copier/coller de tout son contenu ici dans ton prochain message.
Ca en fait du bordel sur ce post :D
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:27:46, on 14.12.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Stardock\Object Desktop\ThemeManager\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Electronic Arts\EADM\Core.exe
C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\WBSJO6TX\infinst_autol[1].exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IPMx2\setup.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: 91.121.176.187 status.wow-europe.com # Serveur de news Synapse
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {56F69795-45AC-4C52-9E8A-E9C9E031A842} - C:\WINDOWS\system32\xxyaxVlM.dll (file missing)
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-01B1B64B7057} - C:\WINDOWS\system32\SearchTool\nsj6B.dll
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-436325722327} - C:\WINDOWS\system32\SmartShopper\SmartShopper0.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: (no name) - {AC519E4E-EDF0-48C7-8ADA-2A4A5B1C81C9} - C:\WINDOWS\system32\iifCSMFw.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
O4 - HKLM\..\Run: [Device Detector] DevDetect.exe -autorun
O4 - HKLM\..\Run: [SDR6V_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcsdr.exe"
O4 - HKLM\..\Run: [WA6PV_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcwap.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Acer Service ] acersv.exe
O4 - HKLM\..\Run: [Windows svchost] avserv.exe
O4 - HKLM\..\Run: [BMN] "C:\Program Files\Fichiers communs\VirusGarde\bm.exe" dm=http://virusgarde.com ad=http://virusgarde.com sd=http://gregistre.virusgarde.com
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [EA Core] C:\Program Files\Electronic Arts\EADM\Core.exe -silent
O4 - HKCU\..\Run: [ASUS SmartDoctor] C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe /start
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Sonic CinePlayer Quick Launch.lnk = C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_4_0.cab
O20 - Winlogon Notify: iifCSMFw - iifCSMFw.dll (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\Shared\hpqwmi.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:27:46, on 14.12.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Stardock\Object Desktop\ThemeManager\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Electronic Arts\EADM\Core.exe
C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\WBSJO6TX\infinst_autol[1].exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IPMx2\setup.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: 91.121.176.187 status.wow-europe.com # Serveur de news Synapse
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {56F69795-45AC-4C52-9E8A-E9C9E031A842} - C:\WINDOWS\system32\xxyaxVlM.dll (file missing)
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-01B1B64B7057} - C:\WINDOWS\system32\SearchTool\nsj6B.dll
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-436325722327} - C:\WINDOWS\system32\SmartShopper\SmartShopper0.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: (no name) - {AC519E4E-EDF0-48C7-8ADA-2A4A5B1C81C9} - C:\WINDOWS\system32\iifCSMFw.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
O4 - HKLM\..\Run: [Device Detector] DevDetect.exe -autorun
O4 - HKLM\..\Run: [SDR6V_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcsdr.exe"
O4 - HKLM\..\Run: [WA6PV_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcwap.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Acer Service ] acersv.exe
O4 - HKLM\..\Run: [Windows svchost] avserv.exe
O4 - HKLM\..\Run: [BMN] "C:\Program Files\Fichiers communs\VirusGarde\bm.exe" dm=http://virusgarde.com ad=http://virusgarde.com sd=http://gregistre.virusgarde.com
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [EA Core] C:\Program Files\Electronic Arts\EADM\Core.exe -silent
O4 - HKCU\..\Run: [ASUS SmartDoctor] C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe /start
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Sonic CinePlayer Quick Launch.lnk = C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_4_0.cab
O20 - Winlogon Notify: iifCSMFw - iifCSMFw.dll (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\Shared\hpqwmi.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
Ton PC s'est mangé une infection Vundo.
- Télécharge Random's System Information Tool (RSIT) (par random/random) sur ton Bureau.
- Double-clique sur RSIT.exe afin de lancer le programme.
- Clique sur Continue à l'écran Disclaimer.
- Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
- Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (c'est celui qui apparaît à l'écran) ainsi que de info.txt (que tu verras dans la barre des tâches).
Note : Les rapports sont sauvegardés dans le dossier C:\rsit.
- Télécharge Random's System Information Tool (RSIT) (par random/random) sur ton Bureau.
- Double-clique sur RSIT.exe afin de lancer le programme.
- Clique sur Continue à l'écran Disclaimer.
- Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
- Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (c'est celui qui apparaît à l'écran) ainsi que de info.txt (que tu verras dans la barre des tâches).
Note : Les rapports sont sauvegardés dans le dossier C:\rsit.
Pour le LOG :
Logfile of random's system information tool 1.04 (written by random/random)
Run by Administrateur at 2008-12-14 12:31:25
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 133 GB (56%) free of 238 GB
Total RAM: 2047 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:31:26, on 14.12.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Stardock\Object Desktop\ThemeManager\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Electronic Arts\EADM\Core.exe
C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\WBSJO6TX\infinst_autol[1].exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IPMx2\setup.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Administrateur.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: 91.121.176.187 status.wow-europe.com # Serveur de news Synapse
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {56F69795-45AC-4C52-9E8A-E9C9E031A842} - C:\WINDOWS\system32\xxyaxVlM.dll (file missing)
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-01B1B64B7057} - C:\WINDOWS\system32\SearchTool\nsj6B.dll
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-436325722327} - C:\WINDOWS\system32\SmartShopper\SmartShopper0.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: (no name) - {AC519E4E-EDF0-48C7-8ADA-2A4A5B1C81C9} - C:\WINDOWS\system32\iifCSMFw.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
O4 - HKLM\..\Run: [Device Detector] DevDetect.exe -autorun
O4 - HKLM\..\Run: [SDR6V_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcsdr.exe"
O4 - HKLM\..\Run: [WA6PV_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcwap.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Acer Service ] acersv.exe
O4 - HKLM\..\Run: [Windows svchost] avserv.exe
O4 - HKLM\..\Run: [BMN] "C:\Program Files\Fichiers communs\VirusGarde\bm.exe" dm=http://virusgarde.com ad=http://virusgarde.com sd=http://gregistre.virusgarde.com
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [EA Core] C:\Program Files\Electronic Arts\EADM\Core.exe -silent
O4 - HKCU\..\Run: [ASUS SmartDoctor] C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe /start
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Sonic CinePlayer Quick Launch.lnk = C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_4_0.cab
O20 - Winlogon Notify: iifCSMFw - iifCSMFw.dll (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\Shared\hpqwmi.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
Logfile of random's system information tool 1.04 (written by random/random)
Run by Administrateur at 2008-12-14 12:31:25
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 133 GB (56%) free of 238 GB
Total RAM: 2047 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:31:26, on 14.12.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Stardock\Object Desktop\ThemeManager\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Electronic Arts\EADM\Core.exe
C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\WBSJO6TX\infinst_autol[1].exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IPMx2\setup.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Administrateur.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: 91.121.176.187 status.wow-europe.com # Serveur de news Synapse
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {56F69795-45AC-4C52-9E8A-E9C9E031A842} - C:\WINDOWS\system32\xxyaxVlM.dll (file missing)
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-01B1B64B7057} - C:\WINDOWS\system32\SearchTool\nsj6B.dll
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-436325722327} - C:\WINDOWS\system32\SmartShopper\SmartShopper0.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: (no name) - {AC519E4E-EDF0-48C7-8ADA-2A4A5B1C81C9} - C:\WINDOWS\system32\iifCSMFw.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
O4 - HKLM\..\Run: [Device Detector] DevDetect.exe -autorun
O4 - HKLM\..\Run: [SDR6V_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcsdr.exe"
O4 - HKLM\..\Run: [WA6PV_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcwap.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Acer Service ] acersv.exe
O4 - HKLM\..\Run: [Windows svchost] avserv.exe
O4 - HKLM\..\Run: [BMN] "C:\Program Files\Fichiers communs\VirusGarde\bm.exe" dm=http://virusgarde.com ad=http://virusgarde.com sd=http://gregistre.virusgarde.com
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [EA Core] C:\Program Files\Electronic Arts\EADM\Core.exe -silent
O4 - HKCU\..\Run: [ASUS SmartDoctor] C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe /start
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Sonic CinePlayer Quick Launch.lnk = C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_4_0.cab
O20 - Winlogon Notify: iifCSMFw - iifCSMFw.dll (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\Shared\hpqwmi.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
Pour le LOG :
Logfile of random's system information tool 1.04 (written by random/random)
Run by Administrateur at 2008-12-14 12:31:25
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 133 GB (56%) free of 238 GB
Total RAM: 2047 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:31:26, on 14.12.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Stardock\Object Desktop\ThemeManager\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Electronic Arts\EADM\Core.exe
C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\WBSJO6TX\infinst_autol[1].exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IPMx2\setup.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Administrateur.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: 91.121.176.187 status.wow-europe.com # Serveur de news Synapse
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {56F69795-45AC-4C52-9E8A-E9C9E031A842} - C:\WINDOWS\system32\xxyaxVlM.dll (file missing)
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-01B1B64B7057} - C:\WINDOWS\system32\SearchTool\nsj6B.dll
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-436325722327} - C:\WINDOWS\system32\SmartShopper\SmartShopper0.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: (no name) - {AC519E4E-EDF0-48C7-8ADA-2A4A5B1C81C9} - C:\WINDOWS\system32\iifCSMFw.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
O4 - HKLM\..\Run: [Device Detector] DevDetect.exe -autorun
O4 - HKLM\..\Run: [SDR6V_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcsdr.exe"
O4 - HKLM\..\Run: [WA6PV_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcwap.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Acer Service ] acersv.exe
O4 - HKLM\..\Run: [Windows svchost] avserv.exe
O4 - HKLM\..\Run: [BMN] "C:\Program Files\Fichiers communs\VirusGarde\bm.exe" dm=http://virusgarde.com ad=http://virusgarde.com sd=http://gregistre.virusgarde.com
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [EA Core] C:\Program Files\Electronic Arts\EADM\Core.exe -silent
O4 - HKCU\..\Run: [ASUS SmartDoctor] C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe /start
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Sonic CinePlayer Quick Launch.lnk = C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_4_0.cab
O20 - Winlogon Notify: iifCSMFw - iifCSMFw.dll (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\Shared\hpqwmi.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
Logfile of random's system information tool 1.04 (written by random/random)
Run by Administrateur at 2008-12-14 12:31:25
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 133 GB (56%) free of 238 GB
Total RAM: 2047 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:31:26, on 14.12.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Stardock\Object Desktop\ThemeManager\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Electronic Arts\EADM\Core.exe
C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\WBSJO6TX\infinst_autol[1].exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IPMx2\setup.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Administrateur.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: 91.121.176.187 status.wow-europe.com # Serveur de news Synapse
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {56F69795-45AC-4C52-9E8A-E9C9E031A842} - C:\WINDOWS\system32\xxyaxVlM.dll (file missing)
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-01B1B64B7057} - C:\WINDOWS\system32\SearchTool\nsj6B.dll
O2 - BHO: ohb Class - {5ED7D3DE-6DBE-4516-8712-436325722327} - C:\WINDOWS\system32\SmartShopper\SmartShopper0.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: (no name) - {AC519E4E-EDF0-48C7-8ADA-2A4A5B1C81C9} - C:\WINDOWS\system32\iifCSMFw.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
O4 - HKLM\..\Run: [Device Detector] DevDetect.exe -autorun
O4 - HKLM\..\Run: [SDR6V_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcsdr.exe"
O4 - HKLM\..\Run: [WA6PV_Check] "C:\Program Files\Fichiers communs\DriveCleaner Free\udcwap.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Acer Service ] acersv.exe
O4 - HKLM\..\Run: [Windows svchost] avserv.exe
O4 - HKLM\..\Run: [BMN] "C:\Program Files\Fichiers communs\VirusGarde\bm.exe" dm=http://virusgarde.com ad=http://virusgarde.com sd=http://gregistre.virusgarde.com
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [EA Core] C:\Program Files\Electronic Arts\EADM\Core.exe -silent
O4 - HKCU\..\Run: [ASUS SmartDoctor] C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe /start
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Sonic CinePlayer Quick Launch.lnk = C:\Program Files\Fichiers communs\Sonic Shared\CineTray.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_4_0.cab
O20 - Winlogon Notify: iifCSMFw - iifCSMFw.dll (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\Shared\hpqwmi.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
---> Télécharge Toolbar S&D (Team IDN) sur ton Bureau.
* Lance l'installation du programme en exécutant le fichier téléchargé.
* Double-clique maintenant sur le raccourci de Toolbar S&D.
* Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
* Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
* Poste le rapport généré. (C:\TB.txt)
* Lance l'installation du programme en exécutant le fichier téléchargé.
* Double-clique maintenant sur le raccourci de Toolbar S&D.
* Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
* Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
* Poste le rapport généré. (C:\TB.txt)
Voilà voilà Merci beaucoup déjà pour ton aide
-----------\\ ToolBar S&D 1.2.6 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) D CPU 3.40GHz )
BIOS : Default System BIOS
USER : Administrateur ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1229 [VPS 081213-0] 4.8.1229 (Activated)
C:\ (Local Disk) - NTFS - Total:232 Go (Free:130 Go)
D:\ (CD or DVD) - UDF - Total:7 Go (Free:0 Go)
E:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 04-12-2008|20:40 )
Option : [1] ( 14.12.2008|12:45 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\WINDOWS\System32\SmartShopper
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="https://www.google.com/?gws_rd=ssl"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
--------------------\\ Recherche d'autres infections
C:\WINDOWS\system32\MlVxayxx.ini
C:\WINDOWS\system32\MlVxayxx.ini2
[b]==> VUNDO <==/b
--------------------\\ ROGUES ..
C:\DOCUME~1\ADMINI~1\APPLIC~1\DriveCleaner Free
C:\DOCUME~1\ADMINI~1\APPLIC~1\WinAntiVirus Pro 2006
C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinAntiVirus Pro 2006
C:\PROGRA~1\FICHIE~1\DriveCleaner Free
C:\PROGRA~1\FICHIE~1\WinAntiVirus Pro 2006
C:\PROGRA~1\WinAntiVirus Pro 2006
1 - "C:\ToolBar SD\TB_1.txt" - 14.12.2008|12:46 - Option : [1]
-----------\\ Fin du rapport a 12:46:24.57
-----------\\ ToolBar S&D 1.2.6 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) D CPU 3.40GHz )
BIOS : Default System BIOS
USER : Administrateur ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1229 [VPS 081213-0] 4.8.1229 (Activated)
C:\ (Local Disk) - NTFS - Total:232 Go (Free:130 Go)
D:\ (CD or DVD) - UDF - Total:7 Go (Free:0 Go)
E:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 04-12-2008|20:40 )
Option : [1] ( 14.12.2008|12:45 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\WINDOWS\System32\SmartShopper
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="https://www.google.com/?gws_rd=ssl"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
--------------------\\ Recherche d'autres infections
C:\WINDOWS\system32\MlVxayxx.ini
C:\WINDOWS\system32\MlVxayxx.ini2
[b]==> VUNDO <==/b
--------------------\\ ROGUES ..
C:\DOCUME~1\ADMINI~1\APPLIC~1\DriveCleaner Free
C:\DOCUME~1\ADMINI~1\APPLIC~1\WinAntiVirus Pro 2006
C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinAntiVirus Pro 2006
C:\PROGRA~1\FICHIE~1\DriveCleaner Free
C:\PROGRA~1\FICHIE~1\WinAntiVirus Pro 2006
C:\PROGRA~1\WinAntiVirus Pro 2006
1 - "C:\ToolBar SD\TB_1.txt" - 14.12.2008|12:46 - Option : [1]
-----------\\ Fin du rapport a 12:46:24.57
-----------\\ ToolBar S&D 1.2.6 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) D CPU 3.40GHz )
BIOS : Default System BIOS
USER : Administrateur ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1229 [VPS 081213-0] 4.8.1229 (Activated)
C:\ (Local Disk) - NTFS - Total:232 Go (Free:130 Go)
D:\ (CD or DVD) - UDF - Total:7 Go (Free:0 Go)
E:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 04-12-2008|20:40 )
Option : [2] ( 14.12.2008|12:51 )
-----------\\ SUPPRESSION
Supprime! - C:\WINDOWS\System32\SmartShopper
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="https://www.google.com/?gws_rd=ssl"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
C:\WINDOWS\system32\MlVxayxx.ini
C:\WINDOWS\system32\MlVxayxx.ini2
[b]==> VUNDO <==/b
--------------------\\ ROGUES ..
C:\DOCUME~1\ADMINI~1\APPLIC~1\DriveCleaner Free
C:\DOCUME~1\ADMINI~1\APPLIC~1\WinAntiVirus Pro 2006
C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinAntiVirus Pro 2006
C:\PROGRA~1\FICHIE~1\DriveCleaner Free
C:\PROGRA~1\FICHIE~1\WinAntiVirus Pro 2006
C:\PROGRA~1\WinAntiVirus Pro 2006
1 - "C:\ToolBar SD\TB_1.txt" - 14.12.2008|12:46 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 14.12.2008|12:51 - Option : [2]
-----------\\ Fin du rapport a 12:51:44.93
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) D CPU 3.40GHz )
BIOS : Default System BIOS
USER : Administrateur ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1229 [VPS 081213-0] 4.8.1229 (Activated)
C:\ (Local Disk) - NTFS - Total:232 Go (Free:130 Go)
D:\ (CD or DVD) - UDF - Total:7 Go (Free:0 Go)
E:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 04-12-2008|20:40 )
Option : [2] ( 14.12.2008|12:51 )
-----------\\ SUPPRESSION
Supprime! - C:\WINDOWS\System32\SmartShopper
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="https://www.google.com/?gws_rd=ssl"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
C:\WINDOWS\system32\MlVxayxx.ini
C:\WINDOWS\system32\MlVxayxx.ini2
[b]==> VUNDO <==/b
--------------------\\ ROGUES ..
C:\DOCUME~1\ADMINI~1\APPLIC~1\DriveCleaner Free
C:\DOCUME~1\ADMINI~1\APPLIC~1\WinAntiVirus Pro 2006
C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinAntiVirus Pro 2006
C:\PROGRA~1\FICHIE~1\DriveCleaner Free
C:\PROGRA~1\FICHIE~1\WinAntiVirus Pro 2006
C:\PROGRA~1\WinAntiVirus Pro 2006
1 - "C:\ToolBar SD\TB_1.txt" - 14.12.2008|12:46 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 14.12.2008|12:51 - Option : [2]
-----------\\ Fin du rapport a 12:51:44.93
Bon je pars manger merci pour ton aide et j'espère que tu pourra m'aider à résoudre ce problème vraiment ch***t
A toute à l'heure
A toute à l'heure
---> Télécharge ComboFix.exe de sUBs sur ton Bureau :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
/!\ Déconnecte-toi du net et ferme toutes les applications, antivirus et antispyware y compris /!\
---> Double-clique sur Combofix.exe
Un "pop-up" va apparaître qui dit que "ComboFix est utilisé à vos risques et avec aucune garantie...".
Accepte en cliquant sur "Oui"
---> Je te conseille vivement d'installer la Console de récupération.
---> Mets-le en langue française F
Tape sur la touche 1 (Yes) pour démarrer le scan.
/!\ Ne touche à rien tant que le scan n'est pas terminé. /!\
En fin de scan, il est possible que ComboFix ait besoin de redémarrer le PC pour finaliser la désinfection, laisse-le faire.
Une fois le scan achevé, un rapport va s'afficher : Poste son contenu
/!\ Réactive la protection en temps réel de ton antivirus et de ton antispyware avant de te reconnecter à Internet. /!\
Note : Le rapport se trouve également là : C:\ComboFix\Combofix.txt
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
/!\ Déconnecte-toi du net et ferme toutes les applications, antivirus et antispyware y compris /!\
---> Double-clique sur Combofix.exe
Un "pop-up" va apparaître qui dit que "ComboFix est utilisé à vos risques et avec aucune garantie...".
Accepte en cliquant sur "Oui"
---> Je te conseille vivement d'installer la Console de récupération.
---> Mets-le en langue française F
Tape sur la touche 1 (Yes) pour démarrer le scan.
/!\ Ne touche à rien tant que le scan n'est pas terminé. /!\
En fin de scan, il est possible que ComboFix ait besoin de redémarrer le PC pour finaliser la désinfection, laisse-le faire.
Une fois le scan achevé, un rapport va s'afficher : Poste son contenu
/!\ Réactive la protection en temps réel de ton antivirus et de ton antispyware avant de te reconnecter à Internet. /!\
Note : Le rapport se trouve également là : C:\ComboFix\Combofix.txt
Alors voilà le rapport de ComboFix et avant son installation, la résolution de mon écran est passée en 800 x 600 automatiquement. Que dois-je faire à présent?
ComboFix 08-12-13.03 - Administrateur 2008-12-14 17:15:11.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.2047.1685 [GMT 1:00]
Lancé depuis: c:\documents and settings\Administrateur\Bureau\ComboFix.exe
* Un nouveau point de restauration a été créé
[COLOR=RED][B]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/B][/COLOR]
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\docume~1\ADMINI~1\LOCALS~1\Temp\tmp2.tmp
c:\documents and settings\Administrateur\Application Data\DriveCleaner Free
c:\documents and settings\Administrateur\Application Data\DriveCleaner Free\Logs\update.log
c:\documents and settings\Administrateur\Application Data\WinAntiVirus Pro 2006
c:\documents and settings\Administrateur\Application Data\WinAntiVirus Pro 2006\Logs\update.log
c:\documents and settings\Administrateur\Application Data\WinAntiVirus Pro 2006\Logs\wa6Support.log
c:\documents and settings\Administrateur\Application Data\WinAntiVirus Pro 2006\Logs\winav.log
c:\documents and settings\Administrateur\Application Data\WinAntiVirus Pro 2006\PGE.dat
c:\documents and settings\Administrateur\err.log
c:\documents and settings\Administrateur\ResErrors.log
c:\documents and settings\All Users\Application Data\WinAntiVirus Pro 2006
c:\program files\Fichiers communs\drivecleaner free
c:\program files\Fichiers communs\winantivirus pro 2006
c:\program files\Fichiers communs\winantivirus pro 2006\err.log
c:\program files\winantivirus pro 2006
c:\program files\winantivirus pro 2006\msvcp71.dll
c:\program files\winantivirus pro 2006\msvcr71.dll
C:\WA6P
c:\windows\BM6af6f5cd.txt
c:\windows\BM6af6f5cd.xml
c:\windows\cookies.ini
c:\windows\pskt.ini
c:\windows\system32\bwbqscwb.ini
c:\windows\system32\disviwki.ini
c:\windows\system32\dllvirtual.exe
c:\windows\system32\ildofuff.ini
c:\windows\system32\lrpqyjca.ini
c:\windows\system32\mcrh.tmp
c:\windows\system32\MlVxayxx.ini
c:\windows\system32\MlVxayxx.ini2
c:\windows\system32\stera.job
c:\windows\system32\stera.log
c:\windows\system32\uoaxdjwt.ini
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_DHLP
-------\Legacy_FOPN
-------\Legacy_VSPF
-------\Legacy_VSPF_HK
-------\Service_FOPN
-------\Service_vspf
-------\Service_vspf_hk
((((((((((((((((((((((((((((( Fichiers créés du 2008-11-14 au 2008-12-14 ))))))))))))))))))))))))))))))))))))
.
2008-12-14 12:44 . 2008-12-14 12:51 <REP> d-------- C:\ToolBar SD
2008-12-14 12:31 . 2008-12-14 12:31 <REP> d-------- C:\rsit
2008-12-14 12:27 . 2008-12-14 12:27 <REP> d-------- c:\program files\Trend Micro
2008-12-14 12:21 . 2008-12-14 12:21 <REP> d-------- c:\program files\Intel
2008-12-14 12:21 . 2008-05-01 16:35 53,248 --a------ c:\windows\system32\CSVer.dll
2008-12-14 12:20 . 2008-12-14 12:20 <REP> d-------- C:\Intel
2008-12-14 12:11 . 2008-12-14 12:11 <REP> d-------- c:\program files\Lavalys
2008-12-14 11:33 . 2008-12-14 11:33 <REP> d-------- C:\ATI
2008-12-07 15:50 . 2004-08-04 00:55 16,384 --a------ c:\windows\system32\ipsink.ax
2008-12-07 15:50 . 2004-08-03 23:10 15,360 --a------ c:\windows\system32\drivers\StreamIP.sys
2008-12-07 15:50 . 2004-08-03 23:10 11,136 --a------ c:\windows\system32\drivers\SLIP.sys
2008-12-07 15:29 . 2008-12-07 15:29 <REP> d-------- c:\documents and settings\All Users\Application Data\ATI
2008-12-07 15:16 . 2008-02-19 14:37 3,107,788 -ra------ c:\windows\system32\ativvaxx.dat
2008-12-07 15:16 . 2008-02-19 14:37 3,107,788 -ra------ c:\windows\system32\ativva5x.dat
2008-12-07 15:16 . 2008-02-19 14:37 887,724 -ra------ c:\windows\system32\ativva6x.dat
2008-12-07 15:16 . 2008-02-19 15:07 372,736 -ra------ c:\windows\system32\ATIDEMGX.dll
2008-12-07 15:16 . 2008-02-19 15:02 307,200 -ra------ c:\windows\system32\atiiiexx.dll
2008-12-07 15:16 . 2008-01-11 08:50 165,746 -ra------ c:\windows\system32\atiicdxx.dat
2008-12-07 15:16 . 2007-08-31 02:20 7,167 -ra------ c:\windows\system32\atifglpf.xml
2008-12-07 13:27 . 2008-12-07 15:23 <REP> d-------- c:\program files\ATI Technologies
2008-12-07 13:24 . 2008-12-07 13:24 12,288 --a------ c:\windows\system32\drivers\EIO64_xp.sys
2008-12-06 15:18 . 2004-08-03 23:10 10,880 --a------ c:\windows\system32\drivers\NdisIP.sys
2008-12-06 15:16 . 2004-08-04 00:55 91,648 --a------ c:\windows\system32\kswdmcap.ax
2008-12-06 15:16 . 2004-08-04 00:55 61,952 --a------ c:\windows\system32\kstvtune.ax
2008-12-06 15:16 . 2004-08-04 00:54 54,784 --a------ c:\windows\system32\vfwwdm32.dll
2008-12-06 15:16 . 2004-08-04 00:55 43,008 --a------ c:\windows\system32\ksxbar.ax
2008-12-06 15:16 . 2004-08-04 00:55 28,672 --a------ c:\windows\system32\vidcap.ax
2008-12-06 14:14 . 2008-12-06 14:15 <REP> d-------- c:\program files\ma-config.com
2008-12-06 14:14 . 2008-12-06 14:14 <REP> d-------- c:\documents and settings\All Users\Application Data\ma-config.com
2008-12-06 13:42 . 2006-06-14 13:44 12,288 -ra------ c:\windows\system32\drivers\EIO_XP.sys
2008-12-06 13:39 . 2008-12-07 13:24 <REP> d-------- c:\program files\ASUS
2008-12-06 13:39 . 2007-10-23 17:48 12,416 --a------ c:\windows\system32\drivers\asusgsb.sys
2008-12-06 13:24 . 2008-12-06 13:24 <REP> d-------- c:\program files\My Company Name
2008-12-06 13:19 . 2008-12-06 13:19 <REP> d-------- c:\program files\Fichiers communs\ATI Technologies
2008-12-06 13:07 . 2006-12-28 04:44 84,992 -ra------ c:\windows\system32\drivers\AtiHdAud.sys
2008-12-06 13:07 . 2008-01-21 02:48 12,477 -ra------ c:\windows\atiogl.xml
2008-12-06 13:07 . 2008-12-06 13:07 0 --a------ c:\windows\ativpsrm.bin
2008-11-16 20:25 . 2008-11-16 20:25 <REP> d-------- c:\documents and settings\All Users\Application Data\Messenger Plus!
2008-11-16 20:23 . 2008-11-16 20:23 <REP> d-------- c:\program files\Circle Developement
2008-11-16 20:22 . 2008-11-16 20:22 <REP> d-------- c:\program files\Windows Live
2008-11-16 20:22 . 2008-11-16 20:22 <REP> d-------- c:\program files\Messenger Plus! Live
2008-11-14 23:01 . 2008-11-14 23:01 <REP> d-------- c:\program files\World of Warcraft
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-14 11:46 382 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb1942.dat
2008-12-14 11:44 179,200 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb4827.dat
2008-12-14 11:44 142 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb7652.dat
2008-12-14 11:44 13,046 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb5436.dat
2008-12-14 11:44 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb4604.dat
2008-12-13 21:55 196,608 ----a-w c:\windows\system32\drivers\nStandard.bin
2008-12-07 16:14 --------- d-----w c:\documents and settings\Administrateur\Application Data\Microsoft Games
2008-12-07 15:32 --------- d-----w c:\program files\Microsoft Games
2008-12-07 12:24 --------- d--h--w c:\program files\InstallShield Installation Information
2008-12-06 12:27 --------- d-----w c:\documents and settings\Administrateur\Application Data\ATI
2008-12-04 16:03 --------- d-----w c:\program files\LimeWire
2008-11-16 19:22 --------- d-----w c:\program files\MSN Messenger
2008-10-23 14:35 19,560 ----a-w c:\documents and settings\Administrateur\Application Data\GDIPFONTCACHEV1.DAT
2008-06-24 19:40 49 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb41.dat
2006-11-18 22:10 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb2391.dat
2006-11-16 20:01 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb153.dat
2006-11-13 16:54 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb8253.dat
2006-11-13 16:54 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb3902.dat
2006-10-15 11:21 9,216 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb8467.dat
2006-10-15 11:21 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb6334.dat
.
------- Sigcheck -------
2004-08-05 03:00 14336 1bd6c2f707a275cb7c16fd99fe0f31ca c:\windows\system32\svchost.exe
2004-08-05 03:00 578048 e46fb493e3b33704f0715020cf52106b c:\windows\$NtUninstallKB890859$\user32.dll
2005-03-02 19:20 578048 c34920eb988ce98910bd6b0417f334eb c:\windows\$NtUninstallKB925902$\user32.dll
2007-03-08 16:50 579072 4d88aaf39adabfe45958ea1384e2c4ff c:\windows\system32\user32.dll
2007-03-08 16:50 579072 4d88aaf39adabfe45958ea1384e2c4ff c:\windows\system32\dllcache\user32.dll
2004-08-05 03:00 82944 bc41f51a39d3b255805fdb759b7814ae c:\windows\system32\ws2_32.dll
2006-01-09 19:02 666112 5404e2ead19d7e2a5c4086015062343c c:\windows\$hf_mig$\KB912945\SP2QFE\wininet.dll
2007-12-07 02:42 825344 f4fd487241d3ac291046a22cebd2cf71 c:\windows\$hf_mig$\KB944533-IE7\SP2QFE\wininet.dll
2008-03-01 13:34 827392 5a0093f59b505c008ed0cee615563c72 c:\windows\$hf_mig$\KB947864-IE7\SP2QFE\wininet.dll
2008-04-23 08:19 827392 78d3d2b0be6ad3e6d82ccb115cf74310 c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\wininet.dll
2006-01-09 19:02 662528 e795f45061710e1ed8e80dd4188f5b26 c:\windows\$NtUninstallKB912945$\wininet.dll
2004-08-05 03:00 660480 58fe94ef42e074f4cad8bf02e70e6478 c:\windows\$NtUninstallKB912945_0$\wininet.dll
2006-01-09 19:02 666112 5404e2ead19d7e2a5c4086015062343c c:\windows\$NtUninstallKB918899$\wininet.dll
2006-06-23 12:25 668672 582953780721ac5d38f98cab229ec7b9 c:\windows\$NtUninstallKB922760$\wininet.dll
2006-09-14 09:38 668672 b8b6f05885a6f42724e8d6bfede6bd3f c:\windows\$NtUninstallKB925454$\wininet.dll
2006-10-23 16:34 668672 efa0c2870cba1747809a13e09f35bf82 c:\windows\$NtUninstallKB928090$\wininet.dll
2007-01-04 15:02 669184 114342601ac7ea73b0d2a0ed8505b8b9 c:\windows\$NtUninstallKB931768$\wininet.dll
2007-02-19 16:23 669696 1bde6d5dba35797eca8db8fcb80fc015 c:\windows\$NtUninstallKB933566$\wininet.dll
2007-04-18 13:44 669696 a3bf56a786b277e881fd9137f55f0b4b c:\windows\$NtUninstallKB937143$\wininet.dll
2007-06-26 15:36 669696 19058fbdc72f7bae085369c6d0a7d074 c:\windows\$NtUninstallKB939653$\wininet.dll
2007-08-22 13:57 669696 4f6a45b54d26708e2c2bf2c43d83edea c:\windows\$NtUninstallKB942615$\wininet.dll
2007-10-11 06:59 670208 0465cde31add22f6233ffb4fe4af01cf c:\windows\$NtUninstallKB944533$\wininet.dll
2007-12-07 01:47 670208 c057d734b1951393fd07e2607513d4d9 c:\windows\ie7\wininet.dll
2007-08-13 18:54 818688 a4a0fc92358f39538a6494c42ef99fe9 c:\windows\ie7updates\KB944533-IE7\wininet.dll
2007-12-07 03:08 824832 4fc90bece54fac81b0090b94e27bfb6b c:\windows\ie7updates\KB947864-IE7\wininet.dll
2008-03-01 13:58 826368 8e027981ddffa690d456fe18b37415a0 c:\windows\ie7updates\KB950759-IE7\wininet.dll
md5deep: c:\windows\SoftwareDistribution\Download\[u]0[/u]54c3b7a8a3c5c57c0110276bdacfc86\SP2GDR\wininet.dll: No such file or directory
md5deep: c:\windows\SoftwareDistribution\Download\[u]0[/u]54c3b7a8a3c5c57c0110276bdacfc86\SP2QFE\wininet.dll: No such file or directory
2008-04-23 05:16 826368 02d6aabd5f5a32c61478b5cdfe50e4a8 c:\windows\system32\wininet.dll
2008-04-23 05:16 826368 02d6aabd5f5a32c61478b5cdfe50e4a8 c:\windows\system32\dllcache\wininet.dll
2006-04-20 13:18 360576 b2220c618b42a2212a59d91ebd6fc4b4 c:\windows\$hf_mig$\KB917953\SP2QFE\tcpip.sys
2007-10-30 17:53 360832 64798ecfa43d78c7178375fcdd16d8c8 c:\windows\$hf_mig$\KB941644\SP2QFE\tcpip.sys
2004-08-05 03:00 359040 9f4b36614a0fc234525ba224957de55c c:\windows\$NtUninstallKB917953$\tcpip.sys
2006-04-20 12:51 359808 1dbf125862891817f374f407626967f4 c:\windows\$NtUninstallKB941644$\tcpip.sys
2007-10-30 18:20 360064 90caff4b094573449a0872a0f919b178 c:\windows\system32\dllcache\tcpip.sys
2007-10-30 18:20 360064 90caff4b094573449a0872a0f919b178 c:\windows\system32\drivers\tcpip.sys
2004-08-05 03:00 506368 d2de785aeab0bb8ca4c14a8a199dbe4e c:\windows\system32\winlogon.exe
2004-08-05 03:00 182912 558635d3af1c7546d26067d5d9b6959e c:\windows\system32\drivers\ndis.sys
2004-08-05 03:00 29056 4448006b6bc60e6c027932cfc38d6855 c:\windows\system32\drivers\ip6fw.sys
2004-08-03 23:49 2017280 35567c8c50986c2bc5c3efd79cb045e4 c:\windows\$NtUninstallKB890859$\ntkrnlpa.exe
2005-03-02 19:13 2017280 90e59ecf2d0541312c9eb36568810588 c:\windows\$NtUninstallKB929338$\ntkrnlpa.exe
2006-12-19 19:45 2019328 c46168890982d41fb8accdbac8e0a56c c:\windows\$NtUninstallKB931784$\ntkrnlpa.exe
2007-02-28 17:08 2061440 7a56a64eb50399613587e90292dd2aab c:\windows\Driver Cache\i386\ntkrnlpa.exe
2007-02-28 17:08 2019328 3e3df9f5d56b719f055e7d652e79f96b c:\windows\system32\ntkrnlpa.exe
2007-02-28 17:08 2061440 7a56a64eb50399613587e90292dd2aab c:\windows\system32\dllcache\ntkrnlpa.exe
2004-08-03 23:48 2150400 36f32a5a83df734e022734d93860a9a4 c:\windows\$NtUninstallKB890859$\ntoskrnl.exe
2005-03-02 19:13 2137600 5967696e9138c5337437e6b8653ab836 c:\windows\$NtUninstallKB929338$\ntoskrnl.exe
2006-12-19 19:45 2139648 d9f5291648962a1733f8d3e59da47bee c:\windows\$NtUninstallKB931784$\ntoskrnl.exe
2007-02-28 17:08 2184192 8e244108562e0e452eb68dff64cb08a9 c:\windows\Driver Cache\i386\ntoskrnl.exe
2007-02-28 17:08 2139648 de41f3b43b9f15e08ccd4b98a7bb2ca3 c:\windows\system32\ntoskrnl.exe
2007-02-28 17:08 2184192 8e244108562e0e452eb68dff64cb08a9 c:\windows\system32\dllcache\ntoskrnl.exe
2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 c:\windows\explorer.exe
2007-06-13 14:10 1037312 b795475444d6d57a572c14b9e1a29839 c:\windows\$hf_mig$\KB938828\SP2QFE\explorer.exe
2004-08-05 03:00 1036288 4c33e5b9a6197b6ed215f6cfba0a2daa c:\windows\$NtUninstallKB938828$\explorer.exe
2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 c:\windows\system32\dllcache\explorer.exe
2004-08-05 03:00 108544 732e0b1abaace15d80ec19056b0a2af9 c:\windows\system32\services.exe
2004-08-05 03:00 13312 9f3744a5c6f49291a7a685040a013399 c:\windows\system32\lsass.exe
2004-08-05 03:00 15360 5584247b568c2e53934873f4b655fe6a c:\windows\system32\ctfmon.exe
2005-06-11 01:17 57856 ad3d9d191aea7b5445fe1d82ffbb4788 c:\windows\$hf_mig$\KB896423\SP2QFE\spoolsv.exe
2004-08-05 03:00 57856 b4ef928e4fad79364a80acba6d999934 c:\windows\$NtUninstallKB896423$\spoolsv.exe
2005-06-11 00:53 57856 da81ec57acd4cdc3d4c51cf3d409af9f c:\windows\system32\spoolsv.exe
2004-08-05 03:00 25088 d6d65ea32b190401b57edb6706f29669 c:\windows\system32\userinit.exe
2004-08-05 03:00 297984 7d521b8cf926459e270d18c559323815 c:\windows\system32\termsrv.dll
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-05 15360]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-06-12 68856]
"EA Core"="c:\program files\Electronic Arts\EADM\Core.exe" [2008-07-21 2752512]
"ASUS SmartDoctor"="c:\program files\ASUS\SmartDoctor\SmartDoctor.exe" [2008-03-07 1130496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PTHOSTTR"="c:\program files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE" [2005-10-04 86016]
"SetRefresh"="c:\program files\Compaq\SetRefresh\SetRefresh.exe" [2003-11-20 525824]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-11-14 286720]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2007-11-15 267048]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-07-19 78008]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-01-21 61440]
"ASUSGamerOSD"="c:\program files\ASUS\GamerOSD\GamerOSD.exe" [2007-10-23 380928]
"Raccourci vers la page des propriétés de High Definition Audio"="HDAShCut.exe" [2005-01-07 c:\windows\system32\hdashcut.exe]
"RTHDCPL"="RTHDCPL.EXE" [2005-03-08 c:\windows\RTHDCPL.EXE]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-05 15360]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-02-13 83360]
Sonic CinePlayer Quick Launch.lnk - c:\program files\Fichiers communs\Sonic Shared\CineTray.exe [2005-10-15 114688]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 22:34 24576 c:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=wbsys.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.l3acm"= l3codecp.acm
"VIDC.ACDV"= ACDV.dll
"vidc.asv2"= asusasv2.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\EA GAMES\\La Bataille pour la Terre du Milieu(tm)\\game.dat"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Valve\\Steam\\steamapps\\dragon2434\\condition zero\\hl.exe"=
"c:\\Documents and Settings\\Administrateur\\Mes documents\\Warcraft III\\Warcraft III.exe"=
"c:\\Documents and Settings\\Administrateur\\Mes documents\\Warcraft III\\War3.exe"=
"c:\\World of Warcraft\\WoW-1.12.0-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-1.12.x-to-2.0.1-frFR-patch-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.3-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.3.6299-to-2.0.5.6320-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.5.6320-to-2.0.6.6337-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.6.6337-to-2.0.7.6383-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.7.6383-to-2.0.8.6403-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.8.6403-to-2.0.10.6448-frFR-downloader.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\World of Warcraft\\BackgroundDownloader.exe"=
"c:\\Program Files\\EA GAMES\\Battlefield 1942\\BF1942.exe"=
"c:\\Valve\\Steam\\Steam.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\NAMCO BANDAI Games\\Warhammer® Mark of Chaos\\Warhammer.exe"=
"c:\\Program Files\\Electronic Arts\\EADM\\Core.exe"=
"c:\\Program Files\\Microsoft Games\\Gears of War\\Binaries\\WarGame-G4WLive.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3724:TCP"= 3724:TCP:Blizzard Downloader: 3724
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-11-09 78416]
R1 EIO_XP;EIO_XP;\??\c:\windows\system32\drivers\EIO_XP.sys [2008-12-06 12288]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2008-11-09 20560]
R3 Video3D;ASUS Video3D Service;c:\windows\system32\Drivers\Video3D32.sys [2008-12-07 10752]
S3 {DEF85C80-216A-43ab-AF70-1665EDBE2780};{DEF85C80-216A-43ab-AF70-1665EDBE2780};\??\c:\windows\TEMP\11.tmp []
S3 maconfservice;Ma-Config Service;"c:\program files\ma-config.com\maconfservice.exe" [2008-11-17 195752]
S3 pnicml;pnicml;\??\c:\docume~1\ADMINI~1\LOCALS~1\Temp\pnicml.sys []
.
Contenu du dossier 'Tâches planifiées'
2008-09-28 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]
.
- - - - ORPHELINS SUPPRIMES - - - -
BHO-{56F69795-45AC-4C52-9E8A-E9C9E031A842} - c:\windows\system32\xxyaxVlM.dll
HKCU-Run-Steam - (no file)
HKLM-Run-BMN - c:\program files\Fichiers communs\VirusGarde\bm.exe dm=http://virusgarde.com ad=http://virusgarde.com
HKLM-Run-Device Detector - DevDetect.exe
HKLM-Run-Windows Acer Service - acersv.exe
HKLM-Run-Windows svchost - avserv.exe
Notify-iifCSMFw - iifCSMFw.dll
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.com/
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mWindow Title =
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~3\Office10\EXCEL.EXE/3000
O16 -: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - hxxp://ma-config.com/activex/hardwaredetection_3_0_4_0.cab
c:\windows\Downloaded Program Files\hardwaredetection.inf
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-14 17:20:42
Windows 5.1.2600 Service Pack 2 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{DEF85C80-216A-43ab-AF70-1665EDBE2780}]
"ImagePath"="\??\c:\windows\TEMP\11.tmp"
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'winlogon.exe'(672)
c:\windows\system32\Ati2evxx.dll
c:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\windows\ATKKBService.exe
c:\program files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
c:\program files\Symantec\LiveUpdate\AluSchedulerSvc.exe
c:\program files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\program files\Fichiers communs\Symantec Shared\Security Center\SymSCUI.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\iPod\bin\iPodService.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
.
**************************************************************************
.
Heure de fin: 2008-12-14 17:24:38 - La machine a redémarré
ComboFix-quarantined-files.txt 2008-12-14 16:24:35
Avant-CF: 143'401'283'584 octets libres
Après-CF: 148,994,486,272 octets libres
315 --- E O F --- 2008-06-11 11:22:50
ComboFix 08-12-13.03 - Administrateur 2008-12-14 17:15:11.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.2047.1685 [GMT 1:00]
Lancé depuis: c:\documents and settings\Administrateur\Bureau\ComboFix.exe
* Un nouveau point de restauration a été créé
[COLOR=RED][B]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/B][/COLOR]
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\docume~1\ADMINI~1\LOCALS~1\Temp\tmp2.tmp
c:\documents and settings\Administrateur\Application Data\DriveCleaner Free
c:\documents and settings\Administrateur\Application Data\DriveCleaner Free\Logs\update.log
c:\documents and settings\Administrateur\Application Data\WinAntiVirus Pro 2006
c:\documents and settings\Administrateur\Application Data\WinAntiVirus Pro 2006\Logs\update.log
c:\documents and settings\Administrateur\Application Data\WinAntiVirus Pro 2006\Logs\wa6Support.log
c:\documents and settings\Administrateur\Application Data\WinAntiVirus Pro 2006\Logs\winav.log
c:\documents and settings\Administrateur\Application Data\WinAntiVirus Pro 2006\PGE.dat
c:\documents and settings\Administrateur\err.log
c:\documents and settings\Administrateur\ResErrors.log
c:\documents and settings\All Users\Application Data\WinAntiVirus Pro 2006
c:\program files\Fichiers communs\drivecleaner free
c:\program files\Fichiers communs\winantivirus pro 2006
c:\program files\Fichiers communs\winantivirus pro 2006\err.log
c:\program files\winantivirus pro 2006
c:\program files\winantivirus pro 2006\msvcp71.dll
c:\program files\winantivirus pro 2006\msvcr71.dll
C:\WA6P
c:\windows\BM6af6f5cd.txt
c:\windows\BM6af6f5cd.xml
c:\windows\cookies.ini
c:\windows\pskt.ini
c:\windows\system32\bwbqscwb.ini
c:\windows\system32\disviwki.ini
c:\windows\system32\dllvirtual.exe
c:\windows\system32\ildofuff.ini
c:\windows\system32\lrpqyjca.ini
c:\windows\system32\mcrh.tmp
c:\windows\system32\MlVxayxx.ini
c:\windows\system32\MlVxayxx.ini2
c:\windows\system32\stera.job
c:\windows\system32\stera.log
c:\windows\system32\uoaxdjwt.ini
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_DHLP
-------\Legacy_FOPN
-------\Legacy_VSPF
-------\Legacy_VSPF_HK
-------\Service_FOPN
-------\Service_vspf
-------\Service_vspf_hk
((((((((((((((((((((((((((((( Fichiers créés du 2008-11-14 au 2008-12-14 ))))))))))))))))))))))))))))))))))))
.
2008-12-14 12:44 . 2008-12-14 12:51 <REP> d-------- C:\ToolBar SD
2008-12-14 12:31 . 2008-12-14 12:31 <REP> d-------- C:\rsit
2008-12-14 12:27 . 2008-12-14 12:27 <REP> d-------- c:\program files\Trend Micro
2008-12-14 12:21 . 2008-12-14 12:21 <REP> d-------- c:\program files\Intel
2008-12-14 12:21 . 2008-05-01 16:35 53,248 --a------ c:\windows\system32\CSVer.dll
2008-12-14 12:20 . 2008-12-14 12:20 <REP> d-------- C:\Intel
2008-12-14 12:11 . 2008-12-14 12:11 <REP> d-------- c:\program files\Lavalys
2008-12-14 11:33 . 2008-12-14 11:33 <REP> d-------- C:\ATI
2008-12-07 15:50 . 2004-08-04 00:55 16,384 --a------ c:\windows\system32\ipsink.ax
2008-12-07 15:50 . 2004-08-03 23:10 15,360 --a------ c:\windows\system32\drivers\StreamIP.sys
2008-12-07 15:50 . 2004-08-03 23:10 11,136 --a------ c:\windows\system32\drivers\SLIP.sys
2008-12-07 15:29 . 2008-12-07 15:29 <REP> d-------- c:\documents and settings\All Users\Application Data\ATI
2008-12-07 15:16 . 2008-02-19 14:37 3,107,788 -ra------ c:\windows\system32\ativvaxx.dat
2008-12-07 15:16 . 2008-02-19 14:37 3,107,788 -ra------ c:\windows\system32\ativva5x.dat
2008-12-07 15:16 . 2008-02-19 14:37 887,724 -ra------ c:\windows\system32\ativva6x.dat
2008-12-07 15:16 . 2008-02-19 15:07 372,736 -ra------ c:\windows\system32\ATIDEMGX.dll
2008-12-07 15:16 . 2008-02-19 15:02 307,200 -ra------ c:\windows\system32\atiiiexx.dll
2008-12-07 15:16 . 2008-01-11 08:50 165,746 -ra------ c:\windows\system32\atiicdxx.dat
2008-12-07 15:16 . 2007-08-31 02:20 7,167 -ra------ c:\windows\system32\atifglpf.xml
2008-12-07 13:27 . 2008-12-07 15:23 <REP> d-------- c:\program files\ATI Technologies
2008-12-07 13:24 . 2008-12-07 13:24 12,288 --a------ c:\windows\system32\drivers\EIO64_xp.sys
2008-12-06 15:18 . 2004-08-03 23:10 10,880 --a------ c:\windows\system32\drivers\NdisIP.sys
2008-12-06 15:16 . 2004-08-04 00:55 91,648 --a------ c:\windows\system32\kswdmcap.ax
2008-12-06 15:16 . 2004-08-04 00:55 61,952 --a------ c:\windows\system32\kstvtune.ax
2008-12-06 15:16 . 2004-08-04 00:54 54,784 --a------ c:\windows\system32\vfwwdm32.dll
2008-12-06 15:16 . 2004-08-04 00:55 43,008 --a------ c:\windows\system32\ksxbar.ax
2008-12-06 15:16 . 2004-08-04 00:55 28,672 --a------ c:\windows\system32\vidcap.ax
2008-12-06 14:14 . 2008-12-06 14:15 <REP> d-------- c:\program files\ma-config.com
2008-12-06 14:14 . 2008-12-06 14:14 <REP> d-------- c:\documents and settings\All Users\Application Data\ma-config.com
2008-12-06 13:42 . 2006-06-14 13:44 12,288 -ra------ c:\windows\system32\drivers\EIO_XP.sys
2008-12-06 13:39 . 2008-12-07 13:24 <REP> d-------- c:\program files\ASUS
2008-12-06 13:39 . 2007-10-23 17:48 12,416 --a------ c:\windows\system32\drivers\asusgsb.sys
2008-12-06 13:24 . 2008-12-06 13:24 <REP> d-------- c:\program files\My Company Name
2008-12-06 13:19 . 2008-12-06 13:19 <REP> d-------- c:\program files\Fichiers communs\ATI Technologies
2008-12-06 13:07 . 2006-12-28 04:44 84,992 -ra------ c:\windows\system32\drivers\AtiHdAud.sys
2008-12-06 13:07 . 2008-01-21 02:48 12,477 -ra------ c:\windows\atiogl.xml
2008-12-06 13:07 . 2008-12-06 13:07 0 --a------ c:\windows\ativpsrm.bin
2008-11-16 20:25 . 2008-11-16 20:25 <REP> d-------- c:\documents and settings\All Users\Application Data\Messenger Plus!
2008-11-16 20:23 . 2008-11-16 20:23 <REP> d-------- c:\program files\Circle Developement
2008-11-16 20:22 . 2008-11-16 20:22 <REP> d-------- c:\program files\Windows Live
2008-11-16 20:22 . 2008-11-16 20:22 <REP> d-------- c:\program files\Messenger Plus! Live
2008-11-14 23:01 . 2008-11-14 23:01 <REP> d-------- c:\program files\World of Warcraft
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-14 11:46 382 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb1942.dat
2008-12-14 11:44 179,200 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb4827.dat
2008-12-14 11:44 142 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb7652.dat
2008-12-14 11:44 13,046 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb5436.dat
2008-12-14 11:44 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb4604.dat
2008-12-13 21:55 196,608 ----a-w c:\windows\system32\drivers\nStandard.bin
2008-12-07 16:14 --------- d-----w c:\documents and settings\Administrateur\Application Data\Microsoft Games
2008-12-07 15:32 --------- d-----w c:\program files\Microsoft Games
2008-12-07 12:24 --------- d--h--w c:\program files\InstallShield Installation Information
2008-12-06 12:27 --------- d-----w c:\documents and settings\Administrateur\Application Data\ATI
2008-12-04 16:03 --------- d-----w c:\program files\LimeWire
2008-11-16 19:22 --------- d-----w c:\program files\MSN Messenger
2008-10-23 14:35 19,560 ----a-w c:\documents and settings\Administrateur\Application Data\GDIPFONTCACHEV1.DAT
2008-06-24 19:40 49 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb41.dat
2006-11-18 22:10 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb2391.dat
2006-11-16 20:01 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb153.dat
2006-11-13 16:54 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb8253.dat
2006-11-13 16:54 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb3902.dat
2006-10-15 11:21 9,216 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb8467.dat
2006-10-15 11:21 0 ----a-w c:\documents and settings\Administrateur\Application Data\internaldb6334.dat
.
------- Sigcheck -------
2004-08-05 03:00 14336 1bd6c2f707a275cb7c16fd99fe0f31ca c:\windows\system32\svchost.exe
2004-08-05 03:00 578048 e46fb493e3b33704f0715020cf52106b c:\windows\$NtUninstallKB890859$\user32.dll
2005-03-02 19:20 578048 c34920eb988ce98910bd6b0417f334eb c:\windows\$NtUninstallKB925902$\user32.dll
2007-03-08 16:50 579072 4d88aaf39adabfe45958ea1384e2c4ff c:\windows\system32\user32.dll
2007-03-08 16:50 579072 4d88aaf39adabfe45958ea1384e2c4ff c:\windows\system32\dllcache\user32.dll
2004-08-05 03:00 82944 bc41f51a39d3b255805fdb759b7814ae c:\windows\system32\ws2_32.dll
2006-01-09 19:02 666112 5404e2ead19d7e2a5c4086015062343c c:\windows\$hf_mig$\KB912945\SP2QFE\wininet.dll
2007-12-07 02:42 825344 f4fd487241d3ac291046a22cebd2cf71 c:\windows\$hf_mig$\KB944533-IE7\SP2QFE\wininet.dll
2008-03-01 13:34 827392 5a0093f59b505c008ed0cee615563c72 c:\windows\$hf_mig$\KB947864-IE7\SP2QFE\wininet.dll
2008-04-23 08:19 827392 78d3d2b0be6ad3e6d82ccb115cf74310 c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\wininet.dll
2006-01-09 19:02 662528 e795f45061710e1ed8e80dd4188f5b26 c:\windows\$NtUninstallKB912945$\wininet.dll
2004-08-05 03:00 660480 58fe94ef42e074f4cad8bf02e70e6478 c:\windows\$NtUninstallKB912945_0$\wininet.dll
2006-01-09 19:02 666112 5404e2ead19d7e2a5c4086015062343c c:\windows\$NtUninstallKB918899$\wininet.dll
2006-06-23 12:25 668672 582953780721ac5d38f98cab229ec7b9 c:\windows\$NtUninstallKB922760$\wininet.dll
2006-09-14 09:38 668672 b8b6f05885a6f42724e8d6bfede6bd3f c:\windows\$NtUninstallKB925454$\wininet.dll
2006-10-23 16:34 668672 efa0c2870cba1747809a13e09f35bf82 c:\windows\$NtUninstallKB928090$\wininet.dll
2007-01-04 15:02 669184 114342601ac7ea73b0d2a0ed8505b8b9 c:\windows\$NtUninstallKB931768$\wininet.dll
2007-02-19 16:23 669696 1bde6d5dba35797eca8db8fcb80fc015 c:\windows\$NtUninstallKB933566$\wininet.dll
2007-04-18 13:44 669696 a3bf56a786b277e881fd9137f55f0b4b c:\windows\$NtUninstallKB937143$\wininet.dll
2007-06-26 15:36 669696 19058fbdc72f7bae085369c6d0a7d074 c:\windows\$NtUninstallKB939653$\wininet.dll
2007-08-22 13:57 669696 4f6a45b54d26708e2c2bf2c43d83edea c:\windows\$NtUninstallKB942615$\wininet.dll
2007-10-11 06:59 670208 0465cde31add22f6233ffb4fe4af01cf c:\windows\$NtUninstallKB944533$\wininet.dll
2007-12-07 01:47 670208 c057d734b1951393fd07e2607513d4d9 c:\windows\ie7\wininet.dll
2007-08-13 18:54 818688 a4a0fc92358f39538a6494c42ef99fe9 c:\windows\ie7updates\KB944533-IE7\wininet.dll
2007-12-07 03:08 824832 4fc90bece54fac81b0090b94e27bfb6b c:\windows\ie7updates\KB947864-IE7\wininet.dll
2008-03-01 13:58 826368 8e027981ddffa690d456fe18b37415a0 c:\windows\ie7updates\KB950759-IE7\wininet.dll
md5deep: c:\windows\SoftwareDistribution\Download\[u]0[/u]54c3b7a8a3c5c57c0110276bdacfc86\SP2GDR\wininet.dll: No such file or directory
md5deep: c:\windows\SoftwareDistribution\Download\[u]0[/u]54c3b7a8a3c5c57c0110276bdacfc86\SP2QFE\wininet.dll: No such file or directory
2008-04-23 05:16 826368 02d6aabd5f5a32c61478b5cdfe50e4a8 c:\windows\system32\wininet.dll
2008-04-23 05:16 826368 02d6aabd5f5a32c61478b5cdfe50e4a8 c:\windows\system32\dllcache\wininet.dll
2006-04-20 13:18 360576 b2220c618b42a2212a59d91ebd6fc4b4 c:\windows\$hf_mig$\KB917953\SP2QFE\tcpip.sys
2007-10-30 17:53 360832 64798ecfa43d78c7178375fcdd16d8c8 c:\windows\$hf_mig$\KB941644\SP2QFE\tcpip.sys
2004-08-05 03:00 359040 9f4b36614a0fc234525ba224957de55c c:\windows\$NtUninstallKB917953$\tcpip.sys
2006-04-20 12:51 359808 1dbf125862891817f374f407626967f4 c:\windows\$NtUninstallKB941644$\tcpip.sys
2007-10-30 18:20 360064 90caff4b094573449a0872a0f919b178 c:\windows\system32\dllcache\tcpip.sys
2007-10-30 18:20 360064 90caff4b094573449a0872a0f919b178 c:\windows\system32\drivers\tcpip.sys
2004-08-05 03:00 506368 d2de785aeab0bb8ca4c14a8a199dbe4e c:\windows\system32\winlogon.exe
2004-08-05 03:00 182912 558635d3af1c7546d26067d5d9b6959e c:\windows\system32\drivers\ndis.sys
2004-08-05 03:00 29056 4448006b6bc60e6c027932cfc38d6855 c:\windows\system32\drivers\ip6fw.sys
2004-08-03 23:49 2017280 35567c8c50986c2bc5c3efd79cb045e4 c:\windows\$NtUninstallKB890859$\ntkrnlpa.exe
2005-03-02 19:13 2017280 90e59ecf2d0541312c9eb36568810588 c:\windows\$NtUninstallKB929338$\ntkrnlpa.exe
2006-12-19 19:45 2019328 c46168890982d41fb8accdbac8e0a56c c:\windows\$NtUninstallKB931784$\ntkrnlpa.exe
2007-02-28 17:08 2061440 7a56a64eb50399613587e90292dd2aab c:\windows\Driver Cache\i386\ntkrnlpa.exe
2007-02-28 17:08 2019328 3e3df9f5d56b719f055e7d652e79f96b c:\windows\system32\ntkrnlpa.exe
2007-02-28 17:08 2061440 7a56a64eb50399613587e90292dd2aab c:\windows\system32\dllcache\ntkrnlpa.exe
2004-08-03 23:48 2150400 36f32a5a83df734e022734d93860a9a4 c:\windows\$NtUninstallKB890859$\ntoskrnl.exe
2005-03-02 19:13 2137600 5967696e9138c5337437e6b8653ab836 c:\windows\$NtUninstallKB929338$\ntoskrnl.exe
2006-12-19 19:45 2139648 d9f5291648962a1733f8d3e59da47bee c:\windows\$NtUninstallKB931784$\ntoskrnl.exe
2007-02-28 17:08 2184192 8e244108562e0e452eb68dff64cb08a9 c:\windows\Driver Cache\i386\ntoskrnl.exe
2007-02-28 17:08 2139648 de41f3b43b9f15e08ccd4b98a7bb2ca3 c:\windows\system32\ntoskrnl.exe
2007-02-28 17:08 2184192 8e244108562e0e452eb68dff64cb08a9 c:\windows\system32\dllcache\ntoskrnl.exe
2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 c:\windows\explorer.exe
2007-06-13 14:10 1037312 b795475444d6d57a572c14b9e1a29839 c:\windows\$hf_mig$\KB938828\SP2QFE\explorer.exe
2004-08-05 03:00 1036288 4c33e5b9a6197b6ed215f6cfba0a2daa c:\windows\$NtUninstallKB938828$\explorer.exe
2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 c:\windows\system32\dllcache\explorer.exe
2004-08-05 03:00 108544 732e0b1abaace15d80ec19056b0a2af9 c:\windows\system32\services.exe
2004-08-05 03:00 13312 9f3744a5c6f49291a7a685040a013399 c:\windows\system32\lsass.exe
2004-08-05 03:00 15360 5584247b568c2e53934873f4b655fe6a c:\windows\system32\ctfmon.exe
2005-06-11 01:17 57856 ad3d9d191aea7b5445fe1d82ffbb4788 c:\windows\$hf_mig$\KB896423\SP2QFE\spoolsv.exe
2004-08-05 03:00 57856 b4ef928e4fad79364a80acba6d999934 c:\windows\$NtUninstallKB896423$\spoolsv.exe
2005-06-11 00:53 57856 da81ec57acd4cdc3d4c51cf3d409af9f c:\windows\system32\spoolsv.exe
2004-08-05 03:00 25088 d6d65ea32b190401b57edb6706f29669 c:\windows\system32\userinit.exe
2004-08-05 03:00 297984 7d521b8cf926459e270d18c559323815 c:\windows\system32\termsrv.dll
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-05 15360]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-06-12 68856]
"EA Core"="c:\program files\Electronic Arts\EADM\Core.exe" [2008-07-21 2752512]
"ASUS SmartDoctor"="c:\program files\ASUS\SmartDoctor\SmartDoctor.exe" [2008-03-07 1130496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PTHOSTTR"="c:\program files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE" [2005-10-04 86016]
"SetRefresh"="c:\program files\Compaq\SetRefresh\SetRefresh.exe" [2003-11-20 525824]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-11-14 286720]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2007-11-15 267048]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-07-19 78008]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-01-21 61440]
"ASUSGamerOSD"="c:\program files\ASUS\GamerOSD\GamerOSD.exe" [2007-10-23 380928]
"Raccourci vers la page des propriétés de High Definition Audio"="HDAShCut.exe" [2005-01-07 c:\windows\system32\hdashcut.exe]
"RTHDCPL"="RTHDCPL.EXE" [2005-03-08 c:\windows\RTHDCPL.EXE]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-05 15360]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-02-13 83360]
Sonic CinePlayer Quick Launch.lnk - c:\program files\Fichiers communs\Sonic Shared\CineTray.exe [2005-10-15 114688]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 22:34 24576 c:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=wbsys.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.l3acm"= l3codecp.acm
"VIDC.ACDV"= ACDV.dll
"vidc.asv2"= asusasv2.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\EA GAMES\\La Bataille pour la Terre du Milieu(tm)\\game.dat"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Valve\\Steam\\steamapps\\dragon2434\\condition zero\\hl.exe"=
"c:\\Documents and Settings\\Administrateur\\Mes documents\\Warcraft III\\Warcraft III.exe"=
"c:\\Documents and Settings\\Administrateur\\Mes documents\\Warcraft III\\War3.exe"=
"c:\\World of Warcraft\\WoW-1.12.0-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-1.12.x-to-2.0.1-frFR-patch-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.3-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.3.6299-to-2.0.5.6320-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.5.6320-to-2.0.6.6337-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.6.6337-to-2.0.7.6383-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.7.6383-to-2.0.8.6403-frFR-downloader.exe"=
"c:\\World of Warcraft\\WoW-2.0.8.6403-to-2.0.10.6448-frFR-downloader.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\World of Warcraft\\BackgroundDownloader.exe"=
"c:\\Program Files\\EA GAMES\\Battlefield 1942\\BF1942.exe"=
"c:\\Valve\\Steam\\Steam.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\NAMCO BANDAI Games\\Warhammer® Mark of Chaos\\Warhammer.exe"=
"c:\\Program Files\\Electronic Arts\\EADM\\Core.exe"=
"c:\\Program Files\\Microsoft Games\\Gears of War\\Binaries\\WarGame-G4WLive.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3724:TCP"= 3724:TCP:Blizzard Downloader: 3724
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-11-09 78416]
R1 EIO_XP;EIO_XP;\??\c:\windows\system32\drivers\EIO_XP.sys [2008-12-06 12288]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2008-11-09 20560]
R3 Video3D;ASUS Video3D Service;c:\windows\system32\Drivers\Video3D32.sys [2008-12-07 10752]
S3 {DEF85C80-216A-43ab-AF70-1665EDBE2780};{DEF85C80-216A-43ab-AF70-1665EDBE2780};\??\c:\windows\TEMP\11.tmp []
S3 maconfservice;Ma-Config Service;"c:\program files\ma-config.com\maconfservice.exe" [2008-11-17 195752]
S3 pnicml;pnicml;\??\c:\docume~1\ADMINI~1\LOCALS~1\Temp\pnicml.sys []
.
Contenu du dossier 'Tâches planifiées'
2008-09-28 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]
.
- - - - ORPHELINS SUPPRIMES - - - -
BHO-{56F69795-45AC-4C52-9E8A-E9C9E031A842} - c:\windows\system32\xxyaxVlM.dll
HKCU-Run-Steam - (no file)
HKLM-Run-BMN - c:\program files\Fichiers communs\VirusGarde\bm.exe dm=http://virusgarde.com ad=http://virusgarde.com
HKLM-Run-Device Detector - DevDetect.exe
HKLM-Run-Windows Acer Service - acersv.exe
HKLM-Run-Windows svchost - avserv.exe
Notify-iifCSMFw - iifCSMFw.dll
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.com/
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mWindow Title =
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~3\Office10\EXCEL.EXE/3000
O16 -: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - hxxp://ma-config.com/activex/hardwaredetection_3_0_4_0.cab
c:\windows\Downloaded Program Files\hardwaredetection.inf
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-14 17:20:42
Windows 5.1.2600 Service Pack 2 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{DEF85C80-216A-43ab-AF70-1665EDBE2780}]
"ImagePath"="\??\c:\windows\TEMP\11.tmp"
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'winlogon.exe'(672)
c:\windows\system32\Ati2evxx.dll
c:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\windows\ATKKBService.exe
c:\program files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
c:\program files\Symantec\LiveUpdate\AluSchedulerSvc.exe
c:\program files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\program files\Fichiers communs\Symantec Shared\Security Center\SymSCUI.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\iPod\bin\iPodService.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
.
**************************************************************************
.
Heure de fin: 2008-12-14 17:24:38 - La machine a redémarré
ComboFix-quarantined-files.txt 2008-12-14 16:24:35
Avant-CF: 143'401'283'584 octets libres
Après-CF: 148,994,486,272 octets libres
315 --- E O F --- 2008-06-11 11:22:50
Tu peux changer la résolution ?
---> Télécharge Lop S&D sur ton Bureau.
---> Double-clique dessus pour lancer l'installation.
---> Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau.
---> Sélectionne la langue souhaitée, puis choisis l'option 1 (Recherche).
---> Patiente jusqu'à la fin du scan.
---> Poste le rapport généré (C:\lopR.txt).
---> Télécharge Lop S&D sur ton Bureau.
---> Double-clique dessus pour lancer l'installation.
---> Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau.
---> Sélectionne la langue souhaitée, puis choisis l'option 1 (Recherche).
---> Patiente jusqu'à la fin du scan.
---> Poste le rapport généré (C:\lopR.txt).