Bonjour,
j'ai fait un scan avec trojan killer et il m'a trouvé un fichier infecté:
Backdoor.Win32.Beastdoor dans : C:\Windows\System32\vp6vfw.dll
mais pour le supprimer je dois acheter le logiciel(deg).
alors je voudrais savoir si quelqu'un pouvait m'aider a supprimer se virus,car j'ai avira antivir premium,et il me trouve aucun virus depuis que je l'ai(sa va faire 1moi),sinon j'ai aussi a squared free , malwareBytes antiMalware et ad-aware anniversary pro,et j'ai beau faire des scan aucun log me trouve de virus,mis à part bien sur Trojan Killer qui lui m'a trouvé ce virus...(est-ce vraiment un virus alors???)
je vous poste le rapport de Trojan Killer...ci dessous:
GridinSoft Trojan Killer v.2.0.1.0
Report file date: 05/04/2009 14:25:42
Scanning for 477422 virus strains and unwanted programs.
Licensed: UNREGISTERED
Windows version: Windows Vista (TM) Home Premium (version 6.0)
Username: beber
Computer name: PC-DE-BEBER
Starting the file scan:
Startup collected
BHO plugins collected
ActiveX collected
Files collected
Scaning...
c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe - Trojan.General
C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll - HEUR.TrojanDownloader.M
C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll - HEUR.TrojanDownloader.M
C:\Program Files\Java\jre6\bin\jp2ssv.dll - HEUR.TrojanDownloader.M
c:\progra~1\micros~2\office12\ieawsdc.dll - HEUR.Downloader.J
c:\progra~1\ratdvd\xeb\xebcore.dll - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\xebtcd.ax - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\xebfcl.ax - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\trldrp6.ax - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\xebmux.ax - HEUR.Suspicious.ASPACK
c:\windows\system32\mswinsck.ocx - Win32.SuspectCrc, Backdoor.YEMO, Mal/Generic-A
c:\program files\ratdvd\xeb\xebmpg.ax - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\comanalyzer.dll - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\xebnavigation.ax - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\bd5gns.ax - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\xebdmp.ax - HEUR.Suspicious.ASPACK
c:\progra~1\ratdvd\xeb\rattag.dll - HEUR.Suspicious.ASPACK
c:\progra~1\ratdvd\xeb\fcfolder.dll - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\xebdec.ax - HEUR.Suspicious.ASPACK
c:\program files\common files\microsoft shared\office12\msoxev.dll - HEUR.Downloader.B
c:\progra~1\ratdvd\xeb\fczip.dll - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\xebdmx.ax - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\xebtci.ax - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\xebshell.dll - HEUR.Suspicious.ASPACK
c:\program files\ratdvd\xeb\xebrpk.ax - HEUR.Suspicious.ASPACK
C:\Windows\System32\append.exe - Not a PE file
C:\Windows\System32\avicap.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\avifile.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\cfad5_z.dll - Invalid DOS signature
C:\Windows\System32\COMMDLG.DLL - Invalid PE signature (probably NE file)
C:\Windows\System32\compobj.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\ctl3dv2.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\DDEML.DLL - Invalid PE signature (probably NE file)
C:\Windows\System32\debug.exe - Not a PE file
C:\Windows\System32\dosx.exe - Invalid PE signature (probably NE file)
C:\Windows\System32\DRWATSON.EXE - Invalid PE signature (probably NE file)
C:\Windows\System32\ds16gt.dLL - Invalid PE signature (probably NE file)
C:\Windows\System32\edlin.exe - Not a PE file
C:\Windows\System32\exe2bin.exe - Not a PE file
C:\Windows\System32\fastopen.exe - Not a PE file
C:\Windows\System32\fbfbeecefb_z.ocx - Invalid DOS signature
C:\Windows\System32\GDI.EXE - Invalid PE signature (probably NE file)
C:\Windows\System32\krnl386.exe - Invalid PE signature (probably NE file)
C:\Windows\System32\lzexpand.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\mem.exe - Not a PE file
C:\Windows\System32\MMSYSTEM.DLL - Invalid PE signature (probably NE file)
C:\Windows\System32\msacm.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\mscdexnt.exe - Not a PE file
C:\Windows\System32\msvideo.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\netapi.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\nlsfunc.exe - Not a PE file
C:\Windows\System32\NTIBUN4.dll - Invalid DOS signature
C:\Windows\System32\odbc16gt.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\ole2.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\ole2disp.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\ole2nls.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\olecli.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\OLESVR.DLL - Invalid PE signature (probably NE file)
C:\Windows\System32\pmspl.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\redir.exe - Invalid PE signature (probably NE file)
C:\Windows\System32\setver.exe - Not a PE file
C:\Windows\System32\share.exe - Not a PE file
C:\Windows\System32\SHELL.DLL - Invalid PE signature (probably NE file)
C:\Windows\System32\storage.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\sysedit.exe - Invalid PE signature (probably NE file)
C:\Windows\System32\tapi.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\TOOLHELP.DLL - Invalid PE signature (probably NE file)
C:\Windows\System32\typelib.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\USER.EXE - Invalid PE signature (probably NE file)
C:\Windows\System32\ver.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\vp6vfw.dll - Backdoor.Win32.Beastdoor
C:\Windows\System32\WIFEMAN.DLL - Invalid PE signature (probably NE file)
C:\Windows\System32\win87em.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\WINNLS.DLL - Invalid PE signature (probably NE file)
C:\Windows\System32\WINSOCK.DLL - Invalid PE signature (probably NE file)
C:\Windows\System32\WINSPOOL.EXE - Invalid PE signature (probably NE file)
C:\Windows\System32\WOWDEB.EXE - Invalid PE signature (probably NE file)
C:\Windows\System32\WOWEXEC.EXE - Invalid PE signature (probably NE file)
C:\Windows\System32\DriverStore\FileRepository\avmisdnc.inf_7202c3cf\avmc20.dll - Invalid PE signature (probably NE file)
C:\Windows\System32\Macromed\Flash\Flash10a.ocx - Trojan.Malagent.AGJ
C:\Users\beber\AppData\Roaming\Microsoft\Installer\{5967A03E-3B74-4DF1-B591-2D89CA26BDC9}\ARPPRODUCTICON.exe - Invalid DOS signature
C:\Users\beber\Desktop\film...etc\Tout Le Droit Franþais En Pdf\tout le droit fran¦ais en pdf\Droit du particulier\Disk1\install.exe - Invalid PE signature (probably NE file)
C:\Users\beber\Desktop\film...etc\Tout Le Droit Franþais En Pdf\tout le droit fran¦ais en pdf\Droit du particulier\Disk1\_SETUP.DLL - Invalid PE signature (probably NE file)
C:\Program Files\DVD Shrink\DVD Shrink 3.2.exe - HEUR.Suspicious.ASPACK
C:\Program Files\Free Download Manager\Firefox\extension\components\component.dll - Invalid DOS signature
C:\Program Files\Microsoft Office\Office12\IEAWSDC.DLL - HEUR.Downloader.J
C:\Program Files\NewTech Infosystems\NTI Backup NOW! 4.7\PART16.DLL - Invalid PE signature (probably NE file)
C:\Program Files\ratDVD\XEB\FCFolder.dll - HEUR.Suspicious.ASPACK
C:\Program Files\ratDVD\XEB\FCZip.dll - HEUR.Suspicious.ASPACK
C:\Program Files\ratDVD\XEB\RATtag.dll - HEUR.Suspicious.ASPACK
C:\Program Files\ratDVD\XEB\XEBCore.dll - HEUR.Suspicious.ASPACK
C:\ProgramData\Lavasoft\Ad-Aware\ThreatWork\Submit\openports.dll - Invalid DOS signature
Scan completed.
Scan result: 24 infected files
Scan completed in: Scan completed in 00:07:29
Files were scanned: 13626
Voilà,j'espère que quelqu'un pourra m'aider,car j'ai pas trop envi de formater mon pc,fin bref..lol
j'attends vos réponses,je suis pas novice,mais pas un pro non plu..lol.Alors j'espère que les mannip à faire seront pas trop compliqué
je vous remercie d'avance,car j'ai pu conctater que se forum est un des plus actifs...
PS:dans mes configurations la réponse Safari 525.19 était pré-écrite avec windows vista,et le reste c'est moi qui l'ai rajouté,mais Safari je sais pas dutout ce que c'est???je le laisse quand méme au cas ou


merci dmavoir rep aussi vite
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:13:03, on 05/04/2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16809)
Boot mode: Normal
Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\RtHDVCpl.exe
C:\Acer\Empowering Technology\SysMonitor.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe
C:\Program Files\a-squared Free\a2service.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe
C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Windows\system32\svchost.exe
C:\Program Files\ThreatFire\TFService.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\mobsync.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\PROGRA~1\FREEDO~1\fdm.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\lpremove.exe
C:\Windows\system32\lpksetup.exe
C:\Windows\servicing\TrustedInstaller.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.fr.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.fr.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {AEEC3B59-CA98-4EBA-A140-57B94E283583} - (no file)
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: barre d'outils Orange - {D3028143-6145-4318-99D3-3EDCE54A95A9} - C:\Program Files\Orange\ToolbarFR\ToolbarContainer101000303.dll
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\Acer\Empowering Technology\SysMonitor.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe" /min
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: PCM Media Sharing.lnk = C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe
O8 - Extra context menu item: ajouter cette page à vos favoris Orange - C:\Users\beber\AppData\Local\Temp\cceB550.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: traduire la page - C:\Users\beber\AppData\Local\Temp\cceB53F.html
O8 - Extra context menu item: traduire le texte sélectionné - C:\Users\beber\AppData\Local\Temp\cceB54F.html
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Orange\ToolbarFR\ToolbarContainer101000303.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Orange\ToolbarFR\ToolbarContainer101000303.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O15 - Trusted Zone: http://www.orange.fr
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/resources/VistaMSNPUpldfr-fr.cab
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: Acer HomeMedia Connect Service - CyberLink - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe
O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: Avira AntiVir Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
O23 - Service: Planificateur Avira AntiVir Premium (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
O23 - Service: Avira AntiVir Premium Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
O23 - Service: Avira AntiVir Premium WebGuard (antivirwebservice) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Service d'assistance Avira AntiVir Premium MailGuard (AVEService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Update Service (gupdate1c989f692491189) (gupdate1c989f692491189) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: ThreatFire - PC Tools - C:\Program Files\ThreatFire\TFService.exe