Me revoilà malwarebytes n'a rien trouvé
compte rendu de combofix;
ComboFix 09-06-13.09 - sylvain 14/06/2009 18:43.1 - NTFSx86
Microsoft® Windows Vista™ Édition Intégrale 6.0.6002.2.1252.33.1036.18.3070.1598 [GMT 2:00]
Lancé depuis: c:\users\sylvain\Downloads\ComboFix.exe
SP: Spyware Terminator *disabled* (Updated) {55EE49A8-16BE-4601-BBE6-607B7F7317DE}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((((((( Fichiers créés du 2009-05-14 au 2009-06-14 ))))))))))))))))))))))))))))))))))))
.
2009-06-14 11:42 . 2009-06-14 12:54 -------- d-----w- C:\UsbFix
2009-06-14 11:16 . 2009-06-14 11:16 -------- d-----w- C:\ToolBar SD
2009-06-14 10:27 . 2009-06-14 12:56 -------- d-----w- c:\program files\trend micro
2009-06-14 10:27 . 2009-06-14 10:28 -------- d-----w- C:\rsit
2009-06-14 09:16 . 2008-07-09 08:47 98304 ----a-w- c:\users\sylvain\AppData\Roaming\Mozilla\Firefox\Profiles\7yzpiwqs.default\extensions\{62760FD6-B943-48C9-AB09-F99C6FE96088}\platform\WINNT\components\EbayAccessService.dll
2009-06-14 09:16 . 2008-07-09 08:47 77824 ----a-w- c:\users\sylvain\AppData\Roaming\Mozilla\Firefox\Profiles\7yzpiwqs.default\extensions\{62760FD6-B943-48C9-AB09-F99C6FE96088}\platform\WINNT\components\EbayFormSubmitObserver.dll
2009-06-13 22:05 . 2009-06-14 08:20 -------- d-----w- c:\program files\WinClamAVShield
2009-06-13 10:17 . 2009-06-13 10:18 -------- d-----w- c:\program files\Crawler
2009-06-13 10:17 . 2009-06-13 11:41 -------- d-----w- c:\users\sylvain\AppData\Roaming\Spyware Terminator
2009-06-13 10:17 . 2009-06-13 10:17 6144 ----a-w- c:\programdata\Spyware Terminator\sp_rsdel.exe
2009-06-13 10:17 . 2009-06-13 10:17 5632 ----a-w- c:\programdata\Spyware Terminator\fileobjinfo.sys
2009-06-13 10:17 . 2009-06-13 10:17 142592 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2009-06-13 10:17 . 2009-06-13 12:30 -------- d-----w- c:\programdata\Spyware Terminator
2009-06-13 10:17 . 2009-06-13 11:41 -------- d-----w- c:\program files\Spyware Terminator
2009-06-11 23:30 . 2009-04-23 12:15 828416 ----a-w- c:\windows\system32\wininet.dll
2009-06-11 23:30 . 2009-04-24 16:02 78336 ----a-w- c:\windows\system32\ieencode.dll
2009-06-11 23:03 . 2009-04-21 11:39 2034688 ----a-w- c:\windows\system32\win32k.sys
2009-06-11 23:01 . 2009-04-23 12:14 623616 ----a-w- c:\windows\system32\localspl.dll
2009-06-11 22:58 . 2009-04-23 12:15 784896 ----a-w- c:\windows\system32\rpcrt4.dll
2009-06-10 18:22 . 2009-06-10 18:23 -------- d-----w- c:\windows\system32\ca-ES
2009-06-10 18:22 . 2009-06-10 18:23 -------- d-----w- c:\windows\system32\eu-ES
2009-06-10 18:22 . 2009-06-10 18:23 -------- d-----w- c:\windows\system32\vi-VN
2009-06-10 17:37 . 2009-04-11 06:28 2868224 ----a-w- c:\windows\system32\mf.dll
2009-06-10 17:36 . 2009-04-11 06:32 180712 ----a-w- c:\windows\system32\drivers\msiscsi.sys
2009-06-10 17:35 . 2009-04-11 06:28 69632 ----a-w- c:\windows\system32\sendmail.dll
2009-06-10 17:34 . 2009-04-11 06:28 218624 ----a-w- c:\windows\system32\wdscore.dll
2009-06-10 17:34 . 2009-04-11 06:27 130560 ----a-w- c:\windows\system32\PkgMgr.exe
2009-06-10 17:34 . 2009-04-11 06:28 247808 ----a-w- c:\windows\system32\drvstore.dll
2009-06-10 08:53 . 2009-06-10 08:53 -------- d-----w- c:\users\sylvain\AppData\Roaming\PeerNetworking
2009-06-09 20:54 . 2009-06-09 20:54 552 ----a-w- c:\users\sylvain\AppData\Local\d3d8caps.dat
2009-06-09 20:52 . 2009-06-09 20:54 -------- d-----w- c:\program files\SystemRequirementsLab
2009-06-09 20:52 . 2009-06-09 20:52 -------- d-----w- c:\users\sylvain\AppData\Roaming\SystemRequirementsLab
2009-06-09 20:52 . 2009-06-09 20:52 290816 ----a-w- c:\users\sylvain\AppData\Roaming\SystemRequirementsLab\SRLProxy_nvd_4.dll
2009-06-09 20:52 . 2009-06-09 20:52 290816 ----a-w- c:\users\sylvain\AppData\Roaming\SystemRequirementsLab\SRLProxy_nvd_3.dll
2009-06-09 20:52 . 2009-06-09 20:52 290816 ----a-w- c:\users\sylvain\AppData\Roaming\SystemRequirementsLab\SRLProxy_nvd_2.dll
2009-06-09 20:52 . 2009-06-09 20:52 290816 ----a-w- c:\users\sylvain\AppData\Roaming\SystemRequirementsLab\SRLProxy_nvd_1.dll
2009-06-09 18:48 . 2009-06-09 18:48 -------- d-----w- c:\program files\Mozilla Firefox(217)
2009-06-09 14:24 . 2009-06-09 14:24 -------- d-----w- c:\windows\system32\EventProviders
2009-06-09 14:24 . 2009-06-09 20:07 -------- d-----w- C:\7672f4c8b61b2429a34fd238fd3c0e
2009-06-09 09:50 . 2009-06-09 09:50 -------- d-----w- c:\program files\LED
2009-06-09 09:50 . 2007-09-05 19:56 40960 ----a-w- c:\windows\system32\LedCommon.dll
2009-06-02 08:17 . 2009-06-02 08:17 -------- d-----w- c:\program files\MSXML 4.0
2009-06-01 15:39 . 2009-06-01 15:53 -------- d-----w- c:\users\sylvain\AppData\Roaming\Wallpaper
2009-05-31 16:28 . 2009-05-31 16:28 -------- d-----w- c:\programdata\DAEMON Tools Lite
2009-05-31 16:26 . 2009-05-31 16:30 -------- d-----w- c:\users\sylvain\AppData\Roaming\DAEMON Tools Lite
2009-05-28 17:52 . 2009-06-14 15:15 -------- d-----w- c:\users\sylvain\AppData\Roaming\uTorrent
2009-05-16 18:15 . 2009-05-16 20:37 -------- d-----w- c:\program files\Incomplete
2009-05-16 18:15 . 2009-06-09 20:07 -------- d-----w- c:\program files\FrostWire
2009-05-15 23:16 . 2009-06-14 10:11 -------- d-----w- c:\users\sylvain\AppData\Roaming\dvdcss
2009-05-15 19:59 . 2009-06-08 10:12 -------- d-----w- c:\users\sylvain\AppData\Roaming\vlc
2009-05-15 19:59 . 2009-05-15 19:59 -------- d-----w- c:\program files\VideoLAN
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-14 15:18 . 2006-11-02 16:03 678718 ----a-w- c:\windows\system32\perfh00C.dat
2009-06-14 15:18 . 2006-11-02 16:03 127798 ----a-w- c:\windows\system32\perfc00C.dat
2009-06-14 13:13 . 2008-09-30 14:50 -------- d-----w- c:\users\sylvain\AppData\Roaming\Download Manager
2009-06-14 09:18 . 2008-07-03 14:51 -------- d-----w- c:\programdata\Microsoft Help
2009-06-13 22:07 . 2009-04-05 10:38 -------- d-----w- c:\programdata\Google Updater
2009-06-13 12:33 . 2008-07-04 08:47 -------- d-----w- c:\program files\Google
2009-06-13 12:29 . 2009-05-14 09:49 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-06-13 12:28 . 2008-07-04 10:46 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2009-06-10 18:23 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Calendar
2009-06-10 18:23 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2009-06-10 18:23 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Sidebar
2009-06-10 18:23 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Journal
2009-06-10 18:23 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Collaboration
2009-06-10 18:23 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Photo Gallery
2009-06-10 18:23 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Defender
2009-06-10 18:22 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2009-06-10 09:29 . 2008-07-04 10:56 -------- d-----w- c:\users\sylvain\AppData\Roaming\LimeWire
2009-06-09 21:06 . 2008-07-03 14:32 -------- d-----w- c:\programdata\NVIDIA
2009-06-09 20:54 . 2008-07-03 13:38 1356 ----a-w- c:\users\sylvain\AppData\Local\d3d9caps.dat
2009-06-09 20:07 . 2008-07-03 13:42 -------- d-----w- c:\program files\AGEIA Technologies
2009-06-09 20:07 . 2008-07-03 13:42 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-06-09 19:48 . 2009-06-09 19:16 32061 ----a-w- c:\programdata\nvModes.dat
2009-06-09 14:40 . 2008-07-03 13:39 98632 ----a-w- c:\users\sylvain\AppData\Local\GDIPFONTCACHEV1.DAT
2009-06-08 17:21 . 2008-12-22 11:58 -------- d-----w- c:\users\sylvain\AppData\Roaming\FrostWire
2009-06-08 13:58 . 2008-11-25 10:40 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-06-08 13:58 . 2008-12-05 21:57 3371383 ----a-w- c:\programdata\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2009-06-08 10:12 . 2008-07-21 06:53 -------- d-----w- c:\program files\CCleaner
2009-05-26 11:20 . 2008-11-25 10:40 40160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-05-26 11:19 . 2008-11-25 10:40 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-05-15 20:53 . 2008-07-03 14:54 -------- d-----w- c:\program files\Microsoft Works
2009-05-10 09:29 . 2009-05-10 09:28 1607184 ----a-w- c:\windows\system32\Aquarium Exotique.scr
2009-04-30 10:06 . 2009-04-30 10:06 -------- d-----w- c:\programdata\Avira
2009-04-30 10:06 . 2009-04-30 10:06 -------- d-----w- c:\program files\Avira
2009-04-26 22:42 . 2008-07-03 14:28 457248 ----a-w- c:\windows\system32\NVUNINST.EXE
2009-04-22 15:01 . 2008-08-29 11:11 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-04-11 07:17 . 2009-04-11 07:17 4 ----a-w- c:\windows\todo.sys
2009-04-11 06:33 . 2009-06-10 17:37 986600 ----a-w- c:\windows\system32\winload.exe
2009-04-11 06:33 . 2009-06-10 17:37 926184 ----a-w- c:\windows\system32\winresume.exe
2009-04-11 06:33 . 2009-06-10 17:36 292840 ----a-w- c:\windows\system32\drivers\volmgrx.sys
2009-04-11 06:33 . 2009-06-10 17:37 897000 ----a-w- c:\windows\system32\drivers\tcpip.sys
2009-04-11 06:33 . 2009-06-10 17:37 614376 ----a-w- c:\windows\system32\ci.dll
2009-04-11 06:28 . 2009-06-10 17:37 56320 ----a-w- c:\windows\system32\xmlfilter.dll
2009-04-11 06:27 . 2009-06-10 17:37 441344 ----a-w- c:\windows\system32\SearchIndexer.exe
2009-04-11 06:22 . 2009-06-10 17:35 7168 ----a-w- c:\windows\system32\f3ahvoas.dll
2009-04-11 06:21 . 2009-06-10 17:35 37376 ----a-w- c:\windows\system32\cdd.dll
2009-04-11 05:42 . 2009-06-10 17:35 93696 ----a-w- c:\windows\system32\drivers\bridge.sys
2009-04-11 05:03 . 2009-06-10 17:38 12240896 ----a-w- c:\windows\system32\NlsLexicons0007.dll
2009-04-11 05:03 . 2009-06-10 17:38 2644480 ----a-w- c:\windows\system32\NlsLexicons0009.dll
2009-04-11 04:57 . 2009-06-10 17:35 8147456 ----a-w- c:\windows\system32\wmploc.DLL
2009-04-11 04:54 . 2009-06-10 17:35 2048 ----a-w- c:\windows\system32\mferror.dll
2009-04-11 04:52 . 2009-06-10 17:36 248320 ----a-w- c:\windows\system32\drivers\rdpdr.sys
2009-04-11 04:51 . 2009-06-10 17:35 180736 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2009-04-11 04:47 . 2009-06-10 17:36 273920 ----a-w- c:\windows\system32\drivers\afd.sys
2009-04-11 04:46 . 2009-06-10 17:35 69120 ----a-w- c:\windows\system32\drivers\rassstp.sys
2009-04-11 04:46 . 2009-06-10 17:35 121344 ----a-w- c:\windows\system32\drivers\ndiswan.sys
2009-04-11 04:46 . 2009-06-10 17:35 41472 ----a-w- c:\windows\system32\drivers\raspppoe.sys
2009-04-11 04:46 . 2009-06-10 17:35 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2009-04-11 04:46 . 2009-06-10 17:35 33280 ----a-w- c:\windows\system32\drivers\RNDISMP.sys
2009-04-11 04:46 . 2009-06-10 17:36 30720 ----a-w- c:\windows\system32\drivers\tcpipreg.sys
2009-04-11 04:45 . 2009-06-10 17:36 72192 ----a-w- c:\windows\system32\drivers\tdx.sys
2009-04-11 04:45 . 2009-06-10 17:36 72192 ----a-w- c:\windows\system32\drivers\pacer.sys
2009-04-11 04:45 . 2009-06-10 17:36 185856 ----a-w- c:\windows\system32\drivers\netbt.sys
2009-04-11 04:45 . 2009-06-10 17:36 401408 ----a-w- c:\windows\system32\drivers\http.sys
2009-04-11 04:45 . 2009-06-10 17:36 113664 ----a-w- c:\windows\system32\drivers\rmcast.sys
2009-04-11 04:45 . 2009-06-10 17:35 66560 ----a-w- c:\windows\system32\drivers\smb.sys
2009-04-11 04:43 . 2009-06-10 17:35 148480 ----a-w- c:\windows\system32\drivers\nwifi.sys
2009-04-11 04:43 . 2009-06-10 17:37 196096 ----a-w- c:\windows\system32\drivers\usbhub.sys
2009-04-11 04:43 . 2009-06-10 17:36 62208 ----a-w- c:\windows\system32\drivers\ohci1394.sys
2009-04-11 04:42 . 2009-06-10 17:36 226304 ----a-w- c:\windows\system32\drivers\usbport.sys
2009-04-11 04:42 . 2009-06-10 17:36 25856 ----a-w- c:\windows\system32\drivers\USBCAMD2.sys
2009-04-11 04:42 . 2009-06-10 17:36 25856 ----a-w- c:\windows\system32\drivers\USBCAMD.sys
2009-04-11 04:42 . 2009-06-10 17:36 39936 ----a-w- c:\windows\system32\drivers\usbehci.sys
2009-04-11 04:42 . 2009-06-10 17:35 19456 ----a-w- c:\windows\system32\drivers\usbohci.sys
2009-04-11 04:42 . 2009-06-10 17:36 167936 ----a-w- c:\windows\system32\drivers\portcls.sys
2009-04-11 04:42 . 2009-06-10 17:35 12800 ----a-w- c:\windows\system32\drivers\hidusb.sys
2009-04-11 04:42 . 2009-06-10 17:35 39424 ----a-w- c:\windows\system32\drivers\hidclass.sys
2009-04-11 04:42 . 2009-06-10 17:35 52992 ----a-w- c:\windows\system32\drivers\stream.sys
2009-04-11 04:39 . 2009-06-10 17:35 16384 ----a-w- c:\windows\system32\iscsilog.dll
2009-04-11 04:39 . 2009-06-10 17:35 67072 ----a-w- c:\windows\system32\drivers\cdrom.sys
2009-04-11 04:39 . 2009-06-10 17:35 19456 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2009-04-11 04:38 . 2009-06-10 17:36 149504 ----a-w- c:\windows\system32\drivers\ks.sys
2009-04-11 04:38 . 2009-06-10 17:36 17408 ----a-w- c:\windows\system32\drivers\kbdhid.sys
2009-04-11 04:27 . 2009-06-10 17:35 2560 ----a-w- c:\windows\system32\msimsg.dll
2009-04-11 04:23 . 2009-06-10 17:37 626176 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2009-04-11 04:23 . 2009-06-10 17:35 76288 ----a-w- c:\windows\system32\drivers\dxg.sys
2009-04-11 04:23 . 2009-06-10 17:35 289792 ----a-w- c:\windows\system32\atmfd.dll
2009-04-11 04:22 . 2009-06-10 17:36 33280 ----a-w- c:\windows\system32\drivers\watchdog.sys
2009-04-11 04:15 . 2009-06-10 17:36 288768 ----a-w- c:\windows\system32\drivers\srv.sys
2009-04-11 04:15 . 2009-06-10 17:36 144896 ----a-w- c:\windows\system32\drivers\srv2.sys
2009-04-11 04:15 . 2009-06-10 17:36 98816 ----a-w- c:\windows\system32\drivers\srvnet.sys
2009-04-11 04:14 . 2009-06-10 17:36 351744 ----a-w- c:\windows\system32\drivers\csc.sys
2009-04-11 04:14 . 2009-06-10 17:37 114688 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2009-04-11 04:14 . 2009-06-10 17:36 212992 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2009-04-11 04:14 . 2009-06-10 17:37 225280 ----a-w- c:\windows\system32\drivers\rdbss.sys
2009-04-11 04:14 . 2009-06-10 17:36 79360 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2009-04-11 04:14 . 2009-06-10 17:36 105984 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2009-04-11 04:14 . 2009-06-10 17:35 75264 ----a-w- c:\windows\system32\drivers\dfsc.sys
2009-04-11 04:14 . 2009-06-10 17:36 35328 ----a-w- c:\windows\system32\drivers\npfs.sys
2009-04-11 04:13 . 2009-06-10 17:35 226816 ----a-w- c:\windows\system32\drivers\udfs.sys
2009-04-11 04:13 . 2009-06-10 17:36 136704 ----a-w- c:\windows\system32\drivers\exfat.sys
2008-07-04 10:23 . 2008-07-04 10:23 23 --sha-w- c:\windows\System32\cbcafcc_g.dll
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\EnhancedStorageShell]
@="{D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}"
[HKEY_CLASSES_ROOT\CLSID\{D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}]
2009-04-11 06:28 114176 ----a-w- c:\windows\System32\EhStorShell.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]
"uTorrent"="c:\users\sylvain\Desktop\utorrent.exe" [2009-06-08 274224]
"SpywareTerminatorUpdate"="c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe" [2009-06-13 3055616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2006-11-17 77824]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-09 148888]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-03-27 13687328]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-03-27 92704]
"SpywareTerminator"="c:\program files\Spyware Terminator\SpywareTerminatorShield.exe" [2009-06-13 2174464]
c:\users\sylvain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
LedWallpaper.lnk - c:\program files\LED\LedWallpaper\LedWallpaper.exe [2009-6-9 471040]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"PromptOnSecureDesktop"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"BindDirectlyToPropertySetStorage"= 0 (0x0)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):df,65,e0,0c,f9,e9,c9,01
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-3247669149-875655156-3210287843-1000]
"EnableNotificationsRef"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{5016C267-6625-4E72-84BF-387AC3ECB8E2}"= TCP:6004|c:\program files\Microsoft Office\Office12\outlook.exe:Microsoft Office Outlook
"TCP Query User{87C2EDA7-7E3D-49D9-BA1A-2A0CD562DA28}c:\\program files\\limewire\\limewire.exe"= UDP:c:\program files\limewire\limewire.exe:LimeWire
"UDP Query User{C5CAB271-B742-47BE-8992-52D1C010234C}c:\\program files\\limewire\\limewire.exe"= TCP:c:\program files\limewire\limewire.exe:LimeWire
"{54F9A7A9-C439-4F43-8597-DAD5717C8457}"= UDP:c:\program files\Microsoft Games\Halo 2\halo2.exe:Halo 2
"{461A5D7A-D53F-4155-AE34-0A06C3403D4B}"= TCP:c:\program files\Microsoft Games\Halo 2\halo2.exe:Halo 2
"{E416CA9E-0926-4E2E-A263-500AC639ED22}"= UDP:c:\windows\System32\PnkBstrA.exe:PnkBstrA
"{4CE3FDC8-B84D-47B5-AFD4-AA09369C3AE9}"= TCP:c:\windows\System32\PnkBstrA.exe:PnkBstrA
"{ED885519-1D89-4B60-ADDE-4F8CF9FF12DB}"= UDP:c:\windows\System32\PnkBstrB.exe:PnkBstrB
"{3AEB28C3-555E-41B6-B61A-002E912CD3DB}"= TCP:c:\windows\System32\PnkBstrB.exe:PnkBstrB
"{52CA1704-4E12-4943-A6D0-3330832323FD}"= UDP:c:\program files\THQ\S.T.A.L.K.E.R. - Shadow of Chernobyl\bin\XR_3DA.exe:S.T.A.L.K.E.R. - Shadow of Chernobyl (CLI)
"{A8390C6E-0CC1-4DFC-8FFE-C90D9BC4280D}"= TCP:c:\program files\THQ\S.T.A.L.K.E.R. - Shadow of Chernobyl\bin\XR_3DA.exe:S.T.A.L.K.E.R. - Shadow of Chernobyl (CLI)
"{EB66A3F1-376D-425F-BE9A-A02C1270AB41}"= UDP:c:\program files\THQ\S.T.A.L.K.E.R. - Shadow of Chernobyl\bin\dedicated\XR_3DA.exe:S.T.A.L.K.E.R. - Shadow of Chernobyl (SRV)
"{A11C1A11-A2A1-4523-9AC3-954AFDC9AAD7}"= TCP:c:\program files\THQ\S.T.A.L.K.E.R. - Shadow of Chernobyl\bin\dedicated\XR_3DA.exe:S.T.A.L.K.E.R. - Shadow of Chernobyl (SRV)
"{61C51C5E-3E7A-4787-9D24-653E908DC5FD}"= UDP:c:\program files\Unreal Tournament 3\Binaries\UT3.exe:Unreal Tournament 3
"{207AF72C-8F79-49A4-A5BC-40C22E8A3554}"= TCP:c:\program files\Unreal Tournament 3\Binaries\UT3.exe:Unreal Tournament 3
"TCP Query User{7F6501EF-62AA-4CBF-A7BD-C29A7FFEAD01}c:\\program files\\mozilla firefox\\firefox.exe"= UDP:c:\program files\mozilla firefox\firefox.exe:Firefox
"UDP Query User{AAD2229D-2E5A-496A-A783-159E6C08468A}c:\\program files\\mozilla firefox\\firefox.exe"= TCP:c:\program files\mozilla firefox\firefox.exe:Firefox
"{D1A3D158-CB2D-4AAA-ACEE-12163F0C71B0}"= UDP:c:\program files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe:Assassin's Creed Dx9
"{A308543C-9228-4439-A1AD-EB15AC3EB212}"= TCP:c:\program files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe:Assassin's Creed Dx9
"{5C3F922E-8FF2-4146-8585-4BDA20CBF01C}"= UDP:c:\program files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe:Assassin's Creed Dx10
"{DFDFB710-B2B7-43C8-8805-358440546715}"= TCP:c:\program files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe:Assassin's Creed Dx10
"{C0D8AE2C-2A1B-42FC-85BE-0401EE5DBDA4}"= UDP:c:\program files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe:Assassin's Creed Update
"{9B335515-5552-4496-A3A8-D52326F763F3}"= TCP:c:\program files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe:Assassin's Creed Update
"TCP Query User{DB9DED3E-480F-451A-BD84-1765ED7DE5F4}c:\\program files\\limewire\\limewire.exe"= UDP:c:\program files\limewire\limewire.exe:LimeWire
"UDP Query User{B9431944-CD57-4FC2-95C4-A26B66FE76B7}c:\\program files\\limewire\\limewire.exe"= TCP:c:\program files\limewire\limewire.exe:LimeWire
"TCP Query User{75A5CC63-A348-44C3-A8DA-F9B132693C1F}c:\\program files\\mozilla firefox\\firefox.exe"= UDP:c:\program files\mozilla firefox\firefox.exe:Firefox
"UDP Query User{BE88AF01-81E0-4163-A9F7-874913EC637F}c:\\program files\\mozilla firefox\\firefox.exe"= TCP:c:\program files\mozilla firefox\firefox.exe:Firefox
"TCP Query User{317412D7-2B4E-42BA-B2D1-E01C40857414}c:\\program files\\nero\\nero8\\nero home\\nerohome.exe"= UDP:c:\program files\nero\nero8\nero home\nerohome.exe:Nero Home
"UDP Query User{67A818AB-721A-4CA4-B25D-A54DC1D1B338}c:\\program files\\nero\\nero8\\nero home\\nerohome.exe"= TCP:c:\program files\nero\nero8\nero home\nerohome.exe:Nero Home
"TCP Query User{1382AE2A-60A7-4A13-9A32-5E023BD26A84}c:\\program files\\common files\\nero\\nero web\\setupx.exe"= UDP:c:\program files\common files\nero\nero web\setupx.exe:Nero Installer
"UDP Query User{0F4C4D92-CF8D-4F60-AB39-C81060126649}c:\\program files\\common files\\nero\\nero web\\setupx.exe"= TCP:c:\program files\common files\nero\nero web\setupx.exe:Nero Installer
"TCP Query User{6589089E-3BD3-4908-9B66-F9B7488CDAA5}c:\\program files\\unreal tournament 3\\binaries\\ut3.exe"= UDP:c:\program files\unreal tournament 3\binaries\ut3.exe:UT3
"UDP Query User{361BD877-AC9D-425D-A971-4E6134989935}c:\\program files\\unreal tournament 3\\binaries\\ut3.exe"= TCP:c:\program files\unreal tournament 3\binaries\ut3.exe:UT3
"{62555C82-D31C-4091-9CE2-D59D52D14178}"= Disabled:UDP:d:\setup\HPZNUI01.EXE:hpznui01.exe
"{EB3AAF96-529A-4E88-95EF-CC127503C9CB}"= Disabled:TCP:d:\setup\HPZNUI01.EXE:hpznui01.exe
"{7DE9D379-F2B4-4C18-84C1-BEA906657340}"= UDP:c:\windows\System32\PnkBstrA.exe:PnkBstrA
"{59F418F0-A26A-47DB-9D4D-F1D3E5C4442A}"= TCP:c:\windows\System32\PnkBstrA.exe:PnkBstrA
"{C5C86960-0439-41B9-A7FB-8B0FA18141B7}"= UDP:c:\windows\System32\PnkBstrB.exe:PnkBstrB
"{AEF6ED3B-904A-4317-8C51-82AB9C9B2013}"= TCP:c:\windows\System32\PnkBstrB.exe:PnkBstrB
"TCP Query User{566D0865-F09D-4633-8F90-FA0162594786}c:\\program files\\electronic arts\\eadm\\core.exe"= UDP:c:\program files\electronic arts\eadm\core.exe:EA Download Manager
"UDP Query User{C8FABAB1-D60B-4615-84A8-B75DC6AF918E}c:\\program files\\electronic arts\\eadm\\core.exe"= TCP:c:\program files\electronic arts\eadm\core.exe:EA Download Manager
"{A7698681-CB26-49EF-8206-194DA2EB6343}"= UDP:c:\program files\Codemasters\GRID\GRID.exe:GRID
"{01151EDF-7FCF-49B1-8EA6-0D68C9F10DB1}"= TCP:c:\program files\Codemasters\GRID\GRID.exe:GRID
"{B67A15A4-8741-4615-AB14-3299EA76C137}"= UDP:c:\program files\DreamCatcher\Painkiller Overdose\Bin\Overdose.exe:Painkiller Overdose
"{FF938150-4CC0-422A-A23A-183B29790360}"= TCP:c:\program files\DreamCatcher\Painkiller Overdose\Bin\Overdose.exe:Painkiller Overdose
"{074D33DD-AA4D-4434-90E3-302491D87D6E}"= UDP:c:\program files\DreamCatcher\Painkiller Overdose\Bin\OverdoseEditor.exe:Painkiller Overdose Editor
"{C201A174-0106-4413-BD94-4B87B061B288}"= TCP:c:\program files\DreamCatcher\Painkiller Overdose\Bin\OverdoseEditor.exe:Painkiller Overdose Editor
"{CBFADE89-B8BF-483A-97EC-BA6E9251E279}"= UDP:c:\program files\DreamCatcher\Painkiller Overdose\Bin\OverdoseServer.exe:Painkiller Overdose Console Server
"{B2E36511-B8E3-419E-A594-6D2667DFEFEA}"= TCP:c:\program files\DreamCatcher\Painkiller Overdose\Bin\OverdoseServer.exe:Painkiller Overdose Console Server
"{65F67589-AE06-44EA-B9C9-E4F2C5F72327}"= UDP:c:\program files\THQ\Juiced2_HIN\Juiced2_HIN.exe:Juiced2_HIN
"{CA41A139-6232-4D1B-A687-33D8C1181F45}"= TCP:c:\program files\THQ\Juiced2_HIN\Juiced2_HIN.exe:Juiced2_HIN
"{17FA69BC-4049-4E63-A1CB-503D9EA70F45}"= UDP:c:\program files\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Game.exe:Tom Clancy's Rainbow Six Vegas 2
"{D039A941-6066-4E9B-8449-26A9A8AB5A61}"= TCP:c:\program files\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Game.exe:Tom Clancy's Rainbow Six Vegas 2
"{E41C5ECE-60BE-40CE-9FDF-D8B7C5A0509E}"= UDP:c:\program files\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Launcher.exe:Tom Clancy's Rainbow Six Vegas 2 Update
"{6E1D8A15-ED91-456D-9D16-53B9D0D0C50B}"= TCP:c:\program files\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Launcher.exe:Tom Clancy's Rainbow Six Vegas 2 Update
"TCP Query User{22881634-4BF4-4509-9989-E6D92C7CDC6B}c:\\program files\\rainbow six\\tom clancy's rainbow six vegas 2\\binaries\\r6vegas2_game.exe"= UDP:c:\program files\rainbow six\tom clancy's rainbow six vegas 2\binaries\r6vegas2_game.exe:R6Vegas2_Game
"UDP Query User{8D8EC4C0-A138-48C8-A234-0F27AEF0951E}c:\\program files\\rainbow six\\tom clancy's rainbow six vegas 2\\binaries\\r6vegas2_game.exe"= TCP:c:\program files\rainbow six\tom clancy's rainbow six vegas 2\binaries\r6vegas2_game.exe:R6Vegas2_Game
"TCP Query User{0C4229AC-629B-4433-BC2D-19715E49F766}e:\\jeux video\\grid (voiture )\\grid\\grid.exe"= UDP:e:\jeux video\grid (voiture )\grid\grid.exe:GRID Executable
"UDP Query User{9406B63A-2098-4049-AEEA-0C7E76C6CD28}e:\\jeux video\\grid (voiture )\\grid\\grid.exe"= TCP:e:\jeux video\grid (voiture )\grid\grid.exe:GRID Executable
"{DCEC7E0E-A246-4C14-B686-8E6CF29A91B0}"= UDP:c:\program files\Mass Effect\Binaries\MassEffect.exe:Mass Effect Game
"{4F7CEE65-4318-44FC-B0CD-B0FD4A6E850E}"= TCP:c:\program files\Mass Effect\Binaries\MassEffect.exe:Mass Effect Game
"{0F83933C-F553-4A07-A42B-B0726A2F74B1}"= UDP:c:\program files\Mass Effect\MassEffectLauncher.exe:Mass Effect Launcher
"{1273C294-FE3D-4DF5-9C5F-6C9530D521F4}"= TCP:c:\program files\Mass Effect\MassEffectLauncher.exe:Mass Effect Launcher
"{68E2CE50-1623-4B3A-BAC0-BD6284BE7425}"= UDP:c:\program files\EA GAMES\Battlefield 2\BF2.exe:Battlefield 2
"{B114D43A-95EE-482B-9B51-74E5355927F3}"= TCP:c:\program files\EA GAMES\Battlefield 2\BF2.exe:Battlefield 2
"TCP Query User{F7300154-F5C6-45B4-9EFC-793046D2282B}e:\\jeux video\\rainbow six\\tom clancy's rainbow six vegas 2\\binaries\\r6vegas2_game.exe"= UDP:e:\jeux video\rainbow six\tom clancy's rainbow six vegas 2\binaries\r6vegas2_game.exe:R6Vegas2_Game
"UDP Query User{55F2AD33-1199-4E45-830D-68AE01BAC0EC}e:\\jeux video\\rainbow six\\tom clancy's rainbow six vegas 2\\binaries\\r6vegas2_game.exe"= TCP:e:\jeux video\rainbow six\tom clancy's rainbow six vegas 2\binaries\r6vegas2_game.exe:R6Vegas2_Game
"TCP Query User{B1B84DA6-EF25-4F00-A2B6-26CB26E2A06E}d:\\bf2_w32ded.exe"= UDP:D:\bf2_w32ded.exe:Bf2_w32ded
"UDP Query User{080C3BEF-ADC1-4E83-9C22-43CD19C1BE51}d:\\bf2_w32ded.exe"= TCP:D:\bf2_w32ded.exe:Bf2_w32ded
"{8308BDE7-2811-41A9-8028-51CB3EB85262}"= UDP:c:\program files\Midway Home Entertainment\BlackSite Area 51\Binaries\BlackSite.exe:Blacksite Area 51
"{6D2CF231-6CD6-412E-8668-D38DA159837A}"= TCP:c:\program files\Midway Home Entertainment\BlackSite Area 51\Binaries\BlackSite.exe:Blacksite Area 51
"{FDCA964D-8421-40AB-BF9D-15767FC1A7CD}"= UDP:c:\program files\THQ\Frontlines-Fuel of War\Binaries\FFOW.exe:Frontlines Game
"{6D6BABEC-A63B-400A-92F1-A5BEFB78669C}"= TCP:c:\program files\THQ\Frontlines-Fuel of War\Binaries\FFOW.exe:Frontlines Game
"TCP Query User{5516AF82-6BF5-4BD5-ABB2-65BA59231D20}c:\\program files\\area 51\\blacksite area 51\\binaries\\blacksite.exe"= UDP:c:\program files\area 51\blacksite area 51\binaries\blacksite.exe:BlackSite
"UDP Query User{DFF2CD36-A824-4787-83D8-32CFADE5F96D}c:\\program files\\area 51\\blacksite area 51\\binaries\\blacksite.exe"= TCP:c:\program files\area 51\blacksite area 51\binaries\blacksite.exe:BlackSite
"TCP Query User{673F6A50-F65E-4D10-A48D-03BA8F6A331E}e:\\jeux video\\area 51\\blacksite area 51\\binaries\\blacksite.exe"= UDP:e:\jeux video\area 51\blacksite area 51\binaries\blacksite.exe:BlackSite
"UDP Query User{25B4E186-E3CD-4D04-9FD6-A072F343D716}e:\\jeux video\\area 51\\blacksite area 51\\binaries\\blacksite.exe"= TCP:e:\jeux video\area 51\blacksite area 51\binaries\blacksite.exe:BlackSite
"{4919754D-2ED0-4497-954A-2FF1E4F6605F}"= UDP:c:\program files\Midway Home Entertainment\BlackSite Area 51\Binaries\BlackSite.exe:Blacksite Area 51
"{D7D24093-C061-4751-91E9-26B0E8E38679}"= TCP:c:\program files\Midway Home Entertainment\BlackSite Area 51\Binaries\BlackSite.exe:Blacksite Area 51
"{87B25C75-6E84-414B-B6C9-BDD2D47FE63F}"= UDP:c:\program files\EA GAMES\Battlefield 2\BF2.exe:Battlefield 2
"{A526D8D5-841F-4AB1-85EE-620B4F8E6793}"= TCP:c:\program files\EA GAMES\Battlefield 2\BF2.exe:Battlefield 2
"TCP Query User{FE609438-AD5B-4512-BFD5-4CEECDF1AC77}c:\\program files\\left 4 dead\\left4dead.exe"= UDP:c:\program files\left 4 dead\left4dead.exe:left4dead
"UDP Query User{12D8486C-09C9-45BB-8AC1-1DDACEE1DAE4}c:\\program files\\left 4 dead\\left4dead.exe"= TCP:c:\program files\left 4 dead\left4dead.exe:left4dead
"TCP Query User{5E74B1CE-CBCB-4EA8-8B9E-199517DEC187}c:\\program files\\left 4 dead\\left4dead.exe"= UDP:c:\program files\left 4 dead\left4dead.exe:left4dead
"UDP Query User{95BCE699-BBE3-4914-BAB7-6457B6F39EEA}c:\\program files\\left 4 dead\\left4dead.exe"= TCP:c:\program files\left 4 dead\left4dead.exe:left4dead
"TCP Query User{5F5E3FD1-811D-4695-858C-3262DB1F17CE}c:\\program files\\frostwire\\frostwire.exe"= UDP:c:\program files\frostwire\frostwire.exe:FrostWire
"UDP Query User{1AC9030A-0320-4ECA-96D8-35B8661828B4}c:\\program files\\frostwire\\frostwire.exe"= TCP:c:\program files\frostwire\frostwire.exe:FrostWire
"TCP Query User{9C378DF7-784A-4FF7-B59C-89ADB495451F}e:\\jeux video\\area 51(en anglais)\\blacksite area 51\\binaries\\blacksite.exe"= UDP:e:\jeux video\area 51(en anglais)\blacksite area 51\binaries\blacksite.exe:BlackSite
"UDP Query User{0C253030-1FC8-4C07-BDA9-5AEDC00874F2}e:\\jeux video\\area 51(en anglais)\\blacksite area 51\\binaries\\blacksite.exe"= TCP:e:\jeux video\area 51(en anglais)\blacksite area 51\binaries\blacksite.exe:BlackSite
"{C454B027-5D87-4935-8137-4C8342B48C64}"= UDP:c:\program files\Ubisoft\Far Cry 2\bin\FarCry2.exe:Far Cry 2
"{17461ED7-AD68-498C-89CA-9E7D274BE798}"= TCP:c:\program files\Ubisoft\Far Cry 2\bin\FarCry2.exe:Far Cry 2
"{4294C782-BC9A-4BA3-95B8-936187DEFF49}"= UDP:c:\program files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe:Far Cry 2 Updater
"{AA133962-E1C3-4585-8ACE-6F719B49C8F0}"= TCP:c:\program files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe:Far Cry 2 Updater
"{0524E690-2D31-4A72-9563-3E2F7C67A0B9}"= UDP:c:\program files\Ubisoft\Far Cry 2\bin\FC2Editor.exe:Editeur
"{A610B454-461F-4478-AC76-8A26261909D3}"= TCP:c:\program files\Ubisoft\Far Cry 2\bin\FC2Editor.exe:Editeur
"TCP Query User{4BC6CAFD-BAC6-4E30-A7C9-00EE7CA6F4E9}c:\\program files\\xfire\\ua_lsp_inst.exe"= UDP:c:\program files\xfire\ua_lsp_inst.exe:ua_lsp_inst
"UDP Query User{22699870-97BA-4524-8FBE-EFC857973666}c:\\program files\\xfire\\ua_lsp_inst.exe"= TCP:c:\program files\xfire\ua_lsp_inst.exe:ua_lsp_inst
"TCP Query User{DAED4CBB-7D08-4987-A001-09C6B7D42E6B}c:\\program files\\ubisoft\\far cry 2\\bin\\farcry2.exe"= UDP:c:\program files\ubisoft\far cry 2\bin\farcry2.exe:Far Cry® 2
"UDP Query User{67E0CE2B-2EA0-4D9B-816B-E0A27390E02F}c:\\program files\\ubisoft\\far cry 2\\bin\\farcry2.exe"= TCP:c:\program files\ubisoft\far cry 2\bin\farcry2.exe:Far Cry® 2
"TCP Query User{C32F9A93-6C89-4194-994D-D183568EBB8C}c:\\program files\\far cry 2\\far cry 2\\bin\\farcry2.exe"= UDP:c:\program files\far cry 2\far cry 2\bin\farcry2.exe:Far Cry® 2
"UDP Query User{1F9EA310-56C6-46A5-9F45-2C59816650AA}c:\\program files\\far cry 2\\far cry 2\\bin\\farcry2.exe"= TCP:c:\program files\far cry 2\far cry 2\bin\farcry2.exe:Far Cry® 2
"{30C66723-7564-4C50-93D4-A9E514A4A76A}"= UDP:c:\program files\Sierra\FEAR\FEAR.exe:FEAR
"{B0BADB70-2F8D-492D-BE71-D2A50E2DA54F}"= TCP:c:\program files\Sierra\FEAR\FEAR.exe:FEAR
"TCP Query User{AD637393-E69C-4697-9B8A-8E8E738EF810}c:\\users\\sylvain\\desktop\\wolfenstein - enemy territory\\et.exe"= UDP:c:\users\sylvain\desktop\wolfenstein - enemy territory\et.exe:et.exe
"UDP Query User{2B59B559-C99F-487B-BDE6-0718CF466227}c:\\users\\sylvain\\desktop\\wolfenstein - enemy territory\\et.exe"= TCP:c:\users\sylvain\desktop\wolfenstein - enemy territory\et.exe:et.exe
"TCP Query User{D9DDC894-D409-4E75-9090-D01DCEAAE810}c:\\users\\sylvain\\desktop\\quantum of solace\\jb_liveengine_s.exe"= UDP:c:\users\sylvain\desktop\quantum of solace\jb_liveengine_s.exe:jb_liveengine_s.exe
"UDP Query User{234EDC5E-8D1A-4F45-9CB9-6A75A2D8010D}c:\\users\\sylvain\\desktop\\quantum of solace\\jb_liveengine_s.exe"= TCP:c:\users\sylvain\desktop\quantum of solace\jb_liveengine_s.exe:jb_liveengine_s.exe
"TCP Query User{DFADE052-69C3-4B83-8740-EB4F62207874}j:\\quantum of solace\\jb_liveengine_s.exe"= UDP:j:\quantum of solace\jb_liveengine_s.exe:Quantum of Solace(TM)
"UDP Query User{52510D5A-0EC4-4156-A993-06230D82E083}j:\\quantum of solace\\jb_liveengine_s.exe"= TCP:j:\quantum of solace\jb_liveengine_s.exe:Quantum of Solace(TM)
"TCP Query User{2F0AEFCA-0058-4ACB-8476-C7DB01510ABD}c:\\program files\\quantum of solace\\jb_liveengine_s.exe"= UDP:c:\program files\quantum of solace\jb_liveengine_s.exe:Quantum of Solace(TM)
"UDP Query User{8B6E9D09-5280-4A8A-8430-FFA1C6DDE51C}c:\\program files\\quantum of solace\\jb_liveengine_s.exe"= TCP:c:\program files\quantum of solace\jb_liveengine_s.exe:Quantum of Solace(TM)
"TCP Query User{2BFE8D08-76D0-408B-A2FA-EB5CE57749B2}e:\\jeux décompressés\\quantum of solace\\jb_liveengine_s.exe"= UDP:e:\jeux décompressés\quantum of solace\jb_liveengine_s.exe:Quantum of Solace(TM)
"UDP Query User{169F3882-3E3D-408B-B316-0FCA0F19F36C}e:\\jeux décompressés\\quantum of solace\\jb_liveengine_s.exe"= TCP:e:\jeux décompressés\quantum of solace\jb_liveengine_s.exe:Quantum of Solace(TM)
"TCP Query User{574EE8D5-A2C8-4A88-846C-AF14E4C85DA8}c:\\program files\\raptr\\raptrbt.exe"= UDP:c:\program files\raptr\raptrbt.exe:RaptrBT
"UDP Query User{CF3015E1-2353-497C-A45C-8DF1F497C4E8}c:\\program files\\raptr\\raptrbt.exe"= TCP:c:\program files\raptr\raptrbt.exe:RaptrBT
"TCP Query User{4A6462A1-6FA3-472C-B6EA-289482235718}c:\\program files\\raptr\\raptr.exe"= UDP:c:\program files\raptr\raptr.exe:Raptr Client
"UDP Query User{F1143DF0-6C51-4524-A1BB-721EA67699C9}c:\\program files\\raptr\\raptr.exe"= TCP:c:\program files\raptr\raptr.exe:Raptr Client
"{C71D9B7F-8271-4349-AD5A-4331405764F8}"= UDP:c:\program files\Activision\Call of Duty - World at War\CoDWaWmp.exe:Call of Duty(R) - World at War(TM)
"{51E46ED6-1A75-4594-8681-807C36DE3771}"= TCP:c:\program files\Activision\Call of Duty - World at War\CoDWaWmp.exe:Call of Duty(R) - World at War(TM)
"{965307FE-EE68-40C1-96C9-ADDC348BF923}"= UDP:c:\program files\Activision\Call of Duty - World at War\CoDWaW.exe:Call of Duty(R) - World at War(TM)
"{396541FF-1ED1-4EEC-A10F-A1279460A70E}"= TCP:c:\program files\Activision\Call of Duty - World at War\CoDWaW.exe:Call of Duty(R) - World at War(TM)
"TCP Query User{DB38A43E-B8B4-4D28-B72F-B198BEABACF9}c:\\users\\sylvain\\desktop\\cod french 5\\setup\\data\\codwawmp.exe"= UDP:c:\users\sylvain\desktop\cod french 5\setup\data\codwawmp.exe:codwawmp.exe
"UDP Query User{8C70884E-F3D6-458E-B818-CB0BDDD7A05E}c:\\users\\sylvain\\desktop\\cod french 5\\setup\\data\\codwawmp.exe"= TCP:c:\users\sylvain\desktop\cod french 5\setup\data\codwawmp.exe:codwawmp.exe
"TCP Query User{CD883439-4F4F-4646-930E-D8E0B45A0A35}c:\\program files\\call of duty 5\\call of duty - world at war\\codwaw.exe"= UDP:c:\program files\call of duty 5\call of duty - world at war\codwaw.exe:Call of Duty(R): World at War Campaign/Coop
"UDP Query User{7B1EFC83-B13F-43C1-AB49-6C4C869EA39E}c:\\program files\\call of duty 5\\call of duty - world at war\\codwaw.exe"= TCP:c:\program files\call of duty 5\call of duty - world at war\codwaw.exe:Call of Duty(R): World at War Campaign/Coop
"TCP Query User{2F6DD8A5-1724-4297-A8AA-4886C45A6477}c:\\program files\\call of duty 5\\call of duty - world at war\\codwawmp.exe"= UDP:c:\program files\call of duty 5\call of duty - world at war\codwawmp.exe:Call of Duty(R): World at War Multiplayer
"UDP Query User{D7389E79-C9B2-463D-A583-0DB580169FED}c:\\program files\\call of duty 5\\call of duty - world at war\\codwawmp.exe"= TCP:c:\program files\call of duty 5\call of duty - world at war\codwawmp.exe:Call of Duty(R): World at War Multiplayer
"TCP Query User{284FC555-C816-4121-8F0F-7B76F1ED25AC}c:\\program files\\call of duty 5\\call of duty - world at war\\codwaw (2).exe"= UDP:c:\program files\call of duty 5\call of duty - world at war\codwaw (2).exe:Call of Duty(R): World at War Campaign/Coop
"UDP Query User{6B5C0DF5-EE09-4036-9464-0265AB92B798}c:\\program files\\call of duty 5\\call of duty - world at war\\codwaw (2).exe"= TCP:c:\program files\call of duty 5\call of duty - world at war\codwaw (2).exe:Call of Duty(R): World at War Campaign/Coop
"TCP Query User{5D3B6E5B-D66C-44D6-8643-1253B98D69BA}h:\\jeux videos\\call of duty - world at war(marche)\\codwawmp.exe"= UDP:h:\jeux videos\call of duty - world at war(marche)\codwawmp.exe:Call of Duty(R): World at War Multiplayer
"UDP Query User{84F3A7BC-57DA-4B08-A176-2173E9F2F94C}h:\\jeux videos\\call of duty - world at war(marche)\\codwawmp.exe"= TCP:h:\jeux videos\call of duty - world at war(marche)\codwawmp.exe:Call of Duty(R): World at War Multiplayer
"TCP Query User{07549FA1-134C-44A3-BDF1-DB01A361929E}h:\\jeux videos\\call of duty - world at war(marche)\\codwaw.exe"= UDP:h:\jeux videos\call of duty - world at war(marche)\codwaw.exe:Call of Duty(R): World at War Campaign/Coop
"UDP Query User{BEC9C836-9353-42D9-9600-6A0E84214057}h:\\jeux videos\\call of duty - world at war(marche)\\codwaw.exe"= TCP:h:\jeux videos\call of duty - world at war(marche)\codwaw.exe:Call of Duty(R): World at War Campaign/Coop
"TCP Query User{61C80443-63A9-4CAA-A930-7ED214406FD1}h:\\jeux videos\\far cry 2(marche)\\bin\\farcry2.exe"= UDP:h:\jeux videos\far cry 2(marche)\bin\farcry2.exe:Far Cry® 2
"UDP Query User{AF84E24D-CC79-4CB1-978F-01FF57A3CB20}h:\\jeux videos\\far cry 2(marche)\\bin\\farcry2.exe"= TCP:h:\jeux videos\far cry 2(marche)\bin\farcry2.exe:Far Cry® 2
"TCP Query User{BCA83827-8F6B-49C4-891F-CDAD946143B6}c:\\program files\\java\\jre6\\bin\\javaw.exe"= UDP:c:\program files\java\jre6\bin\javaw.exe:Java(TM) Platform SE binary
"UDP Query User{FA298F82-272C-42BA-9180-7C47070C294D}c:\\program files\\java\\jre6\\bin\\javaw.exe"= TCP:c:\program files\java\jre6\bin\javaw.exe:Java(TM) Platform SE binary
"TCP Query User{456667CC-A1FF-4D7E-B1D0-119A1B4F6DB5}h:\\jeux videos\\area 51(marche)\\blacksite area 51\\binaries\\blacksite.exe"= UDP:h:\jeux videos\area 51(marche)\blacksite area 51\binaries\blacksite.exe:BlackSite
"UDP Query User{3C038436-1DCB-4965-A398-194C5E6DDE68}h:\\jeux videos\\area 51(marche)\\blacksite area 51\\binaries\\blacksite.exe"= TCP:h:\jeux videos\area 51(marche)\blacksite area 51\binaries\blacksite.exe:BlackSite
"{9B37CA15-2749-46D1-985E-6629EB4180BE}"= UDP:c:\program files\EA GAMES\Mirror's Edge\Binaries\MirrorsEdge.exe:Mirror's Edge™
"{9EF81549-DD29-4413-9985-E9E5043F72EB}"= TCP:c:\program files\EA GAMES\Mirror's Edge\Binaries\MirrorsEdge.exe:Mirror's Edge™
"TCP Query User{F9A98834-FDCB-453A-B49B-D5EEDF09466B}e:\\jeux video\\left 4 dead\\left4dead.exe"= UDP:e:\jeux video\left 4 dead\left4dead.exe:left4dead
"UDP Query User{217C8E77-6143-4529-A8AC-2F8E5C26985C}e:\\jeux video\\left 4 dead\\left4dead.exe"= TCP:e:\jeux video\left 4 dead\left4dead.exe:left4dead
"TCP Query User{A2A1961C-F424-4DBD-A899-83B07E92BE50}c:\\program files\\prey\\preyded.exe"= UDP:c:\program files\prey\preyded.exe:PREY
"UDP Query User{22C1BC9F-BF0A-441F-84CF-CEF428C281F0}c:\\program files\\prey\\preyded.exe"= TCP:c:\program files\prey\preyded.exe:PREY
"TCP Query User{287255C2-52CE-47D7-B101-0D3B5DEF2218}i:\\jeux vidéo\\far cry 2(marche)\\bin\\farcry2.exe"= UDP:i:\jeux vidéo\far cry 2(marche)\bin\farcry2.exe:Far Cry® 2
"UDP Query User{309A7EAA-AB03-4AD4-870E-1075041B9CAD}i:\\jeux vidéo\\far cry 2(marche)\\bin\\farcry2.exe"= TCP:i:\jeux vidéo\far cry 2(marche)\bin\farcry2.exe:Far Cry® 2
"{17ECF7DA-0E45-4CA6-B9F5-B00C38D37F67}"= UDP:c:\program files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe:Crysis_32
"{AC9EE4B4-B34B-4781-B674-3093FA0E7893}"= TCP:c:\program files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe:Crysis_32
"{E696A19F-0F4A-443A-A69E-6695D374EC47}"= UDP:c:\program files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe:CrysisDedicatedServer_32
"{BD3CA5F7-1000-480D-836E-CE174D29E5F8}"= TCP:c:\program files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe:CrysisDedicatedServer_32
"TCP Query User{C4A2C05C-391D-4BE0-B649-57BBDFCED528}e:\\jeux video\\quantum of solace\\jb_liveengine_s.exe"= UDP:e:\jeux video\quantum of solace\jb_liveengine_s.exe:Quantum of Solace(TM)
"UDP Query User{13C84EE2-3936-4AC5-82CF-71B880FACF70}e:\\jeux video\\quantum of solace\\jb_liveengine_s.exe"= TCP:e:\jeux video\quantum of solace\jb_liveengine_s.exe:Quantum of Solace(TM)
"TCP Query User{B0F08E08-4162-4E7B-90D4-70154E4B7E0B}c:\\program files\\call of duty 5\\call of duty - world at war\\codwawmp.exe"= UDP:c:\program files\call of duty 5\call of duty - world at war\codwawmp.exe:Call of Duty(R): World at War Multiplayer
"UDP Query User{076B2C56-81B3-41A4-9493-A397D81C1F4A}c:\\program files\\call of duty 5\\call of duty - world at war\\codwawmp.exe"= TCP:c:\program files\call of duty 5\call of duty - world at war\codwawmp.exe:Call of Duty(R): World at War Multiplayer
"TCP Query User{A636050E-2AE6-452A-888D-7BDB67CBFE6C}c:\\program files\\call of duty 5\\call of duty - world at war\\codwaw.exe"= UDP:c:\program files\call of duty 5\call of duty - world at war\codwaw.exe:Call of Duty(R): World at War Campaign/Coop
"UDP Query User{A87346ED-E69F-4D2B-9BB6-FC489D99809E}c:\\program files\\call of duty 5\\call of duty - world at war\\codwaw.exe"= TCP:c:\program files\call of duty 5\call of duty - world at war\codwaw.exe:Call of Duty(R): World at War Campaign/Coop
"TCP Query User{DBDB2A78-940F-4CC4-A765-6C149D74D008}e:\\jeux video\\call of duty 5\\call of duty - world at war\\codwawmp.exe"= UDP:e:\jeux video\call of duty 5\call of duty - world at war\codwawmp.exe:Call of Duty(R): World at War Multiplayer
"UDP Query User{65C2E640-3A5D-4DCE-9155-6D560D47B78E}e:\\jeux video\\call of duty 5\\call of duty - world at war\\codwawmp.exe"= TCP:e:\jeux video\call of duty 5\call of duty - world at war\codwawmp.exe:Call of Duty(R): World at War Multiplayer
"TCP Query User{0F52C936-B965-47AB-AFB8-E5857524BF96}e:\\jeux video\\call of duty 5\\call of duty - world at war\\codwaw.exe"= UDP:e:\jeux video\call of duty 5\call of duty - world at war\codwaw.exe:Call of Duty(R): World at War Campaign/Coop
"UDP Query User{4378A545-9869-4044-8233-3FEBED61F3E1}e:\\jeux video\\call of duty 5\\call of duty - world at war\\codwaw.exe"= TCP:e:\jeux video\call of duty 5\call of duty - world at war\codwaw.exe:Call of Duty(R): World at War Campaign/Coop
"{C50985B7-8569-4129-A51B-4BF6E2E7C3C4}"= UDP:c:\program files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe:Crysis_32
"{383A9E17-63B9-4F8F-835F-219D9648C56C}"= TCP:c:\program files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe:Crysis_32
"{0E6F0C99-FC4A-4940-B1FE-E97A3A874E7E}"= UDP:c:\program files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe:CrysisDedicatedServer_32
"{CE470763-B5A9-4D5E-AB22-E3720D800A23}"= TCP:c:\program files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe:CrysisDedicatedServer_32
"TCP Query User{965F3DFD-DAE4-42AD-B444-3297BEEFDAA1}e:\\jeux video\\call of duty 5\\call of duty - world at war\\codwaw.exe"= UDP:e:\jeux video\call of duty 5\call of duty - world at war\codwaw.exe:Call of Duty(R): World at War Campaign/Coop
"UDP Query User{0E947C2A-F58D-42E3-AE04-A55F13C20A26}e:\\jeux video\\call of duty 5\\call of duty - world at war\\codwaw.exe"= TCP:e:\jeux video\call of duty 5\call of duty - world at war\codwaw.exe:Call of Duty(R): World at War Campaign/Coop
"TCP Query User{F135E59E-7CF3-4B6D-8546-C0FB2625FCD4}c:\\users\\sylvain\\downloads\\utorrent.exe"= UDP:c:\users\sylvain\downloads\utorrent.exe:utorrent.exe
"UDP Query User{FF046094-E06D-4C93-81F6-6FCD9A0AE9AE}c:\\users\\sylvain\\downloads\\utorrent.exe"= TCP:c:\users\sylvain\downloads\utorrent.exe:utorrent.exe
"TCP Query User{B1BCDAA4-BCAC-4074-9F88-7820C18F81EA}c:\\users\\sylvain\\desktop\\utorrent.exe"= UDP:c:\users\sylvain\desktop\utorrent.exe:utorrent.exe
"UDP Query User{F82A73F0-B381-4F43-9D7F-BC12DDCD7BB8}c:\\users\\sylvain\\desktop\\utorrent.exe"= TCP:c:\users\sylvain\desktop\utorrent.exe:utorrent.exe
"TCP Query User{841A8338-074E-4214-8021-8FB7F011A624}c:\\program files\\spyware terminator\\spywareterminatorupdate.exe"= UDP:c:\program files\spyware terminator\spywareterminatorupdate.exe:Crawler Spyware Terminator
"UDP Query User{0D46A954-AE83-4AB3-B7CC-E46FB7D5EF1F}c:\\program files\\spyware terminator\\spywareterminatorupdate.exe"= TCP:c:\program files\spyware terminator\spywareterminatorupdate.exe:Crawler Spyware Terminator
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]
"DoNotAllowExceptions"= 0 (0x0)
R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\System32\drivers\sp_rsdrv2.sys [13/06/2009 12:17 142592]
R2 AntiVirSchedulerService;Avira AntiVir Planificateur;c:\program files\Avira\AntiVir Desktop\sched.exe [30/04/2009 12:06 108289]
R3 c65013264;C-Media CM6501 Like Sound UDAX Interface;c:\windows\System32\drivers\c6501.sys [20/07/2008 13:12 1298944]
S3 getPlus(R) Helper;getPlus(R) Helper;c:\program files\NOS\bin\getPlus_HelperSvc.exe [25/08/2008 13:31 31592]
--- Autres Services/Pilotes en mémoire ---
*Deregistered* - MBAMSwissArmy
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08
.
Contenu du dossier 'Tâches planifiées'
2009-06-14 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-05 10:38]
2009-06-13 c:\windows\Tasks\User_Feed_Synchronization-{8D18DB70-B512-45D8-8DFC-9F09D39B495E}.job
- c:\windows\system32\msfeedssync.exe [2008-07-20 07:33]
.
- - - - ORPHELINS SUPPRIMES - - - -
HKLM-Run-NWEReboot - (no file)
HKLM-Run-C6501Sound - c6501.cpl
.
------- Examen supplémentaire -------
.
IE: Crawler Search - tbr:iemenu
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\sylvain\AppData\Roaming\Mozilla\Firefox\Profiles\7yzpiwqs.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://fr.start2.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:fr:official
FF - component: c:\program files\Crawler\Toolbar\firefox\components\xcomm.dll
FF - component: c:\program files\Crawler\Toolbar\firefox\components\xshared.dll
FF - component: c:\program files\Crawler\Toolbar\firefox\components\xsupport.dll
FF - component: c:\program files\Crawler\Toolbar\firefox\components\xwsg.dll
FF - component: c:\users\sylvain\AppData\Roaming\Mozilla\Firefox\Profiles\7yzpiwqs.default\extensions\{62760FD6-B943-48C9-AB09-F99C6FE96088}\platform\WINNT\components\EbayAccessService.dll
FF - component: c:\users\sylvain\AppData\Roaming\Mozilla\Firefox\Profiles\7yzpiwqs.default\extensions\{62760FD6-B943-48C9-AB09-F99C6FE96088}\platform\WINNT\components\EbayFormSubmitObserver.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-14 18:50
Windows 6.0.6002 Service Pack 2 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_USERS\S-1-5-21-3247669149-875655156-3210287843-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
"??"=hex:0c,92,db,6b,2c,44,6f,88,e2,08,d8,1d,12,77,f7,35,65,ba,b8,10,6b,41,96,
0c,7b,ce,e6,cb,cb,74,7f,db,58,92,5d,61,98,e4,eb,d7,00,73,e3,8d,58,3a,80,7a,\
"??"=hex:e3,e3,a0,e1,a3,01,6d,43,5e,69,a3,90,ea,ac,64,f3
[HKEY_USERS\S-1-5-21-3247669149-875655156-3210287843-1000\Software\SecuROM\License information*]
"datasecu"=hex:be,af,e8,04,b3,a8,d6,3f,3b,02,02,b7,89,b9,18,33,97,97,1d,5f,b7,
68,7c,b0,3c,bb,85,d1,27,f5,16,d2,8c,18,a5,6e,ab,da,50,46,08,21,e0,ec,96,f0,\
"rkeysecu"=hex:34,58,b4,35,24,6e,fc,ff,22,a4,0a,08,ae,4b,78,d0
.
Heure de fin: 2009-06-14 18:52
ComboFix-quarantined-files.txt 2009-06-14 16:52
Avant-CF: 128 803 090 432 octets libres
Après-CF: 128 747 057 152 octets libres
439 --- E O F --- 2009-06-14 09:18
si la solution t'a été donnée n'oublie pas de mettre résolu a droite de ta première question