Ok en attendant voici un log d'ad aware
Ad-Aware SE Build 1.06r1
Logfile Created on:lundi 30 avril 2007 22:34:31
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R163 26.03.2007
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
MRU List(TAC index:0):11 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan within archives
Set : Scan my Hosts file
Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects
30-04-2007 22:34:31 - Scan started. (Custom mode)
Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ProcessID : 636
ThreadCreationTime : 30-04-2007 13:37:10
BasePriority : Normal
#:2 [csrss.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 700
ThreadCreationTime : 30-04-2007 13:37:12
BasePriority : Normal
#:3 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 724
ThreadCreationTime : 30-04-2007 13:37:12
BasePriority : High
#:4 [services.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 776
ThreadCreationTime : 30-04-2007 13:37:12
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Applications Services et Contrôleur
InternalName : services.exe
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : services.exe
#:5 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 788
ThreadCreationTime : 30-04-2007 13:37:12
BasePriority : Normal
FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)
ProductVersion : 5.1.2600.1106
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : lsass.exe
#:6 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 948
ThreadCreationTime : 30-04-2007 13:37:16
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:7 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 992
ThreadCreationTime : 30-04-2007 13:37:16
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:8 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1116
ThreadCreationTime : 30-04-2007 13:37:16
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:9 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1172
ThreadCreationTime : 30-04-2007 13:37:16
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:10 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1480
ThreadCreationTime : 30-04-2007 13:37:17
BasePriority : Normal
FileVersion : 5.1.2600.0 (XPClient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : spoolsv.exe
#:11 [explorer.exe]
FilePath : C:\WINDOWS\
ProcessID : 1612
ThreadCreationTime : 30-04-2007 13:37:18
BasePriority : Normal
FileVersion : 6.00.2800.1106 (xpsp1.020828-1920)
ProductVersion : 6.00.2800.1106
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Explorateur Windows
InternalName : explorer
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : EXPLORER.EXE
#:12 [igfxtray.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1728
ThreadCreationTime : 30-04-2007 13:37:18
BasePriority : Normal
FileVersion : 3,0,0,2104
ProductVersion : 7,0,0,2104
ProductName : Intel(R) Common User Interface
CompanyName : Intel Corporation
FileDescription : igfxTray Module
InternalName : IGFXTRAY
LegalCopyright : Copyright 1999-2003, Intel Corporation
OriginalFilename : IGFXTRAY.EXE
#:13 [hkcmd.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1736
ThreadCreationTime : 30-04-2007 13:37:18
BasePriority : Normal
FileVersion : 3,0,0,2104
ProductVersion : 7,0,0,2104
ProductName : Intel(R) Common User Interface
CompanyName : Intel Corporation
FileDescription : hkcmd Module
InternalName : HKCMD
LegalCopyright : Copyright 1999-2003, Intel Corporation
OriginalFilename : HKCMD.EXE
#:14 [thotkey.exe]
FilePath : C:\Program Files\Toshiba\Toshiba Applet\
ProcessID : 1752
ThreadCreationTime : 30-04-2007 13:37:18
BasePriority : Normal
FileVersion : 1.00.0023
ProductVersion : 1.00.0023
ProductName : THotkey
CompanyName : TOSHIBA
InternalName : THotkey
LegalCopyright : 2003
LegalTrademarks : TOSHIBA Corporation
OriginalFilename : THotkey.exe
Comments : Hotkey
#:15 [tmeprop.exe]
FilePath : C:\Program Files\Toshiba\Toshiba Applet\
ProcessID : 1760
ThreadCreationTime : 30-04-2007 13:37:18
BasePriority : Normal
FileVersion : 1.00.0024
ProductVersion : 1.00.0024
ProductName : MobileExtension
CompanyName : TOSHIBA
InternalName : MobileExtension
LegalCopyright : 2003
OriginalFilename : MobileExtension.exe
Comments : Mobile Extension
#:16 [tpwrsave.exe]
FilePath : C:\Program Files\Toshiba\Toshiba Applet\
ProcessID : 1768
ThreadCreationTime : 30-04-2007 13:37:19
BasePriority : Normal
FileVersion : 1.00.0021
ProductVersion : 1.00.0021
ProductName : Toshiba Power Saver
CompanyName : TOSHIBA
InternalName : PowerManagement
LegalCopyright : 2003
LegalTrademarks : TOSHIBA Corporation
OriginalFilename : PowerManagement.exe
Comments : Power Saver
#:17 [ndstray.exe]
FilePath : C:\Program Files\Toshiba\ConfigFree\
ProcessID : 1776
ThreadCreationTime : 30-04-2007 13:37:19
BasePriority : Normal
FileVersion : 4, 0, 2, 314
ProductVersion : 1, 1, 4, 0
ProductName : ConfigFree(TM) Tray
CompanyName : TOSHIBA CORPORATION
FileDescription : ConfigFree(TM) Tray
InternalName : ndstray
LegalCopyright : Copyright 2002-2003 (C) TOSHIBA CORPORATION. All rights reserved.
OriginalFilename : NDSTray.exe
#:18 [gsicon.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1784
ThreadCreationTime : 30-04-2007 13:37:19
BasePriority : Normal
FileVersion : 3.1.0
ProductVersion : 3.1.0
ProductName : DSL Modem
CompanyName : GlobeSpan, Inc.
FileDescription : DSL Modem Monitor
InternalName : GSICON.EXE
LegalCopyright : Copyright © 2001 GlobeSpan, Inc.
OriginalFilename : GSICON.EXE
#:19 [dslagent.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1796
ThreadCreationTime : 30-04-2007 13:37:19
BasePriority : Normal
#:20 [ashdisp.exe]
FilePath : C:\PROGRA~1\ALWILS~1\Avast4\
ProcessID : 1824
ThreadCreationTime : 30-04-2007 13:37:19
BasePriority : Normal
FileVersion : 4, 7, 936, 0
ProductVersion : 4, 7, 0, 0
ProductName : avast! Antivirus
FileDescription : avast! service GUI component
InternalName : aswDisp
LegalCopyright : Copyright (c) 2007 ALWIL Software
OriginalFilename : aswDisp.exe
#:21 [ctfmon.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1836
ThreadCreationTime : 30-04-2007 13:37:19
BasePriority : Normal
FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)
ProductVersion : 5.1.2600.1106
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : CTF Loader
InternalName : CTFMON
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : CTFMON.EXE
#:22 [sqlmangr.exe]
FilePath : C:\Program Files\Microsoft SQL Server\80\Tools\Binn\
ProcessID : 1892
ThreadCreationTime : 30-04-2007 13:37:19
BasePriority : Normal
FileVersion : 2000.080.0760.00
ProductVersion : 8.00.760
ProductName : Microsoft SQL Server
CompanyName : Microsoft Corporation
FileDescription : SQL Server Service Manager
InternalName : SQLMANGR
LegalCopyright : © 1988-2003 Microsoft Corp. All rights reserved.
LegalTrademarks : Microsoft® is a registered trademark of Microsoft Corporation. Windows(TM) is a trademark of Microsoft Corporation
OriginalFilename : SQLMANGR.exe
Comments : NT INTEL X86
#:23 [aswupdsv.exe]
FilePath : C:\Program Files\Alwil Software\Avast4\
ProcessID : 284
ThreadCreationTime : 30-04-2007 13:37:24
BasePriority : Normal
#:24 [ashserv.exe]
FilePath : C:\Program Files\Alwil Software\Avast4\
ProcessID : 296
ThreadCreationTime : 30-04-2007 13:37:24
BasePriority : High
FileVersion : 4, 7, 936, 0
ProductVersion : 4, 7, 0, 0
ProductName : avast! Antivirus
FileDescription : avast! antivirus service
InternalName : aswServ
LegalCopyright : Copyright (c) 2007 ALWIL Software
OriginalFilename : aswServ.exe
#:25 [mm50krnl.exe]
FilePath : C:\WINDOWS\System32\dllcache\
ProcessID : 404
ThreadCreationTime : 30-04-2007 13:37:24
BasePriority : Normal
#:26 [mdm.exe]
FilePath : C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\
ProcessID : 300
ThreadCreationTime : 30-04-2007 13:37:27
BasePriority : Normal
FileVersion : 7.10.3077
ProductVersion : 7.10.3077
ProductName : Microsoft® Visual Studio .NET
CompanyName : Microsoft Corporation
FileDescription : Machine Debug Manager
InternalName : mdm.exe
LegalCopyright : Copyright© Microsoft Corporation. All rights reserved.
OriginalFilename : mdm.exe
#:27 [updtftpini.exe]
FilePath : C:\WINDOWS\System32\dllcache\
ProcessID : 792
ThreadCreationTime : 30-04-2007 13:37:27
BasePriority : Normal
#:28 [sqlservr.exe]
FilePath : C:\Program Files\Microsoft SQL Server\MSSQL\Binn\
ProcessID : 964
ThreadCreationTime : 30-04-2007 13:37:27
BasePriority : Normal
FileVersion : 2000.080.0760.00
ProductVersion : 8.00.760
ProductName : Microsoft SQL Server
CompanyName : Microsoft Corporation
FileDescription : SQL Server Windows NT
InternalName : SQLSERVR
LegalCopyright : © 1988-2003 Microsoft Corp. All rights reserved.
LegalTrademarks : Microsoft® is a registered trademark of Microsoft Corporation. Windows(TM) is a trademark of Microsoft Corporation
OriginalFilename : SQLSERVR.EXE
Comments : NT INTEL X86
#:29 [slxserver.exe]
FilePath : C:\Program Files\SalesLogix\
ProcessID : 1080
ThreadCreationTime : 30-04-2007 13:37:28
BasePriority : Normal
FileVersion : 6.2.2.1010
ProductVersion : 6.2.2
ProductName : SalesLogix
CompanyName : Best Software, Inc.
FileDescription : SLXServer
InternalName : SLXServer.exe
LegalCopyright : ©1997-2005 Best Software, Inc. All Rights Reserved
OriginalFilename : SLXServer.exe
#:30 [slxsearchservice.exe]
FilePath : C:\Program Files\SalesLogix\SpeedSearch\Bin\
ProcessID : 1168
ThreadCreationTime : 30-04-2007 13:37:28
BasePriority : Normal
FileVersion : 6.2.1.3040
ProductVersion : 6.2.1
ProductName : SalesLogix
CompanyName : Best Software, Inc.
FileDescription : SLXSearchService
InternalName : SLXSearchService.exe
LegalCopyright : ©1997-2004 Best Software, Inc. All Rights Reserved
OriginalFilename : SLXSearchService.exe
#:31 [slxloggingserver.exe]
FilePath : C:\Program Files\SalesLogix\
ProcessID : 1164
ThreadCreationTime : 30-04-2007 13:37:29
BasePriority : Normal
FileVersion : 6.2.2.1018
ProductVersion : 6.2.2
ProductName : SalesLogix
CompanyName : Best Software, Inc.
FileDescription : SLXLoggingServer
InternalName : SLXLoggingServer.exe
LegalCopyright : ©1997-2005 Best Software, Inc. All Rights Reserved
OriginalFilename : SLXLoggingServer.exe
#:32 [smagent.exe]
FilePath : C:\Program Files\Analog Devices\SoundMAX\
ProcessID : 1444
ThreadCreationTime : 30-04-2007 13:37:30
BasePriority : Normal
FileVersion : 3, 2, 5, 0
ProductVersion : 3, 2, 5, 0
ProductName : SoundMAX service agent
CompanyName : Analog Devices, Inc.
FileDescription : SoundMAX service agent component
InternalName : SMAgent
LegalCopyright : Copyright © 2002
OriginalFilename : SMAgent.exe
#:33 [slxsystem.exe]
FilePath : C:\Program Files\SalesLogix\
ProcessID : 832
ThreadCreationTime : 30-04-2007 13:37:31
BasePriority : Normal
FileVersion : 6.2.2.1041
ProductVersion : 6.2.2
ProductName : SalesLogix
CompanyName : Best Software, Inc.
FileDescription : SLXSystem
InternalName : SLXSystem.exe
LegalCopyright : ©1997-2005 Best Software, Inc. All Rights Reserved
OriginalFilename : SLXSystem.exe
#:34 [ashwebsv.exe]
FilePath : C:\Program Files\Alwil Software\Avast4\
ProcessID : 2124
ThreadCreationTime : 30-04-2007 13:37:35
BasePriority : Normal
#:35 [ashmaisv.exe]
FilePath : C:\Program Files\Alwil Software\Avast4\
ProcessID : 2252
ThreadCreationTime : 30-04-2007 13:37:36
BasePriority : Normal
#:36 [msiexec.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 2792
ThreadCreationTime : 30-04-2007 13:38:01
BasePriority : Normal
#:37 [msiexec.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 2820
ThreadCreationTime : 30-04-2007 13:38:03
BasePriority : Normal
#:38 [msiexec.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 2864
ThreadCreationTime : 30-04-2007 13:38:05
BasePriority : Normal
#:39 [msiexec.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 2600
ThreadCreationTime : 30-04-2007 13:43:11
BasePriority : Normal
#:40 [msiexec.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1112
ThreadCreationTime : 30-04-2007 13:43:12
BasePriority : Normal
#:41 [ad-aware.exe]
FilePath : C:\Program Files\Lavasoft\Ad-Aware SE Personal\
ProcessID : 3916
ThreadCreationTime : 30-04-2007 20:33:47
BasePriority : Normal
FileVersion : 6.2.0.236
ProductVersion : SE 106
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft AB Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved
Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
MRU List Object Recognized!
Location: : C:\Documents and Settings\Administrateur\recent
Description : list of recently opened documents
MRU List Object Recognized!
Location: : software\microsoft\directdraw\mostrecentapplication
Description : most recent application to use microsoft directdraw
MRU List Object Recognized!
Location: : S-1-5-21-2878541168-29440860-3137951085-500\software\microsoft\mediaplayer\medialibraryui
Description : last selected node in the microsoft windows media player media library
MRU List Object Recognized!
Location: : S-1-5-21-2878541168-29440860-3137951085-500\software\microsoft\mediaplayer\preferences
Description : last playlist index loaded in microsoft windows media player
MRU List Object Recognized!
Location: : S-1-5-21-2878541168-29440860-3137951085-500\software\microsoft\mediaplayer\preferences
Description : last playlist loaded in microsoft windows media player
MRU List Object Recognized!
Location: : S-1-5-21-2878541168-29440860-3137951085-500\software\microsoft\mediaplayer\preferences
Description : last search path used in microsoft windows media player
MRU List Object Recognized!
Location: : S-1-5-21-2878541168-29440860-3137951085-500\software\microsoft\microsoft management console\recent file list
Description : list of recent snap-ins used in the microsoft management console
MRU List Object Recognized!
Location: : S-1-5-21-2878541168-29440860-3137951085-500\software\microsoft\search assistant\acmru
Description : list of recent search terms used with the search assistant
MRU List Object Recognized!
Location: : S-1-5-21-2878541168-29440860-3137951085-500\software\microsoft\windows\currentversion\explorer\recentdocs
Description : list of recent documents opened
MRU List Object Recognized!
Location: : S-1-5-21-2878541168-29440860-3137951085-500\software\microsoft\windows\currentversion\explorer\runmru
Description : mru list for items opened in start | run
MRU List Object Recognized!
Location: : S-1-5-21-2878541168-29440860-3137951085-500\software\microsoft\windows media\wmsdk\general
Description : windows media sdk
Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 11
Deep scanning and examining files (C:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Disk Scan Result for C:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 11
Scanning Hosts file......
Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts".
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Hosts file scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
1 entries scanned.
New critical objects:0
Objects found so far: 11
Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 11
22:41:49 Scan Complete
Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00:07:17.539
Objects scanned:140951
Objects identified:0
Objects ignored:0
New critical objects:0