Mon ordi est trop lent

Fermé
doriaz Messages postés 13 Date d'inscription mercredi 22 septembre 2010 Statut Membre Dernière intervention 26 septembre 2010 - 24 sept. 2010 à 19:56
H3RV3 Messages postés 3591 Date d'inscription samedi 17 octobre 2009 Statut Contributeur sécurité Dernière intervention 7 novembre 2014 - 26 sept. 2010 à 21:35
Bonjour,

Mon ordinateur depuis quelques mois est trop lent.
J'essayer deja faire tous sort de nettoyage,scan,spyterminator, etc.
mais ca change pas.
J'ai recement une analyse avec ZHPdiag,
Je mettre le diagnosis sur le forum, si quelqun peux m'aider.
merci

diag:

---\\ DOS/Devices
A:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
C:\ Hard drive, Flash drive, Thumb drive (Free 8 Go of 8 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 11 Go of 39 Go)
E:\ Hard drive, Flash drive, Thumb drive (Free 3 Go of 31 Go)
F:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
G:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
H:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
I:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
J:\ Hard drive, Flash drive, Thumb drive (Free 4 Go of 83 Go)
K:\ Hard drive, Flash drive, Thumb drive (Free 27 Go of 83 Go)
L:\ CD-ROM drive (Not Inserted)
M:\ CD-ROM drive (Not Inserted)
P:\ Hard drive, Flash drive, Thumb drive (Free 0 Go of 298 Go)


---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: Modified
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableRegistryTools: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] NoDispScrSavPage: OK


---\\ Processus lancés
[MD5.ECA673779ECD27D674953D692FE070F6] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- D:\WINDOWS\system32\Ati2evxx.exe [598016]
[MD5.367592EFCA7FF8B4CE11AB6B0744E1E2] - (.Apple Inc. - Apple Mobile Device Service.) -- D:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [132424]
[MD5.7B44F870FC2DA172C5367D9E3F96F553] - (.Pas de propriétaire - Pas de description.) -- D:\Program Files\AskBarDis\bar\bin\AskService.exe [464264]
[MD5.367621CB272A8D9E7D910388916D5737] - (.Pas de propriétaire - Pas de description.) -- D:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe [234888]
[MD5.B5D974C1FD078A68C7536C561B031D39] - (.Symantec Corporation - Automatic LiveUpdate Scheduler Service.) -- D:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [554352]
[MD5.3F56903E124E820AEECE6D471583C6C1] - (.Apple Inc. - Bonjour Service.) -- D:\Program Files\Bonjour\mDNSResponder.exe [238888]
[MD5.9737FC97B5C941F083C4E46CBCCE2D4A] - (.ESET - ESET Service.) -- D:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [735960]
[MD5.126A16F569122AE00AD3D12EF831D651] - (.Sun Microsystems, Inc. - Java(TM) Quick Starter Service.) -- D:\Program Files\Java\jre6\bin\jqs.exe [153376]
[MD5.13B19C69DD9DBD0D3D8D450789BACDF9] - (.Pas de propriétaire - Pas de description.) -- D:\Documents and Settings\All Users\Application Data\QuestDns\questdns117.exe [61704]
[MD5.2051690A4F8B7C407C0E7CC386298A09] - (.SFR & Celliance - Service Windows SFR ABCd.) -- D:\Program Files\SFR\Gestionnaire de Connexion SFR\SFRABCDService.exe [621184]
[MD5.13B19C69DD9DBD0D3D8D450789BACDF9] - (.Pas de propriétaire - Pas de description.) -- D:\Program Files\QuestDns\questdns.exe [61704]
[MD5.ED8DA2697F1C720EF26AE4B291A04497] - (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- D:\WINDOWS\SOUNDMAN.EXE [577536]
[MD5.F0431C490F124A8CC874163E6A38DD28] - (.Logitech Inc. - LVCom Server.) -- D:\WINDOWS\system32\LVCOMSX.EXE [221184]
[MD5.FE6E15CC578C3278755CDDFF70C2787D] - (.Logitech Inc. - ImageStudio Tray Application.) -- D:\Program Files\Logitech\Video\LogiTray.exe [217088]
[MD5.10C988160342516D8B3C317C40EE4E4C] - (.Pas de propriétaire - ServoApp MFC Application.) -- D:\WINDOWS\system32\ServoApp.exe [417792]
[MD5.27E8BBE87A4862AE84B0FC4CC857B1A1] - (.Edimax Technology Co., Ltd. - MFP Agent.) -- D:\Program Files\MFP Server\App\Common\MFPAgent.exe [741376]
[MD5.4C784423B8F0DAE1392398356C9BE1FC] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- D:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [198160]
[MD5.93DB1FF92B03D24738A71E6E4992DFD3] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- D:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [248552]
[MD5.F9FFA8C7768B01B4BD7C3250576CA27E] - (.ESET - ESET GUI.) -- D:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2054360]
[MD5.7D8B16DBED7F5499EDA36B7C90F65C21] - (.NEOVIA Financial Plc. - NETELLER app.) -- D:\Program Files\NETELLER app\NETELLER-app.exe [1933136]
[MD5.70B68620C41C40580886B808FD7265DA] - (.Logitech Inc. - QuickCam Framework Server.) -- D:\Program Files\Logitech\Video\FxSvr2.exe [192512]
[MD5.B60DDDD2D63CE41CB8C487FCFBB6419E] - (.Microsoft Corporation - Internet Explorer.) -- D:\Program Files\Internet Explorer\iexplore.exe [638816]
[MD5.731F05B5C01B3CA9B813561C0B90E722] - (.Microsoft Corporation - Windows Live Toolbar User Elevation Helper.) -- D:\Program Files\Windows Live\Toolbar\wltuser.exe [224632]
[MD5.43776925C34BFAA88A454C5A3B911ED4] - (.Crawler.com - Crawler Toolbar.) -- D:\PROGRA~1\Crawler\Toolbar\CToolbar.exe [2508752]
[MD5.A8BC9DC41C096725E77959F444AF9F07] - (.Microsoft Corporation - Microsoft Management Console.) -- D:\WINDOWS\system32\mmc.exe [1415680]
[MD5.B688CC50AC171058708030D72959B9A0] - (.Microsoft Corp. et Executive Software Inter - Module NTFS du défragmenteur de disque.) -- D:\WINDOWS\system32\DfrgNtfs.exe [105472]
[MD5.0AFDF29C19E9EE174213DEE4821AB319] - (.Nicolas Coolman - Diagnostic Tool.) -- D:\Program Files\ZHPDiag\ZHPDiag.exe [555520]


---\\ Page de démarrage de Mozilla Firefox (M0)
M0 - MFSP: prefs.js [Imre - nqnpmvtt.default] https://www.google.fr/?gws_rd=ssl


---\\ Programmes d'extension pour Mozilla Firefox (M2)
M2 - MFEP: prefs.js [Imre - nqnpmvtt.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant 1.1 (.Microsoft.)
M2 - MFEP: prefs.js [Imre - nqnpmvtt.default\{3112ca9c-de6d-4884-a869-9855de68056c}] [] Google Toolbar for Firefox 3.1.20081127W (.Google Inc..)
M2 - MFEP: prefs.js [Imre - nqnpmvtt.default\{d51d388b-f5dc-471a-a1ce-5e2d671091c0}] [] Mininova-Vuze Toolbar 2.5.2.14 (.Conduit Ltd..)
M2 - MFEP: prefs.js [Imre - nqnpmvtt.default\{E9A1DEE0-C623-4439-8932-001E7D17607D}] [] Ask Toolbar for Firefox 2.5.2.14 (.Ask.com.)


---\\ Plugins de navigateurs Opera/Firefox(P1/P2)
P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- D:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll
P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- D:\Program Files\Mozilla Firefox\Plugins\npnul32.dll
P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - Office Plugin for Netscape Navigator.) -- D:\Program Files\Mozilla Firefox\Plugins\NPOFFICE.DLL
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe Acrobat Plug-In Version 7.00 for Netscape.) -- D:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- D:\Program Files\Mozilla Firefox\Plugins\nppl3260.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- D:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- D:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- D:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- D:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- D:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- D:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- D:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- D:\Program Files\Mozilla Firefox\Plugins\nprjplug.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - 6.0.12.448.) -- D:\Program Files\Mozilla Firefox\Plugins\nprpjplug.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
P2 - FPN: [HKLM] [@divx.com/DivX Browser Plugin,version=1.0.0] - (.DivX,Inc. - DivX Web Player version 2.0.3.4.) -- D:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_21 for Mozilla browsers.) -- D:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.50524.0.) -- D:\Program Files\Microsoft Silverlight\4.0.50524.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.3] - (.Microsoft Corp. - Office Live Update v1.3.) -- D:\Program Files\Microsoft\Office Live\npOLW.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=14.0.8081.0709] - (.Microsoft Corporation - NPWLPG.) -- D:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.448] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprjplug;version=1.0.3.448] - (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll
P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.448] - (.RealNetworks, Inc. - 6.0.12.448.) -- C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=8] - (.Google Inc. - Google Update.) -- D:\Program Files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=0.7.0] - (.Pas de propriétaire - Pas de description.) -- "D:\Program Files\VideoLAN\VLC\mozilla\npvlc.dll (.not file.)
P2 - FPN: [HKLM] [@videolan.org/vlc,version=0.9.8a] - (.the VideoLAN Team - Version 0.9.8a, copyright 1996-2008 The VideoLAN Team<br><a href="http.) -- D:\Program Files\VideoLAN\VLC\npvlc.dll


---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=D:\WINDOWS\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"


---\\ Pages de démarrage d'Internet Explorer (R0)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fwww.msn.fr%2fdajo%3f
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp


---\\ Pages de recherche d'Internet Explorer (R1)
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/?gws_rd=ssl
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60347
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local


---\\ Internet Explorer URLSearchHook (R3)
R3 - URLSearchHook: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} . (.Crawler.com - Crawler Toolbar Browser Object.) (5.1.0.258) -- D:\PROGRA~1\Crawler\Toolbar\ctbr.dll


---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} . (.Pas de propriétaire - AcroIEHelper Module.) -- D:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: ShopperReports - {100EB1FD-D03E-47fd-81F3-EE91287F9465} . (.SmartShopper Inc. - ShopperReports.) -- D:\Program Files\ShopperReports3\bin\3.0.489.0\ShopperReports.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} . (.Crawler.com - Crawler Toolbar Browser Object.) -- D:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} . (.Ask.com - Ask.com Toolbar.) -- D:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealPlayer - RealPlayer Download and Record Plugin.) -- C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: NetellerBHO - {5425B4B8-87F9-4E9C-8B51-8AABA82EBA64} . (.NEOVIA Financial® Plc. - NETELLER app plug-in.) -- D:\Program Files\NETELLER app\plugins\IE\Neteller.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} . (.Pas de propriétaire - Pas de description.) -- (.not file.)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} . (.Microsoft Corporation - Search Helper for Internet Explorer.) -- D:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- D:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype add-on for IE.) -- D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- D:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll
O2 - BHO: Mininova-Vuze Toolbar - {d51d388b-f5dc-471a-a1ce-5e2d671091c0} . (.Conduit Ltd. - Conduit Toolbar.) -- D:\Program Files\Mininova-Vuze\tbMin1.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} . (.Microsoft Corporation - Windows Live Toolbar Core.) -- D:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} . (.Sun Microsystems, Inc. - Java(TM) Quick Starter binary.) -- D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} . (.SEIKO EPSON CORPORATION - EPSON Web-To-Page.) -- D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll


---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} . (.SEIKO EPSON CORPORATION - EPSON Web-To-Page.) -- D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Mininova-Vuze Toolbar - {d51d388b-f5dc-471a-a1ce-5e2d671091c0} . (.Conduit Ltd. - Conduit Toolbar.) -- D:\Program Files\Mininova-Vuze\tbMin1.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} . (.Microsoft Corporation - Windows Live Toolbar Core.) -- D:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} . (.Ask.com - Ask.com Toolbar.) -- D:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Barre d'outils &Crawler - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} . (.Crawler.com - Crawler Toolbar Browser Object.) -- D:\PROGRA~1\Crawler\Toolbar\ctbr.dll


---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [SoundMan] . (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- D:\Windows\SOUNDMAN.EXE
O4 - HKLM\..\Run: [LVCOMSX] . (.Logitech Inc. - LVCom Server.) -- D:\WINDOWS\system32\LVCOMSX.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] . (.Logitech Inc. - Logitech QuickCam Startup Application.) -- D:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] . (.Logitech Inc. - ImageStudio Tray Application.) -- D:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- D:\Program Files\QuickTime\qttask.exe
O4 - HKLM\..\Run: [Server Application] . (.Pas de propriétaire - ServoApp MFC Application.) -- D:\WINDOWS\system32\ServoApp.exe
O4 - HKLM\..\Run: [GDI Manager] . (.Edimax Technology Co., Ltd. - MFP Agent.) -- D:\Program Files\MFP Server\App\Common\MFPAgent.exe
O4 - HKLM\..\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- D:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- D:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
O4 - HKLM\..\Run: [egui] . (.ESET - ESET GUI.) -- D:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
O4 - HKCU\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] . (.Logitech Inc. - Logitech Software Update.) -- D:\Program Files\Logitech\Video\ManifestEngine.exe
O4 - HKCU\..\Run: [EPSON Stylus SX400 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEGE.exe
O4 - HKCU\..\Run: [EPSON Stylus SX400 Series (Copie 1)] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEGE.exe
O4 - HKCU\..\Run: [NETELLER app] . (.NEOVIA Financial Plc. - NETELLER app.) -- D:\Program Files\NETELLER app\NETELLER-app.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\CTFMON.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\CTFMON.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\CTFMON.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\CTFMON.exe
O4 - HKUS\S-1-5-21-1614895754-764733703-725345543-1004-1614895754-764733703-725345543-1003\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\CTFMON.exe
O4 - Global Startup: D:\Documents And Settings\All Users\Menu Démarrer\Programmes\Démarrage\Lancement rapide d'Adobe Reader.lnk . (.Adobe Systems Incorporated.) -- D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe


---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: Crawler Search - (.not file.) - tbr:iemenu
O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.exe
O8 - Extra context menu item: Google Sidewiki... . (.Google Inc. - Google Toolbar for Internet Explorer.) -- D:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll


---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- D:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (.Pas de propriétaire - Pas de description.) -- D:\Program Files\Skype\Toolbars\Internet Explorer\icon.ico
O9 - Extra 'Tools' menuitem: PokerStars.fr - {90EAE591-7E7E-434a-8E28-ECFD00071806} . (.not file.) - D:\Program Files\PokerStars.FR\main.ico
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (.Pas de propriétaire - Pas de description.) -- D:\PROGRA~1\MICROS~2\OFFICE11\REFBARH.ICO
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} . (.not file.) - D:\Program Files\PartyGaming\PartyPoker\images\ppicon.ico
O9 - Extra button: ShopperReports - Compare product prices - {C5428486-50A0-4a02-9D20-520B59A9F9B2} . (.SmartShopper Inc. - ShopperReports.) -- D:\Program Files\ShopperReports3\bin\3.0.489.0\ShopperReports.dll
O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} . (.SmartShopper Inc. - ShopperReports.) -- D:\Program Files\ShopperReports3\bin\3.0.489.0\ShopperReports.dll
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} . (.not file.) - (.not file.)
O9 - Extra button: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} . (.Microsoft Corporation - Windows Messenger.) -- D:\Program Files\Messenger\msmsgs.exe


---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- D:\WINDOWS\system32\mswsock.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- D:\WINDOWS\system32\winrnr.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- D:\WINDOWS\system32\mswsock.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- D:\Program Files\Bonjour\mdnsNSP.dll


---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} () - http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab


---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{525895EB-E62C-4220-BE7C-0D2E375B165D}: NameServer = 93.188.162.231,93.188.161.231
O17 - HKLM\System\CS1\Services\Tcpip\..\{525895EB-E62C-4220-BE7C-0D2E375B165D}: NameServer = 93.188.162.231,93.188.161.231
O17 - HKLM\System\CS3\Services\Tcpip\..\{525895EB-E62C-4220-BE7C-0D2E375B165D}: NameServer = 93.188.162.231,93.188.161.231
O17 - HKLM\System\CCS\Services\Tcpip\..\{525895EB-E62C-4220-BE7C-0D2E375B165D}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CCS\Services\Tcpip\..\{6452E7C4-4F91-48D0-9059-9D117A85F648}: DhcpNameServer = 84.103.237.145 86.64.145.145
O17 - HKLM\System\CS1\Services\Tcpip\..\{525895EB-E62C-4220-BE7C-0D2E375B165D}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS1\Services\Tcpip\..\{6452E7C4-4F91-48D0-9059-9D117A85F648}: DhcpNameServer = 84.103.237.145 86.64.145.145
O17 - HKLM\System\CS3\Services\Tcpip\..\{525895EB-E62C-4220-BE7C-0D2E375B165D}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS3\Services\Tcpip\..\{6452E7C4-4F91-48D0-9059-9D117A85F648}: DhcpNameServer = 84.103.237.142 86.64.145.142
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 93.188.162.231,93.188.161.231
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 84.103.237.145 86.64.145.145


---\\ Protocole additionnel et piratage de protocole (O18)
O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype add-on for IE.) -- D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- D:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O18 - Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} . (.Crawler.com - Crawler Toolbar Browser Object.) -- D:\PROGRA~1\Crawler\Toolbar\ctbr.dll


---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: AtiExtEvent . (.ATI Technologies Inc. - ATI External Event Utility DLL Module.) -- D:\WINDOWS\System32\Ati2evxx.dll
O20 - Winlogon Notify: dimsntfy . (.Microsoft Corporation - DIMS Notification Handler.) -- D:\WINDOWS\System32\dimsntfy.dll
O20 - Winlogon Notify: WgaLogon . (.Microsoft Corporation - Notifications Windows Genuine Advantage.) -- D:\WINDOWS\System32\WgaLogon.dll


---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- D:\WINDOWS\system32\SHELL32.dll
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- D:\WINDOWS\system32\SHELL32.dll
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Web Site Monitor.) -- D:\WINDOWS\system32\webcheck.dll
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- D:\WINDOWS\system32\stobject.dll


---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- D:\WINDOWS\system32\browseui.dll


---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - Apple Mobile Device Service.) - D:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASKService (ASKService) . (.Pas de propriétaire - Pas de description.) - D:\Program Files\AskBarDis\bar\bin\AskService.exe
O23 - Service: ASKUpgrade (ASKUpgrade) . (.Pas de propriétaire - Pas de description.) - D:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
O23 - Service: (Ati HotKey Poller) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - D:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart (ATI Smart) . (.Pas de propriétaire - ATI Smart.) - D:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Automatic LiveUpdate Scheduler (Automatic LiveUpdate Scheduler) . (.Symantec Corporation - Automatic LiveUpdate Scheduler Service.) - D:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - D:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - D:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Sun Microsystems, Inc. - Java(TM) Quick Starter Service.) - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: PostgreSQL Database Server 8.3 (pgsql-8.3) . (.PostgreSQL Global Development Group - pg_ctl - starts/stops/restarts the PostgreS.) - D:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe
O23 - Service: QuestDns Service (QuestDns Service) . (.Pas de propriétaire - Pas de description.) - D:\Documents and Settings\All Users\Application Data\QuestDns\questdns117.exe
O23 - Service: Service SFR Gestionnaire Connexion (ServiceSFRABCD) . (.SFR & Celliance - Service Windows SFR ABCd.) - D:\Program Files\SFR\Gestionnaire de Connexion SFR\SFRABCDService.exe


---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Office Word.) - D:\Program Files\Microsoft Office\OFFICE11\WINWORD.exe


---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - D:\WINDOWS\Tasks\AppleSoftwareUpdate.job
O39 - APT:Automatic Planified Task - D:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - D:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job


---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Personnalisation du navigateur - >{DFB17AA8-042A-429D-987C-26CE244A4189} . (.Pas de propriétaire - Pas de description.) -- RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- D:\Program Files\Java\jre6\bin\regutils.dll
O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\INF\msnetmtg.inf
O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\INF\msmsgs.inf
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\INF\wmp.inf
O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11cf-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.1 r82.) -- D:\WINDOWS\system32\Macromed\Flash\Flash10i.ocx


---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: ehdrv (ehdrv) . (.ESET - ESET Helper driver.) - D:\Windows\system32\DRIVERS\ehdrv.sys
O41 - Driver: epfwtdir (epfwtdir) . (.ESET - ESET Antivirus Network Redirector.) - D:\Windows\system32\DRIVERS\epfwtdir.sys


---\\ Logiciels installés (O42)
O42 - Logiciel: 7-Zip 4.62 - (.Pas de propriétaire.) [HKLM] -- 7-Zip
O42 - Logiciel: ABBYY FineReader 6.0 Sprint - (.ABBYY Software House.) [HKLM] -- {ACF60000-22B9-4CE9-98D6-2CCF359BAC07}
O42 - Logiciel: ATI Display Driver - (.Pas de propriétaire.) [HKLM] -- ATI Display Driver
O42 - Logiciel: Adobe Acrobat 5.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Acrobat 5.0
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader 7.0.8 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A70800000002}
O42 - Logiciel: Ahead Nero Burning ROM - (.Pas de propriétaire.) [HKLM] -- Nero - Burning Rom!UninstallKey
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {AFA20D47-69C3-4030-8DF8-D37466E70F13}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {6956856F-B6B3-4BE0-BA0B-8F495BE32033}
O42 - Logiciel: Archiveur WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {07287123-B8AC-41CE-8346-3D777245C35B}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Camera RAW Plug-In for EPSON Creativity Suite - (.Pas de propriétaire.) [HKLM] -- {42EDF895-158C-484E-A7F2-42B90759F281}
O42 - Logiciel: Configuration DivX - (.DivX, Inc. .) [HKLM] -- DivX Setup.divx.com
O42 - Logiciel: Crawler Toolbar with Web Security Guard - (.Crawler, LLC.) [HKLM] -- CToolbar_UNINSTALL
O42 - Logiciel: Digimax Master - (.Samsung.) [HKLM] -- {AEC0CEBC-0FC7-4716-8222-1C4A742719B1}
O42 - Logiciel: Dofus 1.26.0 - (.Ankama Games.) [HKLM] -- Dofus 1.26.0
O42 - Logiciel: EPSON Attach To Email - (.SEIKO EPSON.) [HKLM] -- InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}
O42 - Logiciel: EPSON Easy Photo Print - (.Pas de propriétaire.) [HKLM] -- {8A8F8391-4C2C-4BE1-A984-CD4A5A546467}
O42 - Logiciel: EPSON File Manager - (.Pas de propriétaire.) [HKLM] -- {46CBBDF8-55B5-40DB-B459-7B848394309C}
O42 - Logiciel: EPSON Scan - (.Pas de propriétaire.) [HKLM] -- EPSON Scanner
O42 - Logiciel: EPSON Scan Assistant - (.Pas de propriétaire.) [HKLM] -- {2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}
O42 - Logiciel: EPSON Stylus SX200_SX400_TX200_TX400 Manuel - (.Pas de propriétaire.) [HKLM] -- EPSON Stylus SX200_SX400_TX200_TX400 Guide d'utilisation
O42 - Logiciel: EPSON Stylus SX400 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON Stylus SX400 Series
O42 - Logiciel: EPSON Web-To-Page - (.Pas de propriétaire.) [HKLM] -- {7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}
O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {B131E59D-202C-43C6-84C9-68F0C37541F1}
O42 - Logiciel: Gestionnaire de Connexion SFR 2009.03 - (.Pas de propriétaire.) [HKLM] -- Gestionnaire de Connexion SFR_is1
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {1D14373E-7970-4F2F-A467-ACA4F0EA21E3}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Hauppauge WinTV Scheduler - (.Pas de propriétaire.) [HKLM] -- Hauppauge WinTV Scheduler
O42 - Logiciel: Hauppauge WinTV Soft PVR - (.Pas de propriétaire.) [HKLM] -- Hauppauge WinTV Soft PVR
O42 - Logiciel: Hauppauge WinTV Source Selector - (.Pas de propriétaire.) [HKLM] -- Hauppauge WinTV Source Selector
O42 - Logiciel: Hauppauge WinTV2000 - (.Pas de propriétaire.) [HKLM] -- Hauppauge WinTV2000
O42 - Logiciel: HomePlayer 1.5.9a - (.HomePlayer.) [HKLM] -- HomePlayer
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5
O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {46ABBC54-1872-4AA3-95E2-F2C063A63F31}
O42 - Logiciel: J2SE Runtime Environment 5.0 Update 11 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0150110}
O42 - Logiciel: Java(TM) 6 Update 21 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216013FF}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {E2DFE069-083E-4631-9B6C-43C48E991DE5}
O42 - Logiciel: LiveUpdate 3.2 (Symantec Corporation) - (.Symantec Corporation.) [HKLM] -- LiveUpdate
O42 - Logiciel: Logiciel QuickCam de Logitech - (.Logitech, Inc..) [HKLM] -- {C43048A9-742C-4DAD-90D2-E3B53C9DB825}
O42 - Logiciel: Logitech Print Service - (.Pas de propriétaire.) [HKLM] -- Logitech Print Service
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - FRA - (.Microsoft Corporation.) [HKLM] -- {3F7924B9-D148-3141-87B1-68F36043A940}
O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - FRA - (.Microsoft Corporation.) [HKLM] -- {511DF669-2930-30C0-8EB6-552887E29EC8}
O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack - fra - (.Microsoft Corporation.) [HKLM] -- {5B76AEA2-D4E5-3B55-B965-ACC36AE0EAFC}
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Office Live Add-in 1.3 - (.Microsoft Corporation.) [HKLM] -- {57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
O42 - Logiciel: Microsoft Office Professional Edition 2003 - (.Microsoft Corporation.) [HKLM] -- {9011040C-6000-11D3-8CFE-0150048383C9}
O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM] -- {4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {8A74E887-8F0F-4017-AF53-CBA42211AAA5}
O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c}
O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}
O42 - Logiciel: Mininova-Vuze Toolbar - (.Pas de propriétaire.) [HKLM] -- Mininova-Vuze Toolbar
O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 - fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack - fra
O42 - Logiciel: Mozilla Firefox (3.0.16) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.0.16)
O42 - Logiciel: NETELLER app (remove only) - (.Pas de propriétaire.) [HKLM] -- NETELLER app
O42 - Logiciel: NETGEAR WG311v3 PCI Adapter - (.NETGEAR.) [HKLM] -- InstallShield_{70014586-7BBA-4A92-A610-CDC896C48F8F}
O42 - Logiciel: NVIDIA Drivers - (.Pas de propriétaire.) [HKLM] -- NVIDIA Drivers
O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}
O42 - Logiciel: PhotoFiltre Studio - (.Pas de propriétaire.) [HKLM] -- PhotoFiltre Studio
O42 - Logiciel: PokerStars.fr - (.PokerStars.fr.) [HKLM] -- PokerStars.fr
O42 - Logiciel: PokerTracker 3 (remove only) - (.Pas de propriétaire.) [HKLM] -- PokerTracker3
O42 - Logiciel: PostgreSQL 8.3 - (.PostgreSQL Global Development Group.) [HKLM] -- {B823632F-3B72-4514-8861-B961CE263224}
O42 - Logiciel: Programme de gestion Camera de Logitech® - (.Pas de propriétaire.) [HKLM] -- QcDrv
O42 - Logiciel: QuestDns 1.0 build 117 - (.Pas de propriétaire.) [HKLM] -- QuestDns
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {216AB108-2AE1-4130-B3D5-20B2C4C80F8F}
O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM] -- RealPlayer 12.0
O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM] -- RealPlayer 6.0
O42 - Logiciel: Realtek AC'97 Audio - (.Realtek Semiconductor Corp..) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E}
O42 - Logiciel: SUPER © Version 2010.bld.38 (May 2, 2010) - (.eRightSoft.) [HKLM] -- SUPER ©
O42 - Logiciel: Safari - (.Apple Inc..) [HKLM] -- {D90AFDE3-3E67-407A-ACA8-F0BAAD012F08}
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
O42 - Logiciel: ShopperReports - (.SmartShopper.) [HKLM] -- ShopperReportsSA
O42 - Logiciel: Skype Toolbars - (.Skype Technologies S.A..) [HKLM] -- {981029E0-7FC9-4CF3-AB39-6F133621921A}
O42 - Logiciel: Skype(TM) 4.2 - (.Skype Technologies S.A..) [HKLM] -- {D103C4BA-F905-437A-8049-DB24763BBE36}
O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
O42 - Logiciel: VC80CRTRedist - 8.0.50727.4053 - (.DivX, Inc.) [HKLM] -- {5EE7D259-D137-4438-9A5F-42F432EC0421}
O42 - Logiciel: VLC media player 1.0.1 - (.VideoLAN Team.) [HKLM] -- VLC media player
O42 - Logiciel: VTPlus32 for WinTV (English) - (.Pas de propriétaire.) [HKLM] -- VTPlus32 for WinTV (English)
O42 - Logiciel: VideoLAN VLC media player 0.7.0 - (.Pas de propriétaire.) [HKLM] -- VideoLAN
O42 - Logiciel: Vuze - (.Vuze Inc..) [HKLM] -- 8461-7759-5462-8226
O42 - Logiciel: Vuze Toolbar - (.Vuze, Inc..) [HKLM] -- Ask Toolbar_is1
O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify
O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130) - (.Microsoft Corporation.) [HKLM] -- KB892130
O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3B4E636E-9D65-4D67-BA61-189800823F52}
O42 - Logiciel: Windows Live Contrôle parental - (.Microsoft Corporation.) [HKLM] -- {D5D81435-B8DE-4CAF-867F-7998F2B92CFC}
O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM] -- {2075CB0A-D26F-4DAA-B424-5079296B43BA}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {5DD76286-9BE7-4894-A990-E905E91AC818}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {770F1BEC-2871-4E70-B837-FB8525FFA3B1}
O42 - Logiciel: Windows Live Toolbar - (.Microsoft Corporation.) [HKLM] -- {F7D27C70-90F5-49B9-B188-0A133C0CE353}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {4634B21A-CC07-4396-890C-2B8168661FEA}
O42 - Logiciel: XML Paper Specification Shared Components Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XpsEPSC

---\\ HKCU & HKLM Software Keys
[HKCU\Software\7-Zip]
[HKCU\Software\ABBYY]
[HKCU\Software\AC3Filter]
[HKCU\Software\Adobe]
[HKCU\Software\Ahead]
[HKCU\Software\AppDataLow\AskBarDis]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Avance]
[HKCU\Software\Azureus]
[HKCU\Software\CToolbar]
[HKCU\Software\Carnival Casino]
[HKCU\Software\Casino Tropez]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Conduit]
[HKCU\Software\Cygnus Solutions]
[HKCU\Software\DivXNetworks]
[HKCU\Software\DivX]
[HKCU\Software\EPSON]
[HKCU\Software\ESET]
[HKCU\Software\FotoWire]
[HKCU\Software\Google]
[HKCU\Software\Hauppauge]
[HKCU\Software\HookNetwork]
[HKCU\Software\IGA]
[HKCU\Software\IM Providers]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\Logitech]
[HKCU\Software\MGS]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MicroGaming]
[HKCU\Software\Mininova-Vuze]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\Osprey]
[HKCU\Software\PartyGaming]
[HKCU\Software\Piriform]
[HKCU\Software\PokerTracker3]
[HKCU\Software\Policies]
[HKCU\Software\RealNetworks]
[HKCU\Software\Realtek]
[HKCU\Software\SEIKO EPSON]
[HKCU\Software\SFR]
[HKCU\Software\SOCID]
[HKCU\Software\STOIK Imagic 30]
[HKCU\Software\Serence]
[HKCU\Software\ShopperReports3]
[HKCU\Software\Skype]
[HKCU\Software\Stoik]
[HKCU\Software\Symantec]
[HKCU\Software\TikGames]
[HKCU\Software\TrojanHunter]
[HKCU\Software\Trolltech]
[HKCU\Software\Unlimited Possibilities]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\VHLD]
[HKCU\Software\VSRevoGroup]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Xobni]
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\casinoonnet]
[HKCU\Software\deluge]
[HKCU\Software\eMule]
[HKCU\Software\ej-technologies]
[HKCU\Software\fcn]
[HKCU\Software\h8srt]
[HKCU\Software\keyhole.com]
[HKCU\Software\pokerinstaller]
[HKLM\Software\ABBYY]
[HKLM\Software\ATI Technologies Inc.]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Adobe]
[HKLM\Software\Ahead]
[HKLM\Software\Ankama]
[HKLM\Software\AppDataLow]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\AskBarDis]
[HKLM\Software\AviSynth]
[HKLM\Software\Azureus]
[HKLM\Software\BrowserChoice]
[HKLM\Software\C07ft5Y]
[HKLM\Software\CToolbar]
[HKLM\Software\Casino Tropez]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Conduit]
[HKLM\Software\Cygnus Solutions]
[HKLM\Software\DivXNetworks]
[HKLM\Software\DivX]
[HKLM\Software\EPSON]
[HKLM\Software\ESET]
[HKLM\Software\Edimax]
[HKLM\Software\Fiorina Entertainment]
[HKLM\Software\FotoWire]
[HKLM\Software\GEAR Software]
[HKLM\Software\GNU]
[HKLM\Software\GTK]
[HKLM\Software\Gemplus]
[HKLM\Software\Google]
[HKLM\Software\H8SRT]
[HKLM\Software\Hauppauge]
[HKLM\Software\Informania]
[HKLM\Software\InstallShield]
[HKLM\Software\Intel]
[HKLM\Software\InterVideo]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\Logitech]
[HKLM\Software\Macromedia]
[HKLM\Software\Malware Defense]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\Marvell]
[HKLM\Software\Mininova-Vuze]
[HKLM\Software\Mischel Internet Security]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\MultimediaInstaller]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\Notepad]
[HKLM\Software\ODBC]
[HKLM\Software\PKR]
[HKLM\Software\PTECH]
[HKLM\Software\Policies]
[HKLM\Software\PostgreSQL]
[HKLM\Software\Program Groups]
[HKLM\Software\RealNetworks]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\ReflexiveArcade]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\RichFX]
[HKLM\Software\S3R521]
[HKLM\Software\SFR]
[HKLM\Software\Samsung]
[HKLM\Software\Schlumberger]
[HKLM\Software\Secure]
[HKLM\Software\Serence]
[HKLM\Software\ShopperReports3]
[HKLM\Software\Skype]
[HKLM\Software\Symantec]
[HKLM\Software\The Silicon Realms Toolworks]
[HKLM\Software\Windows 3.1 Migration Status]
[HKLM\Software\Windows]
[HKLM\Software\Xing Technology Corp.]
[HKLM\Software\ej-technologies]
[HKLM\Software\magnet]
[HKLM\Software\mozilla.org]
[HKLM\Software\pgAdmin III]


---\\ Contenu des dossiers ProgramFiles/ProgramData (O43)
O43 - CFD:Common File Directory ----D- D:\Program Files\7-Zip
O43 - CFD:Common File Directory ----D- D:\Program Files\ABBYY FineReader 6.0 Sprint
O43 - CFD:Common File Directory ----D- D:\Program Files\Adobe
O43 - CFD:Common File Directory ----D- D:\Program Files\Ahead
O43 - CFD:Common File Directory ----D- D:\Program Files\Apple Software Update
O43 - CFD:Common File Directory ----D- D:\Program Files\AskBarDis
O43 - CFD:Common File Directory ----D- D:\Program Files\AviSynth 2.5
O43 - CFD:Common File Directory ----D- D:\Program Files\AvRack
O43 - CFD:Common File Directory ----D- D:\Program Files\Betway
O43 - CFD:Common File Directory ----D- D:\Program Files\Bonjour
O43 - CFD:Common File Directory ----D- D:\Program Files\bwin
O43 - CFD:Common File Directory ----D- D:\Program Files\CCleaner
O43 - CFD:Common File Directory ----D- D:\Program Files\ComPlus Applications
O43 - CFD:Common File Directory ----D- D:\Program Files\Conduit
O43 - CFD:Common File Directory ----D- D:\Program Files\Crawler
O43 - CFD:Common File Directory ----D- D:\Program Files\DivX
O43 - CFD:Common File Directory ----D- D:\Program Files\Dofus
O43 - CFD:Common File Directory ----D- D:\Program Files\eMule
O43 - CFD:Common File Directory ----D- D:\Program Files\epson
O43 - CFD:Common File Directory ----D- D:\Program Files\eRightSoft
O43 - CFD:Common File Directory ----D- D:\Program Files\ESET
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers communs
O43 - CFD:Common File Directory ----D- D:\Program Files\Google
O43 - CFD:Common File Directory ----D- D:\Program Files\HomePlayer
O43 - CFD:Common File Directory --H-D- D:\Program Files\InstallShield Installation Information
O43 - CFD:Common File Directory ----D- D:\Program Files\Internet Explorer
O43 - CFD:Common File Directory ----D- D:\Program Files\Java
O43 - CFD:Common File Directory ----D- D:\Program Files\Logitech
O43 - CFD:Common File Directory ----D- D:\Program Files\ma-config.com
O43 - CFD:Common File Directory ----D- D:\Program Files\Malware Defense
O43 - CFD:Common File Directory ----D- D:\Program Files\Messenger
O43 - CFD:Common File Directory ----D- D:\Program Files\MFP Server
O43 - CFD:Common File Directory ----D- D:\Program Files\Microsoft
O43 - CFD:Common File Directory ----D- D:\Program Files\microsoft frontpage
O43 - CFD:Common File Directory ----D- D:\Program Files\Microsoft Office
O43 - CFD:Common File Directory ----D- D:\Program Files\Microsoft Silverlight
O43 - CFD:Common File Directory ----D- D:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD:Common File Directory ----D- D:\Program Files\Microsoft Sync Framework
O43 - CFD:Common File Directory ----D- D:\Program Files\Mininova-Vuze
O43 - CFD:Common File Directory ----D- D:\Program Files\Movie Maker
O43 - CFD:Common File Directory ----D- D:\Program Files\Mozilla Firefox
O43 - CFD:Common File Directory ----D- D:\Program Files\MSBuild
O43 - CFD:Common File Directory ----D- D:\Program Files\MSN
O43 - CFD:Common File Directory ----D- D:\Program Files\MSN Gaming Zone
O43 - CFD:Common File Directory ----D- D:\Program Files\NETELLER app
O43 - CFD:Common File Directory ----D- D:\Program Files\NETGEAR
O43 - CFD:Common File Directory ----D- D:\Program Files\NetMeeting
O43 - CFD:Common File Directory ----D- D:\Program Files\Norton Ghost
O43 - CFD:Common File Directory ----D- D:\Program Files\Online Services
O43 - CFD:Common File Directory ----D- D:\Program Files\Outlook Express
O43 - CFD:Common File Directory ----D- D:\Program Files\PartyGaming
O43 - CFD:Common File Directory ----D- D:\Program Files\PhotoFiltre Studio
O43 - CFD:Common File Directory ----D- D:\Program Files\PokerStars
O43 - CFD:Common File Directory ----D- D:\Program Files\PokerStars.FR
O43 - CFD:Common File Directory ----D- D:\Program Files\PokerStars.NET
O43 - CFD:Common File Directory ----D- D:\Program Files\PokerTracker 3
O43 - CFD:Common File Directory ----D- D:\Program Files\PostgreSQL
O43 - CFD:Common File Directory ----D- D:\Program Files\QuestDns
O43 - CFD:Common File Directory ----D- D:\Program Files\QuickTime
O43 - CFD:Common File Directory ----D- D:\Program Files\Realtek AC97
O43 - CFD:Common File Directory ----D- D:\Program Files\Realtek Sound Manager
O43 - CFD:Common File Directory ----D- D:\Program Files\Reference Assemblies
O43 - CFD:Common File Directory ----D- D:\Program Files\ReflexiveArcade
O43 - CFD:Common File Directory ----D- D:\Program Files\Safari
O43 - CFD:Common File Directory ----D- D:\Program Files\Samsung
O43 - CFD:Common File Directory ----D- D:\Program Files\Services en ligne
O43 - CFD:Common File Directory ----D- D:\Program Files\SFR
O43 - CFD:Common File Directory ----D- D:\Program Files\ShopperReports3
O43 - CFD:Common File Directory R---D- D:\Program Files\Skype
O43 - CFD:Common File Directory ----D- D:\Program Files\Symantec
O43 - CFD:Common File Directory ----D- D:\Program Files\Tiks Texas Hold Em
O43 - CFD:Common File Directory ----D- D:\Program Files\TomTom DesktopSuite
O43 - CFD:Common File Directory ----D- D:\Program Files\TrojanHunter 5.2
O43 - CFD:Common File Directory --H-D- D:\Program Files\Uninstall Information
O43 - CFD:Common File Directory ----D- D:\Program Files\VideoLAN
O43 - CFD:Common File Directory ----D- D:\Program Files\VS Revo Group
O43 - CFD:Common File Directory ----D- D:\Program Files\vtplus
O43 - CFD:Common File Directory ----D- D:\Program Files\Vuze
O43 - CFD:Common File Directory ----D- D:\Program Files\Windows Live
O43 - CFD:Common File Directory ----D- D:\Program Files\Windows Live SkyDrive
O43 - CFD:Common File Directory ----D- D:\Program Files\Windows Media Player
O43 - CFD:Common File Directory ----D- D:\Program Files\Windows NT
O43 - CFD:Common File Directory --H-D- D:\Program Files\WindowsUpdate
O43 - CFD:Common File Directory ----D- D:\Program Files\WinRAR
O43 - CFD:Common File Directory ----D- D:\Program Files\WinTV
O43 - CFD:Common File Directory ----D- D:\Program Files\xerox
O43 - CFD:Common File Directory ----D- D:\Program Files\ZHPDiag
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Adobe
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Ahead
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Apple
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\DESIGNER
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\DirectX
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\DivX Shared
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\FotoWire
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\InstallShield
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Java
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Logitech
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Microsoft Shared
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\MSSoap
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\ODBC
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Real
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Services
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Skype
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\SpeechEngines
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Symantec Shared
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\System
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\Windows Live
O43 - CFD:Common File Directory ----D- D:\Program Files\Fichiers Communs\xing shared


---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.00000000000000000000000000000000] - 24/09/2010 - 18:21:22 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\WindowsUpdate.log [1690930]
O44 - LFC:[MD5.6339BD98A59A5D34054388128B17AB86] - 24/09/2010 - 18:20:45 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\System32\wpa.dbl [13646]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 24/09/2010 - 18:20:41 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\0.log [0]
O44 - LFC:[MD5.00000000000000000000000000000000] - 24/09/2010 - 18:20:35 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\wiadebug.log [159]
O44 - LFC:[MD5.00000000000000000000000000000000] - 24/09/2010 - 18:20:34 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\wiaservc.log [50]
O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 24/09/2010 - 18:20:11 -S-A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\bootstat.dat [2048]
O44 - LFC:[MD5.3A9A54E9FF21A4825E9B40A89674F085] - 24/09/2010 - 17:40:52 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\setupact.log [60]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 24/09/2010 - 17:40:52 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\setuperr.log [0]
O44 - LFC:[MD5.B8DD7DF0633DA73E40EB8F4424C20BB1] - 24/09/2010 - 17:00:20 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\setupapi.log [2821]
O44 - LFC:[MD5.19135C59563B1DF86725B3AE1393BEA0] - 24/09/2010 - 12:14:22 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\System32\thxcfg.ini [32]
O44 - LFC:[MD5.C9DD76D0EF94637C77FF8CA5E0FB0684] - 24/09/2010 - 12:09:15 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\system.ini [227]
O44 - LFC:[MD5.8715347D6B7B2E3A7CFE5ADF2D510CE3] - 24/09/2010 - 12:09:15 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\win.ini [477]
O44 - LFC:[MD5.F4F87AAAFA51FB65B3AAFE4402BDAD4C] - 22/09/2010 - 01:25:59 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\SUPER.spf [804]
O44 - LFC:[MD5.D27959321703B70120025A9356E89A7D] - 21/09/2010 - 22:08:46 ---A- . (.Abysmal Software - DevIL: A portable image library in developm.) -- D:\WINDOWS\System32\devil.dll [719872]
O44 - LFC:[MD5.33D5D09599980E3FFBE5AAFB6FF80807] - 21/09/2010 - 22:08:41 ---A- . (.The Public - Avisynth video processing scripting languag.) -- D:\WINDOWS\System32\avisynth.dll [369152]
O44 - LFC:[MD5.4FC8BA1F38638ED05AC06A1F1CC38F2E] - 21/09/2010 - 22:08:38 ---A- . (.Pas de propriétaire - Pas de description.) -- D:\WINDOWS\System32\AVSredirect.dll [27648]
O44 - LFC:[MD5.7029A7634C8DFA8EE619E79B1B9A378F] - 21/09/2010 - 22:08:37 ---A- . (.www.helixcommunity.org - Helix YV12 YUV Codec.) -- D:\WINDOWS\System32\yv12vfw.dll [70656]
O44 - LFC:[MD5.F4D500D9ADC17058F2A8C31F01FDE592] - 21/09/2010 - 22:08:36 ---A- . (.www.helixcommunity.org - Helix I420 YUV Codec.) -- D:\WINDOWS\System32\i420vfw.dll [70656]
O44 - LFC:[MD5.6DB323F64F10DD6A8D9159DAFA97FA41] - 21/09/2010 - 22:08:14 RSH-- . (.- - True Audio DirectShow Decoder.) -- D:\WINDOWS\System32\TTADSDecoder.ax [90112]
O44 - LFC:[MD5.555C91496E3584B6FC00CA0A1CE899EB] - 21/09/2010 - 22:08:14 RSH-- . (.- - True Audio DirectShow Splitter.) -- D:\WINDOWS\System32\TTADSSplitter.ax [90112]
O44 - LFC:[MD5.E25ED3ECA867EE19BE516528650E0506] - 21/09/2010 - 22:08:13 RSH-- . (.RadLight - RLVorbisDec.ax.) -- D:\WINDOWS\System32\RLVorbisDec.ax [92672]
O44 - LFC:[MD5.8BD08B7BEF08CB2F576832E88C70DE93] - 21/09/2010 - 22:08:13 RSH-- . (.RadLight, LLC - RadLight Theora Decoder.) -- D:\WINDOWS\System32\RLTheoraDec.ax [67584]
O44 - LFC:[MD5.D126CD64568B093E6FADDADCE6FD0A47] - 21/09/2010 - 22:08:12 RSH-- . (.Pas de propriétaire - RadLight Speex Decoder.) -- D:\WINDOWS\System32\RLSpeexDec.ax [51712]
O44 - LFC:[MD5.00817D79CC4282859E9F5685BA686469] - 21/09/2010 - 22:08:10 RSH-- . (.RadLight - RLOgg.) -- D:\WINDOWS\System32\RLOgg.ax [186880]
O44 - LFC:[MD5.39396C3C3E4FB46FB3E087D4101A30BE] - 21/09/2010 - 22:08:06 RSH-- . (.Pas de propriétaire - Pas de des
A voir également:

17 réponses

H3RV3 Messages postés 3591 Date d'inscription samedi 17 octobre 2009 Statut Contributeur sécurité Dernière intervention 7 novembre 2014 280
24 sept. 2010 à 20:08
Salut,

Ton rapport ZHPDiag n'est pas complet, mais il y a malgré tout de nombreuses infections de visibles..

Commence par ceci :

● Télécharge TDSSKiller sur ton bureau

● Sous XP : Double clique sur tdsskiller.exe
● Sous Vista/7 : Fais un clic droit sur tdsskiller.exe et sélectionne "Exécuter en tant qu'administrateur"

● Clique sur "Start Scan" pour démarrer le scan

● En cas de détection, clique sur "Continue" puis sur "Reboot Now"

● Un rapport va s'ouvrir, copie/colle le dans ta réponse

Le rapport est sauvegardé dans C:\TDSSKiller.N°deversion_Date_Heure_log.txt
0
doriaz Messages postés 13 Date d'inscription mercredi 22 septembre 2010 Statut Membre Dernière intervention 26 septembre 2010
24 sept. 2010 à 20:33
Voiala rapport de tdsskiller:
2010/09/24 20:31:20.0171 TDSS rootkit removing tool 2.4.2.1 Sep 7 2010 14:43:44
2010/09/24 20:31:20.0171 ================================================================================
2010/09/24 20:31:20.0171 SystemInfo:
2010/09/24 20:31:20.0171
2010/09/24 20:31:20.0171 OS Version: 5.1.2600 ServicePack: 3.0
2010/09/24 20:31:20.0171 Product type: Workstation
2010/09/24 20:31:20.0171 ComputerName: TOTH
2010/09/24 20:31:20.0171 UserName: Imre
2010/09/24 20:31:20.0171 Windows directory: D:\WINDOWS
2010/09/24 20:31:20.0171 System windows directory: D:\WINDOWS
2010/09/24 20:31:20.0171 Processor architecture: Intel x86
2010/09/24 20:31:20.0171 Number of processors: 1
2010/09/24 20:31:20.0171 Page size: 0x1000
2010/09/24 20:31:20.0171 Boot type: Normal boot
2010/09/24 20:31:20.0171 ================================================================================
2010/09/24 20:31:20.0687 Initialize success
2010/09/24 20:31:23.0359 ================================================================================
2010/09/24 20:31:23.0359 Scan started
2010/09/24 20:31:23.0359 Mode: Manual;
2010/09/24 20:31:23.0359 ================================================================================
2010/09/24 20:31:43.0218 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) D:\WINDOWS\system32\DRIVERS\ACPI.sys
2010/09/24 20:31:43.0312 ACPIEC (e4abc1212b70bb03d35e60681c447210) D:\WINDOWS\system32\drivers\ACPIEC.sys
2010/09/24 20:31:43.0390 aec (8bed39e3c35d6a489438b8141717a557) D:\WINDOWS\system32\drivers\aec.sys
2010/09/24 20:31:43.0437 AFD (7e775010ef291da96ad17ca4b17137d7) D:\WINDOWS\System32\drivers\afd.sys
2010/09/24 20:31:43.0953 ALCXWDM (34149a136b2b7525113950233f259ec1) D:\WINDOWS\system32\drivers\ALCXWDM.SYS
2010/09/24 20:31:44.0140 ALIWEHCD (a570dbb0618a19b4fa214cb38265294a) D:\WINDOWS\system32\Drivers\mfpec.sys
2010/09/24 20:31:44.0343 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) D:\WINDOWS\system32\DRIVERS\asyncmac.sys
2010/09/24 20:31:44.0406 atapi (9f3a2f5aa6875c72bf062c712cfa2674) D:\WINDOWS\system32\DRIVERS\atapi.sys
2010/09/24 20:31:44.0687 ati2mtag (15b2fe76e2eceb98c49ed52311a6f26f) D:\WINDOWS\system32\DRIVERS\ati2mtag.sys
2010/09/24 20:31:44.0734 Atmarpc (9916c1225104ba14794209cfa8012159) D:\WINDOWS\system32\DRIVERS\atmarpc.sys
2010/09/24 20:31:44.0796 audstub (d9f724aa26c010a217c97606b160ed68) D:\WINDOWS\system32\DRIVERS\audstub.sys
2010/09/24 20:31:44.0875 Beep (da1f27d85e0d1525f6621372e7b685e9) D:\WINDOWS\system32\drivers\Beep.sys
2010/09/24 20:31:44.0953 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) D:\WINDOWS\system32\drivers\cbidf2k.sys
2010/09/24 20:31:45.0015 CCDECODE (0be5aef125be881c4f854c554f2b025c) D:\WINDOWS\system32\DRIVERS\CCDECODE.sys
2010/09/24 20:31:45.0093 Cdaudio (c1b486a7658353d33a10cc15211a873b) D:\WINDOWS\system32\drivers\Cdaudio.sys
2010/09/24 20:31:45.0125 Cdfs (c885b02847f5d2fd45a24e219ed93b32) D:\WINDOWS\system32\drivers\Cdfs.sys
2010/09/24 20:31:45.0187 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) D:\WINDOWS\system32\DRIVERS\cdrom.sys
2010/09/24 20:31:45.0390 Disk (044452051f3e02e7963599fc8f4f3e25) D:\WINDOWS\system32\DRIVERS\disk.sys
2010/09/24 20:31:45.0437 dmboot (f5deadd42335fb33edca74ecb2f36cba) D:\WINDOWS\system32\drivers\dmboot.sys
2010/09/24 20:31:45.0484 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) D:\WINDOWS\system32\drivers\dmio.sys
2010/09/24 20:31:45.0531 dmload (e9317282a63ca4d188c0df5e09c6ac5f) D:\WINDOWS\system32\drivers\dmload.sys
2010/09/24 20:31:45.0609 DMusic (8a208dfcf89792a484e76c40e5f50b45) D:\WINDOWS\system32\drivers\DMusic.sys
2010/09/24 20:31:45.0671 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) D:\WINDOWS\system32\drivers\drmkaud.sys
2010/09/24 20:31:45.0718 eamon (1b5ca1caffc594bd37dcc8d7ef849e0b) D:\WINDOWS\system32\DRIVERS\eamon.sys
2010/09/24 20:31:45.0796 ehdrv (a4241545ecff3ee97041847d83936e1f) D:\WINDOWS\system32\DRIVERS\ehdrv.sys
2010/09/24 20:31:45.0843 epfwtdir (367a97a632ec5e8521f68ffa2c700610) D:\WINDOWS\system32\DRIVERS\epfwtdir.sys
2010/09/24 20:31:45.0937 Fastfat (38d332a6d56af32635675f132548343e) D:\WINDOWS\system32\drivers\Fastfat.sys
2010/09/24 20:31:46.0015 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) D:\WINDOWS\system32\DRIVERS\fdc.sys
2010/09/24 20:31:46.0046 Fips (31f923eb2170fc172c81abda0045d18c) D:\WINDOWS\system32\drivers\Fips.sys
2010/09/24 20:31:46.0125 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) D:\WINDOWS\system32\DRIVERS\flpydisk.sys
2010/09/24 20:31:46.0171 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) D:\WINDOWS\system32\drivers\fltmgr.sys
2010/09/24 20:31:46.0250 fssfltr (c6ee3a87fe609d3e1db9dbd072a248de) D:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
2010/09/24 20:31:46.0343 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) D:\WINDOWS\system32\drivers\Fs_Rec.sys
2010/09/24 20:31:46.0359 Ftdisk (a86859b77b908c18c2657f284aa29fe3) D:\WINDOWS\system32\DRIVERS\ftdisk.sys
2010/09/24 20:31:46.0453 GEARAspiWDM (f2f431d1573ee632975c524418655b84) D:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
2010/09/24 20:31:46.0515 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) D:\WINDOWS\system32\DRIVERS\msgpc.sys
2010/09/24 20:31:46.0578 HCWBT8xx (e4aef0daacbe59b048be0224a6d0e601) D:\WINDOWS\system32\drivers\HCWBT8XX.sys
2010/09/24 20:31:46.0656 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) D:\WINDOWS\system32\DRIVERS\hidusb.sys
2010/09/24 20:31:46.0750 HTTP (f80a415ef82cd06ffaf0d971528ead38) D:\WINDOWS\system32\Drivers\HTTP.sys
2010/09/24 20:31:46.0875 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) D:\WINDOWS\system32\DRIVERS\i8042prt.sys
2010/09/24 20:31:46.0921 Imapi (083a052659f5310dd8b6a6cb05edcf8e) D:\WINDOWS\system32\DRIVERS\imapi.sys
2010/09/24 20:31:47.0046 intelppm (ad340800c35a42d4de1641a37feea34c) D:\WINDOWS\system32\DRIVERS\intelppm.sys
2010/09/24 20:31:47.0109 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) D:\WINDOWS\system32\drivers\ip6fw.sys
2010/09/24 20:31:47.0171 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) D:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
2010/09/24 20:31:47.0218 IpInIp (b87ab476dcf76e72010632b5550955f5) D:\WINDOWS\system32\DRIVERS\ipinip.sys
2010/09/24 20:31:47.0281 IpNat (cc748ea12c6effde940ee98098bf96bb) D:\WINDOWS\system32\DRIVERS\ipnat.sys
2010/09/24 20:31:47.0343 IPSec (23c74d75e36e7158768dd63d92789a91) D:\WINDOWS\system32\DRIVERS\ipsec.sys
2010/09/24 20:31:47.0390 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) D:\WINDOWS\system32\DRIVERS\irenum.sys
2010/09/24 20:31:47.0453 isapnp (355836975a67b6554bca60328cd6cb74) D:\WINDOWS\system32\DRIVERS\isapnp.sys
2010/09/24 20:31:47.0531 Kbdclass (16813155807c6881f4bfbf6657424659) D:\WINDOWS\system32\DRIVERS\kbdclass.sys
2010/09/24 20:31:47.0593 kbdhid (94c59cb884ba010c063687c3a50dce8e) D:\WINDOWS\system32\DRIVERS\kbdhid.sys
2010/09/24 20:31:47.0687 kmixer (692bcf44383d056aed41b045a323d378) D:\WINDOWS\system32\drivers\kmixer.sys
2010/09/24 20:31:47.0750 KSecDD (b467646c54cc746128904e1654c750c1) D:\WINDOWS\system32\drivers\KSecDD.sys
2010/09/24 20:31:47.0859 LVUSBSta (c5efbd05a5195402121711a6ebbb271f) D:\WINDOWS\system32\drivers\lvusbsta.sys
2010/09/24 20:31:47.0937 massfilter (f0435fe3c1ec2659d2bbf073ca0752ee) D:\WINDOWS\system32\drivers\massfilter.sys
2010/09/24 20:31:48.0031 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) D:\WINDOWS\system32\drivers\mnmdd.sys
2010/09/24 20:31:48.0109 Modem (510ade9327fe84c10254e1902697e25f) D:\WINDOWS\system32\drivers\Modem.sys
2010/09/24 20:31:48.0156 Mouclass (027c01bd7ef3349aaebc883d8a799efb) D:\WINDOWS\system32\DRIVERS\mouclass.sys
2010/09/24 20:31:48.0171 mouhid (124d6846040c79b9c997f78ef4b2a4e5) D:\WINDOWS\system32\DRIVERS\mouhid.sys
2010/09/24 20:31:48.0234 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) D:\WINDOWS\system32\drivers\MountMgr.sys
2010/09/24 20:31:48.0296 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) D:\WINDOWS\system32\DRIVERS\mrxdav.sys
2010/09/24 20:31:48.0406 MRxSmb (f3aefb11abc521122b67095044169e98) D:\WINDOWS\system32\DRIVERS\mrxsmb.sys
2010/09/24 20:31:48.0468 Msfs (c941ea2454ba8350021d774daf0f1027) D:\WINDOWS\system32\drivers\Msfs.sys
2010/09/24 20:31:48.0531 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) D:\WINDOWS\system32\drivers\MSKSSRV.sys
2010/09/24 20:31:48.0593 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) D:\WINDOWS\system32\drivers\MSPCLOCK.sys
2010/09/24 20:31:48.0656 MSPQM (bad59648ba099da4a17680b39730cb3d) D:\WINDOWS\system32\drivers\MSPQM.sys
2010/09/24 20:31:48.0718 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) D:\WINDOWS\system32\DRIVERS\mssmbios.sys
2010/09/24 20:31:48.0781 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) D:\WINDOWS\system32\drivers\MSTEE.sys
2010/09/24 20:31:48.0843 Mup (2f625d11385b1a94360bfc70aaefdee1) D:\WINDOWS\system32\drivers\Mup.sys
2010/09/24 20:31:48.0890 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) D:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
2010/09/24 20:31:48.0953 NDIS (1df7f42665c94b825322fae71721130d) D:\WINDOWS\system32\drivers\NDIS.sys
2010/09/24 20:31:49.0000 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) D:\WINDOWS\system32\DRIVERS\NdisIP.sys
2010/09/24 20:31:49.0046 NdisTapi (1ab3d00c991ab086e69db84b6c0ed78f) D:\WINDOWS\system32\DRIVERS\ndistapi.sys
2010/09/24 20:31:49.0109 Ndisuio (f927a4434c5028758a842943ef1a3849) D:\WINDOWS\system32\DRIVERS\ndisuio.sys
2010/09/24 20:31:49.0156 NdisWan (edc1531a49c80614b2cfda43ca8659ab) D:\WINDOWS\system32\DRIVERS\ndiswan.sys
2010/09/24 20:31:49.0218 NDProxy (6215023940cfd3702b46abc304e1d45a) D:\WINDOWS\system32\drivers\NDProxy.sys
2010/09/24 20:31:49.0281 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) D:\WINDOWS\system32\DRIVERS\netbios.sys
2010/09/24 20:31:49.0343 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) D:\WINDOWS\system32\DRIVERS\netbt.sys
2010/09/24 20:31:49.0406 Npfs (3182d64ae053d6fb034f44b6def8034a) D:\WINDOWS\system32\drivers\Npfs.sys
2010/09/24 20:31:49.0453 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) D:\WINDOWS\system32\drivers\Ntfs.sys
2010/09/24 20:31:49.0562 NuidFltr (cf7e041663119e09d2e118521ada9300) D:\WINDOWS\system32\DRIVERS\NuidFltr.sys
2010/09/24 20:31:49.0593 Null (73c1e1f395918bc2c6dd67af7591a3ad) D:\WINDOWS\system32\drivers\Null.sys
2010/09/24 20:31:49.0656 NVENETFD (3f09e5118d1ab379d028d511e45c6155) D:\WINDOWS\system32\DRIVERS\NVENETFD.sys
2010/09/24 20:31:49.0687 nvnetbus (77c63a663b88fe327d71dd8e0a0f19b6) D:\WINDOWS\system32\DRIVERS\nvnetbus.sys
2010/09/24 20:31:49.0734 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) D:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
2010/09/24 20:31:49.0750 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) D:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
2010/09/24 20:31:49.0812 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) D:\WINDOWS\system32\DRIVERS\parport.sys
2010/09/24 20:31:49.0875 PartMgr (beb3ba25197665d82ec7065b724171c6) D:\WINDOWS\system32\drivers\PartMgr.sys
2010/09/24 20:31:49.0890 ParVdm (9575c5630db8fb804649a6959737154c) D:\WINDOWS\system32\drivers\ParVdm.sys
2010/09/24 20:31:49.0953 PCI (043410877bda580c528f45165f7125bc) D:\WINDOWS\system32\DRIVERS\pci.sys
2010/09/24 20:31:50.0046 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) D:\WINDOWS\system32\DRIVERS\pciide.sys
2010/09/24 20:31:50.0109 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) D:\WINDOWS\system32\drivers\Pcmcia.sys
2010/09/24 20:31:50.0343 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) D:\WINDOWS\system32\DRIVERS\raspptp.sys
2010/09/24 20:31:50.0421 PSched (09298ec810b07e5d582cb3a3f9255424) D:\WINDOWS\system32\DRIVERS\psched.sys
2010/09/24 20:31:50.0437 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) D:\WINDOWS\system32\DRIVERS\ptilink.sys
2010/09/24 20:31:50.0515 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) D:\WINDOWS\system32\Drivers\PxHelp20.sys
2010/09/24 20:31:50.0625 QCMerced (9a155d31b8e52f41b258282092cc93a7) D:\WINDOWS\system32\DRIVERS\LVCM.sys
2010/09/24 20:31:50.0843 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) D:\WINDOWS\system32\DRIVERS\rasacd.sys
2010/09/24 20:31:50.0906 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) D:\WINDOWS\system32\DRIVERS\rasl2tp.sys
2010/09/24 20:31:50.0937 RasPppoe (5bc962f2654137c9909c3d4603587dee) D:\WINDOWS\system32\DRIVERS\raspppoe.sys
2010/09/24 20:31:50.0984 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) D:\WINDOWS\system32\DRIVERS\raspti.sys
2010/09/24 20:31:51.0046 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) D:\WINDOWS\system32\DRIVERS\rdbss.sys
2010/09/24 20:31:51.0093 RDPCDD (4912d5b403614ce99c28420f75353332) D:\WINDOWS\system32\DRIVERS\RDPCDD.sys
2010/09/24 20:31:51.0140 rdpdr (15cabd0f7c00c47c70124907916af3f1) D:\WINDOWS\system32\DRIVERS\rdpdr.sys
2010/09/24 20:31:51.0250 RDPWD (6728e45b66f93c08f11de2e316fc70dd) D:\WINDOWS\system32\drivers\RDPWD.sys
2010/09/24 20:31:51.0281 redbook (d8eb2a7904db6c916eb5361878ddcbae) D:\WINDOWS\system32\DRIVERS\redbook.sys
2010/09/24 20:31:51.0390 Secdrv (90a3935d05b494a5a39d37e71f09a677) D:\WINDOWS\system32\DRIVERS\secdrv.sys
2010/09/24 20:31:51.0421 serenum (0f29512ccd6bead730039fb4bd2c85ce) D:\WINDOWS\system32\DRIVERS\serenum.sys
2010/09/24 20:31:51.0468 Serial (93d313c31f7ad9ea2b75f26075413c7c) D:\WINDOWS\system32\DRIVERS\serial.sys
2010/09/24 20:31:51.0546 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) D:\WINDOWS\system32\drivers\Sfloppy.sys
2010/09/24 20:31:51.0640 SLIP (866d538ebe33709a5c9f5c62b73b7d14) D:\WINDOWS\system32\DRIVERS\SLIP.sys
2010/09/24 20:31:51.0718 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) D:\WINDOWS\system32\drivers\splitter.sys
2010/09/24 20:31:51.0796 sr (39626e6dc1fb39434ec40c42722b660a) D:\WINDOWS\system32\DRIVERS\sr.sys
2010/09/24 20:31:51.0875 Srv (da852e3e0bf1cea75d756f9866241e57) D:\WINDOWS\system32\DRIVERS\srv.sys
2010/09/24 20:31:51.0953 streamip (77813007ba6265c4b6098187e6ed79d2) D:\WINDOWS\system32\DRIVERS\StreamIP.sys
2010/09/24 20:31:52.0015 swenum (3941d127aef12e93addf6fe6ee027e0f) D:\WINDOWS\system32\DRIVERS\swenum.sys
2010/09/24 20:31:52.0046 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) D:\WINDOWS\system32\drivers\swmidi.sys
2010/09/24 20:31:52.0187 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) D:\WINDOWS\system32\drivers\sysaudio.sys
2010/09/24 20:31:52.0281 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) D:\WINDOWS\system32\DRIVERS\tcpip.sys
2010/09/24 20:31:52.0359 TDPIPE (6471a66807f5e104e4885f5b67349397) D:\WINDOWS\system32\drivers\TDPIPE.sys
2010/09/24 20:31:52.0421 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) D:\WINDOWS\system32\drivers\TDTCP.sys
2010/09/24 20:31:52.0468 TermDD (88155247177638048422893737429d9e) D:\WINDOWS\system32\DRIVERS\termdd.sys
2010/09/24 20:31:52.0578 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) D:\WINDOWS\system32\drivers\Udfs.sys
2010/09/24 20:31:52.0671 Update (402ddc88356b1bac0ee3dd1580c76a31) D:\WINDOWS\system32\DRIVERS\update.sys
2010/09/24 20:31:52.0750 USBAAPL (026f7f224f088ee11e383bca448fff81) D:\WINDOWS\system32\Drivers\usbaapl.sys
2010/09/24 20:31:52.0828 usbaudio (e919708db44ed8543a7c017953148330) D:\WINDOWS\system32\drivers\usbaudio.sys
2010/09/24 20:31:52.0906 usbccgp (173f317ce0db8e21322e71b7e60a27e8) D:\WINDOWS\system32\DRIVERS\usbccgp.sys
2010/09/24 20:31:52.0984 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) D:\WINDOWS\system32\DRIVERS\usbehci.sys
2010/09/24 20:31:53.0015 usbhub (1ab3cdde553b6e064d2e754efe20285c) D:\WINDOWS\system32\DRIVERS\usbhub.sys
2010/09/24 20:31:53.0046 usbohci (0daecce65366ea32b162f85f07c6753b) D:\WINDOWS\system32\DRIVERS\usbohci.sys
2010/09/24 20:31:53.0109 usbprint (a717c8721046828520c9edf31288fc00) D:\WINDOWS\system32\DRIVERS\usbprint.sys
2010/09/24 20:31:53.0187 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) D:\WINDOWS\system32\DRIVERS\usbscan.sys
2010/09/24 20:31:53.0218 usbstor (a32426d9b14a089eaa1d922e0c5801a9) D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
2010/09/24 20:31:53.0281 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) D:\WINDOWS\System32\drivers\vga.sys
2010/09/24 20:31:53.0359 VolSnap (46de1126684369bace4849e4fc8c43ca) D:\WINDOWS\system32\drivers\VolSnap.sys
2010/09/24 20:31:53.0421 W8335XP (7455b3c11a1d6a844b53febdb58646e9) D:\WINDOWS\system32\DRIVERS\WG311v3XP.sys
2010/09/24 20:31:53.0468 Wanarp (e20b95baedb550f32dd489265c1da1f6) D:\WINDOWS\system32\DRIVERS\wanarp.sys
2010/09/24 20:31:53.0515 Wdf01000 (fd47474bd21794508af449d9d91af6e6) D:\WINDOWS\system32\DRIVERS\Wdf01000.sys
2010/09/24 20:31:53.0609 wdmaud (6768acf64b18196494413695f0c3a00f) D:\WINDOWS\system32\drivers\wdmaud.sys
2010/09/24 20:31:53.0734 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) D:\WINDOWS\System32\drivers\ws2ifsl.sys
2010/09/24 20:31:53.0859 WSTCODEC (c98b39829c2bbd34e454150633c62c78) D:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
2010/09/24 20:31:53.0921 WUSBVBus (c0dddfb1719b5d58001a7054d6fd0fe2) D:\WINDOWS\system32\DRIVERS\mfpvbus.sys
2010/09/24 20:31:54.0015 ZTEusbmdm6k (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys
2010/09/24 20:31:54.0062 ZTEusbnet (911ba85906bc7602c73441502abfb565) D:\WINDOWS\system32\DRIVERS\ZTEusbnet.sys
2010/09/24 20:31:54.0140 ZTEusbnmea (69774b89725ddc4781e0eeb9809f3b20) D:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys
2010/09/24 20:31:54.0171 ZTEusbser6k (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys
2010/09/24 20:31:54.0250 ZTEusbvoice (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbvoice.sys
2010/09/24 20:31:54.0343 ================================================================================
2010/09/24 20:31:54.0343 Scan finished
2010/09/24 20:31:54.0343 ================================================================================
2010/09/24 20:32:16.0390 ================================================================================
2010/09/24 20:32:16.0390 Scan started
2010/09/24 20:32:16.0390 Mode: Manual;
2010/09/24 20:32:16.0390 ================================================================================
2010/09/24 20:32:17.0656 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) D:\WINDOWS\system32\DRIVERS\ACPI.sys
2010/09/24 20:32:17.0750 ACPIEC (e4abc1212b70bb03d35e60681c447210) D:\WINDOWS\system32\drivers\ACPIEC.sys
2010/09/24 20:32:17.0828 aec (8bed39e3c35d6a489438b8141717a557) D:\WINDOWS\system32\drivers\aec.sys
2010/09/24 20:32:17.0859 AFD (7e775010ef291da96ad17ca4b17137d7) D:\WINDOWS\System32\drivers\afd.sys
2010/09/24 20:32:18.0312 ALCXWDM (34149a136b2b7525113950233f259ec1) D:\WINDOWS\system32\drivers\ALCXWDM.SYS
2010/09/24 20:32:18.0468 ALIWEHCD (a570dbb0618a19b4fa214cb38265294a) D:\WINDOWS\system32\Drivers\mfpec.sys
2010/09/24 20:32:18.0671 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) D:\WINDOWS\system32\DRIVERS\asyncmac.sys
2010/09/24 20:32:18.0718 atapi (9f3a2f5aa6875c72bf062c712cfa2674) D:\WINDOWS\system32\DRIVERS\atapi.sys
2010/09/24 20:32:18.0953 ati2mtag (15b2fe76e2eceb98c49ed52311a6f26f) D:\WINDOWS\system32\DRIVERS\ati2mtag.sys
2010/09/24 20:32:19.0046 Atmarpc (9916c1225104ba14794209cfa8012159) D:\WINDOWS\system32\DRIVERS\atmarpc.sys
2010/09/24 20:32:19.0093 audstub (d9f724aa26c010a217c97606b160ed68) D:\WINDOWS\system32\DRIVERS\audstub.sys
2010/09/24 20:32:19.0156 Beep (da1f27d85e0d1525f6621372e7b685e9) D:\WINDOWS\system32\drivers\Beep.sys
2010/09/24 20:32:19.0234 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) D:\WINDOWS\system32\drivers\cbidf2k.sys
2010/09/24 20:32:19.0312 CCDECODE (0be5aef125be881c4f854c554f2b025c) D:\WINDOWS\system32\DRIVERS\CCDECODE.sys
2010/09/24 20:32:19.0390 Cdaudio (c1b486a7658353d33a10cc15211a873b) D:\WINDOWS\system32\drivers\Cdaudio.sys
2010/09/24 20:32:19.0406 Cdfs (c885b02847f5d2fd45a24e219ed93b32) D:\WINDOWS\system32\drivers\Cdfs.sys
2010/09/24 20:32:19.0484 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) D:\WINDOWS\system32\DRIVERS\cdrom.sys
2010/09/24 20:32:19.0671 Disk (044452051f3e02e7963599fc8f4f3e25) D:\WINDOWS\system32\DRIVERS\disk.sys
2010/09/24 20:32:19.0750 dmboot (f5deadd42335fb33edca74ecb2f36cba) D:\WINDOWS\system32\drivers\dmboot.sys
2010/09/24 20:32:19.0812 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) D:\WINDOWS\system32\drivers\dmio.sys
2010/09/24 20:32:19.0843 dmload (e9317282a63ca4d188c0df5e09c6ac5f) D:\WINDOWS\system32\drivers\dmload.sys
2010/09/24 20:32:19.0906 DMusic (8a208dfcf89792a484e76c40e5f50b45) D:\WINDOWS\system32\drivers\DMusic.sys
2010/09/24 20:32:19.0984 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) D:\WINDOWS\system32\drivers\drmkaud.sys
2010/09/24 20:32:20.0062 eamon (1b5ca1caffc594bd37dcc8d7ef849e0b) D:\WINDOWS\system32\DRIVERS\eamon.sys
2010/09/24 20:32:20.0125 ehdrv (a4241545ecff3ee97041847d83936e1f) D:\WINDOWS\system32\DRIVERS\ehdrv.sys
2010/09/24 20:32:20.0171 epfwtdir (367a97a632ec5e8521f68ffa2c700610) D:\WINDOWS\system32\DRIVERS\epfwtdir.sys
2010/09/24 20:32:20.0250 Fastfat (38d332a6d56af32635675f132548343e) D:\WINDOWS\system32\drivers\Fastfat.sys
2010/09/24 20:32:20.0281 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) D:\WINDOWS\system32\DRIVERS\fdc.sys
2010/09/24 20:32:20.0359 Fips (31f923eb2170fc172c81abda0045d18c) D:\WINDOWS\system32\drivers\Fips.sys
2010/09/24 20:32:20.0390 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) D:\WINDOWS\system32\DRIVERS\flpydisk.sys
2010/09/24 20:32:20.0437 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) D:\WINDOWS\system32\drivers\fltmgr.sys
2010/09/24 20:32:20.0484 fssfltr (c6ee3a87fe609d3e1db9dbd072a248de) D:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
2010/09/24 20:32:20.0578 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) D:\WINDOWS\system32\drivers\Fs_Rec.sys
2010/09/24 20:32:20.0609 Ftdisk (a86859b77b908c18c2657f284aa29fe3) D:\WINDOWS\system32\DRIVERS\ftdisk.sys
2010/09/24 20:32:20.0703 GEARAspiWDM (f2f431d1573ee632975c524418655b84) D:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
2010/09/24 20:32:20.0734 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) D:\WINDOWS\system32\DRIVERS\msgpc.sys
2010/09/24 20:32:20.0812 HCWBT8xx (e4aef0daacbe59b048be0224a6d0e601) D:\WINDOWS\system32\drivers\HCWBT8XX.sys
2010/09/24 20:32:20.0875 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) D:\WINDOWS\system32\DRIVERS\hidusb.sys
2010/09/24 20:32:20.0984 HTTP (f80a415ef82cd06ffaf0d971528ead38) D:\WINDOWS\system32\Drivers\HTTP.sys
2010/09/24 20:32:21.0093 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) D:\WINDOWS\system32\DRIVERS\i8042prt.sys
2010/09/24 20:32:21.0171 Imapi (083a052659f5310dd8b6a6cb05edcf8e) D:\WINDOWS\system32\DRIVERS\imapi.sys
2010/09/24 20:32:21.0281 intelppm (ad340800c35a42d4de1641a37feea34c) D:\WINDOWS\system32\DRIVERS\intelppm.sys
2010/09/24 20:32:21.0375 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) D:\WINDOWS\system32\drivers\ip6fw.sys
2010/09/24 20:32:21.0421 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) D:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
2010/09/24 20:32:21.0484 IpInIp (b87ab476dcf76e72010632b5550955f5) D:\WINDOWS\system32\DRIVERS\ipinip.sys
2010/09/24 20:32:21.0546 IpNat (cc748ea12c6effde940ee98098bf96bb) D:\WINDOWS\system32\DRIVERS\ipnat.sys
2010/09/24 20:32:21.0609 IPSec (23c74d75e36e7158768dd63d92789a91) D:\WINDOWS\system32\DRIVERS\ipsec.sys
2010/09/24 20:32:21.0656 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) D:\WINDOWS\system32\DRIVERS\irenum.sys
2010/09/24 20:32:21.0718 isapnp (355836975a67b6554bca60328cd6cb74) D:\WINDOWS\system32\DRIVERS\isapnp.sys
2010/09/24 20:32:21.0781 Kbdclass (16813155807c6881f4bfbf6657424659) D:\WINDOWS\system32\DRIVERS\kbdclass.sys
2010/09/24 20:32:21.0843 kbdhid (94c59cb884ba010c063687c3a50dce8e) D:\WINDOWS\system32\DRIVERS\kbdhid.sys
2010/09/24 20:32:21.0906 kmixer (692bcf44383d056aed41b045a323d378) D:\WINDOWS\system32\drivers\kmixer.sys
2010/09/24 20:32:22.0000 KSecDD (b467646c54cc746128904e1654c750c1) D:\WINDOWS\system32\drivers\KSecDD.sys
2010/09/24 20:32:22.0093 LVUSBSta (c5efbd05a5195402121711a6ebbb271f) D:\WINDOWS\system32\drivers\lvusbsta.sys
2010/09/24 20:32:22.0140 massfilter (f0435fe3c1ec2659d2bbf073ca0752ee) D:\WINDOWS\system32\drivers\massfilter.sys
2010/09/24 20:32:22.0187 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) D:\WINDOWS\system32\drivers\mnmdd.sys
2010/09/24 20:32:22.0234 Modem (510ade9327fe84c10254e1902697e25f) D:\WINDOWS\system32\drivers\Modem.sys
2010/09/24 20:32:22.0281 Mouclass (027c01bd7ef3349aaebc883d8a799efb) D:\WINDOWS\system32\DRIVERS\mouclass.sys
2010/09/24 20:32:22.0343 mouhid (124d6846040c79b9c997f78ef4b2a4e5) D:\WINDOWS\system32\DRIVERS\mouhid.sys
2010/09/24 20:32:22.0375 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) D:\WINDOWS\system32\drivers\MountMgr.sys
2010/09/24 20:32:22.0453 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) D:\WINDOWS\system32\DRIVERS\mrxdav.sys
2010/09/24 20:32:22.0515 MRxSmb (f3aefb11abc521122b67095044169e98) D:\WINDOWS\system32\DRIVERS\mrxsmb.sys
2010/09/24 20:32:22.0562 Msfs (c941ea2454ba8350021d774daf0f1027) D:\WINDOWS\system32\drivers\Msfs.sys
2010/09/24 20:32:22.0625 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) D:\WINDOWS\system32\drivers\MSKSSRV.sys
2010/09/24 20:32:22.0671 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) D:\WINDOWS\system32\drivers\MSPCLOCK.sys
2010/09/24 20:32:22.0703 MSPQM (bad59648ba099da4a17680b39730cb3d) D:\WINDOWS\system32\drivers\MSPQM.sys
2010/09/24 20:32:22.0765 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) D:\WINDOWS\system32\DRIVERS\mssmbios.sys
2010/09/24 20:32:22.0859 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) D:\WINDOWS\system32\drivers\MSTEE.sys
2010/09/24 20:32:22.0906 Mup (2f625d11385b1a94360bfc70aaefdee1) D:\WINDOWS\system32\drivers\Mup.sys
2010/09/24 20:32:22.0968 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) D:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
2010/09/24 20:32:23.0015 NDIS (1df7f42665c94b825322fae71721130d) D:\WINDOWS\system32\drivers\NDIS.sys
2010/09/24 20:32:23.0062 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) D:\WINDOWS\system32\DRIVERS\NdisIP.sys
2010/09/24 20:32:23.0109 NdisTapi (1ab3d00c991ab086e69db84b6c0ed78f) D:\WINDOWS\system32\DRIVERS\ndistapi.sys
2010/09/24 20:32:23.0140 Ndisuio (f927a4434c5028758a842943ef1a3849) D:\WINDOWS\system32\DRIVERS\ndisuio.sys
2010/09/24 20:32:23.0203 NdisWan (edc1531a49c80614b2cfda43ca8659ab) D:\WINDOWS\system32\DRIVERS\ndiswan.sys
2010/09/24 20:32:23.0296 NDProxy (6215023940cfd3702b46abc304e1d45a) D:\WINDOWS\system32\drivers\NDProxy.sys
2010/09/24 20:32:23.0343 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) D:\WINDOWS\system32\DRIVERS\netbios.sys
2010/09/24 20:32:23.0421 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) D:\WINDOWS\system32\DRIVERS\netbt.sys
2010/09/24 20:32:23.0531 Npfs (3182d64ae053d6fb034f44b6def8034a) D:\WINDOWS\system32\drivers\Npfs.sys
2010/09/24 20:32:23.0593 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) D:\WINDOWS\system32\drivers\Ntfs.sys
2010/09/24 20:32:23.0687 NuidFltr (cf7e041663119e09d2e118521ada9300) D:\WINDOWS\system32\DRIVERS\NuidFltr.sys
2010/09/24 20:32:23.0765 Null (73c1e1f395918bc2c6dd67af7591a3ad) D:\WINDOWS\system32\drivers\Null.sys
2010/09/24 20:32:23.0796 NVENETFD (3f09e5118d1ab379d028d511e45c6155) D:\WINDOWS\system32\DRIVERS\NVENETFD.sys
2010/09/24 20:32:23.0875 nvnetbus (77c63a663b88fe327d71dd8e0a0f19b6) D:\WINDOWS\system32\DRIVERS\nvnetbus.sys
2010/09/24 20:32:23.0906 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) D:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
2010/09/24 20:32:23.0937 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) D:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
2010/09/24 20:32:24.0015 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) D:\WINDOWS\system32\DRIVERS\parport.sys
2010/09/24 20:32:24.0062 PartMgr (beb3ba25197665d82ec7065b724171c6) D:\WINDOWS\system32\drivers\PartMgr.sys
2010/09/24 20:32:24.0078 ParVdm (9575c5630db8fb804649a6959737154c) D:\WINDOWS\system32\drivers\ParVdm.sys
2010/09/24 20:32:24.0125 PCI (043410877bda580c528f45165f7125bc) D:\WINDOWS\system32\DRIVERS\pci.sys
2010/09/24 20:32:24.0218 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) D:\WINDOWS\system32\DRIVERS\pciide.sys
2010/09/24 20:32:24.0281 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) D:\WINDOWS\system32\drivers\Pcmcia.sys
2010/09/24 20:32:24.0500 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) D:\WINDOWS\system32\DRIVERS\raspptp.sys
2010/09/24 20:32:24.0578 PSched (09298ec810b07e5d582cb3a3f9255424) D:\WINDOWS\system32\DRIVERS\psched.sys
2010/09/24 20:32:24.0609 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) D:\WINDOWS\system32\DRIVERS\ptilink.sys
2010/09/24 20:32:24.0687 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) D:\WINDOWS\system32\Drivers\PxHelp20.sys
2010/09/24 20:32:24.0796 QCMerced (9a155d31b8e52f41b258282092cc93a7) D:\WINDOWS\system32\DRIVERS\LVCM.sys
2010/09/24 20:32:24.0984 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) D:\WINDOWS\system32\DRIVERS\rasacd.sys
2010/09/24 20:32:25.0046 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) D:\WINDOWS\system32\DRIVERS\rasl2tp.sys
2010/09/24 20:32:25.0093 RasPppoe (5bc962f2654137c9909c3d4603587dee) D:\WINDOWS\system32\DRIVERS\raspppoe.sys
2010/09/24 20:32:25.0156 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) D:\WINDOWS\system32\DRIVERS\raspti.sys
2010/09/24 20:32:25.0234 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) D:\WINDOWS\system32\DRIVERS\rdbss.sys
2010/09/24 20:32:25.0281 RDPCDD (4912d5b403614ce99c28420f75353332) D:\WINDOWS\system32\DRIVERS\RDPCDD.sys
2010/09/24 20:32:25.0328 rdpdr (15cabd0f7c00c47c70124907916af3f1) D:\WINDOWS\system32\DRIVERS\rdpdr.sys
2010/09/24 20:32:25.0390 RDPWD (6728e45b66f93c08f11de2e316fc70dd) D:\WINDOWS\system32\drivers\RDPWD.sys
2010/09/24 20:32:25.0421 redbook (d8eb2a7904db6c916eb5361878ddcbae) D:\WINDOWS\system32\DRIVERS\redbook.sys
2010/09/24 20:32:25.0500 Secdrv (90a3935d05b494a5a39d37e71f09a677) D:\WINDOWS\system32\DRIVERS\secdrv.sys
2010/09/24 20:32:25.0546 serenum (0f29512ccd6bead730039fb4bd2c85ce) D:\WINDOWS\system32\DRIVERS\serenum.sys
2010/09/24 20:32:25.0578 Serial (93d313c31f7ad9ea2b75f26075413c7c) D:\WINDOWS\system32\DRIVERS\serial.sys
2010/09/24 20:32:25.0640 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) D:\WINDOWS\system32\drivers\Sfloppy.sys
2010/09/24 20:32:25.0734 SLIP (866d538ebe33709a5c9f5c62b73b7d14) D:\WINDOWS\system32\DRIVERS\SLIP.sys
2010/09/24 20:32:25.0828 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) D:\WINDOWS\system32\drivers\splitter.sys
2010/09/24 20:32:25.0890 sr (39626e6dc1fb39434ec40c42722b660a) D:\WINDOWS\system32\DRIVERS\sr.sys
2010/09/24 20:32:25.0937 Srv (da852e3e0bf1cea75d756f9866241e57) D:\WINDOWS\system32\DRIVERS\srv.sys
2010/09/24 20:32:26.0015 streamip (77813007ba6265c4b6098187e6ed79d2) D:\WINDOWS\system32\DRIVERS\StreamIP.sys
2010/09/24 20:32:26.0078 swenum (3941d127aef12e93addf6fe6ee027e0f) D:\WINDOWS\system32\DRIVERS\swenum.sys
2010/09/24 20:32:26.0093 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) D:\WINDOWS\system32\drivers\swmidi.sys
2010/09/24 20:32:26.0281 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) D:\WINDOWS\system32\drivers\sysaudio.sys
2010/09/24 20:32:26.0375 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) D:\WINDOWS\system32\DRIVERS\tcpip.sys
2010/09/24 20:32:26.0406 TDPIPE (6471a66807f5e104e4885f5b67349397) D:\WINDOWS\system32\drivers\TDPIPE.sys
2010/09/24 20:32:26.0468 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) D:\WINDOWS\system32\drivers\TDTCP.sys
2010/09/24 20:32:26.0531 TermDD (88155247177638048422893737429d9e) D:\WINDOWS\system32\DRIVERS\termdd.sys
2010/09/24 20:32:26.0656 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) D:\WINDOWS\system32\drivers\Udfs.sys
2010/09/24 20:32:26.0734 Update (402ddc88356b1bac0ee3dd1580c76a31) D:\WINDOWS\system32\DRIVERS\update.sys
2010/09/24 20:32:26.0781 USBAAPL (026f7f224f088ee11e383bca448fff81) D:\WINDOWS\system32\Drivers\usbaapl.sys
2010/09/24 20:32:26.0875 usbaudio (e919708db44ed8543a7c017953148330) D:\WINDOWS\system32\drivers\usbaudio.sys
2010/09/24 20:32:26.0937 usbccgp (173f317ce0db8e21322e71b7e60a27e8) D:\WINDOWS\system32\DRIVERS\usbccgp.sys
2010/09/24 20:32:26.0968 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) D:\WINDOWS\system32\DRIVERS\usbehci.sys
2010/09/24 20:32:27.0000 usbhub (1ab3cdde553b6e064d2e754efe20285c) D:\WINDOWS\system32\DRIVERS\usbhub.sys
2010/09/24 20:32:27.0046 usbohci (0daecce65366ea32b162f85f07c6753b) D:\WINDOWS\system32\DRIVERS\usbohci.sys
2010/09/24 20:32:27.0109 usbprint (a717c8721046828520c9edf31288fc00) D:\WINDOWS\system32\DRIVERS\usbprint.sys
2010/09/24 20:32:27.0171 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) D:\WINDOWS\system32\DRIVERS\usbscan.sys
2010/09/24 20:32:27.0234 usbstor (a32426d9b14a089eaa1d922e0c5801a9) D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
2010/09/24 20:32:27.0265 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) D:\WINDOWS\System32\drivers\vga.sys
2010/09/24 20:32:27.0359 VolSnap (46de1126684369bace4849e4fc8c43ca) D:\WINDOWS\system32\drivers\VolSnap.sys
2010/09/24 20:32:27.0437 W8335XP (7455b3c11a1d6a844b53febdb58646e9) D:\WINDOWS\system32\DRIVERS\WG311v3XP.sys
2010/09/24 20:32:27.0484 Wanarp (e20b95baedb550f32dd489265c1da1f6) D:\WINDOWS\system32\DRIVERS\wanarp.sys
2010/09/24 20:32:27.0578 Wdf01000 (fd47474bd21794508af449d9d91af6e6) D:\WINDOWS\system32\DRIVERS\Wdf01000.sys
2010/09/24 20:32:27.0656 wdmaud (6768acf64b18196494413695f0c3a00f) D:\WINDOWS\system32\drivers\wdmaud.sys
2010/09/24 20:32:27.0781 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) D:\WINDOWS\System32\drivers\ws2ifsl.sys
2010/09/24 20:32:27.0843 WSTCODEC (c98b39829c2bbd34e454150633c62c78) D:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
2010/09/24 20:32:27.0968 WUSBVBus (c0dddfb1719b5d58001a7054d6fd0fe2) D:\WINDOWS\system32\DRIVERS\mfpvbus.sys
2010/09/24 20:32:28.0031 ZTEusbmdm6k (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys
2010/09/24 20:32:28.0062 ZTEusbnet (911ba85906bc7602c73441502abfb565) D:\WINDOWS\system32\DRIVERS\ZTEusbnet.sys
2010/09/24 20:32:28.0109 ZTEusbnmea (69774b89725ddc4781e0eeb9809f3b20) D:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys
2010/09/24 20:32:28.0140 ZTEusbser6k (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys
2010/09/24 20:32:28.0171 ZTEusbvoice (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbvoice.sys
2010/09/24 20:32:28.0296 ================================================================================
2010/09/24 20:32:28.0296 Scan finished
2010/09/24 20:32:28.0296 =====================================
0
H3RV3 Messages postés 3591 Date d'inscription samedi 17 octobre 2009 Statut Contributeur sécurité Dernière intervention 7 novembre 2014 280
24 sept. 2010 à 20:36
OK, la suite :

Tu as une Toolbar infectieuse (Askbar). Les Toolbars sont généralement proposées en accompagnement d'autres logiciels à leur installation.
Quand tu installes un logiciel, prends le temps de lire les options d'installation et décoche les programmes additionnels inutiles (ne clique pas bêtement sur "suivant").


● Télécharge et enregistre le fichier sur ton bureau Ad-Remover

● Double clique sur AD-R.exe

● Au menu principal choisis l'option "Nettoyer"

● Patiente pendant que l'outil fait son travail

● Un rapport va s'ouvrir, copie/colle le dans ta réponse

Le rapport est sauvegardé dans C:\Ad-report.log

Note : Ad-Remover peut être détecté à tort par certains antivirus, ignore l'alerte.
0
doriaz Messages postés 13 Date d'inscription mercredi 22 septembre 2010 Statut Membre Dernière intervention 26 septembre 2010
24 sept. 2010 à 20:52
D'accord , Vois je.
Je colle le rapport :
RAPPORT ======= D' AD -Remover 2.0.0.1 , F | UNIQUEMENT XP/Vista/7 =======

Mis à par jour C_XX le 16/09/10 à 13:30
Contact : AdRemover.contact [ AT] gmail.com
Site web : http://www.teamxscript.org

D : \ Program Files \ Ad- Remover \ Main.exe ( SCAN [1 ] ) - > lance un 20:49:23 le 24/09/2010 , le mode normal

Microsoft XP Windows Professionnel Service Pack 3 ( X86 )
Imre @ TOTH ()

============== RECHERCHE ==============



0, Clé trouvée : HKCU \ Software \ Conduit


============== SCAN additionnel ==============

Version ** Firefox Mozilla [ 3.0.16 ( fr ) ] **

- D : \ Documents and Settings \ Imre \ Application Data \ Mozilla \ Firefox \ Profiles \ nqnpmvtt.default \ prefs.js -
browser.download.lastDir , J :
browser.search.defaulturl , hxxp : / / search.live.com / results.aspx FORM = IEFM1 & q =
browser.startup.homepage , hxxp : / / www.google.fr/
rv browser.startup.homepage_override.mstone , : 1.9.0.15

========================================

** Version Internet Explorer [ 8.0.6001.18702 ] **

[ HKCU \ Software \ Microsoft \ Internet Explorer \ Main ]
AutoHide : oui
Default_Page_URL : hxxp : / / www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL : hxxp : / / www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Do404Search : 0x01000000
les extensions du navigateur Activer : oui
Local Page : D : \ WINDOWS \ system32 \ blank.htm
Barre de recherche : hxxp : / / go.microsoft.com / fwlink / LinkId = 54896 ?
Show_ToolBar : oui
Start Page : hxxp : / / fr.msn.com /
Adjoint de recherche Utilisation: aucune

[ HKLM \ Software \ Microsoft \ Internet Explorer \ Main ]
Default_Page_URL : hxxp : / / go.microsoft.com / fwlink / LinkId = 54896 ?
Default_Search_URL : hxxp : / / www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit : oui
Local Page : D : \ WINDOWS \ system32 \ blank.htm
Barre de recherche : hxxp : / / search.msn.com / spbasic.htm
Recherche Page : hxxp : / / www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page : hxxp : / / fr.msn.com /

[ HKLM \ Software \ Microsoft \ Internet Explorer \ ABOUTURLS ]
Tabs: res: / / ieframe.dll / tabswelcome.htm
Blank : res: / / mshtml.dll / blank.htm

========================================

\ Program Files \ Ad- Remover \ Quarantine : : D 257 Fichier (s )
\ Program Files \ Ad- Remover \ Backup : : D 14 Fichier (s )

. D : \ Ad -Report- Clean [ 1] txt - 24/09/2010 ( 20 312 octets ( s))
. D : \ Ad -Report- SCAN [1 ] txt - 24/09/2010 (2041 Octet ( s))

Fin à : 20:51:19 , 24/09/2010

============== E.O.F ==============
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
H3RV3 Messages postés 3591 Date d'inscription samedi 17 octobre 2009 Statut Contributeur sécurité Dernière intervention 7 novembre 2014 280
Modifié par H3RV3 le 24/09/2010 à 21:27
Tu n'as pas posté le bon rapport, merci de copier/coller le contenu de ce fichier ==> D:\Ad -Report- Clean [ 1] txt

PS : coucou à MDG et kalimusic :)


Merci de rester jusqu'à la fin de la désinfection.
0
doriaz Messages postés 13 Date d'inscription mercredi 22 septembre 2010 Statut Membre Dernière intervention 26 septembre 2010
24 sept. 2010 à 23:18
2010/09/24 20:12:16.0015 TDSS rootkit removing tool 2.4.2.1 Sep 7 2010 14:43:44
2010/09/24 20:12:16.0015 ================================================================================
2010/09/24 20:12:16.0015 SystemInfo:
2010/09/24 20:12:16.0015
2010/09/24 20:12:16.0015 OS Version: 5.1.2600 ServicePack: 3.0
2010/09/24 20:12:16.0015 Product type: Workstation
2010/09/24 20:12:16.0015 ComputerName: TOTH
2010/09/24 20:12:16.0015 UserName: Imre
2010/09/24 20:12:16.0015 Windows directory: D:\WINDOWS
2010/09/24 20:12:16.0015 System windows directory: D:\WINDOWS
2010/09/24 20:12:16.0015 Processor architecture: Intel x86
2010/09/24 20:12:16.0015 Number of processors: 1
2010/09/24 20:12:16.0015 Page size: 0x1000
2010/09/24 20:12:16.0015 Boot type: Normal boot
2010/09/24 20:12:16.0015 ================================================================================
2010/09/24 20:12:16.0437 Initialize success
2010/09/24 20:12:43.0140 ================================================================================
2010/09/24 20:12:43.0140 Scan started
2010/09/24 20:12:43.0140 Mode: Manual;
2010/09/24 20:12:43.0140 ================================================================================
2010/09/24 20:12:43.0890 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) D:\WINDOWS\system32\DRIVERS\ACPI.sys
2010/09/24 20:12:43.0968 ACPIEC (e4abc1212b70bb03d35e60681c447210) D:\WINDOWS\system32\drivers\ACPIEC.sys
2010/09/24 20:12:44.0031 aec (8bed39e3c35d6a489438b8141717a557) D:\WINDOWS\system32\drivers\aec.sys
2010/09/24 20:12:44.0093 AFD (7e775010ef291da96ad17ca4b17137d7) D:\WINDOWS\System32\drivers\afd.sys
2010/09/24 20:12:44.0406 ALCXWDM (34149a136b2b7525113950233f259ec1) D:\WINDOWS\system32\drivers\ALCXWDM.SYS
2010/09/24 20:12:44.0515 ALIWEHCD (a570dbb0618a19b4fa214cb38265294a) D:\WINDOWS\system32\Drivers\mfpec.sys
2010/09/24 20:12:44.0718 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) D:\WINDOWS\system32\DRIVERS\asyncmac.sys
2010/09/24 20:12:44.0781 atapi (9f3a2f5aa6875c72bf062c712cfa2674) D:\WINDOWS\system32\DRIVERS\atapi.sys
2010/09/24 20:12:45.0156 ati2mtag (15b2fe76e2eceb98c49ed52311a6f26f) D:\WINDOWS\system32\DRIVERS\ati2mtag.sys
2010/09/24 20:12:45.0218 Atmarpc (9916c1225104ba14794209cfa8012159) D:\WINDOWS\system32\DRIVERS\atmarpc.sys
2010/09/24 20:12:45.0312 audstub (d9f724aa26c010a217c97606b160ed68) D:\WINDOWS\system32\DRIVERS\audstub.sys
2010/09/24 20:12:45.0421 Beep (da1f27d85e0d1525f6621372e7b685e9) D:\WINDOWS\system32\drivers\Beep.sys
2010/09/24 20:12:45.0500 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) D:\WINDOWS\system32\drivers\cbidf2k.sys
2010/09/24 20:12:45.0546 CCDECODE (0be5aef125be881c4f854c554f2b025c) D:\WINDOWS\system32\DRIVERS\CCDECODE.sys
2010/09/24 20:12:45.0609 Cdaudio (c1b486a7658353d33a10cc15211a873b) D:\WINDOWS\system32\drivers\Cdaudio.sys
2010/09/24 20:12:45.0656 Cdfs (c885b02847f5d2fd45a24e219ed93b32) D:\WINDOWS\system32\drivers\Cdfs.sys
2010/09/24 20:12:45.0687 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) D:\WINDOWS\system32\DRIVERS\cdrom.sys
2010/09/24 20:12:45.0937 Disk (044452051f3e02e7963599fc8f4f3e25) D:\WINDOWS\system32\DRIVERS\disk.sys
2010/09/24 20:12:46.0000 dmboot (f5deadd42335fb33edca74ecb2f36cba) D:\WINDOWS\system32\drivers\dmboot.sys
2010/09/24 20:12:46.0031 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) D:\WINDOWS\system32\drivers\dmio.sys
2010/09/24 20:12:46.0093 dmload (e9317282a63ca4d188c0df5e09c6ac5f) D:\WINDOWS\system32\drivers\dmload.sys
2010/09/24 20:12:46.0156 DMusic (8a208dfcf89792a484e76c40e5f50b45) D:\WINDOWS\system32\drivers\DMusic.sys
2010/09/24 20:12:46.0203 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) D:\WINDOWS\system32\drivers\drmkaud.sys
2010/09/24 20:12:46.0296 eamon (1b5ca1caffc594bd37dcc8d7ef849e0b) D:\WINDOWS\system32\DRIVERS\eamon.sys
2010/09/24 20:12:46.0390 ehdrv (a4241545ecff3ee97041847d83936e1f) D:\WINDOWS\system32\DRIVERS\ehdrv.sys
2010/09/24 20:12:46.0437 epfwtdir (367a97a632ec5e8521f68ffa2c700610) D:\WINDOWS\system32\DRIVERS\epfwtdir.sys
2010/09/24 20:12:46.0515 Fastfat (38d332a6d56af32635675f132548343e) D:\WINDOWS\system32\drivers\Fastfat.sys
2010/09/24 20:12:46.0546 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) D:\WINDOWS\system32\DRIVERS\fdc.sys
2010/09/24 20:12:46.0609 Fips (31f923eb2170fc172c81abda0045d18c) D:\WINDOWS\system32\drivers\Fips.sys
2010/09/24 20:12:46.0671 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) D:\WINDOWS\system32\DRIVERS\flpydisk.sys
2010/09/24 20:12:46.0734 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) D:\WINDOWS\system32\drivers\fltmgr.sys
2010/09/24 20:12:46.0812 fssfltr (c6ee3a87fe609d3e1db9dbd072a248de) D:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
2010/09/24 20:12:46.0875 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) D:\WINDOWS\system32\drivers\Fs_Rec.sys
2010/09/24 20:12:46.0906 Ftdisk (a86859b77b908c18c2657f284aa29fe3) D:\WINDOWS\system32\DRIVERS\ftdisk.sys
2010/09/24 20:12:46.0984 GEARAspiWDM (f2f431d1573ee632975c524418655b84) D:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
2010/09/24 20:12:47.0031 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) D:\WINDOWS\system32\DRIVERS\msgpc.sys
2010/09/24 20:12:47.0062 Suspicious service (NoAccess): H8SRTd.sys
2010/09/24 20:12:47.0078 H8SRTd.sys - detected Rootkit.Win32.TDSS.tdl2 (0)
2010/09/24 20:12:47.0156 HCWBT8xx (e4aef0daacbe59b048be0224a6d0e601) D:\WINDOWS\system32\drivers\HCWBT8XX.sys
2010/09/24 20:12:47.0218 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) D:\WINDOWS\system32\DRIVERS\hidusb.sys
2010/09/24 20:12:47.0328 HTTP (f80a415ef82cd06ffaf0d971528ead38) D:\WINDOWS\system32\Drivers\HTTP.sys
2010/09/24 20:12:47.0437 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) D:\WINDOWS\system32\DRIVERS\i8042prt.sys
2010/09/24 20:12:47.0500 Imapi (083a052659f5310dd8b6a6cb05edcf8e) D:\WINDOWS\system32\DRIVERS\imapi.sys
2010/09/24 20:12:47.0656 intelppm (ad340800c35a42d4de1641a37feea34c) D:\WINDOWS\system32\DRIVERS\intelppm.sys
2010/09/24 20:12:47.0703 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) D:\WINDOWS\system32\drivers\ip6fw.sys
2010/09/24 20:12:47.0750 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) D:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
2010/09/24 20:12:47.0796 IpInIp (b87ab476dcf76e72010632b5550955f5) D:\WINDOWS\system32\DRIVERS\ipinip.sys
2010/09/24 20:12:47.0859 IpNat (cc748ea12c6effde940ee98098bf96bb) D:\WINDOWS\system32\DRIVERS\ipnat.sys
2010/09/24 20:12:47.0921 IPSec (23c74d75e36e7158768dd63d92789a91) D:\WINDOWS\system32\DRIVERS\ipsec.sys
2010/09/24 20:12:47.0968 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) D:\WINDOWS\system32\DRIVERS\irenum.sys
2010/09/24 20:12:48.0046 isapnp (355836975a67b6554bca60328cd6cb74) D:\WINDOWS\system32\DRIVERS\isapnp.sys
2010/09/24 20:12:48.0109 Kbdclass (16813155807c6881f4bfbf6657424659) D:\WINDOWS\system32\DRIVERS\kbdclass.sys
2010/09/24 20:12:48.0187 kbdhid (94c59cb884ba010c063687c3a50dce8e) D:\WINDOWS\system32\DRIVERS\kbdhid.sys
2010/09/24 20:12:48.0250 kmixer (692bcf44383d056aed41b045a323d378) D:\WINDOWS\system32\drivers\kmixer.sys
2010/09/24 20:12:48.0312 KSecDD (b467646c54cc746128904e1654c750c1) D:\WINDOWS\system32\drivers\KSecDD.sys
2010/09/24 20:12:48.0406 LVUSBSta (c5efbd05a5195402121711a6ebbb271f) D:\WINDOWS\system32\drivers\lvusbsta.sys
2010/09/24 20:12:48.0468 massfilter (f0435fe3c1ec2659d2bbf073ca0752ee) D:\WINDOWS\system32\drivers\massfilter.sys
2010/09/24 20:12:48.0531 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) D:\WINDOWS\system32\drivers\mnmdd.sys
2010/09/24 20:12:48.0625 Modem (510ade9327fe84c10254e1902697e25f) D:\WINDOWS\system32\drivers\Modem.sys
2010/09/24 20:12:48.0656 Mouclass (027c01bd7ef3349aaebc883d8a799efb) D:\WINDOWS\system32\DRIVERS\mouclass.sys
2010/09/24 20:12:48.0703 mouhid (124d6846040c79b9c997f78ef4b2a4e5) D:\WINDOWS\system32\DRIVERS\mouhid.sys
2010/09/24 20:12:48.0750 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) D:\WINDOWS\system32\drivers\MountMgr.sys
2010/09/24 20:12:48.0812 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) D:\WINDOWS\system32\DRIVERS\mrxdav.sys
2010/09/24 20:12:48.0968 MRxSmb (f3aefb11abc521122b67095044169e98) D:\WINDOWS\system32\DRIVERS\mrxsmb.sys
2010/09/24 20:12:49.0031 Msfs (c941ea2454ba8350021d774daf0f1027) D:\WINDOWS\system32\drivers\Msfs.sys
2010/09/24 20:12:49.0062 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) D:\WINDOWS\system32\drivers\MSKSSRV.sys
2010/09/24 20:12:49.0140 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) D:\WINDOWS\system32\drivers\MSPCLOCK.sys
2010/09/24 20:12:49.0187 MSPQM (bad59648ba099da4a17680b39730cb3d) D:\WINDOWS\system32\drivers\MSPQM.sys
2010/09/24 20:12:49.0250 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) D:\WINDOWS\system32\DRIVERS\mssmbios.sys
2010/09/24 20:12:49.0296 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) D:\WINDOWS\system32\drivers\MSTEE.sys
2010/09/24 20:12:49.0390 Mup (2f625d11385b1a94360bfc70aaefdee1) D:\WINDOWS\system32\drivers\Mup.sys
2010/09/24 20:12:49.0421 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) D:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
2010/09/24 20:12:49.0468 NDIS (1df7f42665c94b825322fae71721130d) D:\WINDOWS\system32\drivers\NDIS.sys
2010/09/24 20:12:49.0515 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) D:\WINDOWS\system32\DRIVERS\NdisIP.sys
2010/09/24 20:12:49.0562 NdisTapi (1ab3d00c991ab086e69db84b6c0ed78f) D:\WINDOWS\system32\DRIVERS\ndistapi.sys
2010/09/24 20:12:49.0625 Ndisuio (f927a4434c5028758a842943ef1a3849) D:\WINDOWS\system32\DRIVERS\ndisuio.sys
2010/09/24 20:12:49.0671 NdisWan (edc1531a49c80614b2cfda43ca8659ab) D:\WINDOWS\system32\DRIVERS\ndiswan.sys
2010/09/24 20:12:49.0718 NDProxy (6215023940cfd3702b46abc304e1d45a) D:\WINDOWS\system32\drivers\NDProxy.sys
2010/09/24 20:12:49.0765 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) D:\WINDOWS\system32\DRIVERS\netbios.sys
2010/09/24 20:12:49.0812 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) D:\WINDOWS\system32\DRIVERS\netbt.sys
2010/09/24 20:12:49.0875 Npfs (3182d64ae053d6fb034f44b6def8034a) D:\WINDOWS\system32\drivers\Npfs.sys
2010/09/24 20:12:49.0937 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) D:\WINDOWS\system32\drivers\Ntfs.sys
2010/09/24 20:12:50.0046 NuidFltr (cf7e041663119e09d2e118521ada9300) D:\WINDOWS\system32\DRIVERS\NuidFltr.sys
2010/09/24 20:12:50.0109 Null (73c1e1f395918bc2c6dd67af7591a3ad) D:\WINDOWS\system32\drivers\Null.sys
2010/09/24 20:12:50.0125 NVENETFD (3f09e5118d1ab379d028d511e45c6155) D:\WINDOWS\system32\DRIVERS\NVENETFD.sys
2010/09/24 20:12:50.0171 nvnetbus (77c63a663b88fe327d71dd8e0a0f19b6) D:\WINDOWS\system32\DRIVERS\nvnetbus.sys
2010/09/24 20:12:50.0234 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) D:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
2010/09/24 20:12:50.0265 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) D:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
2010/09/24 20:12:50.0312 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) D:\WINDOWS\system32\DRIVERS\parport.sys
2010/09/24 20:12:50.0375 PartMgr (beb3ba25197665d82ec7065b724171c6) D:\WINDOWS\system32\drivers\PartMgr.sys
2010/09/24 20:12:50.0390 ParVdm (9575c5630db8fb804649a6959737154c) D:\WINDOWS\system32\drivers\ParVdm.sys
2010/09/24 20:12:50.0468 PCI (043410877bda580c528f45165f7125bc) D:\WINDOWS\system32\DRIVERS\pci.sys
2010/09/24 20:12:50.0562 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) D:\WINDOWS\system32\DRIVERS\pciide.sys
2010/09/24 20:12:50.0625 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) D:\WINDOWS\system32\drivers\Pcmcia.sys
2010/09/24 20:12:50.0875 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) D:\WINDOWS\system32\DRIVERS\raspptp.sys
2010/09/24 20:12:50.0921 PSched (09298ec810b07e5d582cb3a3f9255424) D:\WINDOWS\system32\DRIVERS\psched.sys
2010/09/24 20:12:50.0968 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) D:\WINDOWS\system32\DRIVERS\ptilink.sys
2010/09/24 20:12:51.0031 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) D:\WINDOWS\system32\Drivers\PxHelp20.sys
2010/09/24 20:12:51.0140 QCMerced (9a155d31b8e52f41b258282092cc93a7) D:\WINDOWS\system32\DRIVERS\LVCM.sys
2010/09/24 20:12:51.0328 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) D:\WINDOWS\system32\DRIVERS\rasacd.sys
2010/09/24 20:12:51.0375 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) D:\WINDOWS\system32\DRIVERS\rasl2tp.sys
2010/09/24 20:12:51.0406 RasPppoe (5bc962f2654137c9909c3d4603587dee) D:\WINDOWS\system32\DRIVERS\raspppoe.sys
2010/09/24 20:12:51.0421 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) D:\WINDOWS\system32\DRIVERS\raspti.sys
2010/09/24 20:12:51.0468 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) D:\WINDOWS\system32\DRIVERS\rdbss.sys
2010/09/24 20:12:51.0500 RDPCDD (4912d5b403614ce99c28420f75353332) D:\WINDOWS\system32\DRIVERS\RDPCDD.sys
2010/09/24 20:12:51.0578 rdpdr (15cabd0f7c00c47c70124907916af3f1) D:\WINDOWS\system32\DRIVERS\rdpdr.sys
2010/09/24 20:12:51.0640 RDPWD (6728e45b66f93c08f11de2e316fc70dd) D:\WINDOWS\system32\drivers\RDPWD.sys
2010/09/24 20:12:51.0671 redbook (d8eb2a7904db6c916eb5361878ddcbae) D:\WINDOWS\system32\DRIVERS\redbook.sys
2010/09/24 20:12:51.0750 Secdrv (90a3935d05b494a5a39d37e71f09a677) D:\WINDOWS\system32\DRIVERS\secdrv.sys
2010/09/24 20:12:51.0796 serenum (0f29512ccd6bead730039fb4bd2c85ce) D:\WINDOWS\system32\DRIVERS\serenum.sys
2010/09/24 20:12:51.0859 Serial (93d313c31f7ad9ea2b75f26075413c7c) D:\WINDOWS\system32\DRIVERS\serial.sys
2010/09/24 20:12:51.0906 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) D:\WINDOWS\system32\drivers\Sfloppy.sys
2010/09/24 20:12:52.0031 SLIP (866d538ebe33709a5c9f5c62b73b7d14) D:\WINDOWS\system32\DRIVERS\SLIP.sys
2010/09/24 20:12:52.0125 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) D:\WINDOWS\system32\drivers\splitter.sys
2010/09/24 20:12:52.0203 sr (39626e6dc1fb39434ec40c42722b660a) D:\WINDOWS\system32\DRIVERS\sr.sys
2010/09/24 20:12:52.0281 Srv (da852e3e0bf1cea75d756f9866241e57) D:\WINDOWS\system32\DRIVERS\srv.sys
2010/09/24 20:12:52.0359 streamip (77813007ba6265c4b6098187e6ed79d2) D:\WINDOWS\system32\DRIVERS\StreamIP.sys
2010/09/24 20:12:52.0375 swenum (3941d127aef12e93addf6fe6ee027e0f) D:\WINDOWS\system32\DRIVERS\swenum.sys
2010/09/24 20:12:52.0390 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) D:\WINDOWS\system32\drivers\swmidi.sys
2010/09/24 20:12:52.0546 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) D:\WINDOWS\system32\drivers\sysaudio.sys
2010/09/24 20:12:52.0625 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) D:\WINDOWS\system32\DRIVERS\tcpip.sys
2010/09/24 20:12:52.0656 TDPIPE (6471a66807f5e104e4885f5b67349397) D:\WINDOWS\system32\drivers\TDPIPE.sys
2010/09/24 20:12:52.0718 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) D:\WINDOWS\system32\drivers\TDTCP.sys
2010/09/24 20:12:52.0781 TermDD (88155247177638048422893737429d9e) D:\WINDOWS\system32\DRIVERS\termdd.sys
2010/09/24 20:12:52.0906 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) D:\WINDOWS\system32\drivers\Udfs.sys
2010/09/24 20:12:53.0015 Update (402ddc88356b1bac0ee3dd1580c76a31) D:\WINDOWS\system32\DRIVERS\update.sys
2010/09/24 20:12:53.0125 USBAAPL (026f7f224f088ee11e383bca448fff81) D:\WINDOWS\system32\Drivers\usbaapl.sys
2010/09/24 20:12:53.0203 usbaudio (e919708db44ed8543a7c017953148330) D:\WINDOWS\system32\drivers\usbaudio.sys
2010/09/24 20:12:53.0265 usbccgp (173f317ce0db8e21322e71b7e60a27e8) D:\WINDOWS\system32\DRIVERS\usbccgp.sys
2010/09/24 20:12:53.0328 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) D:\WINDOWS\system32\DRIVERS\usbehci.sys
2010/09/24 20:12:53.0390 usbhub (1ab3cdde553b6e064d2e754efe20285c) D:\WINDOWS\system32\DRIVERS\usbhub.sys
2010/09/24 20:12:53.0468 usbohci (0daecce65366ea32b162f85f07c6753b) D:\WINDOWS\system32\DRIVERS\usbohci.sys
2010/09/24 20:12:53.0500 usbprint (a717c8721046828520c9edf31288fc00) D:\WINDOWS\system32\DRIVERS\usbprint.sys
2010/09/24 20:12:53.0562 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) D:\WINDOWS\system32\DRIVERS\usbscan.sys
2010/09/24 20:12:53.0625 usbstor (a32426d9b14a089eaa1d922e0c5801a9) D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
2010/09/24 20:12:53.0671 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) D:\WINDOWS\System32\drivers\vga.sys
2010/09/24 20:12:53.0750 VolSnap (46de1126684369bace4849e4fc8c43ca) D:\WINDOWS\system32\drivers\VolSnap.sys
2010/09/24 20:12:53.0843 W8335XP (7455b3c11a1d6a844b53febdb58646e9) D:\WINDOWS\system32\DRIVERS\WG311v3XP.sys
2010/09/24 20:12:53.0875 Wanarp (e20b95baedb550f32dd489265c1da1f6) D:\WINDOWS\system32\DRIVERS\wanarp.sys
2010/09/24 20:12:53.0953 Wdf01000 (fd47474bd21794508af449d9d91af6e6) D:\WINDOWS\system32\DRIVERS\Wdf01000.sys
2010/09/24 20:12:54.0062 wdmaud (6768acf64b18196494413695f0c3a00f) D:\WINDOWS\system32\drivers\wdmaud.sys
2010/09/24 20:12:54.0171 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) D:\WINDOWS\System32\drivers\ws2ifsl.sys
2010/09/24 20:12:54.0234 WSTCODEC (c98b39829c2bbd34e454150633c62c78) D:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
2010/09/24 20:12:54.0296 WUSBVBus (c0dddfb1719b5d58001a7054d6fd0fe2) D:\WINDOWS\system32\DRIVERS\mfpvbus.sys
2010/09/24 20:12:54.0375 ZTEusbmdm6k (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys
2010/09/24 20:12:54.0437 ZTEusbnet (911ba85906bc7602c73441502abfb565) D:\WINDOWS\system32\DRIVERS\ZTEusbnet.sys
2010/09/24 20:12:54.0468 ZTEusbnmea (69774b89725ddc4781e0eeb9809f3b20) D:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys
2010/09/24 20:12:54.0531 ZTEusbser6k (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys
2010/09/24 20:12:54.0593 ZTEusbvoice (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbvoice.sys
2010/09/24 20:12:54.0703 ================================================================================
2010/09/24 20:12:54.0703 Scan finished
2010/09/24 20:12:54.0703 ================================================================================
2010/09/24 20:12:54.0718 Detected object count: 1
2010/09/24 20:12:59.0515 D:\WINDOWS\system32\drivers\H8SRTirxuhdvdxt.sys - will be deleted after reboot
2010/09/24 20:12:59.0515 D:\WINDOWS\system32\H8SRTpskducdqba.dll - will be deleted after reboot
2010/09/24 20:12:59.0515 D:\WINDOWS\system32\H8SRTivliodllat.dat - will be deleted after reboot
2010/09/24 20:12:59.0515 D:\WINDOWS\system32\H8SRTqpkcvjbcrm.dll - will be deleted after reboot
2010/09/24 20:12:59.0515 D:\WINDOWS\system32\H8SRTviemhlwhop.dll - will be deleted after reboot
2010/09/24 20:12:59.0515 HKLM\SYSTEM\ControlSet001\services\H8SRTd.sys - will be deleted after reboot
2010/09/24 20:12:59.0515 HKLM\SYSTEM\ControlSet003\services\H8SRTd.sys - will be deleted after reboot
2010/09/24 20:12:59.0515 D:\WINDOWS\system32\drivers\H8SRTirxuhdvdxt.sys - will be deleted after reboot
2010/09/24 20:12:59.0515 Rootkit.Win32.TDSS.tdl2(H8SRTd.sys) - User select action: Delete
2010/09/24 20:13:21.0343 Deinitialize success
2010/09/24 20:31:20.0171 TDSS rootkit removing tool 2.4.2.1 Sep 7 2010 14:43:44
2010/09/24 20:31:20.0171 ================================================================================
2010/09/24 20:31:20.0171 SystemInfo:
2010/09/24 20:31:20.0171
2010/09/24 20:31:20.0171 OS Version: 5.1.2600 ServicePack: 3.0
2010/09/24 20:31:20.0171 Product type: Workstation
2010/09/24 20:31:20.0171 ComputerName: TOTH
2010/09/24 20:31:20.0171 UserName: Imre
2010/09/24 20:31:20.0171 Windows directory: D:\WINDOWS
2010/09/24 20:31:20.0171 System windows directory: D:\WINDOWS
2010/09/24 20:31:20.0171 Processor architecture: Intel x86
2010/09/24 20:31:20.0171 Number of processors: 1
2010/09/24 20:31:20.0171 Page size: 0x1000
2010/09/24 20:31:20.0171 Boot type: Normal boot
2010/09/24 20:31:20.0171 ================================================================================
2010/09/24 20:31:20.0687 Initialize success
2010/09/24 20:31:23.0359 ================================================================================
2010/09/24 20:31:23.0359 Scan started
2010/09/24 20:31:23.0359 Mode: Manual;
2010/09/24 20:31:23.0359 ================================================================================
2010/09/24 20:31:43.0218 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) D:\WINDOWS\system32\DRIVERS\ACPI.sys
2010/09/24 20:31:43.0312 ACPIEC (e4abc1212b70bb03d35e60681c447210) D:\WINDOWS\system32\drivers\ACPIEC.sys
2010/09/24 20:31:43.0390 aec (8bed39e3c35d6a489438b8141717a557) D:\WINDOWS\system32\drivers\aec.sys
2010/09/24 20:31:43.0437 AFD (7e775010ef291da96ad17ca4b17137d7) D:\WINDOWS\System32\drivers\afd.sys
2010/09/24 20:31:43.0953 ALCXWDM (34149a136b2b7525113950233f259ec1) D:\WINDOWS\system32\drivers\ALCXWDM.SYS
2010/09/24 20:31:44.0140 ALIWEHCD (a570dbb0618a19b4fa214cb38265294a) D:\WINDOWS\system32\Drivers\mfpec.sys
2010/09/24 20:31:44.0343 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) D:\WINDOWS\system32\DRIVERS\asyncmac.sys
2010/09/24 20:31:44.0406 atapi (9f3a2f5aa6875c72bf062c712cfa2674) D:\WINDOWS\system32\DRIVERS\atapi.sys
2010/09/24 20:31:44.0687 ati2mtag (15b2fe76e2eceb98c49ed52311a6f26f) D:\WINDOWS\system32\DRIVERS\ati2mtag.sys
2010/09/24 20:31:44.0734 Atmarpc (9916c1225104ba14794209cfa8012159) D:\WINDOWS\system32\DRIVERS\atmarpc.sys
2010/09/24 20:31:44.0796 audstub (d9f724aa26c010a217c97606b160ed68) D:\WINDOWS\system32\DRIVERS\audstub.sys
2010/09/24 20:31:44.0875 Beep (da1f27d85e0d1525f6621372e7b685e9) D:\WINDOWS\system32\drivers\Beep.sys
2010/09/24 20:31:44.0953 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) D:\WINDOWS\system32\drivers\cbidf2k.sys
2010/09/24 20:31:45.0015 CCDECODE (0be5aef125be881c4f854c554f2b025c) D:\WINDOWS\system32\DRIVERS\CCDECODE.sys
2010/09/24 20:31:45.0093 Cdaudio (c1b486a7658353d33a10cc15211a873b) D:\WINDOWS\system32\drivers\Cdaudio.sys
2010/09/24 20:31:45.0125 Cdfs (c885b02847f5d2fd45a24e219ed93b32) D:\WINDOWS\system32\drivers\Cdfs.sys
2010/09/24 20:31:45.0187 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) D:\WINDOWS\system32\DRIVERS\cdrom.sys
2010/09/24 20:31:45.0390 Disk (044452051f3e02e7963599fc8f4f3e25) D:\WINDOWS\system32\DRIVERS\disk.sys
2010/09/24 20:31:45.0437 dmboot (f5deadd42335fb33edca74ecb2f36cba) D:\WINDOWS\system32\drivers\dmboot.sys
2010/09/24 20:31:45.0484 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) D:\WINDOWS\system32\drivers\dmio.sys
2010/09/24 20:31:45.0531 dmload (e9317282a63ca4d188c0df5e09c6ac5f) D:\WINDOWS\system32\drivers\dmload.sys
2010/09/24 20:31:45.0609 DMusic (8a208dfcf89792a484e76c40e5f50b45) D:\WINDOWS\system32\drivers\DMusic.sys
2010/09/24 20:31:45.0671 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) D:\WINDOWS\system32\drivers\drmkaud.sys
2010/09/24 20:31:45.0718 eamon (1b5ca1caffc594bd37dcc8d7ef849e0b) D:\WINDOWS\system32\DRIVERS\eamon.sys
2010/09/24 20:31:45.0796 ehdrv (a4241545ecff3ee97041847d83936e1f) D:\WINDOWS\system32\DRIVERS\ehdrv.sys
2010/09/24 20:31:45.0843 epfwtdir (367a97a632ec5e8521f68ffa2c700610) D:\WINDOWS\system32\DRIVERS\epfwtdir.sys
2010/09/24 20:31:45.0937 Fastfat (38d332a6d56af32635675f132548343e) D:\WINDOWS\system32\drivers\Fastfat.sys
2010/09/24 20:31:46.0015 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) D:\WINDOWS\system32\DRIVERS\fdc.sys
2010/09/24 20:31:46.0046 Fips (31f923eb2170fc172c81abda0045d18c) D:\WINDOWS\system32\drivers\Fips.sys
2010/09/24 20:31:46.0125 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) D:\WINDOWS\system32\DRIVERS\flpydisk.sys
2010/09/24 20:31:46.0171 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) D:\WINDOWS\system32\drivers\fltmgr.sys
2010/09/24 20:31:46.0250 fssfltr (c6ee3a87fe609d3e1db9dbd072a248de) D:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
2010/09/24 20:31:46.0343 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) D:\WINDOWS\system32\drivers\Fs_Rec.sys
2010/09/24 20:31:46.0359 Ftdisk (a86859b77b908c18c2657f284aa29fe3) D:\WINDOWS\system32\DRIVERS\ftdisk.sys
2010/09/24 20:31:46.0453 GEARAspiWDM (f2f431d1573ee632975c524418655b84) D:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
2010/09/24 20:31:46.0515 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) D:\WINDOWS\system32\DRIVERS\msgpc.sys
2010/09/24 20:31:46.0578 HCWBT8xx (e4aef0daacbe59b048be0224a6d0e601) D:\WINDOWS\system32\drivers\HCWBT8XX.sys
2010/09/24 20:31:46.0656 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) D:\WINDOWS\system32\DRIVERS\hidusb.sys
2010/09/24 20:31:46.0750 HTTP (f80a415ef82cd06ffaf0d971528ead38) D:\WINDOWS\system32\Drivers\HTTP.sys
2010/09/24 20:31:46.0875 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) D:\WINDOWS\system32\DRIVERS\i8042prt.sys
2010/09/24 20:31:46.0921 Imapi (083a052659f5310dd8b6a6cb05edcf8e) D:\WINDOWS\system32\DRIVERS\imapi.sys
2010/09/24 20:31:47.0046 intelppm (ad340800c35a42d4de1641a37feea34c) D:\WINDOWS\system32\DRIVERS\intelppm.sys
2010/09/24 20:31:47.0109 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) D:\WINDOWS\system32\drivers\ip6fw.sys
2010/09/24 20:31:47.0171 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) D:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
2010/09/24 20:31:47.0218 IpInIp (b87ab476dcf76e72010632b5550955f5) D:\WINDOWS\system32\DRIVERS\ipinip.sys
2010/09/24 20:31:47.0281 IpNat (cc748ea12c6effde940ee98098bf96bb) D:\WINDOWS\system32\DRIVERS\ipnat.sys
2010/09/24 20:31:47.0343 IPSec (23c74d75e36e7158768dd63d92789a91) D:\WINDOWS\system32\DRIVERS\ipsec.sys
2010/09/24 20:31:47.0390 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) D:\WINDOWS\system32\DRIVERS\irenum.sys
2010/09/24 20:31:47.0453 isapnp (355836975a67b6554bca60328cd6cb74) D:\WINDOWS\system32\DRIVERS\isapnp.sys
2010/09/24 20:31:47.0531 Kbdclass (16813155807c6881f4bfbf6657424659) D:\WINDOWS\system32\DRIVERS\kbdclass.sys
2010/09/24 20:31:47.0593 kbdhid (94c59cb884ba010c063687c3a50dce8e) D:\WINDOWS\system32\DRIVERS\kbdhid.sys
2010/09/24 20:31:47.0687 kmixer (692bcf44383d056aed41b045a323d378) D:\WINDOWS\system32\drivers\kmixer.sys
2010/09/24 20:31:47.0750 KSecDD (b467646c54cc746128904e1654c750c1) D:\WINDOWS\system32\drivers\KSecDD.sys
2010/09/24 20:31:47.0859 LVUSBSta (c5efbd05a5195402121711a6ebbb271f) D:\WINDOWS\system32\drivers\lvusbsta.sys
2010/09/24 20:31:47.0937 massfilter (f0435fe3c1ec2659d2bbf073ca0752ee) D:\WINDOWS\system32\drivers\massfilter.sys
2010/09/24 20:31:48.0031 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) D:\WINDOWS\system32\drivers\mnmdd.sys
2010/09/24 20:31:48.0109 Modem (510ade9327fe84c10254e1902697e25f) D:\WINDOWS\system32\drivers\Modem.sys
2010/09/24 20:31:48.0156 Mouclass (027c01bd7ef3349aaebc883d8a799efb) D:\WINDOWS\system32\DRIVERS\mouclass.sys
2010/09/24 20:31:48.0171 mouhid (124d6846040c79b9c997f78ef4b2a4e5) D:\WINDOWS\system32\DRIVERS\mouhid.sys
2010/09/24 20:31:48.0234 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) D:\WINDOWS\system32\drivers\MountMgr.sys
2010/09/24 20:31:48.0296 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) D:\WINDOWS\system32\DRIVERS\mrxdav.sys
2010/09/24 20:31:48.0406 MRxSmb (f3aefb11abc521122b67095044169e98) D:\WINDOWS\system32\DRIVERS\mrxsmb.sys
2010/09/24 20:31:48.0468 Msfs (c941ea2454ba8350021d774daf0f1027) D:\WINDOWS\system32\drivers\Msfs.sys
2010/09/24 20:31:48.0531 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) D:\WINDOWS\system32\drivers\MSKSSRV.sys
2010/09/24 20:31:48.0593 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) D:\WINDOWS\system32\drivers\MSPCLOCK.sys
2010/09/24 20:31:48.0656 MSPQM (bad59648ba099da4a17680b39730cb3d) D:\WINDOWS\system32\drivers\MSPQM.sys
2010/09/24 20:31:48.0718 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) D:\WINDOWS\system32\DRIVERS\mssmbios.sys
2010/09/24 20:31:48.0781 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) D:\WINDOWS\system32\drivers\MSTEE.sys
2010/09/24 20:31:48.0843 Mup (2f625d11385b1a94360bfc70aaefdee1) D:\WINDOWS\system32\drivers\Mup.sys
2010/09/24 20:31:48.0890 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) D:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
2010/09/24 20:31:48.0953 NDIS (1df7f42665c94b825322fae71721130d) D:\WINDOWS\system32\drivers\NDIS.sys
2010/09/24 20:31:49.0000 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) D:\WINDOWS\system32\DRIVERS\NdisIP.sys
2010/09/24 20:31:49.0046 NdisTapi (1ab3d00c991ab086e69db84b6c0ed78f) D:\WINDOWS\system32\DRIVERS\ndistapi.sys
2010/09/24 20:31:49.0109 Ndisuio (f927a4434c5028758a842943ef1a3849) D:\WINDOWS\system32\DRIVERS\ndisuio.sys
2010/09/24 20:31:49.0156 NdisWan (edc1531a49c80614b2cfda43ca8659ab) D:\WINDOWS\system32\DRIVERS\ndiswan.sys
2010/09/24 20:31:49.0218 NDProxy (6215023940cfd3702b46abc304e1d45a) D:\WINDOWS\system32\drivers\NDProxy.sys
2010/09/24 20:31:49.0281 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) D:\WINDOWS\system32\DRIVERS\netbios.sys
2010/09/24 20:31:49.0343 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) D:\WINDOWS\system32\DRIVERS\netbt.sys
2010/09/24 20:31:49.0406 Npfs (3182d64ae053d6fb034f44b6def8034a) D:\WINDOWS\system32\drivers\Npfs.sys
2010/09/24 20:31:49.0453 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) D:\WINDOWS\system32\drivers\Ntfs.sys
2010/09/24 20:31:49.0562 NuidFltr (cf7e041663119e09d2e118521ada9300) D:\WINDOWS\system32\DRIVERS\NuidFltr.sys
2010/09/24 20:31:49.0593 Null (73c1e1f395918bc2c6dd67af7591a3ad) D:\WINDOWS\system32\drivers\Null.sys
2010/09/24 20:31:49.0656 NVENETFD (3f09e5118d1ab379d028d511e45c6155) D:\WINDOWS\system32\DRIVERS\NVENETFD.sys
2010/09/24 20:31:49.0687 nvnetbus (77c63a663b88fe327d71dd8e0a0f19b6) D:\WINDOWS\system32\DRIVERS\nvnetbus.sys
2010/09/24 20:31:49.0734 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) D:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
2010/09/24 20:31:49.0750 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) D:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
2010/09/24 20:31:49.0812 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) D:\WINDOWS\system32\DRIVERS\parport.sys
2010/09/24 20:31:49.0875 PartMgr (beb3ba25197665d82ec7065b724171c6) D:\WINDOWS\system32\drivers\PartMgr.sys
2010/09/24 20:31:49.0890 ParVdm (9575c5630db8fb804649a6959737154c) D:\WINDOWS\system32\drivers\ParVdm.sys
2010/09/24 20:31:49.0953 PCI (043410877bda580c528f45165f7125bc) D:\WINDOWS\system32\DRIVERS\pci.sys
2010/09/24 20:31:50.0046 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) D:\WINDOWS\system32\DRIVERS\pciide.sys
2010/09/24 20:31:50.0109 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) D:\WINDOWS\system32\drivers\Pcmcia.sys
2010/09/24 20:31:50.0343 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) D:\WINDOWS\system32\DRIVERS\raspptp.sys
2010/09/24 20:31:50.0421 PSched (09298ec810b07e5d582cb3a3f9255424) D:\WINDOWS\system32\DRIVERS\psched.sys
2010/09/24 20:31:50.0437 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) D:\WINDOWS\system32\DRIVERS\ptilink.sys
2010/09/24 20:31:50.0515 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) D:\WINDOWS\system32\Drivers\PxHelp20.sys
2010/09/24 20:31:50.0625 QCMerced (9a155d31b8e52f41b258282092cc93a7) D:\WINDOWS\system32\DRIVERS\LVCM.sys
2010/09/24 20:31:50.0843 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) D:\WINDOWS\system32\DRIVERS\rasacd.sys
2010/09/24 20:31:50.0906 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) D:\WINDOWS\system32\DRIVERS\rasl2tp.sys
2010/09/24 20:31:50.0937 RasPppoe (5bc962f2654137c9909c3d4603587dee) D:\WINDOWS\system32\DRIVERS\raspppoe.sys
2010/09/24 20:31:50.0984 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) D:\WINDOWS\system32\DRIVERS\raspti.sys
2010/09/24 20:31:51.0046 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) D:\WINDOWS\system32\DRIVERS\rdbss.sys
2010/09/24 20:31:51.0093 RDPCDD (4912d5b403614ce99c28420f75353332) D:\WINDOWS\system32\DRIVERS\RDPCDD.sys
2010/09/24 20:31:51.0140 rdpdr (15cabd0f7c00c47c70124907916af3f1) D:\WINDOWS\system32\DRIVERS\rdpdr.sys
2010/09/24 20:31:51.0250 RDPWD (6728e45b66f93c08f11de2e316fc70dd) D:\WINDOWS\system32\drivers\RDPWD.sys
2010/09/24 20:31:51.0281 redbook (d8eb2a7904db6c916eb5361878ddcbae) D:\WINDOWS\system32\DRIVERS\redbook.sys
2010/09/24 20:31:51.0390 Secdrv (90a3935d05b494a5a39d37e71f09a677) D:\WINDOWS\system32\DRIVERS\secdrv.sys
2010/09/24 20:31:51.0421 serenum (0f29512ccd6bead730039fb4bd2c85ce) D:\WINDOWS\system32\DRIVERS\serenum.sys
2010/09/24 20:31:51.0468 Serial (93d313c31f7ad9ea2b75f26075413c7c) D:\WINDOWS\system32\DRIVERS\serial.sys
2010/09/24 20:31:51.0546 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) D:\WINDOWS\system32\drivers\Sfloppy.sys
2010/09/24 20:31:51.0640 SLIP (866d538ebe33709a5c9f5c62b73b7d14) D:\WINDOWS\system32\DRIVERS\SLIP.sys
2010/09/24 20:31:51.0718 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) D:\WINDOWS\system32\drivers\splitter.sys
2010/09/24 20:31:51.0796 sr (39626e6dc1fb39434ec40c42722b660a) D:\WINDOWS\system32\DRIVERS\sr.sys
2010/09/24 20:31:51.0875 Srv (da852e3e0bf1cea75d756f9866241e57) D:\WINDOWS\system32\DRIVERS\srv.sys
2010/09/24 20:31:51.0953 streamip (77813007ba6265c4b6098187e6ed79d2) D:\WINDOWS\system32\DRIVERS\StreamIP.sys
2010/09/24 20:31:52.0015 swenum (3941d127aef12e93addf6fe6ee027e0f) D:\WINDOWS\system32\DRIVERS\swenum.sys
2010/09/24 20:31:52.0046 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) D:\WINDOWS\system32\drivers\swmidi.sys
2010/09/24 20:31:52.0187 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) D:\WINDOWS\system32\drivers\sysaudio.sys
2010/09/24 20:31:52.0281 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) D:\WINDOWS\system32\DRIVERS\tcpip.sys
2010/09/24 20:31:52.0359 TDPIPE (6471a66807f5e104e4885f5b67349397) D:\WINDOWS\system32\drivers\TDPIPE.sys
2010/09/24 20:31:52.0421 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) D:\WINDOWS\system32\drivers\TDTCP.sys
2010/09/24 20:31:52.0468 TermDD (88155247177638048422893737429d9e) D:\WINDOWS\system32\DRIVERS\termdd.sys
2010/09/24 20:31:52.0578 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) D:\WINDOWS\system32\drivers\Udfs.sys
2010/09/24 20:31:52.0671 Update (402ddc88356b1bac0ee3dd1580c76a31) D:\WINDOWS\system32\DRIVERS\update.sys
2010/09/24 20:31:52.0750 USBAAPL (026f7f224f088ee11e383bca448fff81) D:\WINDOWS\system32\Drivers\usbaapl.sys
2010/09/24 20:31:52.0828 usbaudio (e919708db44ed8543a7c017953148330) D:\WINDOWS\system32\drivers\usbaudio.sys
2010/09/24 20:31:52.0906 usbccgp (173f317ce0db8e21322e71b7e60a27e8) D:\WINDOWS\system32\DRIVERS\usbccgp.sys
2010/09/24 20:31:52.0984 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) D:\WINDOWS\system32\DRIVERS\usbehci.sys
2010/09/24 20:31:53.0015 usbhub (1ab3cdde553b6e064d2e754efe20285c) D:\WINDOWS\system32\DRIVERS\usbhub.sys
2010/09/24 20:31:53.0046 usbohci (0daecce65366ea32b162f85f07c6753b) D:\WINDOWS\system32\DRIVERS\usbohci.sys
2010/09/24 20:31:53.0109 usbprint (a717c8721046828520c9edf31288fc00) D:\WINDOWS\system32\DRIVERS\usbprint.sys
2010/09/24 20:31:53.0187 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) D:\WINDOWS\system32\DRIVERS\usbscan.sys
2010/09/24 20:31:53.0218 usbstor (a32426d9b14a089eaa1d922e0c5801a9) D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
2010/09/24 20:31:53.0281 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) D:\WINDOWS\System32\drivers\vga.sys
2010/09/24 20:31:53.0359 VolSnap (46de1126684369bace4849e4fc8c43ca) D:\WINDOWS\system32\drivers\VolSnap.sys
2010/09/24 20:31:53.0421 W8335XP (7455b3c11a1d6a844b53febdb58646e9) D:\WINDOWS\system32\DRIVERS\WG311v3XP.sys
2010/09/24 20:31:53.0468 Wanarp (e20b95baedb550f32dd489265c1da1f6) D:\WINDOWS\system32\DRIVERS\wanarp.sys
2010/09/24 20:31:53.0515 Wdf01000 (fd47474bd21794508af449d9d91af6e6) D:\WINDOWS\system32\DRIVERS\Wdf01000.sys
2010/09/24 20:31:53.0609 wdmaud (6768acf64b18196494413695f0c3a00f) D:\WINDOWS\system32\drivers\wdmaud.sys
2010/09/24 20:31:53.0734 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) D:\WINDOWS\System32\drivers\ws2ifsl.sys
2010/09/24 20:31:53.0859 WSTCODEC (c98b39829c2bbd34e454150633c62c78) D:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
2010/09/24 20:31:53.0921 WUSBVBus (c0dddfb1719b5d58001a7054d6fd0fe2) D:\WINDOWS\system32\DRIVERS\mfpvbus.sys
2010/09/24 20:31:54.0015 ZTEusbmdm6k (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys
2010/09/24 20:31:54.0062 ZTEusbnet (911ba85906bc7602c73441502abfb565) D:\WINDOWS\system32\DRIVERS\ZTEusbnet.sys
2010/09/24 20:31:54.0140 ZTEusbnmea (69774b89725ddc4781e0eeb9809f3b20) D:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys
2010/09/24 20:31:54.0171 ZTEusbser6k (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys
2010/09/24 20:31:54.0250 ZTEusbvoice (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbvoice.sys
2010/09/24 20:31:54.0343 ================================================================================
2010/09/24 20:31:54.0343 Scan finished
2010/09/24 20:31:54.0343 ================================================================================
2010/09/24 20:32:16.0390 ================================================================================
2010/09/24 20:32:16.0390 Scan started
2010/09/24 20:32:16.0390 Mode: Manual;
2010/09/24 20:32:16.0390 ================================================================================
2010/09/24 20:32:17.0656 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) D:\WINDOWS\system32\DRIVERS\ACPI.sys
2010/09/24 20:32:17.0750 ACPIEC (e4abc1212b70bb03d35e60681c447210) D:\WINDOWS\system32\drivers\ACPIEC.sys
2010/09/24 20:32:17.0828 aec (8bed39e3c35d6a489438b8141717a557) D:\WINDOWS\system32\drivers\aec.sys
2010/09/24 20:32:17.0859 AFD (7e775010ef291da96ad17ca4b17137d7) D:\WINDOWS\System32\drivers\afd.sys
2010/09/24 20:32:18.0312 ALCXWDM (34149a136b2b7525113950233f259ec1) D:\WINDOWS\system32\drivers\ALCXWDM.SYS
2010/09/24 20:32:18.0468 ALIWEHCD (a570dbb0618a19b4fa214cb38265294a) D:\WINDOWS\system32\Drivers\mfpec.sys
2010/09/24 20:32:18.0671 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) D:\WINDOWS\system32\DRIVERS\asyncmac.sys
2010/09/24 20:32:18.0718 atapi (9f3a2f5aa6875c72bf062c712cfa2674) D:\WINDOWS\system32\DRIVERS\atapi.sys
2010/09/24 20:32:18.0953 ati2mtag (15b2fe76e2eceb98c49ed52311a6f26f) D:\WINDOWS\system32\DRIVERS\ati2mtag.sys
2010/09/24 20:32:19.0046 Atmarpc (9916c1225104ba14794209cfa8012159) D:\WINDOWS\system32\DRIVERS\atmarpc.sys
2010/09/24 20:32:19.0093 audstub (d9f724aa26c010a217c97606b160ed68) D:\WINDOWS\system32\DRIVERS\audstub.sys
2010/09/24 20:32:19.0156 Beep (da1f27d85e0d1525f6621372e7b685e9) D:\WINDOWS\system32\drivers\Beep.sys
2010/09/24 20:32:19.0234 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) D:\WINDOWS\system32\drivers\cbidf2k.sys
2010/09/24 20:32:19.0312 CCDECODE (0be5aef125be881c4f854c554f2b025c) D:\WINDOWS\system32\DRIVERS\CCDECODE.sys
2010/09/24 20:32:19.0390 Cdaudio (c1b486a7658353d33a10cc15211a873b) D:\WINDOWS\system32\drivers\Cdaudio.sys
2010/09/24 20:32:19.0406 Cdfs (c885b02847f5d2fd45a24e219ed93b32) D:\WINDOWS\system32\drivers\Cdfs.sys
2010/09/24 20:32:19.0484 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) D:\WINDOWS\system32\DRIVERS\cdrom.sys
2010/09/24 20:32:19.0671 Disk (044452051f3e02e7963599fc8f4f3e25) D:\WINDOWS\system32\DRIVERS\disk.sys
2010/09/24 20:32:19.0750 dmboot (f5deadd42335fb33edca74ecb2f36cba) D:\WINDOWS\system32\drivers\dmboot.sys
2010/09/24 20:32:19.0812 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) D:\WINDOWS\system32\drivers\dmio.sys
2010/09/24 20:32:19.0843 dmload (e9317282a63ca4d188c0df5e09c6ac5f) D:\WINDOWS\system32\drivers\dmload.sys
2010/09/24 20:32:19.0906 DMusic (8a208dfcf89792a484e76c40e5f50b45) D:\WINDOWS\system32\drivers\DMusic.sys
2010/09/24 20:32:19.0984 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) D:\WINDOWS\system32\drivers\drmkaud.sys
2010/09/24 20:32:20.0062 eamon (1b5ca1caffc594bd37dcc8d7ef849e0b) D:\WINDOWS\system32\DRIVERS\eamon.sys
2010/09/24 20:32:20.0125 ehdrv (a4241545ecff3ee97041847d83936e1f) D:\WINDOWS\system32\DRIVERS\ehdrv.sys
2010/09/24 20:32:20.0171 epfwtdir (367a97a632ec5e8521f68ffa2c700610) D:\WINDOWS\system32\DRIVERS\epfwtdir.sys
2010/09/24 20:32:20.0250 Fastfat (38d332a6d56af32635675f132548343e) D:\WINDOWS\system32\drivers\Fastfat.sys
2010/09/24 20:32:20.0281 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) D:\WINDOWS\system32\DRIVERS\fdc.sys
2010/09/24 20:32:20.0359 Fips (31f923eb2170fc172c81abda0045d18c) D:\WINDOWS\system32\drivers\Fips.sys
2010/09/24 20:32:20.0390 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) D:\WINDOWS\system32\DRIVERS\flpydisk.sys
2010/09/24 20:32:20.0437 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) D:\WINDOWS\system32\drivers\fltmgr.sys
2010/09/24 20:32:20.0484 fssfltr (c6ee3a87fe609d3e1db9dbd072a248de) D:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
2010/09/24 20:32:20.0578 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) D:\WINDOWS\system32\drivers\Fs_Rec.sys
2010/09/24 20:32:20.0609 Ftdisk (a86859b77b908c18c2657f284aa29fe3) D:\WINDOWS\system32\DRIVERS\ftdisk.sys
2010/09/24 20:32:20.0703 GEARAspiWDM (f2f431d1573ee632975c524418655b84) D:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
2010/09/24 20:32:20.0734 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) D:\WINDOWS\system32\DRIVERS\msgpc.sys
2010/09/24 20:32:20.0812 HCWBT8xx (e4aef0daacbe59b048be0224a6d0e601) D:\WINDOWS\system32\drivers\HCWBT8XX.sys
2010/09/24 20:32:20.0875 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) D:\WINDOWS\system32\DRIVERS\hidusb.sys
2010/09/24 20:32:20.0984 HTTP (f80a415ef82cd06ffaf0d971528ead38) D:\WINDOWS\system32\Drivers\HTTP.sys
2010/09/24 20:32:21.0093 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) D:\WINDOWS\system32\DRIVERS\i8042prt.sys
2010/09/24 20:32:21.0171 Imapi (083a052659f5310dd8b6a6cb05edcf8e) D:\WINDOWS\system32\DRIVERS\imapi.sys
2010/09/24 20:32:21.0281 intelppm (ad340800c35a42d4de1641a37feea34c) D:\WINDOWS\system32\DRIVERS\intelppm.sys
2010/09/24 20:32:21.0375 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) D:\WINDOWS\system32\drivers\ip6fw.sys
2010/09/24 20:32:21.0421 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) D:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
2010/09/24 20:32:21.0484 IpInIp (b87ab476dcf76e72010632b5550955f5) D:\WINDOWS\system32\DRIVERS\ipinip.sys
2010/09/24 20:32:21.0546 IpNat (cc748ea12c6effde940ee98098bf96bb) D:\WINDOWS\system32\DRIVERS\ipnat.sys
2010/09/24 20:32:21.0609 IPSec (23c74d75e36e7158768dd63d92789a91) D:\WINDOWS\system32\DRIVERS\ipsec.sys
2010/09/24 20:32:21.0656 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) D:\WINDOWS\system32\DRIVERS\irenum.sys
2010/09/24 20:32:21.0718 isapnp (355836975a67b6554bca60328cd6cb74) D:\WINDOWS\system32\DRIVERS\isapnp.sys
2010/09/24 20:32:21.0781 Kbdclass (16813155807c6881f4bfbf6657424659) D:\WINDOWS\system32\DRIVERS\kbdclass.sys
2010/09/24 20:32:21.0843 kbdhid (94c59cb884ba010c063687c3a50dce8e) D:\WINDOWS\system32\DRIVERS\kbdhid.sys
2010/09/24 20:32:21.0906 kmixer (692bcf44383d056aed41b045a323d378) D:\WINDOWS\system32\drivers\kmixer.sys
2010/09/24 20:32:22.0000 KSecDD (b467646c54cc746128904e1654c750c1) D:\WINDOWS\system32\drivers\KSecDD.sys
2010/09/24 20:32:22.0093 LVUSBSta (c5efbd05a5195402121711a6ebbb271f) D:\WINDOWS\system32\drivers\lvusbsta.sys
2010/09/24 20:32:22.0140 massfilter (f0435fe3c1ec2659d2bbf073ca0752ee) D:\WINDOWS\system32\drivers\massfilter.sys
2010/09/24 20:32:22.0187 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) D:\WINDOWS\system32\drivers\mnmdd.sys
2010/09/24 20:32:22.0234 Modem (510ade9327fe84c10254e1902697e25f) D:\WINDOWS\system32\drivers\Modem.sys
2010/09/24 20:32:22.0281 Mouclass (027c01bd7ef3349aaebc883d8a799efb) D:\WINDOWS\system32\DRIVERS\mouclass.sys
2010/09/24 20:32:22.0343 mouhid (124d6846040c79b9c997f78ef4b2a4e5) D:\WINDOWS\system32\DRIVERS\mouhid.sys
2010/09/24 20:32:22.0375 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) D:\WINDOWS\system32\drivers\MountMgr.sys
2010/09/24 20:32:22.0453 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) D:\WINDOWS\system32\DRIVERS\mrxdav.sys
2010/09/24 20:32:22.0515 MRxSmb (f3aefb11abc521122b67095044169e98) D:\WINDOWS\system32\DRIVERS\mrxsmb.sys
2010/09/24 20:32:22.0562 Msfs (c941ea2454ba8350021d774daf0f1027) D:\WINDOWS\system32\drivers\Msfs.sys
2010/09/24 20:32:22.0625 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) D:\WINDOWS\system32\drivers\MSKSSRV.sys
2010/09/24 20:32:22.0671 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) D:\WINDOWS\system32\drivers\MSPCLOCK.sys
2010/09/24 20:32:22.0703 MSPQM (bad59648ba099da4a17680b39730cb3d) D:\WINDOWS\system32\drivers\MSPQM.sys
2010/09/24 20:32:22.0765 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) D:\WINDOWS\system32\DRIVERS\mssmbios.sys
2010/09/24 20:32:22.0859 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) D:\WINDOWS\system32\drivers\MSTEE.sys
2010/09/24 20:32:22.0906 Mup (2f625d11385b1a94360bfc70aaefdee1) D:\WINDOWS\system32\drivers\Mup.sys
2010/09/24 20:32:22.0968 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) D:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
2010/09/24 20:32:23.0015 NDIS (1df7f42665c94b825322fae71721130d) D:\WINDOWS\system32\drivers\NDIS.sys
2010/09/24 20:32:23.0062 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) D:\WINDOWS\system32\DRIVERS\NdisIP.sys
2010/09/24 20:32:23.0109 NdisTapi (1ab3d00c991ab086e69db84b6c0ed78f) D:\WINDOWS\system32\DRIVERS\ndistapi.sys
2010/09/24 20:32:23.0140 Ndisuio (f927a4434c5028758a842943ef1a3849) D:\WINDOWS\system32\DRIVERS\ndisuio.sys
2010/09/24 20:32:23.0203 NdisWan (edc1531a49c80614b2cfda43ca8659ab) D:\WINDOWS\system32\DRIVERS\ndiswan.sys
2010/09/24 20:32:23.0296 NDProxy (6215023940cfd3702b46abc304e1d45a) D:\WINDOWS\system32\drivers\NDProxy.sys
2010/09/24 20:32:23.0343 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) D:\WINDOWS\system32\DRIVERS\netbios.sys
2010/09/24 20:32:23.0421 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) D:\WINDOWS\system32\DRIVERS\netbt.sys
2010/09/24 20:32:23.0531 Npfs (3182d64ae053d6fb034f44b6def8034a) D:\WINDOWS\system32\drivers\Npfs.sys
2010/09/24 20:32:23.0593 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) D:\WINDOWS\system32\drivers\Ntfs.sys
2010/09/24 20:32:23.0687 NuidFltr (cf7e041663119e09d2e118521ada9300) D:\WINDOWS\system32\DRIVERS\NuidFltr.sys
2010/09/24 20:32:23.0765 Null (73c1e1f395918bc2c6dd67af7591a3ad) D:\WINDOWS\system32\drivers\Null.sys
2010/09/24 20:32:23.0796 NVENETFD (3f09e5118d1ab379d028d511e45c6155) D:\WINDOWS\system32\DRIVERS\NVENETFD.sys
2010/09/24 20:32:23.0875 nvnetbus (77c63a663b88fe327d71dd8e0a0f19b6) D:\WINDOWS\system32\DRIVERS\nvnetbus.sys
2010/09/24 20:32:23.0906 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) D:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
2010/09/24 20:32:23.0937 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) D:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
2010/09/24 20:32:24.0015 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) D:\WINDOWS\system32\DRIVERS\parport.sys
2010/09/24 20:32:24.0062 PartMgr (beb3ba25197665d82ec7065b724171c6) D:\WINDOWS\system32\drivers\PartMgr.sys
2010/09/24 20:32:24.0078 ParVdm (9575c5630db8fb804649a6959737154c) D:\WINDOWS\system32\drivers\ParVdm.sys
2010/09/24 20:32:24.0125 PCI (043410877bda580c528f45165f7125bc) D:\WINDOWS\system32\DRIVERS\pci.sys
2010/09/24 20:32:24.0218 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) D:\WINDOWS\system32\DRIVERS\pciide.sys
2010/09/24 20:32:24.0281 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) D:\WINDOWS\system32\drivers\Pcmcia.sys
2010/09/24 20:32:24.0500 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) D:\WINDOWS\system32\DRIVERS\raspptp.sys
2010/09/24 20:32:24.0578 PSched (09298ec810b07e5d582cb3a3f9255424) D:\WINDOWS\system32\DRIVERS\psched.sys
2010/09/24 20:32:24.0609 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) D:\WINDOWS\system32\DRIVERS\ptilink.sys
2010/09/24 20:32:24.0687 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) D:\WINDOWS\system32\Drivers\PxHelp20.sys
2010/09/24 20:32:24.0796 QCMerced (9a155d31b8e52f41b258282092cc93a7) D:\WINDOWS\system32\DRIVERS\LVCM.sys
2010/09/24 20:32:24.0984 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) D:\WINDOWS\system32\DRIVERS\rasacd.sys
2010/09/24 20:32:25.0046 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) D:\WINDOWS\system32\DRIVERS\rasl2tp.sys
2010/09/24 20:32:25.0093 RasPppoe (5bc962f2654137c9909c3d4603587dee) D:\WINDOWS\system32\DRIVERS\raspppoe.sys
2010/09/24 20:32:25.0156 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) D:\WINDOWS\system32\DRIVERS\raspti.sys
2010/09/24 20:32:25.0234 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) D:\WINDOWS\system32\DRIVERS\rdbss.sys
2010/09/24 20:32:25.0281 RDPCDD (4912d5b403614ce99c28420f75353332) D:\WINDOWS\system32\DRIVERS\RDPCDD.sys
2010/09/24 20:32:25.0328 rdpdr (15cabd0f7c00c47c70124907916af3f1) D:\WINDOWS\system32\DRIVERS\rdpdr.sys
2010/09/24 20:32:25.0390 RDPWD (6728e45b66f93c08f11de2e316fc70dd) D:\WINDOWS\system32\drivers\RDPWD.sys
2010/09/24 20:32:25.0421 redbook (d8eb2a7904db6c916eb5361878ddcbae) D:\WINDOWS\system32\DRIVERS\redbook.sys
2010/09/24 20:32:25.0500 Secdrv (90a3935d05b494a5a39d37e71f09a677) D:\WINDOWS\system32\DRIVERS\secdrv.sys
2010/09/24 20:32:25.0546 serenum (0f29512ccd6bead730039fb4bd2c85ce) D:\WINDOWS\system32\DRIVERS\serenum.sys
2010/09/24 20:32:25.0578 Serial (93d313c31f7ad9ea2b75f26075413c7c) D:\WINDOWS\system32\DRIVERS\serial.sys
2010/09/24 20:32:25.0640 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) D:\WINDOWS\system32\drivers\Sfloppy.sys
2010/09/24 20:32:25.0734 SLIP (866d538ebe33709a5c9f5c62b73b7d14) D:\WINDOWS\system32\DRIVERS\SLIP.sys
2010/09/24 20:32:25.0828 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) D:\WINDOWS\system32\drivers\splitter.sys
2010/09/24 20:32:25.0890 sr (39626e6dc1fb39434ec40c42722b660a) D:\WINDOWS\system32\DRIVERS\sr.sys
2010/09/24 20:32:25.0937 Srv (da852e3e0bf1cea75d756f9866241e57) D:\WINDOWS\system32\DRIVERS\srv.sys
2010/09/24 20:32:26.0015 streamip (77813007ba6265c4b6098187e6ed79d2) D:\WINDOWS\system32\DRIVERS\StreamIP.sys
2010/09/24 20:32:26.0078 swenum (3941d127aef12e93addf6fe6ee027e0f) D:\WINDOWS\system32\DRIVERS\swenum.sys
2010/09/24 20:32:26.0093 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) D:\WINDOWS\system32\drivers\swmidi.sys
2010/09/24 20:32:26.0281 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) D:\WINDOWS\system32\drivers\sysaudio.sys
2010/09/24 20:32:26.0375 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) D:\WINDOWS\system32\DRIVERS\tcpip.sys
2010/09/24 20:32:26.0406 TDPIPE (6471a66807f5e104e4885f5b67349397) D:\WINDOWS\system32\drivers\TDPIPE.sys
2010/09/24 20:32:26.0468 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) D:\WINDOWS\system32\drivers\TDTCP.sys
2010/09/24 20:32:26.0531 TermDD (88155247177638048422893737429d9e) D:\WINDOWS\system32\DRIVERS\termdd.sys
2010/09/24 20:32:26.0656 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) D:\WINDOWS\system32\drivers\Udfs.sys
2010/09/24 20:32:26.0734 Update (402ddc88356b1bac0ee3dd1580c76a31) D:\WINDOWS\system32\DRIVERS\update.sys
2010/09/24 20:32:26.0781 USBAAPL (026f7f224f088ee11e383bca448fff81) D:\WINDOWS\system32\Drivers\usbaapl.sys
2010/09/24 20:32:26.0875 usbaudio (e919708db44ed8543a7c017953148330) D:\WINDOWS\system32\drivers\usbaudio.sys
2010/09/24 20:32:26.0937 usbccgp (173f317ce0db8e21322e71b7e60a27e8) D:\WINDOWS\system32\DRIVERS\usbccgp.sys
2010/09/24 20:32:26.0968 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) D:\WINDOWS\system32\DRIVERS\usbehci.sys
2010/09/24 20:32:27.0000 usbhub (1ab3cdde553b6e064d2e754efe20285c) D:\WINDOWS\system32\DRIVERS\usbhub.sys
2010/09/24 20:32:27.0046 usbohci (0daecce65366ea32b162f85f07c6753b) D:\WINDOWS\system32\DRIVERS\usbohci.sys
2010/09/24 20:32:27.0109 usbprint (a717c8721046828520c9edf31288fc00) D:\WINDOWS\system32\DRIVERS\usbprint.sys
2010/09/24 20:32:27.0171 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) D:\WINDOWS\system32\DRIVERS\usbscan.sys
2010/09/24 20:32:27.0234 usbstor (a32426d9b14a089eaa1d922e0c5801a9) D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
2010/09/24 20:32:27.0265 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) D:\WINDOWS\System32\drivers\vga.sys
2010/09/24 20:32:27.0359 VolSnap (46de1126684369bace4849e4fc8c43ca) D:\WINDOWS\system32\drivers\VolSnap.sys
2010/09/24 20:32:27.0437 W8335XP (7455b3c11a1d6a844b53febdb58646e9) D:\WINDOWS\system32\DRIVERS\WG311v3XP.sys
2010/09/24 20:32:27.0484 Wanarp (e20b95baedb550f32dd489265c1da1f6) D:\WINDOWS\system32\DRIVERS\wanarp.sys
2010/09/24 20:32:27.0578 Wdf01000 (fd47474bd21794508af449d9d91af6e6) D:\WINDOWS\system32\DRIVERS\Wdf01000.sys
2010/09/24 20:32:27.0656 wdmaud (6768acf64b18196494413695f0c3a00f) D:\WINDOWS\system32\drivers\wdmaud.sys
2010/09/24 20:32:27.0781 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) D:\WINDOWS\System32\drivers\ws2ifsl.sys
2010/09/24 20:32:27.0843 WSTCODEC (c98b39829c2bbd34e454150633c62c78) D:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
2010/09/24 20:32:27.0968 WUSBVBus (c0dddfb1719b5d58001a7054d6fd0fe2) D:\WINDOWS\system32\DRIVERS\mfpvbus.sys
2010/09/24 20:32:28.0031 ZTEusbmdm6k (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys
2010/09/24 20:32:28.0062 ZTEusbnet (911ba85906bc7602c73441502abfb565) D:\WINDOWS\system32\DRIVERS\ZTEusbnet.sys
2010/09/24 20:32:28.0109 ZTEusbnmea (69774b89725ddc4781e0eeb9809f3b20) D:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys
2010/09/24 20:32:28.0140 ZTEusbser6k (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys
2010/09/24 20:32:28.0171 ZTEusbvoice (b8b466103280e45e391e876f05122607) D:\WINDOWS\system32\DRIVERS\ZTEusbvoice.sys
2010/09/24 20:32:28.0296 ================================================================================
2010/09/24 20:32:28.0296 Scan finished
2010/09/24 20:32:28.0296 ================================================================================
2010/09/24 20:34:39.0156 Deinitialize success
0
H3RV3 Messages postés 3591 Date d'inscription samedi 17 octobre 2009 Statut Contributeur sécurité Dernière intervention 7 novembre 2014 280
25 sept. 2010 à 00:09
C'est le fichier qu'il faut D:\Ad-Report-Clean[1].txt stp
0
doriaz Messages postés 13 Date d'inscription mercredi 22 septembre 2010 Statut Membre Dernière intervention 26 septembre 2010
25 sept. 2010 à 10:54
Salut,

Je pense cette fois c'est le bon:

= RAPPORT D'AD-REMOVER 2.0.0.1,F | UNIQUEMENT XP/VISTA/7 =======

Mis à jour par C_XX le 16/09/10 à 13:30
Contact: AdRemover.contact[AT]gmail.com
Site web: http://www.teamxscript.org

D:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 20:42:37 le 24/09/2010, Mode normal

Microsoft Windows XP Professionnel Service Pack 3 (X86)
Imre@TOTH ( )

============== ACTION(S) ==============

Service: "ASKService" Stoppé et supprimé
Service: "ASKUpgrade" Stoppé et supprimé
Service: "QuestDns Service" Stoppé et supprimé

0,Fichier supprimé: D:\Program Files\Mozilla FireFox\Components\AskSearch.js
0,Dossier supprimé: D:\Program Files\Mozilla FireFox\extensions\{C91E1C68-B60A-4C9F-B53B-AAAEF0E7EF97}
0,Fichier supprimé: D:\Program Files\Mozilla FireFox\searchplugins\crawlersrch.xml
0,Dossier supprimé: D:\Documents and Settings\Imre\Application Data\Mozilla\FireFox\Profiles\nqnpmvtt.default\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}
0,Fichier supprimé: D:\Documents and Settings\Imre\Application Data\Mozilla\FireFox\Profiles\nqnpmvtt.default\searchplugins\ask.xml
0,Fichier supprimé: D:\Documents and Settings\Imre\Application Data\Mozilla\FireFox\Profiles\nqnpmvtt.default\searchplugins\conduit.xml
0,Dossier supprimé: D:\Program Files\AskBarDis
0,Dossier supprimé: D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Barre d'outils Crawler
0,Dossier supprimé: D:\Documents and Settings\Imre\Local Settings\Application Data\Conduit
0,Dossier supprimé: D:\Program Files\Conduit
0,Dossier supprimé: D:\Program Files\Crawler
0,Dossier supprimé: D:\Program Files\PartyGaming
0,Dossier supprimé: D:\Documents and Settings\All Users\Application Data\QuestDns
0,Dossier supprimé: D:\Program Files\QuestDns
0,Dossier supprimé: D:\Documents and Settings\All Users\Menu Démarrer\Programmes\ShopperReports
0,Dossier supprimé: D:\Documents and Settings\Imre\Application Data\ShopperReports3
0,Dossier supprimé: D:\Program Files\ShopperReports3
0,Fichier supprimé: D:\Documents and Settings\Imre\Local Settings\Application Data\dhdap_nav.dat
2,Fichier supprimé: D:\Documents and Settings\Imre\Local Settings\Application Data\dhdap.dat
0,Fichier supprimé: D:\Documents and Settings\Imre\Local Settings\Application Data\dhdap_navps.dat
0,Fichier supprimé: D:\Documents and Settings\Imre\Local Settings\Application Data\eimqoio_nav.dat
2,Fichier supprimé: D:\Documents and Settings\Imre\Local Settings\Application Data\eimqoio.dat
0,Fichier supprimé: D:\Documents and Settings\Imre\Local Settings\Application Data\eimqoio_navps.dat

(!) -- Fichiers temporaires supprimés.


-- Fichier ouvert: D:\Documents and Settings\Imre\Application Data\Mozilla\FireFox\Profiles\nqnpmvtt.default\Prefs.js --
Ligne supprimée: user_pref("CT1396957.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT139...
Ligne supprimée: user_pref("CT1978305.SearchEngine", "Search||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_TER...
Ligne supprimée: user_pref("CT1978305.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT197...
Ligne supprimée: user_pref("CT1978305.myStuffSearchUrl", "hxxp://search.conduit.com/Results.aspx?q=SEARCH_TERM&ctid=E...
Ligne supprimée: user_pref("browser.search.defaultenginename", "Ask");
Ligne supprimée: user_pref("browser.search.defaultthis.engineName", "Mininova-Vuze Customized Web Search");
Ligne supprimée: user_pref("browser.search.order.1", "Ask");
Ligne supprimée: user_pref("browser.search.selectedEngine", "Ask");
Ligne supprimée: user_pref("extensions.snipit.askTbInstalled", true);
Ligne supprimée: user_pref("extensions.snipit.chromeURL", "hxxp://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&g...
-- Fichier Fermé --


1,Clé supprimée: HKLM\Software\Classes\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{08993A7C-E764-4172-9627-BFB5EA6897B2}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{09325003-167C-483d-A4BA-8B3122ABB432}
3,Clé supprimée: HKLM\Software\Classes\AppID\{0D82ACD6-A652-4496-A298-2BDE705F4227}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{100EB1FD-D03E-47fd-81F3-EE91287F9465}
1,Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47fd-81F3-EE91287F9465}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{100EB1FD-D03E-47fd-81F3-EE91287F9465}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{100EB1FD-D03E-47fd-81F3-EE91287F9465}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{128A6C66-AC6A-4617-8268-AB7F47B7215E}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{183643C8-EE67-4574-9A38-927852E34163}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
1,Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{1DDA201E-5B42-4352-933E-21A92B297E3B}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{201f27d4-3704-41d6-89c1-aa35e39143ed}
1,Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{201f27d4-3704-41d6-89c1-aa35e39143ed}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{201f27d4-3704-41d6-89c1-aa35e39143ed}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{20EA9658-6BC3-4599-A87D-6371FE9295FC}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{2721A8E5-BFDB-4562-9912-9E0531CA616C}
3,Clé supprimée: HKLM\Software\Classes\AppID\{7025E484-D4B0-441a-9F0B-69063BD679CE}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{396CFC12-932D-496b-A0A8-5D7201E105E1}
3,Clé supprimée: HKLM\Software\Classes\AppID\{A89256AD-EC17-4a83-BEF5-4B8BC4F39306}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{4D25FB7A-8902-4291-960E-9ADA051CFBBF}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{54ECA872-DB2A-4C6B-BBB2-F3777C6786CC}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{571715D7-3395-4DF0-B43C-784836209E60}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{60DA826C-B1C6-4358-BDEC-4837CED45470}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{622fd888-4e91-4d68-84d4-7262fd0811bf}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{6DD76B7B-6423-4df0-9A07-84A6CAD973A0}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{74C22317-5B90-471f-9AD2-FEC049870A16}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{7F6CFB6A-9227-4bb8-B941-F2B067E76F51}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{8736C681-37A0-40C6-A0F0-4C083409151C}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{A16AD1E9-F69A-45af-9462-B1C286708842}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE}
1,Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\Explorer Bars\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE}
1,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{AB0EE208-DF60-4fa7-A617-C4269760033E}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{C1089F63-7AFC-4538-B0EB-BEA0F4225A57}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{C9CCBB35-D123-4a31-AFFC-9B2933132116}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{CC7BD6F1-565C-47ce-A5BB-9C935E77B59D}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{CFC16189-8A92-4a29-A940-60248385F426}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{DBDB6FAA-1F5F-4A18-B60B-7A905C7FF83F}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{DEE758B4-C3FB-4a5b-9939-848B9C77A2FB}
3,Clé supprimée: HKLM\Software\Classes\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{E12AEAB6-7D12-4c07-8E36-5892EFB4DAFB}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{E2F2C137-A782-4fb5-81AF-086156F5EB0A}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{F1D06C9F-51F0-4476-BEDE-5DDF91BE304E}
1,Clé supprimée: HKLM\Software\Classes\CLSID\{F3A32DF2-7413-4fb1-B575-1AC920A17B76}
1,Clé supprimée: HKLM\Software\Classes\Interface\{01C78433-6FDF-4E5A-A82D-B535C32E03DF}
1,Clé supprimée: HKLM\Software\Classes\Interface\{17BF1E05-C0E8-413C-BD1F-A481EEA3B8E9}
1,Clé supprimée: HKLM\Software\Classes\Interface\{41349826-5C7F-4BF0-8279-5DAF1DE6E9AE}
1,Clé supprimée: HKLM\Software\Classes\Interface\{4634804A-F0B0-4A74-A550-FC0EEF8A4362}
1,Clé supprimée: HKLM\Software\Classes\Interface\{4C07EA4F-5F52-4222-B170-4CD9ED33BAEA}
1,Clé supprimée: HKLM\Software\Classes\Interface\{604EA016-1EDE-41E6-A23E-76CF8F2A4808}
1,Clé supprimée: HKLM\Software\Classes\Interface\{83B2FE06-BA20-4F7D-96C6-6FC3A4E877D3}
1,Clé supprimée: HKLM\Software\Classes\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB}
1,Clé supprimée: HKLM\Software\Classes\Interface\{AEBF09E2-0C15-43C8-99BF-928C645D98A0}
1,Clé supprimée: HKLM\Software\Classes\Interface\{B32966A2-F7C2-4362-A6CF-399EC8B44110}
1,Clé supprimée: HKLM\Software\Classes\Interface\{B3BA5582-79A9-464D-A7FA-711C5888C6E9}
1,Clé supprimée: HKLM\Software\Classes\Interface\{C44FEFF4-EF0C-4CF7-83D0-92B4266A32B9}
1,Clé supprimée: HKLM\Software\Classes\Interface\{F131923C-381D-4E4C-A472-4A17118FD742}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{02AED140-2B62-4B49-8B3B-179020CC39B9}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{04006843-5199-4CE4-B3CD-8092CC91706E}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{4B1C1E16-6B34-430E-B074-5928ECA4C150}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{506F578A-91E1-46CE-830F-E2F4268E9966}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{573F4ABB-A1A2-44ED-9BA9-A8DAD40AAC46}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{5FE0CEAE-CB69-40AF-A323-40F94257DACB}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{ACC62306-9A63-4864-BD2F-C8825D2D7EA6}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{D2E5FA06-DCC7-46F9-BEFF-BFD06F69B9B2}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{E343EDFC-1E6C-4CB5-AA29-E9C922641C80}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{E79BB61D-7F1A-41DF-8AD0-402795E3B566}
1,Clé supprimée: HKLM\Software\Classes\TypeLib\{F1A1892C-2A6C-4817-98B4-FF81443CBA20}
0,Clé supprimée: HKLM\Software\Classes\AskIBar.PopSwatterBarButton
0,Clé supprimée: HKLM\Software\Classes\AskIBar.PopSwatterBarButton.1
0,Clé supprimée: HKLM\Software\Classes\AskIBar.PopSwatterSettingsControl
0,Clé supprimée: HKLM\Software\Classes\AskIBar.PopSwatterSettingsControl.1
0,Clé supprimée: HKLM\Software\Classes\AskToolBar.SettingsPlugin
0,Clé supprimée: HKLM\Software\Classes\AskToolBar.SettingsPlugin.1
0,Clé supprimée: HKLM\Software\Classes\ctbcommon.Buttons
0,Clé supprimée: HKLM\Software\Classes\ctbr.R404Pro
0,Clé supprimée: HKLM\Software\Classes\CToolbar.TB4Client
0,Clé supprimée: HKLM\Software\Classes\CToolbar.TB4Script
0,Clé supprimée: HKLM\Software\Classes\CToolbar.TB4Server
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.AsyncReporter
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.AsyncReporter.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.CntntDic
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.CntntDic.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.CntntDisp
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.CntntDisp.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.Dwnldr
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.Dwnldr.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.HbAx
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.HbAx.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.HbGuru
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.HbGuru.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.HbInfoBand
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.HbInfoBand.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.IEButton
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.IEButton.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.IEButtonA
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.IEButtonA.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.KOPFF
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.KOPFF.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.MozillaNvgtnTrpr
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.MozillaNvgtnTrpr.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.MozillaPSExecuter
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.MozillaPSExecuter.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.ReportData
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.ReportData.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.Reporter
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.Reporter.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.RprtCtrl
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.RprtCtrl.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.Scopes
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.Scopes.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.Stock
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.Stock.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.TriggerImmidiate
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.TriggerImmidiate.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.TriggerImmidiateOrRandomTS
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.TriggerImmidiateOrRandomTS.1
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.TriggerOnceInDay
0,Clé supprimée: HKLM\Software\Classes\ShopperReports.TriggerOnceInDay.1
0,Clé supprimée: HKLM\Software\Classes\Toolbar.CT1978305
0,Clé supprimée: HKLM\Software\Classes\AppID\BRNstIE.DLL
0,Clé supprimée: HKLM\Software\Classes\AppID\CmndFF.DLL
0,Clé supprimée: HKLM\Software\Classes\AppID\mozillaps.dll
0,Clé supprimée: HKLM\Software\Classes\AppID\Pltfrm.DLL
0,Clé supprimée: HKLM\Software\AskBarDis
0,Clé supprimée: HKLM\Software\Casino Tropez
0,Clé supprimée: HKLM\Software\Conduit
0,Clé supprimée: HKLM\Software\CToolbar
0,Clé supprimée: HKLM\Software\QuestDns
0,Clé supprimée: HKLM\Software\ShopperReports3
0,Clé supprimée: HKLM\Software\AppDataLow\AskBarDis
0,Clé supprimée: HKCU\Software\Carnival Casino
0,Clé supprimée: HKCU\Software\Casino Tropez
0,Clé supprimée: HKCU\Software\casinoonnet
0,Clé supprimée: HKCU\Software\Conduit
0,Clé supprimée: HKCU\Software\CToolbar
0,Clé supprimée: HKCU\Software\fcn
0,Clé supprimée: HKCU\Software\PartyGaming
0,Clé supprimée: HKCU\Software\pokerinstaller
0,Clé supprimée: HKCU\Software\ShopperReports3
0,Clé supprimée: HKCU\Software\AppDataLow\AskBarDis
0,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\ShopperReports
3,Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
3,Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
3,Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420}
0,Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Ask Toolbar_is1
0,Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\CToolbar_UNINSTALL
0,Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\QuestDns
0,Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\ShopperReportsSA
0,Clé supprimée: HKCU\CasinonetInstaller
0,Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\MenuExt\Crawler Search
0,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2}
0,Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3}
0,Clé supprimée: HKLM\Software\Classes\PROTOCOLS\Handler\tbr
0,Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Extensions\{B7FE5D70-9AA2-40F1-9C6B-12A255F085E1}
0,Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Extensions\{c5428486-50a0-4a02-9d20-520b59a9f9b2}
0,Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Extensions\{c5428486-50a0-4a02-9d20-520b59a9f9b3}
0,Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\Crawler

0,Valeur supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform|ShopperReports 3.0.489.0
0,Valeur supprimée: HKLM\Software\Mozilla\Firefox\Extensions|Shopperreports@shopperreports.com
0,Valeur supprimée: HKLM\Software\Mozilla\Firefox\Extensions|{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
0,Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
0,Valeur supprimée: HKLM\Software\Microsoft\Internet Explorer\Toolbar|{3041D03E-FD4B-44E0-B742-2D9B88305F98}
0,Valeur supprimée: HKLM\Software\Microsoft\Internet Explorer\Toolbar|{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
0,Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{3041D03E-FD4B-44E0-B742-2D9B88305F98}
0,Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{4B3803EA-5230-4DC3-A7FC-33638F3D3542}


============== SCAN ADDITIONNEL ==============

** Mozilla Firefox Version [3.0.16 (fr)] **

-- D:\Documents and Settings\Imre\Application Data\Mozilla\FireFox\Profiles\nqnpmvtt.default\Prefs.js --
browser.download.lastDir, J:
browser.search.defaulturl, hxxp://search.live.com/results.aspx?FORM=IEFM1&q=
browser.startup.homepage, hxxp://www.google.fr/
browser.startup.homepage_override.mstone, rv:1.9.0.15

========================================

** Internet Explorer Version [8.0.6001.18702] **

[HKCU\Software\Microsoft\Internet Explorer\Main]
AutoHide: yes
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Do404Search: 0x01000000
Enable Browser Extensions: yes
Local Page: D:\WINDOWS\system32\blank.htm
Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
Show_ToolBar: yes
Start Page: hxxp://fr.msn.com/
Use Search Asst: no

[HKLM\Software\Microsoft\Internet Explorer\Main]
Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: D:\WINDOWS\system32\blank.htm
Search bar: hxxp://search.msn.com/spbasic.htm
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page: hxxp://fr.msn.com/

[HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS]
Tabs: res://ieframe.dll/tabswelcome.htm
Blank: res://mshtml.dll/blank.htm

========================================

D:\Program Files\Ad-Remover\Quarantine: 257 Fichier(s)
D:\Program Files\Ad-Remover\Backup: 13 Fichier(s)

D:\Ad-Report-CLEAN[1].txt - 24/09/2010 (3789 Octet(s))

Fin à: 20:45:03, 24/09/2010

============== E.O.F =============
0
H3RV3 Messages postés 3591 Date d'inscription samedi 17 octobre 2009 Statut Contributeur sécurité Dernière intervention 7 novembre 2014 280
25 sept. 2010 à 11:51
Oui, cette fois c'est OK :).

Mais tu as encore un paquet d'infections, on va éclaircir çà.
Refais un rapport ZHPDiag, héberge le sur cijoint et copie/colle le lien fourni.
0
doriaz Messages postés 13 Date d'inscription mercredi 22 septembre 2010 Statut Membre Dernière intervention 26 septembre 2010
25 sept. 2010 à 20:44
Ok, je t'envois le link, j'espere que tu peux uovrir:
http://www.cijoint.fr/cjlink.php?file=cj201009/cijNeHYvdR.txt
0
H3RV3 Messages postés 3591 Date d'inscription samedi 17 octobre 2009 Statut Contributeur sécurité Dernière intervention 7 novembre 2014 280
25 sept. 2010 à 21:00
Bien, il y a encore de quoi faire..


La suite :

Note : tu as une infection qui se propage par les disques amovibles.

● Télécharge USBFix (de El Desaparecido et C_XX) sur ton Bureau

● Double clique sur UsbFix.exe

● Clique sur le bouton "Recherche"

Branche à ton PC tes disques amovibles (clé USB, disque dur externe, lecteur MP3, téléphone, etc...) sans les ouvrir et clique sur le bouton OK

● Patiente pendant que l'outil travaille

● A la fin du scan un rapport va s'ouvrir, copie/colle le dans ta réponse

Le rapport est sauvegardé dans C:\UsbFix.txt

Note :
UsbFix.exe peut être détecté à tort par certains antivirus, ignore l'alerte.
0
doriaz Messages postés 13 Date d'inscription mercredi 22 septembre 2010 Statut Membre Dernière intervention 26 septembre 2010
25 sept. 2010 à 21:34
############################## | UsbFix 7.026 | [Recherche]

Utilisateur: Imre (Administrateur) # TOTH [ ]
Mis à jour le 24/09/10 par El Desaparecido / C_XX
Lancé à 21:32:14 | 25/09/2010
Site Web: http://www.teamxscript.org
Contact: FindyKill.Contact@gmail.com

CPU: Intel(R) Pentium(R) 4 CPU 2.66GHz
Microsoft Windows XP Professionnel (5.1.2600 32-Bit) # Service Pack 3
Internet Explorer 8.0.6001.18702

Pare-feu Windows: Activé
Antivirus: Malware Defense 1.0 [Enabled | (!) Outdated]
Antivirus: ESET NOD32 Antivirus 4.0 4.0 [Enabled | (!) Outdated]
RAM -> 3071 Mo
C:\ -> Disque fixe # 8 Go (8 Go libre(s) - 97%) [8GO] # NTFS
D:\ (%systemdrive%) -> Disque fixe # 39 Go (11 Go libre(s) - 28%) [XP-pro] # NTFS
E:\ -> Disque fixe # 31 Go (3 Go libre(s) - 9%) [Xp 2] # NTFS
J:\ -> Disque fixe # 83 Go (4 Go libre(s) - 4%) [Données1] # NTFS
K:\ -> Disque fixe # 83 Go (27 Go libre(s) - 32%) [Données2] # NTFS
L:\ -> CD-ROM
M:\ -> CD-ROM
N:\ -> Disque amovible # 242 Mo (205 Mo libre(s) - 85%) [] # FAT
P:\ -> Disque fixe # 298 Go (237 Mo libre(s) - 0%) [IOMEGA_HDD] # FAT32

################## | Éléments infectieux |



################## | Registre |


################## | Mountpoints2 |

HKCU\.\.\.\.\Explorer\MountPoints2\P
Shell\AutoRun\Command = P:\SFR.exe

HKCU\.\.\.\.\Explorer\MountPoints2\{03104b4b-961c-11de-ab4d-0014853a25e2}
Shell\AutoRun\Command = N:\SFR.exe

HKCU\.\.\.\.\Explorer\MountPoints2\{25f447a6-9326-11de-95a4-0014853a25e2}
Shell\AutoRun\Command = O:\SFR.exe

HKCU\.\.\.\.\Explorer\MountPoints2\{261d26cb-9712-11de-8978-0014853a25e2}
Shell\AutoRun\Command = N:\SFR.exe

HKCU\.\.\.\.\Explorer\MountPoints2\{55abbd80-93cb-11de-aed5-0014853a25e2}
Shell\AutoRun\Command = N:\SFR.exe

HKCU\.\.\.\.\Explorer\MountPoints2\{55abbd84-93cb-11de-aed5-0014853a25e2}
Shell\AutoRun\Command = N:\SFR.exe

HKCU\.\.\.\.\Explorer\MountPoints2\{57a7a593-b6a1-11df-ab5f-0014853a25e2}
Shell\AutoRun\Command = N:\InstallTomTomHOME.exe

HKCU\.\.\.\.\Explorer\MountPoints2\{84a4994b-9f8b-11de-abe2-0014853a25e2}
Shell\AutoRun\Command = N:\SFR.exe

HKCU\.\.\.\.\Explorer\MountPoints2\{a7d7a6cb-b8b1-11de-a4d6-0014853a25e2}
Shell\AutoRun\Command = N:\SFR.exe

HKCU\.\.\.\.\Explorer\MountPoints2\{b5a4e44b-96d6-11de-894f-0014853a25e2}
Shell\AutoRun\Command = N:\SFR.exe

HKCU\.\.\.\.\Explorer\MountPoints2\{ddcc3f4a-2c64-11df-aa98-0014853a25e2}
Shell\AutoRun\Command = N:\SFR.exe


################## | Vaccin |

(!) Cet ordinateur n'est pas vacciné!

################## | E.O.F |
0
H3RV3 Messages postés 3591 Date d'inscription samedi 17 octobre 2009 Statut Contributeur sécurité Dernière intervention 7 novembre 2014 280
25 sept. 2010 à 22:52
Tu sais ce qu'est le fichier SFR.exe ?

La suite :

● Relance UsbFix.exe

● Clique sur le bouton "Suppression"

Branche à ton PC tes disques amovibles (clé USB, disque dur externe, lecteur MP3, téléphone, etc...) sans les ouvrir et clique sur le bouton OK

● Patiente pendant que l'outil travaille

● A la fin de la suppression un rapport va s'ouvrir, copie/colle le dans ta réponse

Le rapport est sauvegardé dans C:\UsbFix.txt
0
doriaz Messages postés 13 Date d'inscription mercredi 22 septembre 2010 Statut Membre Dernière intervention 26 septembre 2010
26 sept. 2010 à 17:04
J'arrive pas faire cette manipulation.
Des que j'appuis sur suppression et je mets le clés usb, ca me bloque tout.
J'essayer au moin 6 fois et ca marche pas.Ca me bloque ordi et je suis obliger a redemarer.
Le supression ca commence mais ca reste toujours a 10%.Et ordi ca gele.
0
H3RV3 Messages postés 3591 Date d'inscription samedi 17 octobre 2009 Statut Contributeur sécurité Dernière intervention 7 novembre 2014 280
26 sept. 2010 à 17:36
On essayera çà plus tard.

On continue avec le rogue, le détournement DNS et le reste..

Note : Les rogues sont proposés en téléchargement suite à l'affichage de fausses alertes d'infection.
Ces fausses alertes t'incitent à télécharger et surtout acheter un antivirus/spyware fictif.
Fais attention à ne pas cliquer sur les différentes pop up de publicité qui peuvent s'ouvrir et sache qu'un logiciel de protection ne s'installe jamais tout seul.



● Télécharge Malwarebytes' Anti-Malware (MBAM)

● Double clique sur mbam-setup.exe pour lancer l'installation

● Laisse les options par défaut lors de l'installation

● Lance MBAM et laisse les Mises à jour se télécharger

● Va dans l'onglet Recherche, choisis "Exécuter un examen complet" puis clique sur Rechercher
Note : le scan peut durer plusieurs heures en fonction de la quantité de données présente sur ton PC

● A la fin du scan, clique sur Afficher les résultats

● Coche tous les éléments détectés puis clique sur Supprimer la sélection

● S'il t'est demandé de redémarrer, clique sur Yes

● Un rapport va s'ouvrir, copie/colle le dans ta réponse

Le rapport se trouve dans l'onglet Rapports/Logs de MBAM
0
doriaz Messages postés 13 Date d'inscription mercredi 22 septembre 2010 Statut Membre Dernière intervention 26 septembre 2010
26 sept. 2010 à 20:24
J'arrive Pas telecharger .
CECI Qui apparetre : Problème Petit ... Internet n'est Explorer Pas parvenu TROUVER à la www.malwarebytes.org page.

yer avec telecharger.net aussi mais c'est marche pas.
0
H3RV3 Messages postés 3591 Date d'inscription samedi 17 octobre 2009 Statut Contributeur sécurité Dernière intervention 7 novembre 2014 280
26 sept. 2010 à 21:35
0