Windows ne parvient pas à accéder

Résolu/Fermé
dubitoph - 27 sept. 2011 à 15:51
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 - 29 sept. 2011 à 20:46
Bonjour,





J'ai voulu installer un programme de fax, et apparemment, malgré le scan via AVG, je me suis chopé un virus qui me bloque complètement. La poisse, c'est que je ne parviens pas à savoir de quel virus il s'agit.

J'ai installé "HijackThis", mais lorsque je clique dessus, ça m'indique "Windows ne parvient pas à accéder au périphérique, au chemin d'accès ou au fichier spécifié. Vous ne disposez peut-être pas des autorisations appropriées pour avoir accès à l'élément.".

J'ai tenté de faire un scan antivirus en ligne par "Secuser.com" via "Internet explorer", mais depuis, j'ai le même message d'erreur lorsque j'essaie d'accéder à Internet Explorer.

Dans la configuration d'AVG, l'identity protection a été désactivée, et impossible de la réactiver. J'obtiens le message "Une erreur s'est produite au cours de l'enregistrement de la configuration. Une erreur innatendue s'est produite dans le composant "IDP".

J'ai tenté de faire une restauration XP à une date antérieure, mais à chaque fois la restauration n'a pu se faire.

Maintenant, l'UC du pc est non stop à 100%.

Merci d'avance de toute l'aide que vous pourrez m'apporter, car mon pc est quasiment inutilisable.
A voir également:

51 réponses

Bonjour et un tout rand merci pour ton aide.

Dans cette réponse, je vais coller le rapport émis par "Reload_TDSSKiller ". Malgré le message de demande de redémarrage du pc que ce logiciel m'indiquait à la fin de l'opération, je n'ai pas redémarrer le pc (pour que la cure soit complète). Dois-je le faire?

Dans une seconde réponse, je vais coller le rapport émis par "RogueKiller".

Voici celui émis par émis par "Reload_TDSSKiller " :


16:20:01.0265 1636 TDSS rootkit removing tool 2.6.2.0 Sep 26 2011 18:56:43
16:20:01.0406 1636 ============================================================
16:20:01.0406 1636 Current date / time: 2011/09/27 16:20:01.0406
16:20:01.0406 1636 SystemInfo:
16:20:01.0406 1636
16:20:01.0406 1636 OS Version: 5.1.2600 ServicePack: 3.0
16:20:01.0406 1636 Product type: Workstation
16:20:01.0406 1636 ComputerName: CHR
16:20:01.0406 1636 UserName: dmi
16:20:01.0406 1636 Windows directory: C:\WINDOWS
16:20:01.0406 1636 System windows directory: C:\WINDOWS
16:20:01.0406 1636 Processor architecture: Intel x86
16:20:01.0406 1636 Number of processors: 2
16:20:01.0406 1636 Page size: 0x1000
16:20:01.0406 1636 Boot type: Normal boot
16:20:01.0406 1636 ============================================================
16:20:01.0671 1636 Initialize success
16:20:07.0843 3836 ============================================================
16:20:07.0843 3836 Scan started
16:20:07.0843 3836 Mode: Manual;
16:20:07.0843 3836 ============================================================
16:20:08.0156 3836 a347bus (1f61cacacb521215f39061789147968c) C:\WINDOWS\system32\DRIVERS\a347bus.sys
16:20:08.0156 3836 a347bus - ok
16:20:08.0187 3836 a347scsi (113e4b318bbaa7483ca4e582a4d63f49) C:\WINDOWS\system32\Drivers\a347scsi.sys
16:20:08.0187 3836 a347scsi - ok
16:20:08.0203 3836 Abiosdsk - ok
16:20:08.0218 3836 abp480n5 - ok
16:20:08.0281 3836 Accelerometer (6c2e405d98e6342a9d66a2493e7ab15e) C:\WINDOWS\system32\DRIVERS\Accelerometer.sys
16:20:08.0281 3836 Accelerometer - ok
16:20:08.0359 3836 ACPI (e5e6dbfc41ea8aad005cb9a57a96b43b) C:\WINDOWS\system32\DRIVERS\ACPI.sys
16:20:08.0359 3836 ACPI - ok
16:20:08.0390 3836 ACPIEC (e4abc1212b70bb03d35e60681c447210) C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
16:20:08.0406 3836 ACPIEC - ok
16:20:08.0515 3836 ADIHdAudAddService (ff60db2aca88543c025eacba25cee5c1) C:\WINDOWS\system32\drivers\ADIHdAud.sys
16:20:08.0515 3836 ADIHdAudAddService - ok
16:20:08.0531 3836 adpu160m - ok
16:20:08.0562 3836 AEAudio (fff87a9b1ab36ee4b7bec98a4cb01b79) C:\WINDOWS\system32\drivers\AEAudio.sys
16:20:08.0562 3836 AEAudio - ok
16:20:08.0656 3836 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
16:20:08.0656 3836 aec - ok
16:20:08.0734 3836 AFD (355556d9e580915118cd7ef736653a89) C:\WINDOWS\System32\drivers\afd.sys
16:20:08.0734 3836 AFD - ok
16:20:08.0859 3836 AgereSoftModem (1cfeba39fc613e45b49d3eddfbcda289) C:\WINDOWS\system32\DRIVERS\AGRSM.sys
16:20:08.0906 3836 AgereSoftModem - ok
16:20:08.0937 3836 Aha154x - ok
16:20:08.0953 3836 aic78u2 - ok
16:20:08.0984 3836 aic78xx - ok
16:20:09.0000 3836 AliIde - ok
16:20:09.0031 3836 amsint - ok
16:20:09.0109 3836 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
16:20:09.0109 3836 Arp1394 - ok
16:20:09.0140 3836 asc - ok
16:20:09.0171 3836 asc3350p - ok
16:20:09.0187 3836 asc3550 - ok
16:20:09.0250 3836 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
16:20:09.0250 3836 AsyncMac - ok
16:20:09.0281 3836 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\drivers\atapi.sys
16:20:09.0281 3836 atapi - ok
16:20:09.0296 3836 Atdisk - ok
16:20:09.0343 3836 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
16:20:09.0343 3836 Atmarpc - ok
16:20:09.0453 3836 ATSwpWDF (a9f9d1d24441889beb1aa2b917457e23) C:\WINDOWS\system32\Drivers\ATSwpWDF.sys
16:20:09.0468 3836 ATSwpWDF - ok
16:20:09.0546 3836 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
16:20:09.0546 3836 audstub - ok
16:20:09.0625 3836 AVGIDSDriver (2d18221aab3db2d408d6c55c0f23090a) C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys
16:20:09.0625 3836 AVGIDSDriver - ok
16:20:09.0703 3836 AVGIDSEH (1af676db3f3d4cc709cfab2571cf5fc3) C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys
16:20:09.0703 3836 AVGIDSEH - ok
16:20:09.0734 3836 AVGIDSFilter (4c51e233c87f9ec7598551de554bc99d) C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys
16:20:09.0734 3836 AVGIDSFilter - ok
16:20:09.0781 3836 AVGIDSShim (c3fc426e54f55c1cc3219e415b88e10c) C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys
16:20:09.0781 3836 AVGIDSShim - ok
16:20:09.0843 3836 Avgldx86 (4e796d3d2c3182b13b3e3b5a2ad4ef0a) C:\WINDOWS\system32\DRIVERS\avgldx86.sys
16:20:09.0843 3836 Avgldx86 - ok
16:20:09.0859 3836 Avgmfx86 (5639de66b37d02bd22df4cf3155fba60) C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
16:20:09.0859 3836 Avgmfx86 - ok
16:20:09.0890 3836 Avgrkx86 (d1baf652eda0ae70896276a1fb32c2d4) C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
16:20:09.0890 3836 Avgrkx86 - ok
16:20:09.0937 3836 Avgtdix (aaf0ebcad95f2164cffb544e00392498) C:\WINDOWS\system32\DRIVERS\avgtdix.sys
16:20:09.0937 3836 Avgtdix - ok
16:20:10.0031 3836 b57w2k (ea377a8e8e1000877210259750cbbf5f) C:\WINDOWS\system32\DRIVERS\b57xp32.sys
16:20:10.0031 3836 b57w2k - ok
16:20:10.0093 3836 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
16:20:10.0093 3836 Beep - ok
16:20:10.0171 3836 BTKRNL (ef5e0de0a7ca2977a9255f36f4d915ab) C:\WINDOWS\system32\DRIVERS\btkrnl.sys
16:20:10.0171 3836 BTKRNL - ok
16:20:10.0187 3836 BTWUSB (053dc5be74621b63bb48c2b86bafc7b0) C:\WINDOWS\system32\Drivers\btwusb.sys
16:20:10.0187 3836 BTWUSB - ok
16:20:10.0218 3836 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
16:20:10.0218 3836 cbidf2k - ok
16:20:10.0281 3836 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
16:20:10.0281 3836 CCDECODE - ok
16:20:10.0312 3836 cd20xrnt - ok
16:20:10.0343 3836 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
16:20:10.0343 3836 Cdaudio - ok
16:20:10.0406 3836 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
16:20:10.0421 3836 Cdfs - ok
16:20:10.0437 3836 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
16:20:10.0453 3836 Cdrom - ok
16:20:10.0484 3836 Changer - ok
16:20:10.0500 3836 CmBatt (0f6c187d38d98f8df904589a5f94d411) C:\WINDOWS\system32\DRIVERS\CmBatt.sys
16:20:10.0500 3836 CmBatt - ok
16:20:10.0531 3836 CmdIde - ok
16:20:10.0562 3836 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
16:20:10.0562 3836 Compbatt - ok
16:20:10.0593 3836 Cpqarray - ok
16:20:10.0718 3836 CrystalSysInfo (f054744f67576a01139885173392502b) C:\Program Files\MediaCoder\SysInfo.sys
16:20:10.0734 3836 CrystalSysInfo - ok
16:20:10.0781 3836 dac2w2k - ok
16:20:10.0796 3836 dac960nt - ok
16:20:10.0875 3836 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
16:20:10.0875 3836 Disk - ok
16:20:10.0921 3836 dmboot (f5deadd42335fb33edca74ecb2f36cba) C:\WINDOWS\system32\drivers\dmboot.sys
16:20:10.0953 3836 dmboot - ok
16:20:10.0984 3836 dmio (5a7c47c9b3f9fb92a66410a7509f0c71) C:\WINDOWS\system32\drivers\dmio.sys
16:20:10.0984 3836 dmio - ok
16:20:11.0015 3836 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
16:20:11.0015 3836 dmload - ok
16:20:11.0109 3836 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
16:20:11.0109 3836 DMusic - ok
16:20:11.0171 3836 dpti2o - ok
16:20:11.0187 3836 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
16:20:11.0187 3836 drmkaud - ok
16:20:11.0250 3836 dsNcAdpt (b2c3f71b86e25c3df78339ddb40a7562) C:\WINDOWS\system32\DRIVERS\dsNcAdpt.sys
16:20:11.0250 3836 dsNcAdpt - ok
16:20:11.0281 3836 f7bd01a7 (814f20ada863444953f10261740cf4b1) C:\WINDOWS\2801909239:138608216.exe
16:20:11.0281 3836 Suspicious file (Hidden): C:\WINDOWS\2801909239:138608216.exe. md5: 814f20ada863444953f10261740cf4b1
16:20:11.0281 3836 f7bd01a7 ( HiddenFile.Multi.Generic ) - warning
16:20:11.0281 3836 f7bd01a7 - detected HiddenFile.Multi.Generic (1)
16:20:11.0343 3836 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
16:20:11.0343 3836 Fastfat - ok
16:20:11.0406 3836 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\drivers\Fdc.sys
16:20:11.0406 3836 Fdc - ok
16:20:11.0421 3836 Fips (31f923eb2170fc172c81abda0045d18c) C:\WINDOWS\system32\drivers\Fips.sys
16:20:11.0437 3836 Fips - ok
16:20:11.0453 3836 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\drivers\Flpydisk.sys
16:20:11.0468 3836 Flpydisk - ok
16:20:11.0515 3836 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\DRIVERS\fltMgr.sys
16:20:11.0531 3836 FltMgr - ok
16:20:11.0562 3836 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
16:20:11.0562 3836 Fs_Rec - ok
16:20:11.0609 3836 Ftdisk (a86859b77b908c18c2657f284aa29fe3) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
16:20:11.0609 3836 Ftdisk - ok
16:20:11.0703 3836 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
16:20:11.0718 3836 Gpc - ok
16:20:11.0781 3836 HBtnKey (407e41ddb2bfece109132aec296e0d98) C:\WINDOWS\system32\DRIVERS\cpqbttn.sys
16:20:11.0781 3836 HBtnKey - ok
16:20:11.0859 3836 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
16:20:11.0859 3836 HDAudBus - ok
16:20:11.0906 3836 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
16:20:11.0906 3836 HidUsb - ok
16:20:11.0968 3836 hpdskflt (e8a95df23097bca840814d42f2ee5164) C:\WINDOWS\system32\DRIVERS\hpdskflt.sys
16:20:11.0968 3836 hpdskflt - ok
16:20:11.0984 3836 hpn - ok
16:20:12.0031 3836 HpqKbFiltr (35956140e686d53bf676cf0c778880fc) C:\WINDOWS\system32\DRIVERS\HpqKbFiltr.sys
16:20:12.0046 3836 HpqKbFiltr - ok
16:20:12.0125 3836 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
16:20:12.0140 3836 HTTP - ok
16:20:12.0171 3836 i2omgmt - ok
16:20:12.0203 3836 i2omp - ok
16:20:12.0218 3836 i8042prt (a09bdc4ed10e3b2e0ec27bb94af32516) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
16:20:12.0234 3836 i8042prt - ok
16:20:12.0468 3836 ialm (f592a1b020723cfbd3d2722514066449) C:\WINDOWS\system32\DRIVERS\igxpmp32.sys
16:20:12.0609 3836 ialm - ok
16:20:12.0703 3836 iaStor (db0cc620b27a928d968c1a1e9cd9cb87) C:\WINDOWS\system32\DRIVERS\iaStor.sys
16:20:12.0703 3836 iaStor - ok
16:20:12.0765 3836 IFXTPM (667cfdb801df771f47b7c39373c2d850) C:\WINDOWS\system32\DRIVERS\IFXTPM.SYS
16:20:12.0765 3836 IFXTPM - ok
16:20:12.0859 3836 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
16:20:12.0859 3836 Imapi - ok
16:20:12.0906 3836 ini910u - ok
16:20:12.0953 3836 IntelIde - ok
16:20:12.0984 3836 intelppm (ad340800c35a42d4de1641a37feea34c) C:\WINDOWS\system32\DRIVERS\intelppm.sys
16:20:12.0984 3836 intelppm - ok
16:20:13.0031 3836 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
16:20:13.0031 3836 Ip6Fw - ok
16:20:13.0062 3836 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
16:20:13.0062 3836 IpFilterDriver - ok
16:20:13.0078 3836 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
16:20:13.0078 3836 IpInIp - ok
16:20:13.0109 3836 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
16:20:13.0109 3836 IpNat - ok
16:20:13.0187 3836 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
16:20:13.0187 3836 IPSec - ok
16:20:13.0218 3836 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
16:20:13.0218 3836 IRENUM - ok
16:20:13.0265 3836 isapnp (355836975a67b6554bca60328cd6cb74) C:\WINDOWS\system32\DRIVERS\isapnp.sys
16:20:13.0265 3836 isapnp - ok
16:20:13.0328 3836 Kbdclass (16813155807c6881f4bfbf6657424659) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
16:20:13.0328 3836 Kbdclass - ok
16:20:13.0359 3836 kbdhid (94c59cb884ba010c063687c3a50dce8e) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
16:20:13.0359 3836 kbdhid - ok
16:20:13.0421 3836 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
16:20:13.0421 3836 kmixer - ok
16:20:13.0484 3836 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
16:20:13.0484 3836 KSecDD - ok
16:20:13.0546 3836 Lavasoft Kernexplorer - ok
16:20:13.0640 3836 Lbd (b7c19ec8b0dd7efa58ad41ffeb8b8cda) C:\WINDOWS\system32\DRIVERS\Lbd.sys
16:20:13.0640 3836 Lbd - ok
16:20:13.0656 3836 lbrtfdc - ok
16:20:13.0750 3836 LMIInfo (4f69faaabb7db0d43e327c0b6aab40fc) C:\Program Files\LogMeIn\x86\RaInfo.sys
16:20:13.0765 3836 LMIInfo - ok
16:20:13.0796 3836 lmimirr (4477689e2d8ae6b78ba34c9af4cc1ed1) C:\WINDOWS\system32\DRIVERS\lmimirr.sys
16:20:13.0796 3836 lmimirr - ok
16:20:13.0812 3836 LMIRfsClientNP - ok
16:20:13.0859 3836 LMIRfsDriver (3faa563ddf853320f90259d455a01d79) C:\WINDOWS\system32\drivers\LMIRfsDriver.sys
16:20:13.0859 3836 LMIRfsDriver - ok
16:20:13.0953 3836 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
16:20:13.0953 3836 mnmdd - ok
16:20:14.0031 3836 Modem (510ade9327fe84c10254e1902697e25f) C:\WINDOWS\system32\drivers\Modem.sys
16:20:14.0031 3836 Modem - ok
16:20:14.0093 3836 Mouclass (027c01bd7ef3349aaebc883d8a799efb) C:\WINDOWS\system32\DRIVERS\mouclass.sys
16:20:14.0093 3836 Mouclass - ok
16:20:14.0156 3836 mouhid (124d6846040c79b9c997f78ef4b2a4e5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
16:20:14.0156 3836 mouhid - ok
16:20:14.0171 3836 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
16:20:14.0171 3836 MountMgr - ok
16:20:14.0171 3836 mraid35x - ok
16:20:14.0218 3836 MRxDAV (e3f17e1ea5256709d4e97ef0da04b3c9) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
16:20:14.0218 3836 MRxDAV - ok
16:20:14.0265 3836 MRxSmb (0ea4d8ed179b75f8afa7998ba22285ca) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
16:20:14.0281 3836 MRxSmb - ok
16:20:14.0343 3836 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
16:20:14.0343 3836 Msfs - ok
16:20:14.0390 3836 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
16:20:14.0406 3836 MSKSSRV - ok
16:20:14.0468 3836 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
16:20:14.0484 3836 MSPCLOCK - ok
16:20:14.0546 3836 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
16:20:14.0546 3836 MSPQM - ok
16:20:14.0609 3836 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
16:20:14.0609 3836 mssmbios - ok
16:20:14.0656 3836 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
16:20:14.0656 3836 MSTEE - ok
16:20:14.0750 3836 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
16:20:14.0750 3836 Mup - ok
16:20:14.0812 3836 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
16:20:14.0812 3836 NABTSFEC - ok
16:20:14.0875 3836 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
16:20:14.0875 3836 NDIS - ok
16:20:14.0921 3836 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
16:20:14.0937 3836 NdisIP - ok
16:20:15.0000 3836 NdisTapi (1ab3d00c991ab086e69db84b6c0ed78f) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
16:20:15.0000 3836 NdisTapi - ok
16:20:15.0078 3836 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
16:20:15.0078 3836 Ndisuio - ok
16:20:15.0125 3836 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
16:20:15.0125 3836 NdisWan - ok
16:20:15.0500 3836 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
16:20:15.0500 3836 NDProxy - ok
16:20:15.0531 3836 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
16:20:15.0546 3836 NetBIOS - ok
16:20:15.0640 3836 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
16:20:15.0656 3836 NetBT - ok
16:20:15.0843 3836 NETw5x32 (05743fffc2bc88cc8e426321bc6a762e) C:\WINDOWS\system32\DRIVERS\NETw5x32.sys
16:20:15.0937 3836 NETw5x32 - ok
16:20:15.0968 3836 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
16:20:15.0968 3836 NIC1394 - ok
16:20:16.0015 3836 nm (1e421a6bcf2203cc61b821ada9de878b) C:\WINDOWS\system32\DRIVERS\NMnt.sys
16:20:16.0015 3836 nm - ok
16:20:16.0093 3836 NPF (243126da7ba441d7c7c3262dcf435a9c) C:\WINDOWS\system32\drivers\npf.sys
16:20:16.0093 3836 NPF - ok
16:20:16.0171 3836 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
16:20:16.0171 3836 Npfs - ok
16:20:16.0203 3836 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
16:20:16.0234 3836 Ntfs - ok
16:20:16.0296 3836 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
16:20:16.0296 3836 Null - ok
16:20:16.0343 3836 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
16:20:16.0359 3836 NwlnkFlt - ok
16:20:16.0406 3836 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
16:20:16.0406 3836 NwlnkFwd - ok
16:20:16.0453 3836 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
16:20:16.0453 3836 ohci1394 - ok
16:20:16.0546 3836 Parport (8fd0bdbea875d06ccf6c945ca9abaf75) C:\WINDOWS\system32\DRIVERS\parport.sys
16:20:16.0546 3836 Parport - ok
16:20:16.0578 3836 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
16:20:16.0578 3836 PartMgr - ok
16:20:16.0640 3836 ParVdm (9575c5630db8fb804649a6959737154c) C:\WINDOWS\system32\drivers\ParVdm.sys
16:20:16.0640 3836 ParVdm - ok
16:20:16.0718 3836 PCI (043410877bda580c528f45165f7125bc) C:\WINDOWS\system32\DRIVERS\pci.sys
16:20:16.0718 3836 PCI - ok
16:20:16.0750 3836 PCIDump - ok
16:20:16.0765 3836 PCIIde - ok
16:20:16.0828 3836 Pcmcia (f0406cbc60bdb0394a0e17ffb04cdd3d) C:\WINDOWS\system32\drivers\Pcmcia.sys
16:20:16.0828 3836 Pcmcia - ok
16:20:16.0875 3836 PDCOMP - ok
16:20:16.0890 3836 PDFRAME - ok
16:20:16.0906 3836 PDRELI - ok
16:20:16.0984 3836 PDRFRAME - ok
16:20:17.0000 3836 perc2 - ok
16:20:17.0031 3836 perc2hib - ok
16:20:17.0078 3836 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
16:20:17.0078 3836 PptpMiniport - ok
16:20:17.0109 3836 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
16:20:17.0109 3836 PSched - ok
16:20:17.0125 3836 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
16:20:17.0125 3836 Ptilink - ok
16:20:17.0140 3836 ql1080 - ok
16:20:17.0156 3836 Ql10wnt - ok
16:20:17.0156 3836 ql12160 - ok
16:20:17.0171 3836 ql1240 - ok
16:20:17.0187 3836 ql1280 - ok
16:20:17.0218 3836 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
16:20:17.0218 3836 RasAcd - ok
16:20:17.0281 3836 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
16:20:17.0281 3836 Rasl2tp - ok
16:20:17.0296 3836 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
16:20:17.0296 3836 RasPppoe - ok
16:20:17.0312 3836 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
16:20:17.0312 3836 Raspti - ok
16:20:17.0359 3836 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
16:20:17.0359 3836 Rdbss - ok
16:20:17.0375 3836 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
16:20:17.0375 3836 RDPCDD - ok
16:20:17.0437 3836 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
16:20:17.0437 3836 rdpdr - ok
16:20:17.0515 3836 RDPWD (6728e45b66f93c08f11de2e316fc70dd) C:\WINDOWS\system32\drivers\RDPWD.sys
16:20:17.0515 3836 RDPWD - ok
16:20:17.0546 3836 redbook (bdefd9d248add5d35dfb36485d58ef52) C:\WINDOWS\system32\DRIVERS\redbook.sys
16:20:17.0562 3836 Suspicious file (Forged): C:\WINDOWS\system32\DRIVERS\redbook.sys. Real md5: bdefd9d248add5d35dfb36485d58ef52, Fake md5: d8eb2a7904db6c916eb5361878ddcbae
16:20:17.0562 3836 redbook ( Rootkit.Win32.ZAccess.e ) - infected
16:20:17.0562 3836 redbook - detected Rootkit.Win32.ZAccess.e (0)
16:20:17.0640 3836 SCR3XX2K (fc87d5e0328afa97bf6d39df96d5d356) C:\WINDOWS\system32\DRIVERS\SCR3XX2K.sys
16:20:17.0656 3836 SCR3XX2K - ok
16:20:17.0718 3836 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
16:20:17.0718 3836 Secdrv - ok
16:20:17.0765 3836 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
16:20:17.0765 3836 serenum - ok
16:20:17.0796 3836 Serial (93d313c31f7ad9ea2b75f26075413c7c) C:\WINDOWS\system32\DRIVERS\serial.sys
16:20:17.0796 3836 Serial - ok
16:20:17.0875 3836 SFAUDIO (b6401608579b6431994425ba7653f774) C:\WINDOWS\system32\drivers\sfaudio.sys
16:20:17.0875 3836 SFAUDIO - ok
16:20:17.0968 3836 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\DRIVERS\sfloppy.sys
16:20:17.0968 3836 Sfloppy - ok
16:20:18.0015 3836 Simbad - ok
16:20:18.0062 3836 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
16:20:18.0062 3836 SLIP - ok
16:20:18.0203 3836 SNP2UVC (cf9cde12fbc19dba8de528b7511a2f4f) C:\WINDOWS\system32\DRIVERS\snp2uvc.sys
16:20:18.0250 3836 SNP2UVC - ok
16:20:18.0281 3836 Sparrow - ok
16:20:18.0343 3836 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
16:20:18.0343 3836 splitter - ok
16:20:18.0437 3836 sptd (d15da1ba189770d93eea2d7e18f95af9) C:\WINDOWS\system32\Drivers\sptd.sys
16:20:18.0437 3836 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: d15da1ba189770d93eea2d7e18f95af9
16:20:18.0437 3836 sptd ( LockedFile.Multi.Generic ) - warning
16:20:18.0437 3836 sptd - detected LockedFile.Multi.Generic (1)
16:20:18.0531 3836 sr (39626e6dc1fb39434ec40c42722b660a) C:\WINDOWS\system32\DRIVERS\sr.sys
16:20:18.0531 3836 sr - ok
16:20:18.0625 3836 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
16:20:18.0625 3836 Srv - ok
16:20:18.0687 3836 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
16:20:18.0687 3836 streamip - ok
16:20:18.0765 3836 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
16:20:18.0781 3836 swenum - ok
16:20:18.0843 3836 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
16:20:18.0843 3836 swmidi - ok
16:20:18.0906 3836 symc810 - ok
16:20:18.0968 3836 symc8xx - ok
16:20:18.0984 3836 sym_hi - ok
16:20:19.0015 3836 sym_u3 - ok
16:20:19.0093 3836 SynTP (f08667f79bbd339547f477c75c3ed0b9) C:\WINDOWS\system32\DRIVERS\SynTP.sys
16:20:19.0093 3836 SynTP - ok
16:20:19.0125 3836 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
16:20:19.0125 3836 sysaudio - ok
16:20:19.0203 3836 tap0801 (846b7c0e3f6370cdcce157a5b36e70cd) C:\WINDOWS\system32\DRIVERS\tap0801.sys
16:20:19.0203 3836 tap0801 - ok
16:20:19.0296 3836 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
16:20:19.0296 3836 Tcpip - ok
16:20:19.0406 3836 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
16:20:19.0406 3836 TDPIPE - ok
16:20:19.0453 3836 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
16:20:19.0453 3836 TDTCP - ok
16:20:19.0500 3836 teamviewervpn (9101fffcfccd1a30e870a5b8a9091b10) C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys
16:20:19.0515 3836 teamviewervpn - ok
16:20:19.0562 3836 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
16:20:19.0562 3836 TermDD - ok
16:20:19.0656 3836 tmcomm (eb2283c0a4dfbd2e53d14f2c4d5a1e89) C:\WINDOWS\system32\drivers\tmcomm.sys
16:20:19.0656 3836 tmcomm - ok
16:20:19.0687 3836 TosIde - ok
16:20:19.0875 3836 TrueSight (ddbf8e194041469f26fc6cbc8264beb0) C:\Documents and Settings\dmi\Bureau\TrueSight.sys
16:20:19.0890 3836 TrueSight - ok
16:20:19.0984 3836 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
16:20:19.0984 3836 Udfs - ok
16:20:20.0031 3836 ultra - ok
16:20:20.0093 3836 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
16:20:20.0109 3836 Update - ok
16:20:20.0171 3836 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
16:20:20.0171 3836 usbccgp - ok
16:20:20.0265 3836 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
16:20:20.0265 3836 usbehci - ok
16:20:20.0296 3836 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
16:20:20.0312 3836 usbhub - ok
16:20:20.0375 3836 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
16:20:20.0375 3836 usbprint - ok
16:20:20.0437 3836 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
16:20:20.0437 3836 usbscan - ok
16:20:20.0500 3836 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
16:20:20.0515 3836 USBSTOR - ok
16:20:20.0593 3836 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
16:20:20.0593 3836 usbuhci - ok
16:20:20.0656 3836 usbvideo (63bbfca7f390f4c49ed4b96bfb1633e0) C:\WINDOWS\system32\Drivers\usbvideo.sys
16:20:20.0656 3836 usbvideo - ok
16:20:20.0750 3836 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
16:20:20.0765 3836 VgaSave - ok
16:20:20.0781 3836 ViaIde - ok
16:20:20.0812 3836 VolSnap (46de1126684369bace4849e4fc8c43ca) C:\WINDOWS\system32\drivers\VolSnap.sys
16:20:20.0812 3836 VolSnap - ok
16:20:20.0859 3836 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
16:20:20.0859 3836 Wanarp - ok
16:20:20.0937 3836 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
16:20:20.0937 3836 Wdf01000 - ok
16:20:21.0000 3836 WDICA - ok
16:20:21.0062 3836 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
16:20:21.0062 3836 wdmaud - ok
16:20:21.0156 3836 WmiAcpi (c42584fd66ce9e17403aebca199f7bdb) C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
16:20:21.0156 3836 WmiAcpi - ok
16:20:21.0218 3836 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
16:20:21.0234 3836 WSTCODEC - ok
16:20:21.0312 3836 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
16:20:21.0312 3836 WudfPf - ok
16:20:21.0390 3836 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
16:20:21.0390 3836 WudfRd - ok
16:20:21.0437 3836 MBR (0x1B8) (c99c3199cfaa4cbdcd91493f6d113a50) \Device\Harddisk0\DR0
16:20:21.0593 3836 \Device\Harddisk0\DR0 - ok
16:20:21.0609 3836 Boot (0x1200) (7c8d0dcb31f179aff5003f6445918649) \Device\Harddisk0\DR0\Partition0
16:20:21.0609 3836 \Device\Harddisk0\DR0\Partition0 - ok
16:20:21.0609 3836 ============================================================
16:20:21.0609 3836 Scan finished
16:20:21.0609 3836 ============================================================
16:20:21.0625 3224 Detected object count: 3
16:20:21.0625 3224 Actual detected object count: 3
16:22:46.0453 3224 f7bd01a7 ( HiddenFile.Multi.Generic ) - skipped by user
16:22:46.0453 3224 f7bd01a7 ( HiddenFile.Multi.Generic ) - User select action: Skip
16:22:48.0203 3224 Backup copy found, using it..
16:22:48.0218 3224 C:\WINDOWS\system32\DRIVERS\redbook.sys - will be cured on reboot
16:22:48.0218 3224 redbook ( Rootkit.Win32.ZAccess.e ) - User select action: Cure
16:22:48.0234 3224 sptd ( LockedFile.Multi.Generic ) - skipped by user
16:22:48.0234 3224 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
16:23:12.0718 1036 Deinitialize success
0