Se connecter / S'enregistrer
Votre question

Je suis touché je suis touché maydey

Tags :
  • Internet Explorer
  • Sécurité
Dernière réponse : dans Sécurité et virus
14 Décembre 2010 11:55:21

bonjour suit a mon récent réinstal de windows , j'ai subit une attaque de virus et de spyware j'ai donc passer les antivirus en tous genre sans résultats pour ceux dobleclique et winfraud32.

Logfile of random's system information tool 1.08 (written by random/random)
Run by A.r.K at 2010-12-14 11:52:56
Microsoft Windows 7 Édition Intégrale
System drive C: has 22 GB (34%) free of 65 GB
Total RAM: 8191 MB (69% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:53:12, on 14/12/2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16671)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Logitech\G35\G35.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsMono-1.00.027\Applets\x86\LCDMedia.exe
C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
C:\Program Files (x86)\Mumble\mumble.exe
C:\Users\A.r.K\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\A.r.K\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\A.r.K\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\A.r.K\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\A.r.K\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\A.r.K\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\A.r.K\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\A.r.K\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\A.r.K.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [Logitech G35] C:\Program Files (x86)\Logitech\G35\G35.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\A.r.K\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [JP595IR86O] C:\Users\A.r.K\AppData\Local\Temp\Tlh.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE RÉSEAU')
O4 - Startup: Logitech . Enregistrement du produit.lnk = C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe
O4 - Startup: Logitech blank Enregistrement du produit.lnk = C:\Program Files (x86)\Logitech\G35\eReg.exe
O4 - Global Startup: Mise à jour des licences ESET.lnk = ?
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @appmgmts.dll,-3250 (AppMgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (AudioSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\cscsvc.dll,-200 (CscService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Ma-Config Service (maconfservice) - Unknown owner - C:\Program Files\ma-config.com\x64\maconfservice.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\peerdistsvc.dll,-9000 (PeerDistSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\sysWow64\perfhost.exe,-2 (PerfHost) - Unknown owner - C:\Windows\SysWow64\perfhost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\umrdp.dll,-1000 (UmRdpService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe
O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe

--
End of file - 21109 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1754011391-207817183-803587550-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1754011391-207817183-803587550-1001UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~2\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-12-14 41760]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-10-26 98304]
"ATICustomerCare"=C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe [2010-05-04 311296]
"Logitech G35"=C:\Program Files (x86)\Logitech\G35\G35.exe [2010-10-05 1811800]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\A.r.K\AppData\Local\Google\Update\GoogleUpdate.exe [2010-12-14 136176]
"JP595IR86O"=C:\Users\A.r.K\AppData\Local\Temp\Tlh.exe []
"Steam"=C:\Program Files (x86)\Steam\Steam.exe [2010-12-14 1242448]
"SpybotSD TeaTimer"=C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Mise à jour des licences ESET.lnk - C:\Program Files (x86)\ESET\MiNODLogin\MiNODLogin.exe

C:\Users\A.r.K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Logitech . Enregistrement du produit.lnk - C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe
Logitech blank Enregistrement du produit.lnk - C:\Program Files (x86)\Logitech\G35\eReg.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2010-12-14 11:09:15 ----D---- C:\rsit
2010-12-14 11:09:15 ----D---- C:\Program Files (x86)\trend micro
2010-12-14 10:46:22 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-12-14 10:46:22 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy
2010-12-14 08:19:30 ----D---- C:\Program Files (x86)\ESET
2010-12-14 07:51:55 ----D---- C:\ProgramData\Sun
2010-12-14 07:51:54 ----D---- C:\Program Files (x86)\Common Files\Java
2010-12-14 07:51:08 ----A---- C:\Windows\SysWOW64\javaws.exe
2010-12-14 07:51:08 ----A---- C:\Windows\SysWOW64\javaw.exe
2010-12-14 07:51:08 ----A---- C:\Windows\SysWOW64\java.exe
2010-12-14 07:51:08 ----A---- C:\Windows\SysWOW64\deployJava1.dll
2010-12-14 07:50:53 ----D---- C:\Program Files (x86)\Java
2010-12-14 07:29:38 ----D---- C:\ProgramData\ESET
2010-12-14 07:20:54 ----D---- C:\Windows\SysWOW64\Macromed
2010-12-14 07:17:59 ----D---- C:\Users\A.r.K\AppData\Roaming\Mumble
2010-12-14 07:17:47 ----D---- C:\Program Files (x86)\Mumble
2010-12-14 06:24:23 ----D---- C:\Program Files (x86)\Common Files\Steam
2010-12-14 06:24:21 ----D---- C:\Program Files (x86)\Steam
2010-12-14 06:02:35 ----D---- C:\Program Files (x86)\Common Files\LogiShrd
2010-12-14 05:24:45 ----D---- C:\Program Files (x86)\Intel
2010-12-14 05:24:45 ----A---- C:\Windows\SysWOW64\CSVer.dll
2010-12-14 05:24:32 ----D---- C:\Intel
2010-12-14 05:21:29 ----D---- C:\Windows\SysWOW64\Atheros_L1e
2010-12-14 05:21:25 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-12-14 05:09:54 ----D---- C:\ProgramData\LogiShrd
2010-12-14 05:08:24 ----D---- C:\Users\A.r.K\AppData\Roaming\Leadertech
2010-12-14 05:07:20 ----D---- C:\Program Files (x86)\Logitech
2010-12-14 04:55:51 ----D---- C:\ProgramData\ma-config.com
2010-12-14 04:48:25 ----A---- C:\Windows\SysWOW64\PresentationHostProxy.dll
2010-12-14 04:48:25 ----A---- C:\Windows\SysWOW64\PresentationHost.exe
2010-12-14 04:48:25 ----A---- C:\Windows\SysWOW64\netfxperf.dll
2010-12-14 04:48:25 ----A---- C:\Windows\SysWOW64\mscoree.dll
2010-12-14 04:48:23 ----A---- C:\Windows\SysWOW64\dfshim.dll
2010-12-14 04:38:01 ----D---- C:\Windows\SysWOW64\Wat
2010-12-14 04:31:47 ----A---- C:\Windows\SysWOW64\msv1_0.dll
2010-12-14 04:24:23 ----A---- C:\Windows\SysWOW64\CertEnroll.dll
2010-12-14 04:23:40 ----A---- C:\Windows\SysWOW64\CPFilters.dll
2010-12-14 04:23:39 ----A---- C:\Windows\SysWOW64\psisdecd.dll
2010-12-14 04:14:00 ----D---- C:\Users\A.r.K\AppData\Roaming\Logitech
2010-12-14 04:14:00 ----D---- C:\Users\A.r.K\AppData\Roaming\Logishrd
2010-12-14 04:09:32 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe
2010-12-14 04:09:32 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe
2010-12-14 04:09:12 ----A---- C:\Windows\SysWOW64\explorer.exe
2010-12-14 04:09:12 ----A---- C:\Windows\explorer.exe
2010-12-14 04:08:52 ----A---- C:\Windows\SysWOW64\oleaut32.dll
2010-12-14 04:08:15 ----A---- C:\Windows\SysWOW64\tzres.dll
2010-12-14 04:06:54 ----A---- C:\Windows\SysWOW64\sspicli.dll
2010-12-14 04:06:54 ----A---- C:\Windows\SysWOW64\secur32.dll
2010-12-14 04:05:49 ----A---- C:\Windows\SysWOW64\mshtml.dll
2010-12-14 04:05:49 ----A---- C:\Windows\SysWOW64\ieframe.dll
2010-12-14 04:05:48 ----A---- C:\Windows\SysWOW64\mstime.dll
2010-12-14 04:05:48 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2010-12-14 04:05:48 ----A---- C:\Windows\SysWOW64\iertutil.dll
2010-12-14 04:05:47 ----A---- C:\Windows\SysWOW64\wininet.dll
2010-12-14 04:05:47 ----A---- C:\Windows\SysWOW64\urlmon.dll
2010-12-14 04:05:47 ----A---- C:\Windows\SysWOW64\licmgr10.dll
2010-12-14 04:05:47 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2010-12-14 04:05:46 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2010-12-14 04:05:46 ----A---- C:\Windows\SysWOW64\msfeedssync.exe
2010-12-14 04:05:46 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll
2010-12-14 04:05:46 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2010-12-14 04:05:46 ----A---- C:\Windows\SysWOW64\ieui.dll
2010-12-14 04:05:46 ----A---- C:\Windows\SysWOW64\iepeers.dll
2010-12-14 04:05:00 ----A---- C:\Windows\SysWOW64\wmp.dll
2010-12-14 04:04:59 ----A---- C:\Windows\SysWOW64\wmploc.DLL
2010-12-14 04:04:26 ----A---- C:\Windows\SysWOW64\asycfilt.dll
2010-12-14 04:04:24 ----D---- C:\Users\A.r.K\AppData\Roaming\WinRAR
2010-12-14 04:04:17 ----A---- C:\Windows\SysWOW64\ntdll.dll
2010-12-14 04:04:10 ----A---- C:\Windows\SysWOW64\vbscript.dll
2010-12-14 04:04:07 ----A---- C:\Windows\SysWOW64\schannel.dll
2010-12-14 04:04:02 ----A---- C:\Windows\SysWOW64\StructuredQuery.dll
2010-12-14 04:03:38 ----A---- C:\Windows\SysWOW64\secproc_ssp_isv.dll
2010-12-14 04:03:38 ----A---- C:\Windows\SysWOW64\secproc_ssp.dll
2010-12-14 04:03:38 ----A---- C:\Windows\SysWOW64\secproc_isv.dll
2010-12-14 04:03:38 ----A---- C:\Windows\SysWOW64\secproc.dll
2010-12-14 04:03:38 ----A---- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2010-12-14 04:03:38 ----A---- C:\Windows\SysWOW64\RMActivate_ssp.exe
2010-12-14 04:03:38 ----A---- C:\Windows\SysWOW64\RMActivate_isv.exe
2010-12-14 04:03:38 ----A---- C:\Windows\SysWOW64\RMActivate.exe
2010-12-14 04:02:39 ----A---- C:\Windows\SysWOW64\shell32.dll
2010-12-14 04:02:27 ----A---- C:\Windows\SysWOW64\inetcomm.dll
2010-12-14 04:02:08 ----A---- C:\Windows\SysWOW64\t2embed.dll
2010-12-14 04:01:34 ----A---- C:\Windows\SysWOW64\wow32.dll
2010-12-14 04:01:34 ----A---- C:\Windows\SysWOW64\user.exe
2010-12-14 04:01:34 ----A---- C:\Windows\SysWOW64\setup16.exe
2010-12-14 04:01:34 ----A---- C:\Windows\SysWOW64\rtutils.dll
2010-12-14 04:01:34 ----A---- C:\Windows\SysWOW64\ntvdm64.dll
2010-12-14 04:01:34 ----A---- C:\Windows\SysWOW64\instnm.exe
2010-12-14 03:59:28 ----D---- C:\Users\A.r.K\AppData\Roaming\Macromedia
2010-12-14 03:59:28 ----D---- C:\Users\A.r.K\AppData\Roaming\Adobe
2010-12-14 03:58:14 ----A---- C:\Windows\SysWOW64\iccvid.dll
2010-12-14 03:57:29 ----A---- C:\Windows\SysWOW64\tsbyuv.dll
2010-12-14 03:57:29 ----A---- C:\Windows\SysWOW64\quartz.dll
2010-12-14 03:57:29 ----A---- C:\Windows\SysWOW64\msyuv.dll
2010-12-14 03:57:29 ----A---- C:\Windows\SysWOW64\msvidc32.dll
2010-12-14 03:57:29 ----A---- C:\Windows\SysWOW64\msrle32.dll
2010-12-14 03:57:29 ----A---- C:\Windows\SysWOW64\mciavi32.dll
2010-12-14 03:57:29 ----A---- C:\Windows\SysWOW64\iyuv_32.dll
2010-12-14 03:57:29 ----A---- C:\Windows\SysWOW64\avifil32.dll
2010-12-14 03:56:45 ----A---- C:\Windows\SysWOW64\msxml3.dll
2010-12-14 03:56:39 ----A---- C:\Windows\SysWOW64\jscript.dll
2010-12-14 03:56:12 ----A---- C:\Windows\SysWOW64\msasn1.dll
2010-12-14 03:56:10 ----A---- C:\Windows\SysWOW64\fontsub.dll
2010-12-14 03:56:10 ----A---- C:\Windows\SysWOW64\atmlib.dll
2010-12-14 03:56:10 ----A---- C:\Windows\SysWOW64\atmfd.dll
2010-12-14 03:55:40 ----A---- C:\Windows\SysWOW64\sscore.dll
2010-12-14 03:43:24 ----D---- C:\Users\A.r.K\AppData\Roaming\ATI
2010-12-14 03:43:24 ----D---- C:\ProgramData\ATI
2010-12-14 03:41:13 ----D---- C:\Program Files (x86)\Common Files\ATI Technologies
2010-12-14 03:41:07 ----D---- C:\Program Files (x86)\ATI Stream
2010-12-14 03:41:04 ----D---- C:\Program Files (x86)\ATI
2010-12-14 03:40:15 ----D---- C:\Program Files (x86)\ATI Technologies
2010-12-14 03:40:08 ----SHD---- C:\Windows\Installer
2010-12-14 03:35:20 ----A---- C:\Windows\SysWOW64\wintrust.dll
2010-12-14 03:35:16 ----A---- C:\Windows\SysWOW64\cabview.dll
2010-12-14 03:17:57 ----D---- C:\Users\A.r.K\AppData\Roaming\Identities
2010-12-14 03:17:13 ----SD---- C:\Users\A.r.K\AppData\Roaming\Microsoft
2010-12-14 03:17:13 ----D---- C:\Users\A.r.K\AppData\Roaming\Media Center Programs
2010-12-14 03:16:50 ----SHD---- C:\ProgramData\Modèles
2010-12-14 03:16:50 ----SHD---- C:\ProgramData\Menu Démarrer
2010-12-14 03:16:50 ----SHD---- C:\ProgramData\Favoris
2010-12-14 03:16:50 ----SHD---- C:\ProgramData\Bureau
2010-12-14 03:07:18 ----D---- C:\Windows\SoftwareDistribution
2010-12-14 03:04:16 ----D---- C:\Windows\Minidump
2010-12-14 03:04:12 ----D---- C:\Windows\Prefetch
2010-12-14 03:02:51 ----D---- C:\Windows\Panther
2010-12-14 03:02:38 ----RASH---- C:\BOOTSECT.BAK
2010-12-14 03:02:36 ----SHD---- C:\Boot
2010-12-14 02:51:35 ----D---- C:\Windows.old
2010-12-14 00:55:18 ----D---- C:\ATI
2010-12-14 00:33:25 ----SHD---- C:\Recovery
2010-12-14 00:20:09 ----ASH---- C:\pagefile.sys
2010-12-14 00:20:07 ----SHD---- C:\System Volume Information
2010-12-14 00:20:07 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 months======

2010-12-14 11:53:05 ----D---- C:\Windows\Temp
2010-12-14 11:34:29 ----D---- C:\Windows\Tasks
2010-12-14 11:09:15 ----RD---- C:\Program Files (x86)
2010-12-14 10:46:22 ----HD---- C:\ProgramData
2010-12-14 10:31:51 ----D---- C:\Windows
2010-12-14 09:47:48 ----D---- C:\Windows\debug
2010-12-14 08:54:14 ----D---- C:\Windows\inf
2010-12-14 08:51:57 ----RD---- C:\Program Files
2010-12-14 07:51:54 ----D---- C:\Program Files (x86)\Common Files
2010-12-14 07:51:08 ----D---- C:\Windows\SysWOW64
2010-12-14 07:40:09 ----D---- C:\Windows\System32
2010-12-14 07:18:32 ----D---- C:\Windows\Downloaded Program Files
2010-12-14 06:01:19 ----D---- C:\Windows\winsxs
2010-12-14 05:44:50 ----SD---- C:\ProgramData\Microsoft
2010-12-14 04:58:08 ----D---- C:\Windows\Microsoft.NET
2010-12-14 04:58:07 ----RSD---- C:\Windows\assembly
2010-12-14 04:49:19 ----D---- C:\Windows\ehome
2010-12-14 04:48:03 ----D---- C:\Windows\AppPatch
2010-12-14 04:38:16 ----D---- C:\Program Files (x86)\Internet Explorer
2010-12-14 04:38:10 ----D---- C:\Program Files (x86)\Windows Mail
2010-12-14 04:38:04 ----D---- C:\Windows\SysWOW64\fr-FR
2010-12-14 04:37:54 ----D---- C:\Windows\SysWOW64\migration
2010-12-14 04:37:50 ----D---- C:\Program Files (x86)\Windows Media Player
2010-12-14 03:34:42 ----D---- C:\Windows\Logs
2010-12-14 03:17:55 ----D---- C:\Windows\rescache
2010-12-14 03:17:44 ----SHD---- C:\$Recycle.Bin
2010-12-14 03:17:10 ----RD---- C:\Users
2010-12-14 03:04:40 ----D---- C:\Windows\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 mv61xx;mv61xx; C:\Windows\system32\DRIVERS\mv61xx.sys []
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys []
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys []
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys []
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys []
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys []
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys []
R3 driverhardwarev2x64;driverhardwarev2x64; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2x64.sys [2010-08-30 15872]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys []
R3 LADF_DHP2;G35 DHP2 Filter Driver; C:\Windows\system32\DRIVERS\ladfDHP2amd64.sys []
R3 LADF_SBVM;G35 SBVM Filter Driver; C:\Windows\system32\DRIVERS\ladfSBVMamd64.sys []
R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\LGBusEnum.sys []
R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver; C:\Windows\system32\drivers\LGVirHid.sys []
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys []
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys []
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys []
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys []
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys []
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys []
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2010-08-12 810144]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2010-12-14 403240]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-08-12 42360]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2010-10-28 357456]
S3 maconfservice;Ma-Config Service; C:\Program Files\ma-config.com\x64\maconfservice.exe [2010-09-12 325120]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []

-----------------EOF-----------------

voici pour le rapport donné par RSIT


quel est la démarche a suivre pour se séparer des ces malveillants???


merci par avance

Autres pages sur : touche touche maydey

a c 267 8 Sécurité
a b , Internet Explorer
14 Décembre 2010 12:49:34

Bonjour,


1/

  • Démarre Spybot, clique sur Mode, coche Mode avancé.
  • A gauche, clique sur Outils, puis sur Résident.
  • Décoche la case devant Résident "TeaTimer" :

  • Quitte Spybot.


    2/

  • Télécharge Malwarebytes' Anti-Malware (MBAM) sur ton Bureau.
  • Double-clique sur le fichier téléchargé pour lancer le processus d'installation.
  • Dans l'onglet Mise à jour, clique sur le bouton Recherche de mise à jour.
  • Une fois la mise à jour terminée, rends-toi dans l'onglet Recherche.
  • Sélectionne Exécuter un examen rapide.
  • Clique sur Rechercher. L'analyse démarre.
  • A la fin de l'analyse, un message s'affiche :
    Citation :
    L'examen s'est terminé normalement. Cliquez sur 'Afficher les résultats' pour afficher tous les objets trouvés.

  • Clique sur OK pour poursuivre. Si MBAM n'a rien trouvé, il te le dira aussi.
  • Ferme ton navigateur.
  • Si des malwares ont été détectés, clique sur Afficher les résultats.
  • Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection.
  • MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport dans ta prochaine réponse.
    14 Décembre 2010 13:25:47

    merci de votre réponse rapide je fait ca au plus vite
    Contenus similaires
    14 Décembre 2010 13:29:15

    voila pour le rapport cela a solutionner le probleme merci bcp de votre soutient


    Malwarebytes' Anti-Malware 1.50
    www.malwarebytes.org

    Version de la base de données: 5310

    Windows 6.1.7600
    Internet Explorer 8.0.7600.16385

    14/12/2010 13:28:27
    mbam-log-2010-12-14 (13-28-27).txt

    Type d'examen: Examen rapide
    Elément(s) analysé(s): 148225
    Temps écoulé: 1 minute(s), 12 seconde(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 0
    Valeur(s) du Registre infectée(s): 0
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 0

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Valeur(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    (Aucun élément nuisible détecté)
    a c 267 8 Sécurité
    a b , Internet Explorer
    14 Décembre 2010 14:35:52

    Donc plus de souci ?
    14 Décembre 2010 14:46:08

    non apprement plus de problème de spyware d'autre problème plus embêtants semble être de la partie mais c'est dans une autre section du forum .... merci de ton aide
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS