Droits administrateurs perdus
Forum Systèmes d'exploitation (Windows, Mac OS, Linux...) : Droits administrateurs perdus
Bonjour,
Je me suis inscrit sur ce forum car je galère avec mon PC HP dv7.
Depuis quelques temps, je n'arrive plus à enregistrer de fichiers/logiciels ni à les supprimer sur le répertoire C
rogrammes files.
De plus, mon PC se bloque sur internet explorer et ça le fait de + en + alors qu'il a moins d'1 an.
Est-ce que quelqu'un pourrait m'aider svp ?
Merci d'avance !
Salut,
La réponse se trouve peut-être dans ce post: Débloquer un compte admin
Merci de ta réponse, malheureusement cela ne fonctionne.
Le ou les virus qui attaquent mon pc portable ont les droits admin...
Après avoir regardé sur différents forums, j'ai installé combofix et voici le log.
Quelqu'un peut m'aider à analyser le problème svp ?
ComboFix 09-06-18.02 - Julien 19/06/2009 22:58.1 - NTFSx86
Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6001.1.1252.33.1036.18.3068.1775 [GMT 2:00]
Lancé depuis: c:\users\Julien\Desktop\ComboFix.exe
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\$recycle.bin\S-1-5-21-2639622858-1032598739-1578306981-1001
c:\$recycle.bin\S-1-5-21-2639622858-1032598739-1578306981-500
c:\$recycle.bin\S-1-5-21-2692589750-4280226949-1803133592-500
c:\program files\MyWebSearch
c:\$recycle.bin\S-1-5-21-2639622858-1032598739-1578306981-1001\desktop.ini
c:\$recycle.bin\S-1-5-21-2639622858-1032598739-1578306981-500\desktop.ini
c:\$recycle.bin\S-1-5-21-2692589750-4280226949-1803133592-500\desktop.ini
c:\program files\Internet Explorer\msimg32.dll
c:\program files\MyWebSearch\bar\1.bin\F3BKGERR.JPG
c:\program files\MyWebSearch\bar\1.bin\F3CJPEG.DLL
c:\program files\MyWebSearch\bar\1.bin\F3DTACTL.DLL
c:\program files\MyWebSearch\bar\1.bin\F3HISTSW.DLL
c:\program files\MyWebSearch\bar\1.bin\F3HTMLMU.DLL
c:\program files\MyWebSearch\bar\1.bin\F3HTTPCT.DLL
c:\program files\MyWebSearch\bar\1.bin\F3IMSTUB.DLL
c:\program files\MyWebSearch\bar\1.bin\F3POPSWT.DLL
c:\program files\MyWebSearch\bar\1.bin\F3PSSAVR.SCR
c:\program files\MyWebSearch\bar\1.bin\F3REPROX.DLL
c:\program files\MyWebSearch\bar\1.bin\F3RESTUB.DLL
c:\program files\MyWebSearch\bar\1.bin\F3SCHMON.EXE
c:\program files\MyWebSearch\bar\1.bin\F3SCRCTR.DLL
c:\program files\MyWebSearch\bar\1.bin\F3SPACER.WMV
c:\program files\MyWebSearch\bar\1.bin\F3WALLPP.DAT
c:\program files\MyWebSearch\bar\1.bin\F3WPHOOK.DLL
c:\program files\MyWebSearch\bar\1.bin\FWPBUDDY.PNG
c:\program files\MyWebSearch\bar\1.bin\M3FFXTBR.JAR
c:\program files\MyWebSearch\bar\1.bin\M3FFXTBR.MANIFEST
c:\program files\MyWebSearch\bar\1.bin\M3HIGHIN.EXE
c:\program files\MyWebSearch\bar\1.bin\M3HTML.DLL
c:\program files\MyWebSearch\bar\1.bin\M3IDLE.DLL
c:\program files\MyWebSearch\bar\1.bin\M3IMPIPE.EXE
c:\program files\MyWebSearch\bar\1.bin\M3MEDINT.EXE
c:\program files\MyWebSearch\bar\1.bin\M3MSG.DLL
c:\program files\MyWebSearch\bar\1.bin\M3NTSTBR.JAR
c:\program files\MyWebSearch\bar\1.bin\M3NTSTBR.MANIFEST
c:\program files\MyWebSearch\bar\1.bin\M3OUTLCN.DLL
c:\program files\MyWebSearch\bar\1.bin\M3PLUGIN.DLL
c:\program files\MyWebSearch\bar\1.bin\M3SKIN.DLL
c:\program files\MyWebSearch\bar\1.bin\M3SKPLAY.EXE
c:\program files\MyWebSearch\bar\1.bin\M3SLSRCH.EXE
c:\program files\MyWebSearch\bar\1.bin\M3SRCHMN.EXE
c:\program files\MyWebSearch\bar\1.bin\MWSBAR.DLL
c:\program files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
c:\program files\MyWebSearch\bar\1.bin\MWSOEPLG.DLL
c:\program files\MyWebSearch\bar\1.bin\MWSOESTB.DLL
c:\program files\MyWebSearch\bar\1.bin\MWSSVC.EXE
c:\program files\MyWebSearch\bar\1.bin\NPMYWEBS.DLL
c:\program files\MyWebSearch\bar\Avatar\COMMON.F3S
c:\program files\MyWebSearch\bar\Game\CHECKERS.F3S
c:\program files\MyWebSearch\bar\Game\CHESS.F3S
c:\program files\MyWebSearch\bar\Game\REVERSI.F3S
c:\program files\MyWebSearch\bar\icons\CM.ICO
c:\program files\MyWebSearch\bar\icons\MFC.ICO
c:\program files\MyWebSearch\bar\icons\PSS.ICO
c:\program files\MyWebSearch\bar\icons\SMILEY.ICO
c:\program files\MyWebSearch\bar\icons\WB.ICO
c:\program files\MyWebSearch\bar\icons\ZWINKY.ICO
c:\program files\MyWebSearch\bar\Message\COMMON.F3S
c:\program files\MyWebSearch\bar\Notifier\COMMON.F3S
c:\program files\MyWebSearch\bar\Notifier\DOG.F3S
c:\program files\MyWebSearch\bar\Notifier\FISH.F3S
c:\program files\MyWebSearch\bar\Notifier\KUNGFU.F3S
c:\program files\MyWebSearch\bar\Notifier\LIFEGARD.F3S
c:\program files\MyWebSearch\bar\Notifier\MAID.F3S
c:\program files\MyWebSearch\bar\Notifier\MAILBOX.F3S
c:\program files\MyWebSearch\bar\Notifier\OPERA.F3S
c:\program files\MyWebSearch\bar\Notifier\ROBOT.F3S
c:\program files\MyWebSearch\bar\Notifier\SEDUCT.F3S
c:\program files\MyWebSearch\bar\Notifier\SURFER.F3S
c:\program files\MyWebSearch\bar\Settings\s_pid.dat
c:\program files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
c:\users\Julien\AppData\Local\yeyme.dat
c:\users\Julien\AppData\Local\yeyme.exe
c:\users\Julien\AppData\Local\yeyme_nav.dat
c:\users\Julien\AppData\Local\yeyme_navps.dat
c:\windows\system32\f3PSSavr.scr
D:\Desktop.ini
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_MyWebSearchService
((((((((((((((((((((((((((((( Fichiers créés du 2009-05-19 au 2009-06-19 ))))))))))))))))))))))))))))))))))))
.
2009-06-19 20:53 . 2009-06-19 20:53 -------- d-----w- C:\32788R22FWJFW.0.tmp
2009-06-19 20:27 . 2009-06-19 20:27 -------- d-----w- c:\users\Admin sans échec
2009-06-18 20:41 . 2009-06-18 20:47 -------- d-----w- c:\program files\Itunes
2009-06-16 18:55 . 2009-06-16 18:55 38208 ----a-w- c:\users\Julien\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
2009-06-16 18:55 . 2009-06-16 18:55 -------- d-----w- c:\program files\Common Files\Adobe AIR
2009-06-16 18:53 . 2009-06-16 18:53 -------- d-----w- c:\users\Julien\AppData\Local\P5
2009-06-16 17:18 . 2009-06-19 20:30 89 ----a-w- c:\users\Julien\AppData\Local\yeyme.bat
2009-06-13 21:00 . 2009-04-30 12:37 428544 ----a-w- c:\windows\system32\EncDec.dll
2009-06-13 21:00 . 2009-04-30 12:37 293376 ----a-w- c:\windows\system32\psisdecd.dll
2009-06-05 09:42 . 2009-06-05 09:42 39424 ----a-w- c:\windows\system32\drivers\usbaapl.sys
2009-06-05 09:42 . 2009-06-05 09:42 2060288 ----a-w- c:\windows\system32\usbaaplrc.dll
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-19 21:11 . 2008-08-11 15:28 309548 ----a-w- c:\programdata\nvModes.dat
2009-06-19 21:09 . 2008-06-09 21:13 12 ----a-w- c:\windows\bthservsdp.dat
2009-06-19 12:51 . 2008-06-09 22:37 -------- d-----w- c:\programdata\Microsoft Help
2009-06-18 20:37 . 2008-06-09 21:25 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-06-18 20:32 . 2008-10-09 19:08 1356 ----a-w- c:\users\Julien\AppData\Local\d3d9caps.dat
2009-06-18 20:17 . 2009-02-06 18:41 -------- d-----w- c:\program files\Common Files\Apple
2009-06-18 19:24 . 2009-02-06 18:41 -------- d-----w- c:\programdata\Apple
2009-06-14 15:28 . 2009-02-24 21:22 89 ----a-w- c:\users\Julien\AppData\Local\nmmllkk.bat
2009-06-11 21:27 . 2008-06-10 07:03 669566 ----a-w- c:\windows\system32\perfh00C.dat
2009-06-11 21:27 . 2008-06-10 07:03 123556 ----a-w- c:\windows\system32\perfc00C.dat
2009-05-15 07:43 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2009-04-24 16:05 . 2009-06-11 20:31 827904 ----a-w- c:\windows\system32\wininet.dll
2009-04-24 16:02 . 2009-06-11 20:31 78336 ----a-w- c:\windows\system32\ieencode.dll
2009-04-24 13:44 . 2009-06-11 20:31 26624 ----a-w- c:\windows\system32\ieUnatt.exe
2009-04-23 12:43 . 2009-06-11 20:31 784896 ----a-w- c:\windows\system32\rpcrt4.dll
2009-04-23 12:42 . 2009-06-11 20:31 636928 ----a-w- c:\windows\system32\localspl.dll
2009-04-21 11:55 . 2009-06-11 20:31 2033152 ----a-w- c:\windows\system32\win32k.sys
2008-06-10 07:05 . 2008-06-10 07:05 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-21 1233920]
"LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2008-02-26 2289664]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-12-29 687560]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-14 13535776]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-14 92704]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-01-18 1033512]
"SysTrayApp"="c:\program files\IDT\WDM\sttray.exe" [2008-04-15 442433]
"QPService"="c:\program files\HP\QuickPlay\QPService.exe" [2008-04-23 468264]
"QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2008-03-14 202032]
"OnScreenDisplay"="c:\program files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe" [2007-11-01 554288]
"HP Health Check Scheduler"="c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2008-04-15 70912]
"HP Software Update"="c:\program files\Hp\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2007-11-20 488752]
"SunJavaUpdateSched"="c:\program files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 144784]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 39792]
"avast!"="c:\telech~1\Avast\ashDisp.exe" [2008-11-26 81000]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Microsoft Office.lnk - c:\microsot office\Office10\OSA.EXE [2001-2-13 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-2639622858-1032598739-1578306981-1000]
"EnableNotificationsRef"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{D1802490-E87E-48D0-BDAC-7EDECED1ABE5}"= c:\program files\HP\QuickPlay\QP.exe:Quick Play
"{8F283E0C-FCC7-4DB2-B168-1B9BEFE42EB2}"= c:\program files\HP\QuickPlay\QPService.exe:Quick Play Resident Program
"{B881FFC5-BB7C-4D93-AE12-08A9E623E7BD}"= UDP:c:\program files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{19204F74-677E-421C-B091-206707E1D3E8}"= TCP:c:\program files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{E8340E7C-740B-434C-87A4-26AC5DBE7C8C}"= c:\program files\Cyberlink\PowerDirector\PDR.EXE:CyberLink PowerDirector
"{61B112D2-2874-4B25-82B0-048166DD8B8F}"= UDP:c:\program files\Common Files\AOL\Loader\aolload.exe:AOL Loader
"{CC33C678-B506-4A5D-ADD9-04EE7F95B6DF}"= TCP:c:\program files\Common Files\AOL\Loader\aolload.exe:AOL Loader
"{A065D260-EF54-4F87-B4A6-E485A9FEA090}"= UDP:c:\jeux\PCM demo\[Demo] Pro Cycling Manager - Season 2008\Autorun\Exe\Autorun.exe:[Demo] Pro Cycling Manager - Season 2008 - AutoRun
"{D5E1EFAD-3EC8-47CD-A18F-B0DF4FA190F8}"= TCP:c:\jeux\PCM demo\[Demo] Pro Cycling Manager - Season 2008\Autorun\Exe\Autorun.exe:[Demo] Pro Cycling Manager - Season 2008 - AutoRun
"{826BC03A-9BAF-4001-A8E6-7CED86AE51DD}"= UDP:18038:emule
"{DB325D82-886C-4C4F-987D-55572883DD80}"= TCP:7858:emule
"{21F83E34-AAD5-4DB9-B4A3-1E678AEEC669}"= UDP:c:\telechargements\Emule\emule.exe:eMule
"{FC1DDA52-D782-4FA5-9153-15678A2A375B}"= TCP:c:\telechargements\Emule\emule.exe:eMule
"{9948287D-D888-4D89-B513-3BC8EEB0A185}"= UDP:c:\program files\MSN Messenger\msnmsgr.exe:MSN Messenger 7.0
"{B481A381-4361-4A8D-AE14-6971F500926B}"= TCP:c:\program files\MSN Messenger\msnmsgr.exe:MSN Messenger 7.0
"{115DB800-B1C8-476D-915C-51034EBEE83A}"= UDP:c:\program files\MSN Messenger\msnmsgr.exe:MSN Messenger 7.0
"{75102111-006A-40F0-B556-04DAEDDA0E77}"= TCP:c:\program files\MSN Messenger\msnmsgr.exe:MSN Messenger 7.0
"{5B9AF149-4DCB-4634-BBF6-B54817FC3D46}"= UDP:c:\program files\MSN Messenger\msnmsgr.exe:MSN Messenger 7.0
"{1A62ACE9-E1BD-4440-AAE2-861F87D25A97}"= TCP:c:\program files\MSN Messenger\msnmsgr.exe:MSN Messenger 7.0
"{A9DA21E7-994D-4B01-9B77-3FC9DFDCFC95}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{06FC4516-3375-4AEB-8E19-E219FC79FEE6}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{D39C60E9-6D17-4B30-933E-B9185D601D80}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{BC89AB10-F960-4ECF-8FF3-E6BC4E079F85}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{136574A3-7228-41C2-8286-92F4FBC3D427}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{EBC2DECC-7C26-4E54-AAA3-96F31AAB9A62}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{0C0A4270-836F-496C-93F2-5185CB7D04E0}"= UDP:c:\program files\Empire of Sports\NetworkDiagnostic.exe:Empire of Sports Network Diagnostic
"{956A3CF4-23EB-43A4-A399-CAAACA3750B4}"= TCP:c:\program files\Empire of Sports\NetworkDiagnostic.exe:Empire of Sports Network Diagnostic
"{0E725F08-991F-40E6-AC0C-95343A0699AA}"= UDP:c:\program files\Empire of Sports\EmpireOfSports.exe:Empire of Sports
"{5C837F1F-B51F-4A6C-B7CA-9B6C1AEA299C}"= TCP:c:\program files\Empire of Sports\EmpireOfSports.exe:Empire of Sports
"{D56E6936-3A4E-4072-B663-03D521CC8EA1}"= UDP:c:\program files\Cyanide\GameCenter\GameCenter.exe:GameCenter
"{8618A811-F8FB-43EA-93C1-F4999EB23447}"= TCP:c:\program files\Cyanide\GameCenter\GameCenter.exe:GameCenter
"{706FDD41-E99D-45D0-9720-796518B63BA5}"= UDP:c:\pro cycling manager - season 2008\PCM.exe
ro Cycling Manager - Season 2008
"{B01BD2F3-6AB9-4D14-8F00-8820EA401A07}"= TCP:c:\pro cycling manager - season 2008\PCM.exe
ro Cycling Manager - Season 2008
"{7DC59F22-B06E-4393-9786-214F00549DCD}"= UDP:c:\pro cycling manager - season 2008\Autorun\Exe\Autorun.exe
ro Cycling Manager - Season 2008 - AutoRun
"{37EAB2AF-7D24-42A3-A899-48DFCDF1D836}"= TCP:c:\pro cycling manager - season 2008\Autorun\Exe\Autorun.exe
ro Cycling Manager - Season 2008 - AutoRun
"{857C27FE-20ED-4AC1-A9CA-FA39B010ECFB}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{EB4D0DB2-8B06-410B-B80A-4C7D6A1622C1}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{9C4E7A38-9559-4554-9F16-60511DF8BB5B}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{B70DBD8D-B604-4C63-858A-651F881DA20B}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{4AA02BBB-5527-4B81-91BD-C7586B8AEB97}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{738E3C9B-18CC-49F0-B7CD-254D7EFBD113}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{1DB6F4A3-6610-4A5F-B960-B4FE7FEAC2C5}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{221153BF-DDDC-49E7-B44F-E06E58708202}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{FA2B0CF1-855F-4718-B7D8-87ADC0FD711A}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{A59495D4-15BA-4928-88C3-D9382BECA5A3}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{6FDD5F12-4E62-476C-A4BE-FD090186DDEE}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{3EBEFCB9-57A1-467F-B81A-11568A604D0A}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{BAED2B3F-3FF1-47D5-B185-4240B9BA2B58}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{3B0FA2DC-F1F3-44F9-BBDD-2579C25C012C}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{48044380-8D3B-442E-B632-F0CD91480DB9}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{41BFDFDA-8B2E-45BD-A286-475DC77FCB86}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{E64FE069-0E39-45A6-ACE8-AFBD2C5205AA}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{A2EB2F72-3299-488C-A083-8550240E6A39}"= UDP:c:\program files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:Call of Duty(R) 4 - Modern Warfare(TM)
"{92E06213-3A19-4586-ADD0-C86A7671855B}"= TCP:c:\program files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:Call of Duty(R) 4 - Modern Warfare(TM)
"{C2F1FEC7-8823-4A40-88D9-1289974616E7}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{EB86290A-D381-4102-B50B-CB1FC9893C0F}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{5CA516B2-EC43-4B50-9C77-540610376402}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{BA5AEBE9-51BD-4325-A0BA-1C592CEEAA6D}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{3C9B3409-B63E-47AC-B4C4-53BB971FF85F}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{D5087198-19D9-4318-B153-94185F57D87F}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{A7DEAC20-5586-461C-9A8A-5D66FA0DF711}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{E1ECAF66-A9A3-48A8-8563-B14F9DB90417}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{E8EED12D-2BEE-428E-AC87-E346B9EB9EDB}"= UDP:c:\program files\Sports Interactive\Football Manager 2008\fm.exe:Football Manager 2008
"{44135EC5-3765-43FB-BC04-5E719B470496}"= TCP:c:\program files\Sports Interactive\Football Manager 2008\fm.exe:Football Manager 2008
"{5C58B75A-FA92-49A2-ACF6-7F461731A175}"= UDP:c:\program files\Sports Interactive\Football Manager 2009\fm.exe:Football Manager 2009
"{81EEE1ED-CBF8-475B-A919-6EE75A5D2E51}"= TCP:c:\program files\Sports Interactive\Football Manager 2009\fm.exe:Football Manager 2009
"{3314513F-FE75-4CA3-A6EA-3F8B359E8805}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{0A817DCD-270F-45C5-ABD1-34A86B63EB74}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{E68B6648-0F9E-43F9-85DF-EA01076555F3}"= UDP:c:\program files\Activision\Call of Duty - World at War\CoDWaWmp.exe:Call of Duty(R) - World at War(TM)
"{4C5D023D-0DAB-4506-B884-D64599AFB08B}"= TCP:c:\program files\Activision\Call of Duty - World at War\CoDWaWmp.exe:Call of Duty(R) - World at War(TM)
"{49CDA8F1-592D-4407-A515-13A41A98206A}"= UDP:c:\program files\Activision\Call of Duty - World at War\CoDWaW.exe:Call of Duty(R) - World at War(TM)
"{EFDCBCB7-CA49-42CC-9C4C-78F76C06BD56}"= TCP:c:\program files\Activision\Call of Duty - World at War\CoDWaW.exe:Call of Duty(R) - World at War(TM)
"{AAA68285-4256-41BE-828D-5BEED091A91A}"= UDP:c:\program files\Activision\Call of Duty - World at War\CoDWaW.exe:Call of Duty(R) - World at War(TM)
"{9F06E8E6-F712-45EB-A66F-69AB2EE5218C}"= TCP:c:\program files\Activision\Call of Duty - World at War\CoDWaW.exe:Call of Duty(R) - World at War(TM)
"{2740F25E-BADB-4AE1-BA7A-8F9F2B0C882B}"= UDP:c:\program files\Activision\Call of Duty - World at War\CoDWaWmp.exe:Call of Duty(R) - World at War(TM)
"{74F911B0-6666-4D86-A9A5-D7C375B052FE}"= TCP:c:\program files\Activision\Call of Duty - World at War\CoDWaWmp.exe:Call of Duty(R) - World at War(TM)
"{00320462-28E7-4921-B313-0BB9D698C3E2}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{47304E33-F245-4638-8560-2B66CEB4616F}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{3E111D64-6D3C-4438-A397-49908D8B9056}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{826B1D6D-0817-487A-ACE8-AEB27ECDC7BE}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{21768CD8-4EF6-434E-B5C4-A3872E8EAEDB}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{E286451C-A694-468D-B574-A41FA546788D}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{EAEC9897-D839-4768-99D4-9639948A4EEE}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{823A029F-7FD3-4CF3-8EA2-AA32E80D9A7F}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{FAAACBAA-64EA-4354-B935-827BE481D4BF}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{27D805C9-2978-4147-AB83-A23DEDE6976C}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{609E5929-2D33-4986-840E-4EA01A1AB884}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"TCP Query User{CB312110-7EB9-4F0B-8971-B0802F011DE9}c:\\telechargements\\emule\\emule.exe"= UDP:c:\telechargements\emule\emule.exe:eMule
"UDP Query User{E8D87B5D-131C-4561-A1E9-3DF4BB9C8B28}c:\\telechargements\\emule\\emule.exe"= TCP:c:\telechargements\emule\emule.exe:eMule
"{CE07EFED-9E76-4395-A85E-FA334CBF10EB}"= UDP:18038:Emule
"{8FF555CC-7B9E-4C72-B33C-656727F1966C}"= TCP:7858:emule
"{2282658A-C190-4068-AF50-39F5DFDB1115}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{2B25D21D-CDE9-4880-B9C8-1F9438CB01D6}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{4BF8E37B-37BB-4C4F-A726-156F306ABD75}"= UDP:c:\program files\Empire of Sports\NetworkDiagnostic.exe:Empire of Sports Network Diagnostic
"{F18C4999-1CA0-4697-938B-771083D288AD}"= TCP:c:\program files\Empire of Sports\NetworkDiagnostic.exe:Empire of Sports Network Diagnostic
"{40F55CDC-6DE9-4BD1-AC8E-8F4618192E1B}"= UDP:c:\program files\Empire of Sports\EmpireOfSports.exe:Empire of Sports
"{F2137C05-4CEA-4BBD-B77A-6D1BF4A1D0E3}"= TCP:c:\program files\Empire of Sports\EmpireOfSports.exe:Empire of Sports
"{04FF2FDC-26B5-4492-B6AA-B0421CACF655}"= UDP:c:\users\Julien\AppData\Local\F4\ClientUpdater\ClientUpdater.exe:F4 Game Client Updater
"{6931F847-AA2B-4566-B445-DDB568D1F2ED}"= TCP:c:\users\Julien\AppData\Local\F4\ClientUpdater\ClientUpdater.exe:F4 Game Client Updater
"{9851BDBF-81DE-4209-8EBD-ED7B5BA60036}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{33D539FD-19C0-46E0-AFD2-7E09A582F23E}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{682CE5E8-DC65-4D0A-8C2A-2A4E8A124A1E}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{435934B8-62E1-4AD5-B88F-BA4EE8D28062}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{3FFB0457-3057-46FA-A8BB-0049CB88FA7A}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{80D22E8A-3037-4710-8741-B21401B6CB7B}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{1193430D-6FF2-41D8-AD40-65340F17EAFF}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{32CF5924-6B56-4DAC-AA60-2BE25AB288EB}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{25950D70-BB97-450C-9ABA-C536E1A3C0A2}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{ABD872D5-2825-4E4A-8ECC-575E916B251D}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{85DB553D-C5DF-47E4-92AE-B602A305805C}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{B16750A7-E43A-4A7D-A8D3-BA1BF1153B00}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{C4E7D907-DD97-4554-BA0C-84E543EFD61B}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{C3EABB9F-B5A6-420F-9A28-73C2EBA6F762}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{7BC67B6A-7A29-438F-A42C-EC36A836A771}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{305EB8BD-0C9F-4AF3-A457-CCF361A10805}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{A717820C-8DA7-479F-938F-36680F65B9A0}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{707212A4-C831-4DD8-A681-8DEF80B24288}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{830AA35D-0C01-4D53-95D8-9C9CBF2C1DFE}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{9FEEE5D6-ED77-4910-912A-88DA87B8E22D}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{40190C9D-FCC4-4DB3-B1B2-2EDAA859E64B}"= UDP:c:\bittorent\BitTorrent\bittorrent.exe:BitTorrent (TCP-In)
"{FC236647-4658-4843-AA90-301C3C71EC05}"= TCP:c:\bittorent\BitTorrent\bittorrent.exe:BitTorrent (UDP-In)
"{24A0D828-333C-444A-B3AB-1867FFB6AC95}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{22240956-8C79-4575-9047-7CDC2ACA8245}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{855E12F3-A38B-4CCE-A7FB-3808764F8176}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{141E28F3-AFF1-4086-BFF7-64FBCBBFD57B}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{0729A4CE-F2DE-41F8-A4C8-68F833484BC7}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{C25FB8E8-61CC-4AE7-8958-69D455CE30BB}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{BBDD8B8E-0539-4C92-A555-8EDDFF02133F}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{2B5E6A9C-EB5D-443C-B5CD-902D97D005FD}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{F54C1FB8-C2D2-48E5-B553-16C159F3442C}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{2121385D-7FF2-4B93-A987-1EB719110E34}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{210B3F3D-67C0-412D-B10A-1E6B5869BEEB}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{EB4AC819-0007-4C3C-9880-2D400B55C6F4}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{32C12468-FFFD-4C31-A8D8-4FF2EEDBBEA7}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"TCP Query User{10C84E20-88B7-4D1B-83B7-205942132D24}c:\\jeux\\pro cycling manager - season 2008\\pcm.exe"= UDP:c:\jeux\pro cycling manager - season 2008\pcm.exe
cm
"UDP Query User{C4135B65-CF75-4CD0-BCC4-66908CD60C65}c:\\jeux\\pro cycling manager - season 2008\\pcm.exe"= TCP:c:\jeux\pro cycling manager - season 2008\pcm.exe
cm
"TCP Query User{D6593FA0-F15F-4E4B-AA6C-06A0F3E41501}c:\\program files\\internet explorer\\iexplore.exe"= UDP:c:\program files\internet explorer\iexplore.exe:Internet Explorer
"UDP Query User{6E336452-AE96-46B8-BD5B-972C7B4A5298}c:\\program files\\internet explorer\\iexplore.exe"= TCP:c:\program files\internet explorer\iexplore.exe:Internet Explorer
"{088C4DBE-D516-4322-9487-C38539BDC892}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{E12056A8-80B2-4325-AF39-6413982C5342}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{2006A438-7730-4005-B1AC-77FC7352468F}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"TCP Query User{557469CD-D691-411C-BDCC-9A82D92E8E0C}c:\\jeux\\pro cycling manager - season 2008\\pcm.exe"= UDP:c:\jeux\pro cycling manager - season 2008\pcm.exe
cm
"UDP Query User{B603C7FC-1F3D-4388-A477-191CC3BD69A2}c:\\jeux\\pro cycling manager - season 2008\\pcm.exe"= TCP:c:\jeux\pro cycling manager - season 2008\pcm.exe
cm
"{BBA707D9-230B-4C56-80FA-18D685AF6A7D}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{E2B72243-4AA7-4473-9A92-79F8260BD520}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{98D20A58-8611-4173-BD02-044BA7ED0802}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{12CB7518-EAE0-4933-B1AC-2B05BE6C95AF}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{D7098B55-BB13-4581-96F9-AFE2BCF9CEC4}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{7FF271FD-774B-4C64-8595-84EE90FB73E9}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"TCP Query User{7073E15A-126E-417A-B851-2668D39A26D3}c:\\program files\\internet explorer\\iexplore.exe"= UDP:c:\program files\internet explorer\iexplore.exe:Internet Explorer
"UDP Query User{C455E932-F942-42DD-80E8-1A7228ED9583}c:\\program files\\internet explorer\\iexplore.exe"= TCP:c:\program files\internet explorer\iexplore.exe:Internet Explorer
"{1956B515-202D-47D5-A285-2546A8DE7E2A}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{2BDD3D9C-A013-43CD-96A3-50312F5F1833}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{0D5C57E7-09F2-4A4B-8426-207A0D2EDE14}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{B88643E6-A239-406D-9B06-E6CC377F6833}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{93355A4B-742B-41FC-8B3A-68D7E4F9165C}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{B76B6DFC-16A5-4D2F-B0D2-988C16E830F7}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{FD75E9CF-2075-4290-98BD-6CF3A67B3534}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{197CA2D7-349A-47E5-BA48-928684C5A290}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{9B2FBF2D-AB96-42BF-AF1E-2DF63F32665F}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{58F2F944-5F02-48FA-BA9D-4191F72D5F2E}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{69C23924-566B-4305-A8FF-53E75DC17191}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{317BF854-6734-47EA-9BD8-A43B631E0614}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{EFC90E34-3716-4C06-A23B-3D44492205E1}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{78677F19-9292-49AE-9386-E20138ECABA2}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{FB01A088-2897-4909-9C91-894A40895E72}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{F355F7B5-72F6-4635-927B-B313F2E46173}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{D3B41E41-5006-42DD-ACD1-C306ABCB48F0}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{929EB218-499D-48E2-BB5F-FEE0576A2A5A}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{2B3D45FA-5EA3-4CBB-BB55-BA2A4942B841}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{FC22C0A3-E369-4E33-B0A2-88072F0C1C54}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{9594A1F6-D343-442E-B42A-B3507A045DD3}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{81CFCB99-3FF8-46A5-96AE-F0AC8B28C422}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{4994EC70-F141-4C13-BA8C-F43078AD63F9}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{6B2A26F5-A176-455C-ADD2-4C44CA5482B9}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{02C37B92-A28E-4EBE-AAA8-47CC1E330A72}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{D6E6DF10-47D9-4C0D-ADF7-D149A7149C69}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{3CAE3D22-0C04-48E3-97AF-2E6E95770387}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{0FB40303-CA4A-4AF9-937D-93EE965F1117}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{91D6C6C6-8DB3-4589-8CD8-46C71BFC11B6}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{88CCF801-A556-4E44-B1F7-913A27E52AF6}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{4C2454D9-ADA6-494A-B0FB-D6F63BC0C33E}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{67F5AAE0-4DAD-4334-BE13-657963EA0ED1}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{662749D4-B5BE-49F8-A047-EA943D54A0FE}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{A856F712-BDF1-4A34-B0DE-8EE1EDA81845}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{404831C1-2D41-432F-8A4E-4103A691B7E9}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{363798A4-70C7-4D61-90FA-C05582C2E0C1}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{AEBB8659-08BC-49B5-8E98-3192E9370467}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{DBF6D5DB-A48C-4375-8440-DEB2936F8062}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{16A5F949-53FC-4AAC-BECE-3B393E5869F4}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{1F929827-886C-4AF6-A5F7-BEE4F2086F1B}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{B035767C-15FD-43D0-9664-791BE5F999A7}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{D20D9963-79CD-4B3F-808D-E36F131DCAB5}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{FD459C5F-60F0-4D01-B1BE-A79495F37633}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{D89734F4-F46A-4C2E-A182-A0B1954F4488}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{9DF5CD92-D4E0-45A1-AC7A-15813A5930C1}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{D93722C6-6309-4B06-9D4A-80CDDAA20584}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{7E32852B-3A4E-47A1-BC0E-4D52477F8D32}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{A7229C47-09ED-4822-847F-DF6FE3127EF7}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{03BC852E-299D-4A9E-AD47-14FC2B2272A6}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{20A52851-99B0-4FF9-B489-745475555F57}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{4B95AC75-F962-428E-87A0-3271EF7075B7}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{F95874A5-0DBB-4D4F-98B8-064FF1ACF771}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{EEFDEDF9-606F-4675-B899-3354C0A9F965}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{602A55DB-628F-4648-99E3-D420B2DB3268}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{2691E51F-444A-40A6-98DF-E10AAF594AD8}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{E92697A6-8D92-4802-BB76-4EEECFA6F8C8}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{95EAE86E-9021-4C0E-B5F7-ACA264CA65A5}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{76169F80-6D03-4BDD-AB7B-2599EFC71892}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{1436B5B7-E863-48F9-B728-B14A4819E26C}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{8E5A5E1E-7753-4409-925D-7B24B070EBC2}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{413F8C0E-5755-4388-807D-6B42CBE3E200}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{4510F065-C029-4CB1-858B-1DE6F4549410}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{55DAB749-7B91-4B37-958F-79D49D75C031}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{8D804692-D541-4BA0-AAC9-B22697A04142}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{6D994DCE-2571-4393-B132-B53F4AB932CA}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{C53C0F62-544C-47D2-B496-2C4A0FCEFB11}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{2218750A-AAE3-4F55-825F-1C0655CEE552}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{BFEAA932-EC52-4CAC-8A94-F472FE6AE183}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{1C548163-0141-426B-88CA-CDB3BB247DFE}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{D3B68F39-2B26-425D-BE44-23A7DA85F046}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List]
"c:\\Bittorent\\BitTorrent\\bittorrent.exe"= c:\bittorent\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent
R1 appdrv01;Application Driver (01);c:\windows\System32\drivers\appdrv01.sys [15/03/2009 19:18 2915944]
R1 aswSP;avast! Self Protection;c:\windows\System32\drivers\aswSP.sys [18/11/2008 22:41 111184]
R2 acedrv11;acedrv11;c:\windows\System32\drivers\acedrv11.sys [30/07/2008 07:51 277736]
R2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt.inf_030ac640\AEstSrv.exe [11/08/2008 17:05 73728]
R2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [18/11/2008 22:41 20560]
R2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [18/11/2008 22:41 51792]
R2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe -k netsvcs [21/01/2008 04:23 21504]
R2 hpsrv;HP Service;c:\windows\System32\hpservice.exe [18/03/2008 16:24 19456]
R2 Recovery Service for Windows;Recovery Service for Windows;c:\windows\SMINST\BLService.exe [10/06/2008 00:53 341328]
R3 enecir;ENE CIR Receiver;c:\windows\System32\drivers\enecir.sys [24/01/2008 15:23 52736]
R3 JMCR;JMCR;c:\windows\System32\drivers\jmcr.sys [11/04/2008 19:55 84240]
R3 NETw5v32;Pilote de carte Intel(R) Wireless WiFi Link pour Windows Vista 32 bits ;c:\windows\System32\drivers\NETw5v32.sys [11/08/2008 16:58 3658752]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\System32\drivers\nvhda32v.sys [14/05/2008 04:09 43552]
S2 appdrvrem01;Application Driver Auto Removal Service (01);c:\windows\System32\appdrvrem01.exe svc --> c:\windows\System32\appdrvrem01.exe svc [?]
S3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [09/06/2008 23:49 193840]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
ezSharedSvc
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"c:\program files\Common Files\LightScribe\LSRunOnce.exe"
.
Contenu du dossier 'Tâches planifiées'
2009-06-18 c:\windows\Tasks\User_Feed_Synchronization-{D5F5D14A-10F8-4D51-AC4E-F3D4181FA5EB}.job
- c:\windows\system32\msfeedssync.exe [2008-01-21 02:24]
.
- - - - ORPHELINS SUPPRIMES - - - -
HKCU-Run-Steam - c:\program files\Steam\Steam.exe
HKCU-Run-yeyme - c:\users\julien\appdata\local\yeyme.exe
HKLM-Run-UCam_Menu - c:\program files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
HKLM-Run-MyWebSearch Plugin - c:\progra~1\MYWEBS~1\bar\1.bin\M3PLUGIN.DLL
HKLM-Run-My Web Search Bar Search Scope Monitor - c:\progra~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe
HKLM-Run-iTunesHelper - c:\program files\iTunes\iTunesHelper.exe
HKLM-Run-QuickTime Task - c:\program files\QuickTime\QTTask.exe
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.lequipe.fr/
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=fr_fr&c=83&bd=Pavilion&pf=cnnb
IE: &Search - http://edits.mywebsearch.com/toolb [...] xdm569YYFR
IE: E&xport to Microsoft Excel - c:\micros~1\Office10\EXCEL.EXE/3000
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-19 23:11
Windows 6.0.6001 Service Pack 1 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
------------------------ Autres processus actifs ------------------------
.
c:\windows\System32\nvvsvc.exe
c:\windows\System32\DriverStore\FileRepository\stwrt.inf_030ac640\stacsv.exe
c:\windows\System32\audiodg.exe
c:\windows\System32\rundll32.exe
c:\telechargements\Avast\aswUpdSv.exe
c:\telechargements\Avast\ashServ.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\windows\System32\conime.exe
c:\telechargements\Avast\ashMaiSv.exe
c:\telechargements\Avast\ashWebSv.exe
c:\windows\System32\rundll32.exe
c:\telechargements\Avast\ashDisp.exe
c:\windows\ehome\ehmsas.exe
c:\windows\System32\wbem\unsecapp.exe
c:\program files\Synaptics\SynTP\SynTPHelper.exe
c:\program files\Java\jre1.6.0_05\bin\jucheck.exe
.
**************************************************************************
.
Heure de fin: 2009-06-19 23:17 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-06-19 21:17
Avant-CF: 143 973 343 232 octets libres
Après-CF: 145 789 145 088 octets libres
472 --- E O F --- 2009-06-19 12:52
Re bonjour,
Tu devrais poster ton rapport ( et ta question ) dans la rubrique Sécurité & Virus
Il y a 273 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.
