Additional scan result of Farbar Recovery Scan Tool (x86) Version: 22-02-2014 01 Ran by Killer_VirusFr at 2014-02-22 15:54:34 Running from C:\Documents and Settings\Killer_VirusFr\Bureau Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: ESET NOD32 Antivirus 7.0 (Disabled - Up to date) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0} ==================== Installed Programs ====================== 7-Zip 9.20 (HKLM\...\7-Zip) (Version: - ) ESET NOD32 Antivirus (HKLM\...\{F640C9B5-1E08-4E6B-8A74-A6B36A2CEC78}) (Version: 7.0.302.26 - ESET, spol s r. o.) etranslator (HKCU\...\etranslator) (Version: - etranslator) Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation) Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - FRA (HKLM\...\{72AD53CC-CCC0-3757-8480-9EE176866A7C}) (Version: 2.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - FRA (HKLM\...\{0BD83598-C2EF-3343-847B-7D2E84599128}) (Version: 3.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.5 Language Pack SP1 - fra (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile FRA Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended FRA Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Module linguistique Microsoft .NET Framework 3.5 SP1- fra (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - fra) (Version: - Microsoft Corporation) Module linguistique Microsoft .NET Framework 4 Client Profile FRA (HKLM\...\Microsoft .NET Framework 4 Client Profile FRA Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Module linguistique Microsoft .NET Framework 4 Extended FRA (HKLM\...\Microsoft .NET Framework 4 Extended FRA Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Opera Stable 19.0.1326.63 (HKLM\...\Opera 19.0.1326.63) (Version: 19.0.1326.63 - Opera Software ASA) Oracle VM VirtualBox Guest Additions 4.1.22 (HKLM\...\Oracle VM VirtualBox Guest Additions) (Version: 4.1.22.0 - Oracle Corporation) WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden XML Paper Specification Shared Components Language Pack 1.0 (Version: - Microsoft Corporation) Hidden ==================== Restore Points ========================= 08-02-2014 11:23:34 Point de vérification système 22-02-2014 14:23:25 ESET NOD32 Antivirus a été installé ==================== Hosts content: ========================== 2013-08-22 07:22 - 2014-02-15 15:13 - 00000123 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 www.novirusthanks.org 127.0.0.1 www.virustotal.com 127.0.0.1 www.zonealarm.com 127.0.0.1 www.bitdefender.com ==================== Scheduled Tasks (whitelisted) ============= ==================== Loaded Modules (whitelisted) ============= ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupfolder: C:^Documents and Settings^Killer_VirusFr^Menu Démarrer^Programmes^Démarrage^Update.Microsoft.com.url => C:\WINDOWS\pss\Update.Microsoft.com.urlStartup ==================== Faulty Device Manager Devices ============= Name: Périphérique audio sur bus High Definition Audio Description: Périphérique audio sur bus High Definition Audio Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: PCI Device Description: PCI Device Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (02/15/2014 03:16:49 PM) (Source: .NET Runtime 2.0 Error Reporting) (User: ) Description: Faulting application facture_edf.pdf.03.exe, version 1.0.0.0, stamp 52fcf91d, faulting module mscorwks.dll, version 2.0.50727.3053, stamp 4889dc18, debug? 0, fault address 0x0007ff92. Error: (02/15/2014 03:16:06 PM) (Source: MsiInstaller) (User: KILLERVIRUSFR) Description: Продукт: Remote Manipulator System - Host -- Ошибка 1719. Не удается получить доступ к программе установки Windows. Обратитесь в службу поддержки для подтверждения регистрации и подключения. System errors: ============= Error: (02/22/2014 03:41:56 PM) (Source: DCOM) (User: AUTORITE NT) Description: DCOM a reçu l'erreur "%%1084" lors de la mise en route du service EventSystem avec les arguments "" pour démarrer le serveur : {1BE1F766-5536-11D1-B726-00C04FB926AF} Error: (02/22/2014 03:33:13 PM) (Source: DCOM) (User: AUTORITE NT) Description: DCOM a reçu l'erreur "%%1084" lors de la mise en route du service EventSystem avec les arguments "" pour démarrer le serveur : {1BE1F766-5536-11D1-B726-00C04FB926AF} Error: (02/22/2014 03:32:51 PM) (Source: Service Control Manager) (User: ) Description: Le pilote de démarrage système ou d'amorçage suivant n'a pas pu se charger : eamon ehdrv Fips Error: (02/22/2014 03:29:44 PM) (Source: System Error) (User: ) Description: Code erreur 000000f4, paramètre 1 00000003, paramètre 2 8a042b88, paramètre 3 8a042cfc, paramètre 4 805c8bfc. Error: (02/22/2014 03:07:30 PM) (Source: Dhcp) (User: ) Description: Votre ordinateur a perdu le bail de son adresse IP 10.0.2.15 sur la carte réseau d'adresse réseau 0800271049EB. Error: (02/15/2014 03:22:00 PM) (Source: System Error) (User: ) Description: Code erreur 000000f4, paramètre 1 00000003, paramètre 2 89fddda0, paramètre 3 89fddf14, paramètre 4 805c8bfc. Error: (02/08/2014 11:56:24 AM) (Source: Service Control Manager) (User: ) Description: Le service Spouleur d'impression s'est terminé de manière inattendue. Ceci s'est produit 1 fois. L'action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service. Error: (02/08/2014 11:56:23 AM) (Source: Service Control Manager) (User: ) Description: Le service VirtualBox Guest Additions Service s'est terminé de façon inattendue pour la 1ème fois. Error: (02/08/2014 11:39:25 AM) (Source: 0) (User: ) Description: 0xC0000001HarddiskVolume1 Error: (02/08/2014 10:43:22 AM) (Source: Service Control Manager) (User: ) Description: Délai (30000 millisecondes) d'attente pour une connexion du service Microsoft security update service. Microsoft Office Sessions: ========================= Error: (02/15/2014 03:16:49 PM) (Source: .NET Runtime 2.0 Error Reporting)(User: ) Description: facture_edf.pdf.03.exe1.0.0.052fcf91dmscorwks.dll2.0.50727.30534889dc1800007ff92 Error: (02/15/2014 03:16:06 PM) (Source: MsiInstaller)(User: KILLERVIRUSFR) Description: Продукт: Remote Manipulator System - Host -- Ошибка 1719. Не удается получить доступ к программе установки Windows. Обратитесь в службу поддержки для подтверждения регистрации и подключения.(NULL)(NULL)(NULL) ==================== Memory info =========================== Percentage of memory in use: 10% Total physical RAM: 3583.48 MB Available physical RAM: 3206.38 MB Total Pagefile: 4187.95 MB Available Pagefile: 3977.59 MB Total Virtual: 2047.88 MB Available Virtual: 1975.87 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:9.99 GB) (Free:5.68 GB) NTFS ==>[Drive with boot components (Windows XP)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 10 GB) (Disk ID: 924B924B) Partition 1: (Active) - (Size=10 GB) - (Type=07 NTFS) ==================== End Of Log ============================