gizmo27 | hello,
merci pour la réponse.
j'ai regardé avec process explorer et tout semble normal.
hier j'ai fait une petite copie des process de cports : Code :
- ==================================================
- Process Name : Explorer.EXE
- Process ID : 1820
- Protocol : UDP
- Local Port : 1035
- Local Port Name :
- Local Address : 127.0.0.1
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\WINDOWS\Explorer.EXE
- Product Name : Système d'exploitation Microsoft® Windows®
- File Description : Explorateur Windows
- File Version : 6.00.2900.5512 (xpsp.080413-2105)
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 15:29:34
- User Name : YOUR-939BDAEA55\sabrina
- Process Services :
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : C:\WINDOWS\system32\WINHTTP.dll
- Remote IP Country :
- Window Title : Program Manager
- ==================================================
- ==================================================
- Process Name : lsass.exe
- Process ID : 780
- Protocol : UDP
- Local Port : 500
- Local Port Name : isakmp
- Local Address : 0.0.0.0
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\WINDOWS\system32\lsass.exe
- Product Name : Microsoft® Windows® Operating System
- File Description : LSA Shell (Export Version)
- File Version : 5.1.2600.5512 (xpsp.080413-2113)
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 15:29:29
- User Name : AUTORITE NT\SYSTEM
- Process Services : PolicyAgent, ProtectedStorage, SamSs
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : C:\WINDOWS\system32\oakley.DLL
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : lsass.exe
- Process ID : 780
- Protocol : UDP
- Local Port : 4500
- Local Port Name :
- Local Address : 0.0.0.0
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\WINDOWS\system32\lsass.exe
- Product Name : Microsoft® Windows® Operating System
- File Description : LSA Shell (Export Version)
- File Version : 5.1.2600.5512 (xpsp.080413-2113)
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 15:29:29
- User Name : AUTORITE NT\SYSTEM
- Process Services : PolicyAgent, ProtectedStorage, SamSs
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : C:\WINDOWS\system32\oakley.DLL
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : mcrdsvc.exe
- Process ID : 2152
- Protocol : UDP
- Local Port : 3776
- Local Port Name :
- Local Address : 0.0.0.0
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\WINDOWS\ehome\mcrdsvc.exe
- Product Name : Microsoft® Windows® Operating System
- File Description : MCRD Device Service
- File Version : 4.1.2710.2732 (xpsp(wmbla).050805-1245)
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 15:30:02
- User Name :
- Process Services : McrdSvc
- Process Attributes:
- Added On : 17/10/2010 19:40:39
- Module Filename : C:\WINDOWS\ehome\mcrdsvc.exe
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : msnmsgr.exe
- Process ID : 1788
- Protocol : UDP
- Local Port : 3060
- Local Port Name :
- Local Address : 127.0.0.1
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\Program Files\Windows Live\Messenger\msnmsgr.exe
- Product Name : Windows Live Messenger
- File Description : Windows Live Messenger
- File Version : 14.0.8089.0726
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 19:37:16
- User Name : YOUR-939BDAEA55\sabrina
- Process Services :
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : C:\WINDOWS\system32\WINHTTP.dll
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : msnmsgr.exe
- Process ID : 1788
- Protocol : UDP
- Local Port : 3068
- Local Port Name :
- Local Address : 127.0.0.1
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\Program Files\Windows Live\Messenger\msnmsgr.exe
- Product Name : Windows Live Messenger
- File Description : Windows Live Messenger
- File Version : 14.0.8089.0726
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 19:37:16
- User Name : YOUR-939BDAEA55\sabrina
- Process Services :
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : C:\WINDOWS\system32\WINHTTP.dll
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : msnmsgr.exe
- Process ID : 1788
- Protocol : UDP
- Local Port : 3052
- Local Port Name :
- Local Address : 127.0.0.1
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\Program Files\Windows Live\Messenger\msnmsgr.exe
- Product Name : Windows Live Messenger
- File Description : Windows Live Messenger
- File Version : 14.0.8089.0726
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 19:37:16
- User Name : YOUR-939BDAEA55\sabrina
- Process Services :
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : C:\WINDOWS\system32\WININET.dll
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : svchost.exe
- Process ID : 1956
- Protocol : UDP
- Local Port : 1900
- Local Port Name :
- Local Address : 192.168.1.20
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\WINDOWS\system32\svchost.exe
- Product Name : Microsoft® Windows® Operating System
- File Description : Generic Host Process for Win32 Services
- File Version : 5.1.2600.5512 (xpsp.080413-2111)
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 15:30:02
- User Name :
- Process Services : SSDPSRV
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : c:\windows\system32\ssdpsrv.dll
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : svchost.exe
- Process ID : 1072
- Protocol : UDP
- Local Port : 2197
- Local Port Name :
- Local Address : 127.0.0.1
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\WINDOWS\system32\svchost.exe
- Product Name : Microsoft® Windows® Operating System
- File Description : Generic Host Process for Win32 Services
- File Version : 5.1.2600.5512 (xpsp.080413-2111)
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 15:29:31
- User Name : AUTORITE NT\SYSTEM
- Process Services : AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, HidServ, lanmanserver, lanmanworkstation, Netman, Nla, RasMan
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : C:\WINDOWS\System32\WINHTTP.dll
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : svchost.exe
- Process ID : 1072
- Protocol : UDP
- Local Port : 123
- Local Port Name : ntp
- Local Address : 127.0.0.1
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\WINDOWS\system32\svchost.exe
- Product Name : Microsoft® Windows® Operating System
- File Description : Generic Host Process for Win32 Services
- File Version : 5.1.2600.5512 (xpsp.080413-2111)
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 15:29:31
- User Name : AUTORITE NT\SYSTEM
- Process Services : AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, HidServ, lanmanserver, lanmanworkstation, Netman, Nla, RasMan
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : c:\windows\system32\w32time.dll
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : svchost.exe
- Process ID : 1072
- Protocol : UDP
- Local Port : 123
- Local Port Name : ntp
- Local Address : 192.168.1.20
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\WINDOWS\system32\svchost.exe
- Product Name : Microsoft® Windows® Operating System
- File Description : Generic Host Process for Win32 Services
- File Version : 5.1.2600.5512 (xpsp.080413-2111)
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 15:29:31
- User Name : AUTORITE NT\SYSTEM
- Process Services : AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, HidServ, lanmanserver, lanmanworkstation, Netman, Nla, RasMan
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : c:\windows\system32\w32time.dll
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : svchost.exe
- Process ID : 1956
- Protocol : UDP
- Local Port : 1900
- Local Port Name :
- Local Address : 127.0.0.1
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path : C:\WINDOWS\system32\svchost.exe
- Product Name : Microsoft® Windows® Operating System
- File Description : Generic Host Process for Win32 Services
- File Version : 5.1.2600.5512 (xpsp.080413-2111)
- Company : Microsoft Corporation
- Process Created On: 17/10/2010 15:30:02
- User Name :
- Process Services : SSDPSRV
- Process Attributes: A
- Added On : 17/10/2010 19:40:39
- Module Filename : c:\windows\system32\ssdpsrv.dll
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : System
- Process ID : 4
- Protocol : TCP
- Local Port : 139
- Local Port Name : netbios-ssn
- Local Address : 192.168.1.20
- Remote Port :
- Remote Port Name :
- Remote Address : 0.0.0.0
- Remote Host Name :
- State : Listening
- Process Path :
- Product Name :
- File Description :
- File Version :
- Company :
- Process Created On: N/A
- User Name :
- Process Services :
- Process Attributes:
- Added On : 17/10/2010 19:40:39
- Module Filename :
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : System
- Process ID : 4
- Protocol : TCP
- Local Port : 445
- Local Port Name : microsoft-ds
- Local Address : 0.0.0.0
- Remote Port :
- Remote Port Name :
- Remote Address : 0.0.0.0
- Remote Host Name :
- State : Listening
- Process Path :
- Product Name :
- File Description :
- File Version :
- Company :
- Process Created On: N/A
- User Name :
- Process Services :
- Process Attributes:
- Added On : 17/10/2010 19:40:39
- Module Filename :
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : System
- Process ID : 4
- Protocol : UDP
- Local Port : 137
- Local Port Name : netbios-ns
- Local Address : 192.168.1.20
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path :
- Product Name :
- File Description :
- File Version :
- Company :
- Process Created On: N/A
- User Name :
- Process Services :
- Process Attributes:
- Added On : 17/10/2010 19:40:39
- Module Filename :
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : System
- Process ID : 4
- Protocol : UDP
- Local Port : 138
- Local Port Name : netbios-dgm
- Local Address : 192.168.1.20
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path :
- Product Name :
- File Description :
- File Version :
- Company :
- Process Created On: N/A
- User Name :
- Process Services :
- Process Attributes:
- Added On : 17/10/2010 19:40:39
- Module Filename :
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : System
- Process ID : 4
- Protocol : UDP
- Local Port : 445
- Local Port Name : microsoft-ds
- Local Address : 0.0.0.0
- Remote Port :
- Remote Port Name :
- Remote Address :
- Remote Host Name :
- State :
- Process Path :
- Product Name :
- File Description :
- File Version :
- Company :
- Process Created On: N/A
- User Name :
- Process Services :
- Process Attributes:
- Added On : 17/10/2010 19:40:39
- Module Filename :
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : Unknown
- Process ID : 0
- Protocol : TCP
- Local Port : 3091
- Local Port Name :
- Local Address : 192.168.1.20
- Remote Port : 80
- Remote Port Name : http
- Remote Address : 66.249.92.104
- Remote Host Name : par03s01-in-f104.1e100.net
- State : Time Wait
- Process Path :
- Product Name :
- File Description :
- File Version :
- Company :
- Process Created On: N/A
- User Name :
- Process Services :
- Process Attributes:
- Added On : 17/10/2010 19:40:39
- Module Filename :
- Remote IP Country :
- Window Title :
- ==================================================
- ==================================================
- Process Name : Unknown
- Process ID : 0
- Protocol : TCP
- Local Port : 3093
- Local Port Name :
- Local Address : 192.168.1.20
- Remote Port : 80
- Remote Port Name : http
- Remote Address : 209.85.229.101
- Remote Host Name : ww-in-f101.1e100.net
- State : Time Wait
- Process Path :
- Product Name :
- File Description :
- File Version :
- Company :
- Process Created On: N/A
- User Name :
- Process Services :
- Process Attributes:
- Added On : 17/10/2010 19:40:39
- Module Filename :
- Remote IP Country :
- Window Title :
- ==================================================
|
si jamais ça peut aider.
merci bonne journée. |