bonsoir tout le monde enfin j'ai pu quitter un peu plus tôt pour pouvoir m'occuper de mon ordi, je ne sais pas si j'ai bien fait mais j'ai commencé par faire combofix voilà le rapport ci-dessous, ah j'ai oublié de préciser que j'ai désactivé zone alarm en cours de process, l'yant oublié au départ;
j'attends vos commentaires et après je suis les conseils de Mr_JO
ComboFix 08-01-16.4 - Danièle Jacques 2008-01-16 18:52:03.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.297 [GMT 1:00]
Running from: C:\Documents and Settings\Danièle Jacques\Bureau\ComboFix.exe
* Created a new restore point
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\All Users\Application Data\Starware370
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\563_button_1b_def.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\563_button_1b_over.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\572_button_1b_def.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\572_button_1b_over.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\573_button_1b_def.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\573_button_1b_over.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\Button_60.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\Button_70.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\Button_80.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\FindIt.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\FindItHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\findithotxp.png
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\finditxp.png
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\logo.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\logoxp.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\error.xml
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\Related.xml
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\Travel.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\ProductMessagingConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\ProductMessagingConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\SimpleUpdateConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\SimpleUpdateConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\TimerManagerConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\TimerManagerConfig.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\ShoppingReport
C:\Documents and Settings\Danièle Jacques\Application Data\ShoppingReport\cs\Config.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Button_6\Button_6Options.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Button_6\Button_6Options.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Button_7\Button_7Options.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Button_7\Button_7Options.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Button_8\Button_8Options.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Button_8\Button_8Options.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Configurator\Configurator.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Configurator\Configurator.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Manager\ManagerOptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Paroles\ParolesOptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Paroles\ParolesOptions.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Radio_FR\Radio_FROptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Radio_FR\Radio_FROptions.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Recherche_de_musique\Recherche_de_musiqueOptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Recherche_de_musique\Recherche_de_musiqueOptions.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Telechargement\TelechargementOptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Telechargement\TelechargementOptions.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\TravelSearch\TravelSearchOptions.xml
C:\Documents and Settings\Danièle Jacques\Application Data\Starware370\TravelSearch\TravelSearchOptions.xml.backup
C:\Program Files\ShoppingReport
C:\Program Files\ShoppingReport\Bin\2.0.26\ShoppingReport.dll
C:\Program Files\ShoppingReport\Uninst.exe
C:\WINDOWS\system32\Cfx32.lic
C:\WINDOWS\system32\cfx32.ocx
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\ybadd.ini2
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\npf
((((((((((((((((((((((((((((( Fichiers cr‚‚s 2007-12-16 to 2008-01-16 ))))))))))))))))))))))))))))))))))))
.
2008-01-16 18:49 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe
2008-01-13 16:48 . 2008-01-13 16:48 <REP> d-------- C:\VundoFix Backups
2008-01-12 13:42 . 2008-01-12 13:42 11,866,308 --a------ C:\upload_moi_KASTELROC.tar.gz
2008-01-09 20:33 . 2008-01-09 20:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2008-01-09 20:33 . 2007-05-30 13:10 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2008-01-09 17:21 . 2008-01-09 17:21 <REP> d-------- C:\Documents and Settings\All Users\Application Data\MailFrontier
2008-01-09 17:19 . 2008-01-10 07:23 <REP> d-------- C:\WINDOWS\system32\ZoneLabs
2008-01-02 07:59 . 2008-01-02 08:21 <REP> d-------- C:\WINDOWS\$regcmp$
2008-01-01 16:10 . 2008-01-02 07:48 <REP> d-------- C:\Program Files\BitTorrent
2007-12-27 15:37 . 2007-12-27 15:37 <REP> d-------- C:\Program Files\New Folder
2007-12-27 15:34 . 2007-12-27 15:34 <REP> d-------- C:\Program Files\AVIConverter
2007-12-27 14:39 . 2008-01-09 10:53 <REP> d-------- C:\Program Files\alot
2007-12-27 13:21 . 2007-12-27 13:21 39,424 --a------ C:\WINDOWS\system32\mljifcc.dll.vir
2007-12-27 12:38 . 2008-01-02 07:48 <REP> d-------- C:\Program Files\eMule
2007-12-26 19:36 . 2007-05-04 20:40 215,040 --a------ C:\WINDOWS\system32\drivers\RTL8187B.sys
2007-12-26 19:35 . 2007-12-26 19:35 <REP> d-------- C:\Program Files\TRENDnet
2007-12-26 19:35 . 2007-12-26 19:35 21,035 --a------ C:\WINDOWS\system32\drivers\AegisP.sys
2007-12-22 14:59 . 2007-12-22 14:59 <REP> d-------- C:\Program Files\B54 Wireless Monitor
2007-12-22 14:59 . 2002-12-04 16:09 81,920 --a------ C:\WINDOWS\W32N50.dll
2007-12-22 14:59 . 2003-06-30 14:30 40,960 --a------ C:\WINDOWS\system32\_IsUser.dll
2007-12-22 14:59 . 2002-12-04 16:09 32,768 --a------ C:\WINDOWS\PCARmDrv.exe
2007-12-22 14:59 . 2002-12-04 16:09 18,189 --a------ C:\WINDOWS\PCAMPR5.SYS
2007-12-22 14:59 . 2002-12-04 16:09 17,936 --a------ C:\WINDOWS\PCAMPR4.SYS
2007-12-22 14:59 . 2002-12-04 16:09 17,134 --a------ C:\WINDOWS\PCANDIS5.SYS
2007-12-22 14:59 . 2002-12-04 16:09 16,848 --a------ C:\WINDOWS\PCANDIS4.SYS
2007-12-22 14:59 . 2002-12-04 16:09 16,580 --a------ C:\WINDOWS\PCAMPR3.VXD
2007-12-22 14:59 . 2002-12-04 16:09 16,073 --a------ C:\WINDOWS\PCANDIS3.VXD
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-16 06:46 --------- d-----w C:\Program Files\Mozilla Thunderbird
2008-01-15 14:47 5,348 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx
2008-01-15 14:47 364,576 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat
2008-01-14 15:23 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-01-09 16:20 75,932 ----a-w C:\WINDOWS\system32\drivers\klick.dat
2008-01-09 16:20 74,396 ----a-w C:\WINDOWS\system32\drivers\klin.dat
2007-12-22 07:40 --------- d-----w C:\Program Files\IncrediMail
2007-12-18 04:49 --------- d-----w C:\Program Files\Power IE
2007-12-16 09:44 --------- d-----w C:\Program Files\SiSLan
2007-12-13 07:23 --------- d-----w C:\Program Files\Yahoo!
2007-12-13 07:23 --------- d-----w C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2007-12-13 05:35 --------- d-----w C:\Program Files\INFORAD_DRIVERS
2007-12-13 05:35 --------- d-----w C:\Program Files\Free.fr
2007-12-08 18:52 --------- d-----w C:\Program Files\SAGEM
2007-12-04 14:56 93,264 -c--a-w C:\WINDOWS\system32\drivers\aswmon.sys
2007-12-04 14:55 94,544 ----a-w C:\WINDOWS\system32\drivers\aswmon2.sys
2007-12-04 14:53 23,152 ----a-w C:\WINDOWS\system32\drivers\aswRdr.sys
2007-12-04 14:51 42,912 ----a-w C:\WINDOWS\system32\drivers\aswTdi.sys
2007-12-04 14:49 26,624 ----a-w C:\WINDOWS\system32\drivers\aavmker4.sys
2007-10-27 16:04 26,768 ----a-w C:\WINDOWS\CTL3D.DLL
2005-11-20 10:09 0 -csha-w C:\WINDOWS\SMINST\HPCD.sys
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 15:09 15360]
"H/PC Connection Agent"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe" [2005-11-15 20:21 1204224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HTpatch"="C:\WINDOWS\htpatch.exe" [2002-10-30 10:40 28672]
"WinPatrol"="C:\PROGRA~1\BILLPS~1\WINPAT~1\winpatrol.exe" [2005-03-31 17:45 210112]
"Recguard"="C:\WINDOWS\SMINST\RECGUARD.EXE" [2002-09-13 20:42 212992]
"PinnacleDriverCheck"="C:\WINDOWS\system32\PSDrvCheck.exe" [2003-11-10 17:06 406016]
"IgfxTray"="C:\WINDOWS\System32\igfxtray.exe" [2003-05-14 23:47 155648]
"HotKeysCmds"="C:\WINDOWS\System32\hkcmd.exe" [2003-05-14 23:47 114688]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"Pinnacle WebUpdater"="C:\Program Files\Pinnacle\Shared Files\\Programs\WebUpdater\WebUpdater.exe" [2006-03-26 12:10 380928]
"ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [2007-06-21 21:54 919016]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe" [ ]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-06-13 04:28 282624]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-19 15:09 15360]
"MS Unix Binary"="msnq3insller.exe" []
"DWQueuedReporting"="C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" [2003-07-15 05:53 34880]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Lancement rapide d'Adobe Reader.lnk]
path=C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Lancement rapide d'Adobe Reader.lnk
backup=C:\WINDOWS\pss\Lancement rapide d'Adobe Reader.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
path=C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Office.lnk
backup=C:\WINDOWS\pss\Microsoft Office.lnkCommon Startup
C:\WINDOWS\Options\OEMReset.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 2007-10-10 19:51 39792 C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Probe]
--a------ 2002-12-06 15:07 617984 C:\Program Files\ASUS\Probe\AsusProb.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent]
C:\Program Files\BitTorrent\bittorrent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eCarteBleue-CLEO]
--a------ 2006-02-07 09:07 200704 C:\Program Files\e-Carte Bleue\CL\e-Carte Bleue VISA Cleo\ECB-CLEO.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\gcasServ]
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
--a------ 2005-11-15 20:21 1204224 C:\Program Files\Microsoft ActiveSync\wcescomm.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Component Manager]
--a------ 2004-05-12 15:18 241664 C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IncrediMail]
C:\PROGRA~1\INCRED~1\bin\IncMail.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InstantTray]
--a--c--- 2004-04-26 08:55 772096 C:\Program Files\Pinnacle\Shared Files\InstantCDDVD\PCLETray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
--a------ 2006-02-23 15:45 278528 C:\Program Files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IW_Drop_Icon]
--a--c--- 2004-04-20 15:17 1122816 C:\Program Files\Pinnacle\InstantCDDVD\InstantWrite\iwctrl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LDM]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechGalleryRepair]
--a------ 2002-12-10 17:32 155648 C:\Program Files\Logitech\ImageStudio\ISStart.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechImageStudioTray]
--a------ 2002-12-10 17:31 61440 C:\Program Files\Logitech\ImageStudio\LogiTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LVCOMS]
--a--c--- 2002-12-10 16:54 127022 C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MS Unix Binary]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--------- 2004-10-13 17:24 1694208 C:\Program Files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PE2CKFNT SE]
--------- 1998-07-03 11:51 25088 C:\Program Files\Ulead Systems\Ulead Photo Express 2 SE\ChkFont.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PMCRemote]
--a------ 2006-04-27 15:45 94208 C:\Program Files\Pinnacle\Shared Files\\Programs\Remote\Remoterm.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PMCS]
--a------ 2006-04-27 15:47 65536 C:\Program Files\Pinnacle\Shared Files\\Programs\MediaCenterService\PMC.Service.Main.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2006-06-13 04:28 282624 C:\Program Files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
--a------ 2003-05-21 16:32 54784 C:\WINDOWS\SOUNDMAN.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
--a------ 2007-06-29 06:20 68856 C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
--a--c--- 2006-01-22 11:19 180269 C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
--a--c--- 2006-11-03 18:20 866584 C:\Program Files\Windows Defender\MSASCui.exe
R0 VOBID;VOBID;C:\WINDOWS\system32\DRIVERS\vobid.sys [2003-08-01 13:47]
R1 vobcom;vobcom;C:\WINDOWS\system32\drivers\vobcom.sys [2001-10-04 10:53]
R1 vobiw;vobiw;C:\WINDOWS\system32\drivers\vobiw.sys [2004-02-20 11:03]
R2 ScFBPNT2;CanoScan FBP2 Port Driver;C:\WINDOWS\System32\drivers\ScFBPNT2.SYS [1999-05-21 00:00]
R2 WLB54;WLB54 Service;C:\Program Files\B54 Wireless Monitor\WLService.exe [2003-06-09 11:24]
R3 cdrdrv;Cdrdrv;C:\WINDOWS\system32\Drivers\Cdrdrv.sys [2004-02-03 15:04]
R3 PhilCam8116;Logitech QuickCam Pro 3000(PID_08B0);C:\WINDOWS\system32\DRIVERS\CamDrL21.sys [2002-12-10 16:53]
R3 RTL8187B;TRENDnet TEW-424UB 54M USB Dongle;C:\WINDOWS\system32\DRIVERS\RTL8187B.sys [2007-05-04 20:40]
R3 SjyPkt;SjyPkt;C:\WINDOWS\System32\Drivers\SjyPkt.sys [2002-10-02 09:57]
S3 adiusbae;USB ADSL LAN Adapter;C:\WINDOWS\system32\DRIVERS\adiusbae.sys []
S3 ASUSHWIO;ASUSHWIO;C:\WINDOWS\system32\drivers\ASUSHWIO.sys []
S3 fbxusb;FreeBox USB Network Adapter;C:\WINDOWS\system32\DRIVERS\fbxusb.sys [2003-12-31 11:35]
S3 FTLUND;Lundinova Filter Driver;C:\WINDOWS\system32\drivers\ftlund.sys [2005-08-12 06:41]
S3 USB28xxBGA;PCTV Hybrid Pro* Stick;C:\WINDOWS\system32\DRIVERS\emBDA.sys [2006-02-08 14:12]
S3 USB28xxOEM;USB 28xx OEM Filter;C:\WINDOWS\system32\DRIVERS\emOEM.sys [2006-02-08 14:12]
S3 usbscan;Pilote de scanneur USB;C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 22:58]
S3 USBSTOR;Pilote de stockage de masse USB;C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 22:08]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ebc99bf4-430e-11da-b4eb-0007cb0000ff}]
\Shell\AutoRun\command - G:\setupSNK.exe
.
Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'
"2008-01-16 18:13:18 C:\WINDOWS\Tasks\MP Scheduled Scan.job"
- C:\Program Files\Windows Defender\MpCmdRun.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-01-16 19:12:09
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-01-16 19:17:44 - machine was rebooted
ComboFix-quarantined-files.txt 2008-01-16 18:17:32
.
2008-01-16 17:38:25 --- E O F ---
A tout à l'heure!
Message édité par kastelroc le 16-01-2008 à 19:23:32
---------------
La Vie ne vaut rien mais rien ne vaut la Vie