bonjour
comme tu me la fortement conseille j'ai installe zone alarme qui m'a d'ailleurs deja bloque 12 intrusions je suppose donc qu'il doit rester encore des infections.Quand a viruscan aucune alerte depuis hier soir. je poste les rapports demandes.merci bonne journee.
ComboFix 07-11-08.1 - thierry 2007-11-13 23:02:29.7 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.556 [GMT 1:00]
Running from: C:\Documents and Settings\thierry\Bureau\ComboFix.exe
Command switches used :: C:\Documents and Settings\thierry\Bureau\CFScript.txt
* Created a new restore point
FILE
C:\Documents and Settings\thierry\x.dat
C:\Documents and Settings\thierry\z.dat
C:\WINDOWS\system32\efcabca.dll
C:\WINDOWS\system32\nnnkkli.dll
C:\WINDOWS\system32\nnnnkki.dll
C:\WINDOWS\system32\pmnlmmm.dll
C:\WINDOWS\system32\ssqpmlm.dll
C:\WINDOWS\system32\ssqpolj.dll
C:\WINDOWS\system32\vbzip10.dll
.
Incapable d'obtenir les privilèges Système
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\All Users\Menu Démarrer\Live Safety Center.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Online Security Guide.lnk
C:\Documents and Settings\thierry\Bureau\Live Safety Center.lnk
C:\Documents and Settings\thierry\Bureau\Online Security Guide.lnk
C:\Documents and Settings\thierry\Favoris\Online Security Guide.lnk
C:\Documents and Settings\thierry\x.dat
C:\Documents and Settings\thierry\z.dat
C:\Program Files\Crawler
C:\Program Files\Crawler\CTipsDef.dll
C:\WINDOWS\cookies.ini
C:\WINDOWS\system32\efcabca.dll
C:\WINDOWS\system32\ldwpeosv.dll
C:\WINDOWS\system32\Mz18r
C:\WINDOWS\system32\nnnkkli.dll
C:\WINDOWS\system32\nnnnkki.dll
C:\WINDOWS\system32\pmnlmmm.dll
C:\WINDOWS\system32\prqss.ini
C:\WINDOWS\system32\prqss.ini2
C:\WINDOWS\system32\ssqpmlm.dll
C:\WINDOWS\system32\ssqpolj.dll
C:\WINDOWS\system32\ssqrp.dll
C:\WINDOWS\system32\vbzip10.dll
C:\WINDOWS\system32\zrfgwuph.dllbox
C:\WINDOWS\YnVkdWw
.
((((((((((((((((((((((((((((( Fichiers cr‚‚s 2007-10-13 to 2007-11-13 ))))))))))))))))))))))))))))))))))))
.
2007-11-13 22:18 <REP> d-------- C:\Documents and Settings\All Users\Application Data\MailFrontier
2007-11-13 22:18 133,152 --ahs---- C:\WINDOWS\system32\drivers\fidbox.dat
2007-11-13 22:18 75,932 --a------ C:\WINDOWS\system32\drivers\klick.dat
2007-11-13 22:18 75,248 --a------ C:\WINDOWS\zllsputility.exe
2007-11-13 22:18 74,396 --a------ C:\WINDOWS\system32\drivers\klin.dat
2007-11-13 22:18 54,672 --a------ C:\WINDOWS\system32\vsutil_loc040c.dll
2007-11-13 22:18 42,384 --a------ C:\WINDOWS\zllsputility_loc040c.dll
2007-11-13 22:18 21,904 --a------ C:\WINDOWS\system32\imsinstall_loc040c.dll
2007-11-13 22:18 17,808 --a------ C:\WINDOWS\system32\imslsp_install_loc040c.dll
2007-11-13 22:18 11,264 --a------ C:\WINDOWS\system32\SpOrder.dll
2007-11-13 08:08 88,128 --a------ C:\WINDOWS\system32\bssidtow.dll
2007-11-13 08:05 145,984 --a------ C:\WINDOWS\system32\zrfgwuph.dll
2007-11-13 08:05 145,984 --a------ C:\WINDOWS\system32\bokiqjgt.dll
2007-11-11 22:11 <REP> d-------- C:\Program Files\MSXML 6.0
2007-11-11 22:07 128,896 -----c--- C:\WINDOWS\system32\dllcache\fltmgr.sys
2007-11-11 22:07 23,040 -----c--- C:\WINDOWS\system32\dllcache\fltmc.exe
2007-11-11 22:07 16,896 -----c--- C:\WINDOWS\system32\dllcache\fltlib.dll
2007-11-11 22:05 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
2007-11-11 21:44 584,192 -----c--- C:\WINDOWS\system32\dllcache\rpcrt4.dll
2007-11-11 20:58 <REP> d-------- C:\WINDOWS\ERUNT
2007-11-10 18:15 51,200 --a------ C:\WINDOWS\NirCmd.exe
2007-11-07 21:07 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2007-11-06 21:56 <REP> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2007-11-04 16:50 <REP> d-------- C:\Program Files\Panda Security
2007-10-28 20:53 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Emjysoft
2007-10-17 10:20 283,648 --a------ C:\WINDOWS\uninst.exe
2007-10-17 10:10 <REP> d-------- C:\WINDOWS\ASTULogTemp
2007-10-13 09:53 <REP> d-------- C:\Documents and Settings\thierry\Application Data\Spamihilator
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-11-13 21:52 4,724 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx
2007-11-11 22:57 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2007-11-11 19:47 --------- d-----w C:\Documents and Settings\thierry\Application Data\LimeWire
2007-10-24 07:50 --------- d-----w C:\Documents and Settings\thierry\Application Data\Skype
2007-10-17 11:03 --------- d-----w C:\Documents and Settings\thierry\Application Data\VoipBuster
2007-09-21 16:36 30,256 ----a-w C:\WINDOWS\macromix.dll
2007-09-19 09:31 --------- d-----w C:\Program Files\Microsoft ActiveSync
2006-09-09 13:39 20 ---h--w C:\Documents and Settings\All Users\Application Data\PKP_DLbz.DAT
2006-08-15 08:39 47,360 ----a-w C:\Documents and Settings\thierry\Application Data\pcouffin.sys
.
((((((((((((((((((((((((((((( snapshot_2007-11-12_18.51.41.14 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-11-12 17:55:46 2,306,048 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\85fa2a4f4894b04a7c955636fafdbe17\System.Web.Mobile.ni.dll
+ 2007-11-12 17:55:47 237,568 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\ff5f1842361f1e0bfcaeca306bf7d40b\System.Web.RegularExpressions.ni.dll
+ 2007-11-12 17:55:49 1,941,504 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Services\622f5e33b8f90d865d3b46f997f9b564\System.Web.Services.ni.dll
+ 2007-11-12 17:55:42 12,185,600 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\33832a669730076ff8fad5f4adbe9353\System.Web.ni.dll
+ 2007-05-30 23:03:48 110,360 ----a-w C:\WINDOWS\system32\drivers\kl1.sys
+ 2007-05-30 23:03:50 119,576 ----a-w C:\WINDOWS\system32\drivers\klif.sys
+ 2007-06-21 20:54:26 796,048 ----a-w C:\WINDOWS\system32\libeay32_0.9.6l.dll
+ 2007-06-21 20:54:30 83,432 ----a-w C:\WINDOWS\system32\vsdata.dll
+ 2007-06-21 20:54:52 394,984 ----a-w C:\WINDOWS\system32\vsdatant.sys
+ 2007-06-21 20:54:32 157,160 ----a-w C:\WINDOWS\system32\vsinit.dll
+ 2007-06-21 20:54:32 103,912 ----a-w C:\WINDOWS\system32\vsmonapi.dll
+ 2007-06-21 20:54:32 275,944 ----a-w C:\WINDOWS\system32\vspubapi.dll
+ 2007-06-21 20:54:32 71,144 ----a-w C:\WINDOWS\system32\vsregexp.dll
+ 2007-06-21 20:54:34 472,552 ----a-w C:\WINDOWS\system32\vsutil.dll
+ 2007-06-21 20:54:34 46,568 ----a-w C:\WINDOWS\system32\vswmi.dll
+ 2007-06-21 20:54:34 99,816 ----a-w C:\WINDOWS\system32\vsxml.dll
+ 2007-06-21 20:54:34 83,432 ----a-w C:\WINDOWS\system32\zlcomm.dll
+ 2007-06-21 20:54:34 71,144 ----a-w C:\WINDOWS\system32\zlcommdb.dll
- 2006-03-31 20:23:41 4,212 ---h--w C:\WINDOWS\system32\zllictbl.dat
+ 2007-11-13 21:19:38 4,212 ---h--w C:\WINDOWS\system32\zllictbl.dat
+ 2007-06-21 20:54:24 366,112 ----a-w C:\WINDOWS\system32\ZoneLabs\av.dll
+ 2007-06-21 20:55:26 26,000 ----a-w C:\WINDOWS\system32\ZoneLabs\av_loc040c.dll
+ 2007-05-30 23:03:30 65,248 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\bases\aphish.dat
+ 2006-06-30 13:47:36 21,568 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\bases\avcmhk4.dll
+ 2007-05-30 23:03:16 77,824 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\CKAHComm.dll
+ 2007-05-30 23:03:16 110,592 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\CKAHrule.dll
+ 2007-05-30 23:03:16 331,776 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\CKAHUM.dll
+ 2007-05-30 23:03:16 38,400 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\FSSync.dll
+ 2006-09-19 22:12:14 208,960 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\inv.dll
+ 2007-05-30 23:03:16 258,048 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\kave.dll
+ 2006-12-19 17:13:52 1,093,632 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\libeay32.dll
+ 2007-05-30 23:03:20 548,864 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\msvcp80.dll
+ 2007-05-30 23:03:20 626,688 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\msvcr80.dll
+ 2007-05-30 23:03:18 184,320 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\prloader.dll
+ 2007-05-30 23:03:22 90,112 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\prremote.dll
+ 2007-05-30 23:03:18 118,784 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\ScanningProcess.exe
+ 2006-12-19 17:13:52 200,704 ----a-w C:\WINDOWS\system32\ZoneLabs\avsys\ssleay32.dll
+ 2007-06-21 20:54:24 99,816 ----a-w C:\WINDOWS\system32\ZoneLabs\camupd.dll
+ 2007-06-21 20:55:26 17,808 ----a-w C:\WINDOWS\system32\ZoneLabs\camupd_loc040c.dll
+ 2004-01-30 11:35:08 813,568 ----a-w C:\WINDOWS\system32\ZoneLabs\dbghelp.dll
+ 2007-06-21 20:54:24 128,480 ----a-w C:\WINDOWS\system32\ZoneLabs\fbl.dll
+ 2007-06-21 20:54:26 38,376 ----a-w C:\WINDOWS\system32\ZoneLabs\featuremap.dll
+ 2007-06-21 20:54:26 321,016 ----a-w C:\WINDOWS\system32\ZoneLabs\imsecure.dll
+ 2007-06-21 20:55:28 26,000 ----a-w C:\WINDOWS\system32\ZoneLabs\imsecure_loc040c.dll
+ 2007-06-21 20:55:26 288,144 ----a-w C:\WINDOWS\system32\ZoneLabs\lib\ConfigWizard_loc040c.zip.dll
+ 2007-06-21 20:55:28 152,976 ----a-w C:\WINDOWS\system32\ZoneLabs\lib\LicenseUI_loc040c.zip.dll
+ 2007-06-21 20:54:54 26,000 ----a-w C:\WINDOWS\system32\ZoneLabs\lib\zlsvc.zip.dll
+ 2007-06-21 20:54:54 1,361,296 --