c'est bon j'ai supprimé le crack voilà :
ComboFix 08-09-16.05 - Administrateur 2008-09-19 14:32:33.2 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.444 [GMT 0:00]
[color=red]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/color]
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\InfoSat.txt
C:\Program Files\MyWebSearch
C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
C:\WINDOWS\system32\ban_list.txt
C:\WINDOWS\system32\drivers\downld
C:\WINDOWS\system32\drivers\downld\1007640.exe
C:\WINDOWS\system32\drivers\downld\1010468.exe
C:\WINDOWS\system32\drivers\downld\101078.exe
C:\WINDOWS\system32\drivers\downld\101234.exe
C:\WINDOWS\system32\drivers\downld\101703.exe
C:\WINDOWS\system32\drivers\downld\102953.exe
C:\WINDOWS\system32\drivers\downld\103203.exe
C:\WINDOWS\system32\drivers\downld\1035421.exe
C:\WINDOWS\system32\drivers\downld\103718.exe
C:\WINDOWS\system32\drivers\downld\1038765.exe
C:\WINDOWS\system32\drivers\downld\106609.exe
C:\WINDOWS\system32\drivers\downld\1069546.exe
C:\WINDOWS\system32\drivers\downld\1073937.exe
C:\WINDOWS\system32\drivers\downld\107812.exe
C:\WINDOWS\system32\drivers\downld\109062.exe
C:\WINDOWS\system32\drivers\downld\111078.exe
C:\WINDOWS\system32\drivers\downld\111406.exe
C:\WINDOWS\system32\drivers\downld\111578.exe
C:\WINDOWS\system32\drivers\downld\112921.exe
C:\WINDOWS\system32\drivers\downld\113156.exe
C:\WINDOWS\system32\drivers\downld\113187.exe
C:\WINDOWS\system32\drivers\downld\114843.exe
C:\WINDOWS\system32\drivers\downld\116437.exe
C:\WINDOWS\system32\drivers\downld\117218.exe
C:\WINDOWS\system32\drivers\downld\117421.exe
C:\WINDOWS\system32\drivers\downld\118234.exe
C:\WINDOWS\system32\drivers\downld\118468.exe
C:\WINDOWS\system32\drivers\downld\121312.exe
C:\WINDOWS\system32\drivers\downld\122171.exe
C:\WINDOWS\system32\drivers\downld\123015.exe
C:\WINDOWS\system32\drivers\downld\133687.exe
C:\WINDOWS\system32\drivers\downld\134796.exe
C:\WINDOWS\system32\drivers\downld\136218.exe
C:\WINDOWS\system32\drivers\downld\137703.exe
C:\WINDOWS\system32\drivers\downld\138046.exe
C:\WINDOWS\system32\drivers\downld\138906.exe
C:\WINDOWS\system32\drivers\downld\139578.exe
C:\WINDOWS\system32\drivers\downld\139734.exe
C:\WINDOWS\system32\drivers\downld\142593.exe
C:\WINDOWS\system32\drivers\downld\146328.exe
C:\WINDOWS\system32\drivers\downld\146578.exe
C:\WINDOWS\system32\drivers\downld\149234.exe
C:\WINDOWS\system32\drivers\downld\149859.exe
C:\WINDOWS\system32\drivers\downld\155421.exe
C:\WINDOWS\system32\drivers\downld\156093.exe
C:\WINDOWS\system32\drivers\downld\156937.exe
C:\WINDOWS\system32\drivers\downld\158453.exe
C:\WINDOWS\system32\drivers\downld\159406.exe
C:\WINDOWS\system32\drivers\downld\159562.exe
C:\WINDOWS\system32\drivers\downld\162453.exe
C:\WINDOWS\system32\drivers\downld\169875.exe
C:\WINDOWS\system32\drivers\downld\174437.exe
C:\WINDOWS\system32\drivers\downld\182703.exe
C:\WINDOWS\system32\drivers\downld\188265.exe
C:\WINDOWS\system32\drivers\downld\189781.exe
C:\WINDOWS\system32\drivers\downld\201421.exe
C:\WINDOWS\system32\drivers\downld\201734.exe
C:\WINDOWS\system32\drivers\downld\203625.exe
C:\WINDOWS\system32\drivers\downld\203937.exe
C:\WINDOWS\system32\drivers\downld\208500.exe
C:\WINDOWS\system32\drivers\downld\210640.exe
C:\WINDOWS\system32\drivers\downld\210734.exe
C:\WINDOWS\system32\drivers\downld\210921.exe
C:\WINDOWS\system32\drivers\downld\212593.exe
C:\WINDOWS\system32\drivers\downld\214015.exe
C:\WINDOWS\system32\drivers\downld\215265.exe
C:\WINDOWS\system32\drivers\downld\216671.exe
C:\WINDOWS\system32\drivers\downld\216906.exe
C:\WINDOWS\system32\drivers\downld\226484.exe
C:\WINDOWS\system32\drivers\downld\239703.exe
C:\WINDOWS\system32\drivers\downld\242375.exe
C:\WINDOWS\system32\drivers\downld\244500.exe
C:\WINDOWS\system32\drivers\downld\252718.exe
C:\WINDOWS\system32\drivers\downld\254703.exe
C:\WINDOWS\system32\drivers\downld\261093.exe
C:\WINDOWS\system32\drivers\downld\262656.exe
C:\WINDOWS\system32\drivers\downld\264421.exe
C:\WINDOWS\system32\drivers\downld\268265.exe
C:\WINDOWS\system32\drivers\downld\269250.exe
C:\WINDOWS\system32\drivers\downld\270390.exe
C:\WINDOWS\system32\drivers\downld\270890.exe
C:\WINDOWS\system32\drivers\downld\273656.exe
C:\WINDOWS\system32\drivers\downld\275765.exe
C:\WINDOWS\system32\drivers\downld\276000.exe
C:\WINDOWS\system32\drivers\downld\278796.exe
C:\WINDOWS\system32\drivers\downld\284453.exe
C:\WINDOWS\system32\drivers\downld\300843.exe
C:\WINDOWS\system32\drivers\downld\302515.exe
C:\WINDOWS\system32\drivers\downld\302609.exe
C:\WINDOWS\system32\drivers\downld\307156.exe
C:\WINDOWS\system32\drivers\downld\310515.exe
C:\WINDOWS\system32\drivers\downld\318609.exe
C:\WINDOWS\system32\drivers\downld\366187.exe
C:\WINDOWS\system32\drivers\downld\524078.exe
C:\WINDOWS\system32\drivers\downld\526640.exe
C:\WINDOWS\system32\drivers\downld\542828.exe
C:\WINDOWS\system32\drivers\downld\567390.exe
C:\WINDOWS\system32\drivers\downld\576500.exe
C:\WINDOWS\system32\drivers\downld\683921.exe
C:\WINDOWS\system32\drivers\downld\701703.exe
C:\WINDOWS\system32\drivers\downld\85296.exe
C:\WINDOWS\system32\drivers\downld\91812.exe
C:\WINDOWS\system32\drivers\downld\92484.exe
C:\WINDOWS\system32\drivers\downld\94000.exe
C:\WINDOWS\system32\drivers\downld\96937.exe
C:\WINDOWS\system32\drivers\downld\993531.exe
C:\WINDOWS\system32\drivers\downld\99500.exe
C:\WINDOWS\system32\drivers\hldrrr.exe
C:\WINDOWS\system32\drivers\srosa.sys
C:\WINDOWS\system32\mdelk.exe
C:\WINDOWS\system32\wintems.exe
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_SROSA
-------\Service_srosa
((((((((((((((((((((((((((((( Fichiers cr‚‚s du 2008-08-19 au 2008-09-19 ))))))))))))))))))))))))))))))))))))
.
2008-09-18 18:12 . 2008-09-18 18:12 249,856 --------- C:\WINDOWS\Setup1.exe
2008-09-18 18:12 . 2008-09-18 18:12 73,216 --a------ C:\WINDOWS\ST6UNST.EXE
2008-09-16 16:32 . 2004-08-19 16:09 159,232 --a------ C:\WINDOWS\system32\ptpusd.dll
2008-09-16 16:32 . 2001-08-23 17:47 5,632 --a------ C:\WINDOWS\system32\ptpusb.dll
2008-09-08 20:04 . 2008-09-08 20:04 <REP> d-------- C:\Program Files\iTunes
2008-09-08 20:04 . 2008-09-08 20:04 <REP> d-------- C:\Program Files\iPod
2008-09-07 11:43 . 2008-09-08 11:55 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-09-07 11:43 . 2008-09-07 11:43 1,409 --a------ C:\WINDOWS\QTFont.for
2008-09-05 13:11 . 2008-09-05 13:11 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Trymedia
2008-08-26 14:05 . 2008-08-26 14:05 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\Windows Search
2008-08-26 13:57 . 2008-08-26 13:57 <REP> d-------- C:\WINDOWS\system32\GroupPolicy
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-18 23:48 --------- d-----w C:\Program Files\Trend Micro
2008-09-18 23:12 --------- d-----w C:\Program Files\CleanUp!
2008-09-18 21:10 --------- d-----w C:\Program Files\eMule
2008-09-17 18:00 --------- d-----w C:\Program Files\Fichiers communs\Symantec Shared
2008-09-14 15:58 --------- d-----w C:\Program Files\Windows Desktop Search
2008-09-14 15:56 --------- d-----w C:\Program Files\Zylom Games
2008-09-14 15:56 --------- d-----w C:\Program Files\Bonjour
2008-09-12 00:20 --------- d-----w C:\Program Files\Messenger Plus! Live
2008-09-11 01:16 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-09-09 02:03 --------- d-----w C:\Documents and Settings\Administrateur\Application Data\Apple Computer
2008-09-08 19:16 --------- d-----w C:\Program Files\QuickTime
2008-08-01 23:04 --------- d-----w C:\Program Files\Fichiers communs\Adobe
2008-08-01 23:02 --------- d-----w C:\Program Files\AAALOGO
2008-08-01 23:01 --------- d-----w C:\Program Files\The Logo Creator v5
2008-08-01 23:01 --------- d-----w C:\Program Files\Sony
2008-08-01 22:58 --------- d-----w C:\Program Files\Nokia
2008-07-30 14:14 --------- d-----w C:\Documents and Settings\Administrateur\Application Data\Zylom
2008-07-30 11:03 --------- d-----w C:\Program Files\Image-Line
2008-07-25 20:04 --------- d-----w C:\Program Files\AP Tuner
2008-07-23 09:43 --------- d-----w C:\Program Files\JewelQuest3_at
2008-07-23 09:41 --------- d-----w C:\Documents and Settings\Administrateur\Application Data\iWin
2008-07-22 20:32 32,000 ----a-w C:\WINDOWS\system32\drivers\usbaapl.sys
2008-07-22 14:47 --------- d-----w C:\Documents and Settings\Administrateur\Application Data\Jane s Hotel
2008-07-19 16:19 --------- d-----w C:\Documents and Settings\All Users\Application Data\Zylom
2008-07-18 22:10 94,920 ----a-w C:\WINDOWS\system32\dllcache\cdm.dll
2008-07-18 22:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
2008-07-18 22:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
2008-07-18 22:10 53,448 ----a-w C:\WINDOWS\system32\dllcache\wuauclt.exe
2008-07-18 22:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
2008-07-18 22:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
2008-07-18 22:10 36,552 ----a-w C:\WINDOWS\system32\dllcache\wups.dll
2008-07-18 22:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
2008-07-18 22:09 563,912 ----a-w C:\WINDOWS\system32\dllcache\wuapi.dll
2008-07-18 22:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
2008-07-18 22:09 325,832 ----a-w C:\WINDOWS\system32\dllcache\wucltui.dll
2008-07-18 22:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
2008-07-18 22:09 205,000 ----a-w C:\WINDOWS\system32\dllcache\wuweb.dll
2008-07-18 22:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
2008-07-18 22:09 1,811,656 ----a-w C:\WINDOWS\system32\dllcache\wuaueng.dll
2008-07-18 22:07 270,880 ----a-w C:\WINDOWS\system32\mucltui.dll
2008-07-18 22:07 210,976 ----a-w C:\WINDOWS\system32\muweb.dll
2008-07-07 20:31 253,952 ----a-w C:\WINDOWS\system32\es.dll
2008-07-07 20:31 253,952 ------w C:\WINDOWS\system32\dllcache\es.dll
2008-06-24 18:12 295,936 ------w C:\WINDOWS\system32\wmpeffects.dll
2008-06-24 16:23 74,240 ----a-w C:\WINDOWS\system32\mscms.dll
2008-06-24 16:23 74,240 ------w C:\WINDOWS\system32\dllcache\mscms.dll
2008-06-24 09:28 3,592,192 ------w C:\WINDOWS\system32\dllcache\mshtml.dll
2008-06-23 17:50 78,336 ----a-w C:\WINDOWS\pysoft_uninstaller.exe
2008-06-23 09:21 70,656 ------w C:\WINDOWS\system32\dllcache\ie4uinit.exe
2008-06-23 09:21 625,664 ------w C:\WINDOWS\system32\dllcache\iexplore.exe
2008-06-23 09:20 13,824 ------w C:\WINDOWS\system32\dllcache\ieudinit.exe
2008-06-21 05:23 161,792 ------w C:\WINDOWS\system32\dllcache\ieakui.dll
2008-06-20 17:41 247,808 ----a-w C:\WINDOWS\system32\mswsock.dll
2008-06-20 17:41 247,808 ------w C:\WINDOWS\system32\dllcache\mswsock.dll
2008-06-20 17:41 148,992 ----a-w C:\WINDOWS\system32\dllcache\dnsapi.dll
2008-06-20 10:45 360,320 ----a-w C:\WINDOWS\system32\dllcache\tcpip.sys
2008-06-20 10:44 138,368 ------w C:\WINDOWS\system32\dllcache\afd.sys
2008-06-20 09:52 225,920 ----a-w C:\WINDOWS\system32\dllcache\tcpip6.sys
2004-09-28 02:00 26,240 ----a-w C:\WINDOWS\inf\RAMDSK.SYS
2008-05-22 17:49 16,384 -csha-w C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat
2008-05-22 17:49 16,384 -csha-w C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\index.dat
2008-05-22 17:49 32,768 -csha-w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 15360]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-09-11 68856]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe" [2007-06-27 152872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="C:\WINDOWS\System32\igfxtray.exe" [2003-03-11 155648]
"HotKeysCmds"="C:\WINDOWS\System32\hkcmd.exe" [2003-03-11 114688]
"Smapp"="C:\Program Files\Analog Devices\SoundMAX\SMTray.exe" [2003-01-31 98304]
"DrvLsnr"="C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe" [2002-05-28 69632]
"srmclean"="C:\Cpqs\Scom\srmclean.exe" [2001-07-24 36864]
"SetRefresh"="C:\Program Files\Compaq\SetRefresh\SetRefresh.exe" [2002-08-07 485376]
"CPQEASYACC"="C:\Program Files\COMPAQ\Easy Access Button Support\StartEAK.exe" [2001-12-14 32768]
"LogitechVideoRepair"="C:\Program Files\Logitech\Video\ISStart.exe" [2003-06-30 188416]
"LogitechVideoTray"="C:\Program Files\Logitech\Video\LogiTray.exe" [2003-06-30 65536]
"NeroFilterCheck"="C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 39792]
"Adobe_ID0EYTHM"="C:\PROGRA~1\FICHIE~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE" [2007-03-20 1884160]
"SpeedTouch USB Diagnostics"="C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" [2003-09-05 878080]
"avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-09-19 266497]
"AppleSyncNotifier"="C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-07-22 116040]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-05-27 413696]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-07-30 289064]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-19 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.enc"= ITIG726.acm
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Fichiers communs\\Ahead\\Nero Web\\SetupX.exe"=
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"C:\\Program Files\\Fichiers communs\\Adobe\\Adobe Version Cue CS3\\Server\\bin\\VersionCueCS3.exe"=
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"=
"C:\\Program Files\\eMule\\emule.exe"=
"C:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Anti-Virus 7.0.1.325\\French\\setup.exe"=
"C:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Internet Security 7.0.1.325\\French\\setup.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3703:TCP"= 3703:TCP:Adobe Version Cue CS3 Server
"3704:TCP"= 3704:TCP:Adobe Version Cue CS3 Server
"50900:TCP"= 50900:TCP:Adobe Version Cue CS3 Server
"50901:TCP"= 50901:TCP:Adobe Version Cue CS3 Server
S3 MBAMCatchMe;MBAMCatchMe;C:\Program Files\Malwarebytes' Anti-Malware\catchme.sys [ ]
S3 SG762_XP;SAGEM 802.11g XG762 1211B Driver;C:\WINDOWS\system32\DRIVERS\WlanBZXP.sys [2006-01-18 402432]
S3 usbscan;Pilote de scanneur USB;C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 USBSTOR;Pilote de stockage de masse USB;C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 ZDCndis5;ZDCndis5 Protocol Driver;C:\WINDOWS\system32\ZDCndis5.SYS [ ]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3067598e-3148-11dd-96e5-000bcdc0ee6a}]
\Shell\auto\command - H:\auto.exe
\Shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL auto.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3865ad9d-edd2-11dc-89ea-000bcdc0ee6a}]
\Shell\auto\command - G:\Thumbs.com
\Shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Thumbs.com
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c97bd98d-7c36-11dc-886b-0060b34289b6}]
\Shell\AutoRun\command - krg62.cmd
\Shell\explore\Command - krg62.cmd
\Shell\open\Command - krg62.cmd
.
Contenu du dossier 'Tƒches planifi‚es'
.
- - - - ORPHELINS SUPPRIMES - - - -
HKCU-Run-LDM - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
HKLM-Run-AAWTray - C:\Program Files\Lavasoft\Ad-Aware 2007\AAWTray.exe
.
------- Examen suppl‚mentaire -------
.
R0 -: HKCU-Main,Start Page = hxxp://www.yahoo.fr/
R0 -: HKCU-Main,SearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
R0 -: HKLM-Main,Start Page = hxxp://www.01net.com/telecharger/
R0 -: HKLM-Main,Search Bar = hxxp://go.compaq.com/1Q00CDT/040C/bl8.asp
R1 -: HKCU-Internet Connection Wizard,ShellNext = hxxp://go.compaq.com/1Q00CDT/040C/bl7.asp
R1 -: HKCU-Internet Settings,ProxyOverride = localhost;*.local
R1 -: HKCU-SearchURL,(Default) = hxxp://www.google.com/search?q=%s
O8 -: E&xporter vers Microsoft Excel - C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O17 -: HKLM\CCS\Interface\{E2392926-A700-4614-8DED-535DDF9AEA7D}: NameServer = 212.217.0.1,212.217.0.12
O16 -: DirectAnimation Java Classes - file://C:\WINDOWS\Java\classes\dajava.cab
C:\WINDOWS\Downloaded Program Files\DirectAnimation Java Classes.osd
O16 -: Microsoft XML Parser for Java - file:///C:/WINDOWS/Java/classes/xmldso.cab
C:\WINDOWS\Downloaded Program Files\Microsoft XML Parser for Java.osd
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-19 14:39:26
Windows 5.1.2600 Service Pack 2 NTFS
Recherche de processus cach‚s ...
Recherche d'‚l‚ments en d‚marrage automatique cach‚s ...
Recherche de fichiers cach‚s ...
Scan termin‚ avec succŠs
Fichiers cach‚s: 0
**************************************************************************
.
------------------------ Autres processus actifs ------------------------
.
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Compaq\Easy Access Button Support\CPQEADM.exe
C:\COMPAQ\EAKDRV\EAUSBKBD.exe
C:\PROGRA~1\Compaq\EASYAC~1\BttnServ.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
.
**************************************************************************
.
Heure de fin: 2008-09-19 14:55:06 - La machine a red‚marr‚
ComboFix-quarantined-files.txt 2008-09-19 14:54:31
ComboFix2.txt 2008-04-14 17:46:43
Avant-CF: 11,843,244,032 octets libres
AprŠs-CF: 11,917,729,792 octets libres
326 --- E O F --- 2008-09-11 01:18:05
Modifié par Douidou le 19/09/2008 16:57