Rechercher : dans
Par :

INFECTION DANS LA BDR ?

Dernière réponse le 1 jan 2009 à 06:28:04 PIERRE, le 28 déc 2008 à 18:41:50 
 Signaler ce message aux modérateurs

Bonjour,
Zeb Help Process 2 by Nicolas Coolman - Rapport de synthèse du 28/12/2008 18:39:20

PROCESSUS MALWARE (Rootkit, trojan, ver, spyware, adware,...)
O71 - BDRI:[hklm\software\classes\typelib\{506f578a-91e1-46ce-830f­-e2f4268e9966}]
O71 - BDRI:[hklm\software\classes\.torrent]
O71 - BDRI:[hkcr\.torrent]
O71 - BDRI:[hkcu\software\microsoft\internet explorer\menuext\crawler search]

PROCESSUS SUPERFLU DU SYSTEME
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc009.dat -->09/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc00C.dat -->09/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh009.dat -->09/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh00C.dat -->09/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\tmp.reg -->27/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\tmp.txt -->27/12/2008

TOOLBAR INUTILE (Navigateur internet)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper200711281.dll
O40 - ASIC: Installation Support - {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} - C:\Program Files\Yahoo!\Common\Yinsthelper200711281.dll
O40 - ASIC: Installation Support - {347B0667-C7ED-429B-BDE3-CC8D3BACAA31} - C:\Program Files\Yahoo!\Common\Yinsthelper200711281.dll

PROCESSUS INUTILE (Au démarrage du système)
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
O4 - HKLM\..\Run: [ftutil2] rundll32.exe ftutil2.dll,SetWriteCacheMode
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O44 - LFC:Last File Created - C:\WINDOWS\System32\nvcpl.dll -->07/10/2008

MISE A JOUR DE PRODUIT
Sun Microsystems

PROTECTION DU SYSTEME (Antivirus, FireWall, Anti-Malwares)
Crawler®Spyware Terminator
Kaspersky Internet Security
Kaspersky®Antivirus
SUPERAntiSpyware.com SUPERAntiSpyware
Kaspersky Antivirus
Emsi Software®A-Squared Free Anti-malware
a-squared Hijacker
Spyware Terminator

RAPPORT SIMPLIFIE
rundll32.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\Lexmark 5600-6600 Series\lxdumon.exe
C:\Program Files\Lexmark 5600-6600 Series\lxduamon.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxduserv.exe
C:\WINDOWS\system32\lxducoms.exe
P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\nppl3260.dll
P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\nprjplug.dll
P1 - OPN:Opera Plugin Navigator - C:\Program Files\Opera\Program\Plugins\nprpjplug.dll
O2 - BHO: Lexmark - {D2C5E510-BE6D-42CC-9F61-E4F939078474} - C:\Program Files\Lexmark Printable Web\bho.dll
O4 - HKLM\..\Run: [ftutil2] rundll32.exe ftutil2.dll,SetWriteCacheMode
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [lxdumon.exe] "C:\Program Files\Lexmark 5600-6600 Series\lxdumon.exe"
O4 - HKLM\..\Run: [lxduamon] "C:\Program Files\Lexmark 5600-6600 Series\lxduamon.exe"
O4 - HKLM\..\Run: [Lexmark 5600-6600 Series Fax Server] "C:\Program Files\Lexmark 5600-6600 Series\fm3032.exe" /s
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper200711281.dll
O23 - Service: lxduCATSCustConnectService (lxduCATSCustConnectService) - C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxduserv.exe
O23 - Service: lxdu_device (lxdu_device) - C:\WINDOWS\system32\lxducoms.exe -service
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Schedule Task Weekly.job
O40 - ASIC: Installation Support - {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} - C:\Program Files\Yahoo!\Common\Yinsthelper200711281.dll
O40 - ASIC: Installation Support - {347B0667-C7ED-429B-BDE3-CC8D3BACAA31} - C:\Program Files\Yahoo!\Common\Yinsthelper200711281.dll
O41 - Driver: DarkSpy (DarkSpy) - C:\WINDOWS\system32\DarkSpyKernel.sys
O41 - Driver: DarkSpy (DarkSpy) - C:\WINDOWS\system32\DarkSpyKernel.sys
O41 - Driver: DarkSpy (DarkSpy) - C:\WINDOWS\system32\DarkSpyKernel.sys
O42 - Logiciel: ESC84 Guide de référence
O42 - Logiciel: ESC84 Guide des logiciels
O42 - Logiciel: Google Chrome
O42 - Logiciel: INFORAD MANAGER 3.5
O42 - Logiciel: Lexmark 5600-6600 Series
O42 - Logiciel: TomTom HOME 2.5.2.60
O42 - Logiciel: U.B. Funkeys
O42 - Logiciel: Windows XP Service Pack 3
O42 - Logiciel: Canon CanoScan Toolbox 4.5
O42 - Logiciel: J2SE Runtime Environment 5.0 Update 6
O42 - Logiciel: Trojan Killer 1.4
O42 - Logiciel: Manual CanoScan 3200,3200F
O42 - Logiciel: AMD Power Monitor
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Scanner
O44 - LFC:Last File Created - C:\WINDOWS\System32\%LocalXml% -->30/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\09wutili.sys -->06/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\BIN_STRSBW.SPT -->19/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\COMDLG32.OCX -->26/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\DisspyUninstall.exe -->26/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\dummy019file -->30/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\Incinerator.dll -->04/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\ioloBootDefrag.cfg -->13/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\jupdate-1.6.0_11-b03.log -->03/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\LuResult.txt -->23/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\nvcpl.dll -->07/10/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\OEMINFO.PNF -->26/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc009.dat -->09/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc00C.dat -->09/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh009.dat -->09/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh00C.dat -->09/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\REGTOOL5.DLL -->26/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\shdocvw.oca -->26/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\smrgdf.exe -->18/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\spupdwxp.log -->23/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\tmp.reg -->27/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\tmp.txt -->27/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\TZLog.log -->10/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\vbuzip10.dll -->26/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\VBZIP11.DLL -->26/11/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\wininet.dll -->16/10/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\103C_HP_CPC_RF768AA-ABF SR2005FR FR680_YC_0Pres_QCNH639_E64FRemREA1_48_INODUSM3_SASUSTek Computer INC._V1.05_B3.10_T061213_WXP2_L40C_M3007_J160_7AMD_8Athlon 64_92.2_#080216_N_Z_G10DE0241_OTSSTcorp
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\IsDrv122.sys -->30/11/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\404FIX.EXE-069F603C.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\A2FREE.EXE-34CE1BFD.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\A2HIJACKFREE.EXE-3A1B1368.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\AGENT.EXE-06FC5CDE.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\AGENT.OMZ.FIX.EXE-005E515D.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\AGENTSVR.EXE-002E45AB.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ALCMTR.EXE-235F9538.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ALG.EXE-0F138680.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\AVP.EXE-0FFFF63A.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\BURNIXA.EXE-257DFA9D.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CHCP.COM-18156052.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CHKNTFS.EXE-31921D64.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CSC.EXE-1113BFA6.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CSCRIPT.EXE-1C26180C.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\CVTRES.EXE-13DEB540.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DLLHOST.EXE-5353C76C.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DUMPHIVE.EXE-020E0AC4.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DVDPLAY.EXE-13F05B52.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DVDPS.EXE-30CBA7B4.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\EHMSAS.EXE-181DA6C9.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\EHREC.EXE-3B4F59C8.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\EHSHELL.EXE-00D8CD6D.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\EHTRAY.EXE-02EFC9BD.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FIND.EXE-0EC32F1E.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FINDSTR.EXE-0CA6274B.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FM3032.EXE-22DA1188.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GOOGLEUPDATE.EXE-1E123D86.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GOOGLEUPDATER.EXE-2CAF5929.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HELPCTR.EXE-3862B6F5.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HELPHOST.EXE-247D2792.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HOMERUNNER.EXE-0217D6D9.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HOMERUNTIME.EXE-0258AC19.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HPSYSDRV.EXE-0E7EF3EF.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IEDFIX.C.EXE-1B3D6925.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IEDFIX.EXE-0F6F1D0D.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IMAPI.EXE-0BF740A4.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\INTEGRATOR.EXE-1066F4A3.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\INTEGRATOR.EXE-3A1D428D.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IZARC.EXE-2B73BBEB.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\JUSCHED.EXE-25206883.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\KBD.EXE-2AF7866F.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LEADERREG.EXE-0C296CAD.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LOGON.SCR-151EFAEA.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LXDUFAX.EXE-2B58C402.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LXDUJSWX.EXE-0DD2856F.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LXDUPSWX.EXE-24F284FD.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LXDUTIME.EXE-3B74167A.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MBAM.EXE-0BEE0439.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MEDIAHUB.EXE-351F4410.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MEDIAINFO.EXE-20DDF2BE.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MODE.COM-31685BAE.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MOVIEMK.EXE-08CCF9FE.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MSMSGS.EXE-2B6052DE.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MYDVD.EXE-359F8D2B.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOTEPAD.EXE-189578DA.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOTEPAD.EXE-336351A9.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\O4PATCH.EXE-10C9D387.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\OPERA.EXE-12085680.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\OSV.EXE-1A4D2F4B.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PHOTOSTUDIO.EXE-26BC342C.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\POLICIES.EXE-1E4B0E5D.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PV.EXE-02C569DD.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\REALONEMESSAGECENTER.EXE-1B5B11B5.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\REALPLAY.EXE-1BF219BD.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\REALSCHED.EXE-04BEC5CC.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\REG.EXE-0D2A95F7.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\REVOUNINSTALLER.EXE-38379543.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RHOSTS.EXE-1113C73D.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RHOSTS.EXE-3296D3FE.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ROGUEREMOVER.EXE-092EEBB9.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1404F423.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1AF9522B.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-28329A58.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-296C5F4E.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-2E71FAE7.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-30B5F68D.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-31027040.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4489B61B.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-464F41AD.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-48D36833.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SC.EXE-012262AF.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SETPATH.EXE-38F85A52.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SETUP_WM.EXE-3135CBD6.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SMITFRAUDFIX.EXE-0D10AB49.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SMIUPDATE.EXE-32F7806A.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SNDVOL32.EXE-383480B7.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SPIDER.EXE-2D998CA6.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SPYWARETERMINATOR.EXE-0C0A5116.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SRCHSTS.EXE-1BF3DF96.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SSUPDATE.EXE-0B43BD98.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\STARTUPMANAGER.EXE-0F88A44B.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SUPERANTISPYWARE.EXE-07994D9B.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SVCHOST.EXE-3530F672.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SWREG.EXE-2A8302F4.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SWREG.EXE-3688D00C.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TOMTOMHOME.EXE-1F2E683D.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TOMTOMHOME.EXE-2608F49E.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TOOLBARSD.EXE-0ED47EF9.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TOOLBARSD.EXE-2C3DC15E.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UNZIP.EXE-0808EE0F.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UPDATECHECKER.EXE-16A4997A.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UPDATEWIZARD.EXE-3337C61D.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VACFIX.EXE-00C169B6.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VERCLSID.EXE-3667BD89.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WEBUPDATE.EXE-0E1736C3.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WINWORD.EXE-10D55173.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WMIAPSRV.EXE-1E2270A5.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WMPLAYER.EXE-18DDEF9D.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WSCNTFY.EXE-1B24F5EB.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WSCRIPT.EXE-32960AB9.pf -->27/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf -->28/12/2008
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ZHP2.EXE-067B1FE0.pf -->28/12/2008
O47 - AAKE:Key Export - "C:\WINDOWS\system32\lxducoms.exe"="C:\WINDOWS\system32\lxducoms.exe:*:Enabled:5600-6600 Series Server"
O71 - BDRI:[hklm\software\classes\typelib\{506f578a-91e1-46ce-830f-e2f4268e9966}]
O71 - BDRI:[hklm\software\classes\.torrent]
O71 - BDRI:[hkcr\.torrent]
O71 - BDRI:[hkcu\software\microsoft\internet explorer\menuext\crawler search]

Configuration: Windows XP
Opera 9.63

Meilleures réponses pour « INFECTION DANS LA BDR ? » dans :
[Virus] Que faire quand on est infecté ? Voir Si vous savez ou vous pensez être infecté par un virus Si vous savez ou vous pensez être infecté par un virus, il faut s'en occuper le plus rapidement possible car l'infection peut inviter d'autres infections dans votre PC et votre système risque...
Comment supprimer un service infecté ? Voir Au cours d'une désinfection, ou à titre personnel, il peut vous arriver de devoir (faire) supprimer un service infecté appartenant à un malware. Voici quelques méthodes de suppression. 1) Suppression en passant par HijackThis 2) Suppression...
Comment supprimer les infections par msn ? VoirQu'est-ce que l'infection par Msn Les infections MSN se transmettent en ouvrant un lien infecté suite à un message reçu sur msn comme les fichers : msn photo.zip... Une fois l'infection présente dans son pc , elle envoie des messages du...
Virus/Ver MSN/WLM VoirACTION À MENER ! SUPPRIMER L'INFECTION. Vous avez reçu via vos conversations MSN/Windows Live Messenger un fichier ou un message accompagné d’un lien du style : "Album photo.zip" "t'es tres jolie sur cet tof..." "ta tof fait quoi...
Télécharger Avast! Virus Cleaner VoirTout le monde connaît l' antivirus gratuit Avast. Son éditeur propose avast! Virus Cleaner, un nettoyeur de virus gratuit, permettant de supprimer de l'ordinateur, les infections d'une vaste gamme de virus et de vers (worms). Si, malgré toutes...

1

melquior, le 1 jan 2009 à 06:21:49

Up

Répondre à melquior

2

 melquior, le 1 jan 2009 à 06:28:04

Telecharge anti malware et un scan et le rapport sur forum antimalware

Répondre à melquior