Bonjour.
Voici le rapport :
ComboFix 09-03-06.02 - Berney R 2009-03-08 14:11:45.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.1.1036.18.1279.718 [GMT 1:00]
Lancé depuis: c:\documents and settings\Berney R\Bureau\ComboFix.exe
AV: Panda Global Protection 2009 *On-access scanning disabled* (Updated)
FW: Panda Personal Firewall 2009 *disabled*
* Un nouveau point de restauration a été créé
.
((((((((((((((((((((((((((((( Fichiers créés du 2009-02-08 au 2009-03-08 ))))))))))))))))))))))))))))))))))))
.
2009-03-07 22:57 . 2009-03-07 23:00 <REP> d-------- c:\program files\FindyKill
2009-03-07 21:37 . 2009-03-07 21:37 <REP> d-------- c:\windows\ERUNT
2009-03-07 21:36 . 2009-02-22 16:54 <REP> d--h----- c:\documents and settings\Administrateur\Voisinage réseau
2009-03-07 21:36 . 2009-02-22 16:54 <REP> d--h----- c:\documents and settings\Administrateur\Voisinage d'impression
2009-03-07 21:36 . 2009-02-22 16:02 <REP> d--h----- c:\documents and settings\Administrateur\Modèles
2009-03-07 21:36 . 2009-02-22 16:54 <REP> d-------- c:\documents and settings\Administrateur\Mes documents
2009-03-07 21:36 . 2009-02-22 16:54 <REP> dr------- c:\documents and settings\Administrateur\Menu Démarrer
2009-03-07 21:36 . 2009-02-22 16:54 <REP> d-------- c:\documents and settings\Administrateur\Favoris
2009-03-07 21:36 . 2009-02-22 16:54 <REP> d-------- c:\documents and settings\Administrateur\Bureau
2009-03-07 21:36 . 2009-03-07 21:36 <REP> d-------- c:\documents and settings\Administrateur
2009-03-07 21:32 . 2009-03-07 21:57 <REP> d-------- C:\SDFix
2009-03-07 20:38 . 2009-03-07 20:38 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
2009-03-07 20:38 . 2009-03-07 20:38 <REP> d-------- c:\documents and settings\Berney R\Application Data\Malwarebytes
2009-03-07 20:38 . 2009-03-07 20:38 <REP> d-------- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-03-07 20:38 . 2009-02-11 10:19 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2009-03-07 20:38 . 2009-02-11 10:19 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2009-03-07 19:33 . 2009-03-07 19:33 <REP> d-------- c:\program files\Trend Micro
2009-03-07 13:41 . 2009-03-07 13:41 <REP> d-------- c:\documents and settings\Berney R\Application Data\Talkback
2009-03-07 13:40 . 2009-03-07 13:40 <REP> d-------- c:\documents and settings\Berney R\Application Data\Thunderbird
2009-03-04 21:31 . 2009-03-07 00:52 106 --a------ c:\windows\system32\jpg.dat
2009-03-02 14:21 . 2009-03-02 14:21 <REP> d-------- c:\program files\Fichiers communs\DirectX
2009-02-28 22:52 . 2009-02-28 22:52 <REP> d-------- c:\program files\Stardock
2009-02-28 22:46 . 2007-01-07 17:05 5,261,824 --a------ c:\windows\logonui.exe
2009-02-28 20:15 . 2009-02-28 20:15 <REP> d-------- c:\documents and settings\All Users\Application Data\Panda Software
2009-02-28 19:22 . 2006-06-29 13:07 14,048 --------- c:\windows\system32\spmsg2.dll
2009-02-28 19:18 . 2009-02-28 19:22 <REP> d-------- c:\windows\system32\XPSViewer
2009-02-28 19:18 . 2009-02-28 19:18 <REP> d-------- c:\program files\Reference Assemblies
2009-02-28 19:18 . 2009-02-28 19:18 <REP> d-------- c:\program files\MSBuild
2009-02-28 19:17 . 2008-07-06 13:06 1,676,288 --------- c:\windows\system32\xpssvcs.dll
2009-02-28 19:17 . 2008-07-06 13:06 1,676,288 -----c--- c:\windows\system32\dllcache\xpssvcs.dll
2009-02-28 19:17 . 2008-07-06 11:50 597,504 -----c--- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2009-02-28 19:17 . 2008-07-06 13:06 575,488 --------- c:\windows\system32\xpsshhdr.dll
2009-02-28 19:17 . 2008-07-06 13:06 575,488 -----c--- c:\windows\system32\dllcache\xpsshhdr.dll
2009-02-28 19:17 . 2008-07-06 13:06 117,760 --------- c:\windows\system32\prntvpt.dll
2009-02-28 19:17 . 2008-07-06 13:06 89,088 -----c--- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2009-02-28 18:46 . 2009-02-28 18:46 2,331,008 --a------ c:\windows\system32\TUKernel.exe
2009-02-28 17:41 . 2009-02-28 17:41 <REP> d-------- c:\program files\EA GAMES
2009-02-27 21:40 . 2009-02-27 21:40 <REP> d-------- c:\program files\Zattoo
2009-02-27 19:31 . 2009-02-27 19:33 <REP> d-------- c:\documents and settings\All Users\Application Data\TrackMania
2009-02-27 19:26 . 2009-02-27 19:29 <REP> d-------- c:\program files\TmNationsForever
2009-02-24 18:10 . 2009-02-24 18:10 <REP> d-------- c:\documents and settings\Berney R\Application Data\Canon
2009-02-24 18:10 . 2009-02-24 18:10 <REP> d-------- c:\documents and settings\All Users\Application Data\SSScanAppDataDir
2009-02-24 18:10 . 2009-02-24 18:10 <REP> d-------- c:\documents and settings\All Users\Application Data\MSScanAppDataDir
2009-02-24 18:06 . 2006-10-26 19:58 30,512 --a------ c:\windows\system32\mdimon.dll
2009-02-24 17:16 . 2009-02-24 17:34 <REP> d-------- c:\program files\adslTV
2009-02-24 17:16 . 2009-02-24 17:33 <REP> d-------- c:\documents and settings\Berney R\Application Data\vlc
2009-02-23 20:06 . 2009-02-23 20:06 <REP> d-------- c:\documents and settings\Berney R\Application Data\Media Player Classic
2009-02-23 19:35 . 2009-02-23 19:35 <REP> d-------- c:\documents and settings\Berney R\Application Data\The Labyrinth Plus! Edition
2009-02-23 18:25 . 2009-02-23 18:26 <REP> d-------- c:\program files\Spybot - Search & Destroy
2009-02-23 18:25 . 2009-02-23 19:40 <REP> d-------- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-02-23 13:12 . 2008-12-20 23:46 6,066,688 -----c--- c:\windows\system32\dllcache\ieframe.dll
2009-02-23 13:12 . 2007-04-17 10:32 2,455,488 -----c--- c:\windows\system32\dllcache\ieapfltr.dat
2009-02-23 13:12 . 2007-03-08 06:10 1,048,576 -----c--- c:\windows\system32\dllcache\ieframe.dll.mui
2009-02-23 13:12 . 2008-12-20 23:46 459,264 -----c--- c:\windows\system32\dllcache\msfeeds.dll
2009-02-23 13:12 . 2008-12-20 23:46 383,488 -----c--- c:\windows\system32\dllcache\ieapfltr.dll
2009-02-23 13:12 . 2008-12-20 23:46 267,776 -----c--- c:\windows\system32\dllcache\iertutil.dll
2009-02-23 13:12 . 2008-12-20 23:46 63,488 -----c--- c:\windows\system32\dllcache\icardie.dll
2009-02-23 13:12 . 2008-12-20 23:46 52,224 -----c--- c:\windows\system32\dllcache\msfeedsbs.dll
2009-02-23 13:12 . 2008-12-19 10:10 13,824 -----c--- c:\windows\system32\dllcache\ieudinit.exe
2009-02-23 12:26 . 2008-04-13 11:45 26,368 --a--c--- c:\windows\system32\dllcache\usbstor.sys
2009-02-22 23:39 . 2008-08-14 14:23 2,191,232 -----c--- c:\windows\system32\dllcache\ntoskrnl.exe
2009-02-22 23:39 . 2008-08-14 14:23 2,147,328 -----c--- c:\windows\system32\dllcache\ntkrnlmp.exe
2009-02-22 23:39 . 2008-08-14 14:23 2,068,096 -----c--- c:\windows\system32\dllcache\ntkrnlpa.exe
2009-02-22 23:39 . 2008-08-14 14:23 2,025,984 -----c--- c:\windows\system32\dllcache\ntkrpamp.exe
2009-02-22 23:37 . 2008-06-14 18:33 272,768 --------- c:\windows\system32\drivers\bthport.sys
2009-02-22 23:37 . 2008-06-14 18:33 272,768 -----c--- c:\windows\system32\dllcache\bthport.sys
2009-02-22 23:26 . 2009-02-22 23:25 13,646 --a------ c:\windows\system32\wpa.bak
2009-02-22 23:25 . 2008-10-24 12:21 455,296 -----c--- c:\windows\system32\dllcache\mrxsmb.sys
2009-02-22 23:10 . 2009-02-25 12:34 <REP> d--h----- c:\windows\$hf_mig$
2009-02-22 23:10 . 2009-02-22 23:10 <REP> d--hs---- c:\documents and settings\Berney R\UserData
2009-02-22 23:10 . 2007-11-30 12:18 26,488 --a------ c:\windows\system32\spupdsvc.exe
2009-02-22 21:23 . 2009-02-22 21:23 <REP> d-------- c:\program files\TeamViewer
2009-02-22 21:23 . 2009-02-22 21:23 <REP> d-------- c:\documents and settings\Berney R\temp
2009-02-22 21:23 . 2009-02-22 21:23 <REP> d-------- c:\documents and settings\Berney R\Application Data\TeamViewer
2009-02-22 19:23 . 2009-03-08 13:42 <REP> d-------- c:\documents and settings\Berney R\Tracing
2009-02-22 19:21 . 2009-02-22 19:21 <REP> d-------- c:\program files\Microsoft Silverlight
2009-02-22 19:20 . 2009-02-22 19:20 <REP> d-------- c:\program files\Windows Live SkyDrive
2009-02-22 19:20 . 2009-02-22 19:20 <REP> d-------- c:\program files\Microsoft
2009-02-22 19:19 . 2009-02-22 19:20 <REP> d-------- c:\program files\Windows Live
2009-02-22 19:00 . 2009-02-22 19:00 <REP> d-------- c:\program files\System Explorer
2009-02-22 19:00 . 2009-02-28 14:20 <REP> d-------- c:\documents and settings\All Users\Application Data\SystemExplorer
2009-02-22 18:35 . 2009-02-22 18:35 <REP> d-------- c:\program files\SeriAll
2009-02-22 18:17 . 2009-02-22 18:17 <REP> d-------- c:\program files\Fichiers communs\Windows Live
2009-02-22 18:17 . 2009-03-06 19:52 8,627 --a------ c:\windows\system32\PAV_FOG.OPC
2009-02-22 18:12 . 2009-02-22 18:12 <REP> d-------- c:\documents and settings\Berney R\Application Data\TuneUp Software
2009-02-22 18:12 . 2009-02-22 18:12 603,904 --a------ c:\windows\system32\TUProgSt.exe
2009-02-22 18:12 . 2009-02-22 18:12 360,192 --a------ c:\windows\system32\TuneUpDefragService.exe
2009-02-22 18:12 . 2008-12-11 13:31 27,904 --a------ c:\windows\system32\uxtuneup.dll
2009-02-22 18:11 . 2009-02-22 18:11 <REP> d-------- c:\program files\TuneUp Utilities 2009
2009-02-22 18:11 . 2009-02-22 18:11 <REP> d-------- c:\documents and settings\All Users\Application Data\TuneUp Software
2009-02-22 18:11 . 2009-02-22 18:11 <REP> d--hs---- c:\documents and settings\All Users\Application Data\{55A29068-F2CE-456C-9148-C869879E2357}
2009-02-22 17:53 . 2009-02-22 17:53 <REP> d-------- c:\documents and settings\Berney R\Application Data\CyberLink
2009-02-22 17:52 . 2009-02-22 17:52 <REP> d-------- c:\program files\Fichiers communs\CyberLink
2009-02-22 17:52 . 2009-02-25 19:37 <REP> d-------- c:\documents and settings\All Users\Application Data\CyberLink
2009-02-22 17:51 . 2009-02-22 17:52 <REP> d-------- c:\program files\CyberLink
2009-02-22 17:51 . 2009-02-22 17:50 29,480 --a------ c:\windows\system32\msxml3a.dll
2009-02-22 17:39 . 2009-02-22 17:39 <REP> d-------- c:\program files\IPACS
2009-02-22 17:34 . 2009-02-22 17:34 <REP> d-------- c:\program files\Microsoft Works
2009-02-22 17:30 . 2009-02-22 17:31 <REP> d-------- c:\program files\Lavalys
2009-02-22 17:29 . 2009-02-22 17:30 <REP> d-------- c:\windows\SHELLNEW
2009-02-22 17:29 . 2009-02-24 18:07 <REP> d-------- c:\documents and settings\All Users\Application Data\Microsoft Help
2009-02-22 17:28 . 2009-02-22 17:28 <REP> dr-h----- C:\MSOCache
2009-02-22 17:23 . 2009-02-22 17:23 <REP> d--h----- c:\documents and settings\All Users\Application Data\CanonBJ
2009-02-22 17:22 . 2006-03-26 21:00 161,792 --a------ c:\windows\system32\CNMLM83.DLL
2009-02-22 17:22 . 2008-04-13 11:47 25,856 --a------ c:\windows\system32\drivers\usbprint.sys
2009-02-22 17:22 . 2008-04-13 11:47 25,856 --a--c--- c:\windows\system32\dllcache\usbprint.sys
2009-02-22 17:22 . 2008-04-13 11:45 15,104 --a------ c:\windows\system32\drivers\usbscan.sys
2009-02-22 17:22 . 2008-04-13 11:45 15,104 --a--c--- c:\windows\system32\dllcache\usbscan.sys
2009-02-22 17:21 . 2008-04-13 11:45 32,128 --a------ c:\windows\system32\drivers\usbccgp.sys
2009-02-22 17:21 . 2008-04-13 11:45 32,128 --a--c--- c:\windows\system32\dllcache\usbccgp.sys
2009-02-22 17:19 . 2009-02-22 17:19 <REP> d-------- c:\program files\Logitech
2009-02-22 17:19 . 2009-02-22 17:19 <REP> d-------- c:\program files\Fichiers communs\Logitech
2009-02-22 17:14 . 2009-02-22 17:14 <REP> d-------- c:\program files\Webteh
2009-02-22 17:14 . 2009-02-22 17:15 <REP> d-------- c:\program files\Satsuki Decoder Pack
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-08 12:45 --------- d-----w c:\program files\Emule - 0.49b (Xtreme - 7.1)
2009-03-08 12:43 1,132 ----a-w c:\windows\system32\drivers\APPFLTR.CFG.bck
2009-03-08 12:43 1,132 ----a-w c:\windows\system32\drivers\APPFLTR.CFG
2009-03-07 19:38 264,720 ----a-w c:\windows\system32\drivers\APPFCONT.DAT.bck
2009-03-07 19:38 264,720 ----a-w c:\windows\system32\drivers\APPFCONT.DAT
2009-03-01 12:51 --------- d-----w c:\program files\PhotoFiltre
2009-02-27 20:24 --------- d-----w c:\documents and settings\Berney R\Application Data\Apple Computer
2009-02-22 16:52 --------- d--h--w c:\program files\InstallShield Installation Information
2009-02-22 16:19 --------- d-----w c:\program files\Fichiers communs\InstallShield
2009-02-22 15:41 --------- d-----w c:\program files\iTunes
2009-02-22 15:41 --------- d-----w c:\documents and settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2009-02-22 15:40 --------- d-----w c:\program files\QuickTime
2009-02-22 15:40 --------- d-----w c:\program files\iPod
2009-02-22 15:40 --------- d-----w c:\program files\Fichiers communs\Apple
2009-02-22 15:40 --------- d-----w c:\program files\Bonjour
2009-02-22 15:40 --------- d-----w c:\documents and settings\All Users\Application Data\Apple Computer
2009-02-22 15:39 11,047,052 ----a-w c:\windows\system32\Doom 3 Screensaver.scr
2009-02-22 15:39 --------- d-----w c:\program files\Apple Software Update
2009-02-22 15:39 --------- d-----w c:\documents and settings\All Users\Application Data\Apple
2009-02-22 15:36 --------- d-----w c:\program files\Fichiers communs\Adobe
2009-02-22 15:29 --------- d-----w c:\program files\ALPHAV7
2009-02-22 15:28 --------- d-----w c:\documents and settings\All Users\Application Data\LicomSystems
2009-02-22 15:27 219,648 ----a-w c:\windows\system32\uxtheme.dll
2009-02-22 15:25 --------- d-----w c:\documents and settings\All Users\Application Data\Backup
2009-02-22 15:24 --------- d-----w c:\program files\Panda Security
2009-02-22 15:24 --------- d-----w c:\documents and settings\Berney R\Application Data\Panda Security
2009-02-22 15:24 --------- d-----w c:\documents and settings\All Users\Application Data\Panda Security
2009-02-22 15:20 --------- d-----w c:\program files\Fichiers communs\Panda Security
2009-02-22 15:07 --------- d-----w c:\program files\microsoft frontpage
2009-02-22 15:05 --------- d-----w c:\program files\Services en ligne
2009-02-06 17:52 49,504 ----a-w c:\windows\system32\sirenacm.dll
2008-12-20 22:47 826,368 ----a-w c:\windows\system32\wininet.dll
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SystemExplorer"="c:\program files\System Explorer\SystemExplorer.exe" [2008-08-25 1833472]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-02-06 3885408]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BigDog305"="c:\windows\VM305_STI.EXE" [2006-03-17 61440]
"APVXDWIN"="c:\program files\Panda Security\Panda Global Protection 2009\APVXDWIN.EXE" [2008-12-03 869632]
"SCANINICIO"="c:\program files\Panda Security\Panda Global Protection 2009\Inicio.exe" [2008-07-07 50432]
"RemoteControl8"="c:\program files\CyberLink\PowerDVD8\PDVD8Serv.exe" [2008-03-20 83240]
"PDVD8LanguageShortcut"="c:\program files\CyberLink\PowerDVD8\Language\Language.exe" [2007-12-14 50472]
"BDRegion"="c:\program files\Cyberlink\Shared Files\brs.exe" [2008-03-21 91432]
"Logitech Utility"="Logi_MwX.Exe" [2003-12-17 c:\windows\LOGI_MWX.EXE]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avldr]
2008-03-18 16:58 58672 c:\windows\system32\avldr.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"= ctwdm32.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PskSvcRetail]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" -atboottime
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
R0 pavboot;Panda boot driver;c:\windows\system32\drivers\pavboot.sys [2009-02-22 28544]
R1 APPFLT;App Filter Plugin;c:\windows\system32\drivers\APPFLT.SYS [2009-02-22 73728]
R1 DSAFLT;DSA Filter Plugin;c:\windows\system32\drivers\dsaflt.sys [2009-02-22 52992]
R1 FNETMON;NetMon Filter Plugin;c:\windows\system32\drivers\fnetmon.sys [2009-02-22 22072]
R1 IDSFLT;Ids Filter Plugin;c:\windows\system32\drivers\idsflt.sys [2009-02-22 193792]
R1 NETFLTDI;Panda Net Driver [TDI Layer];c:\windows\system32\drivers\NETFLTDI.SYS [2009-02-22 16:25:32 158848]
R1 ShldDrv;Panda File Shield Driver;c:\windows\system32\drivers\ShlDrv51.sys [2009-02-22 41144]
R1 WNMFLT;Wifi Monitor Filter Plugin;c:\windows\system32\drivers\wnmflt.sys [2009-02-22 46720]
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};{FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};c:\program files\CyberLink\PowerDVD8\[u]0/u00.fcl [2008-02-01 17:24:04 41456]
R2 Gwmsrv;Panda Goodware Cache Manager;c:\windows\system32\svchost -k Panda --> c:\windows\system32\svchost -k Panda [?]
R2 PavProc;Panda Process Protection Driver;c:\windows\system32\drivers\PavProc.sys [2009-02-22 179640]
R2 PskSvcRetail;Panda PSK service;c:\program files\Panda Security\Panda Global Protection 2009\psksvc.exe [2009-02-22 28928]
R2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service;c:\windows\system32\TUProgSt.exe [2009-02-22 603904]
R3 AvFlt;Antivirus Filter Driver;c:\windows\system32\drivers\av5flt.sys --> c:\windows\system32\drivers\av5flt.sys [?]
R3 NETIMFLT01060034;PANDA NDIS IM Filter Miniport v1.6.0.34;c:\windows\system32\drivers\neti1634.sys [2009-02-22 197888]
R3 PavSRK.sys;PavSRK.sys;\??\c:\windows\system32\PavSRK.sys --> c:\windows\system32\PavSRK.sys [?]
R3 PavTPK.sys;PavTPK.sys;\??\c:\windows\system32\PavTPK.sys --> c:\windows\system32\PavTPK.sys [?]
R3 ZSMC0305;CANYON CN-WCAM23 PC-Camera;c:\windows\system32\drivers\usbVM305.sys [2007-12-24 392316]
S1 DK12DRV;DK12 WindowsNT Driver;c:\windows\system32\DRIVERS\DK12DRV.SYS --> c:\windows\system32\DRIVERS\DK12DRV.SYS [?]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
panda REG_MULTI_SZ Gwmsrv
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Contenu du dossier 'Tâches planifiées'
2009-02-27 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 12:34]
2009-03-08 c:\windows\Tasks\Maintenance en 1 clic.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-12 15:04]
2009-02-22 c:\windows\Tasks\Nettoyage de base.job
- c:\program files\Panda Security\Panda Global Protection 2009\PlaTasks.exe [2008-07-03 17:55]
.
.
------- Examen supplémentaire -------
.
uInternet Settings,ProxyOverride = *.local
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\Berney R\Application Data\Mozilla\Firefox\Profiles\46cg8gqx.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - www.google.ch
---- PARAMETRES FIREFOX ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-03-08 14:13:39
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
BigDog305 = c:\windows\VM305_STI.EXE VIMICRO USB PC Camera (ZC0305)???????????????????0?????????@??????????????
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD8\[u]0/u00.fcl"
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'winlogon.exe'(460)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\avldr.dll
.
Heure de fin: 2009-03-08 14:15:42
ComboFix-quarantined-files.txt 2009-03-08 13:15:39
Avant-CF: 55'419'904'000 octets libres
Après-CF: 56,204,165,120 octets libres
WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel" /noexecute=optin /fastdetect /TUTag=A6DHRS /Kernel=TUKernel.exe
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel (TuneUp Backup)" /noexecute=optin /fastdetect /TUTag=A6DHRS-BAK
275 --- E O F --- 2009-03-02 12:33:03