Désolé pour le retard,
voici pour le rapport de combofix
ComboFix 09-11-16.05 - guillaume 16/11/2009 19:29..4 - FAT32x86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.2047.1536 [GMT 1:00]
Lancé depuis: c:\documents and settings\guillaume\Bureau\Combo-Fix.exe
Commutateurs utilisés :: /u
AV: avast! antivirus 4.8.1356 [VPS 091115-1] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((((((( Fichiers créés du 2009-10-16 au 2009-11-16 ))))))))))))))))))))))))))))))))))))
.
2009-11-15 19:03 . 2009-11-15 19:03 -------- d-----w- c:\documents and settings\guillaume\Application Data\Malwarebytes
2009-11-15 19:03 . 2009-09-10 13:54 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-11-15 19:03 . 2009-11-15 19:03 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-11-15 19:03 . 2009-11-15 19:03 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-11-15 19:03 . 2009-09-10 13:53 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-11-15 18:51 . 2009-11-15 18:51 579584 -c--a-w- c:\windows\system32\dllcache\user32.dll
2009-11-15 18:50 . 2009-11-15 18:50 -------- d-----w- c:\windows\ERUNT
2009-11-15 18:48 . 2009-11-15 18:58 -------- d-----w- C:\SDFix
2009-11-15 17:14 . 2009-09-15 11:54 52368 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-15 17:14 . 2009-09-15 11:54 23152 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-15 17:14 . 2009-09-15 11:53 27408 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-11-15 17:14 . 2009-09-15 11:56 93424 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-11-15 17:14 . 2009-09-15 11:56 94160 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-11-15 17:14 . 2009-09-15 11:55 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-11-15 17:14 . 2009-09-15 11:55 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-11-15 17:14 . 2009-09-15 11:53 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-15 17:14 . 2009-09-15 11:59 1279968 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-15 17:09 . 2009-11-15 17:13 -------- d-----w- C:\ToolBar SD
2009-11-15 13:39 . 2009-11-15 13:39 -------- d-----w- c:\program files\Trend Micro
2009-11-14 18:52 . 2009-11-15 12:53 -------- d-----w- c:\program files\QuickTime
2009-11-14 18:52 . 2009-11-15 12:39 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple Computer
2009-11-14 18:52 . 2009-11-15 12:53 -------- d-----w- c:\program files\Apple Software Update
2009-11-14 18:51 . 2009-11-14 18:52 -------- d-----w- c:\program files\Fichiers communs\Apple
2009-11-14 18:51 . 2009-11-14 18:54 -------- d-----w- c:\documents and settings\guillaume\Local Settings\Application Data\Apple Computer
2009-11-14 11:27 . 2009-11-14 14:36 -------- d-----w- c:\documents and settings\guillaume\Application Data\FileZilla
2009-11-14 11:26 . 2009-11-15 12:53 -------- d-----w- c:\program files\FileZilla FTP Client
2009-11-08 10:20 . 2009-11-08 10:20 -------- d-----w- c:\documents and settings\guillaume\Local Settings\Application Data\Codemasters
2009-11-03 14:53 . 2008-04-13 18:45 10368 -c--a-w- c:\windows\system32\dllcache\hidusb.sys
2009-11-03 14:53 . 2008-04-13 18:45 10368 ----a-w- c:\windows\system32\drivers\hidusb.sys
2009-11-03 12:21 . 2009-11-03 12:21 -------- d-----w- c:\documents and settings\guillaume\Application Data\vlc
2009-11-01 21:39 . 2009-03-09 14:27 453456 ----a-w- c:\windows\system32\d3dx10_41.dll
2009-11-01 21:39 . 2009-03-09 14:27 4178264 ----a-w- c:\windows\system32\D3DX9_41.dll
2009-11-01 21:39 . 2009-03-09 14:27 1846632 ----a-w- c:\windows\system32\D3DCompiler_41.dll
2009-11-01 21:36 . 2009-11-01 21:37 -------- d-----w- c:\program files\AGEIA Technologies
2009-11-01 21:36 . 2009-11-01 21:36 -------- d-----w- c:\windows\system32\AGEIA
2009-11-01 10:00 . 2009-11-08 18:11 -------- d-----w- C:\photo usa
2009-11-01 09:32 . 2004-05-26 13:53 15781 ----a-w- c:\windows\system32\drivers\mdc8021x.sys
2009-11-01 09:32 . 2004-07-16 10:14 140416 ------w- c:\windows\system32\rt2500usb.sys
2009-11-01 09:32 . 2004-04-23 21:43 374752 ----a-w- c:\windows\system32\WUSBGXP.sys
2009-11-01 09:32 . 2004-01-07 16:04 339488 ----a-w- c:\windows\system32\WUSB20XP.sys
2009-11-01 09:32 . 2009-11-01 09:32 -------- d-----w- c:\program files\Linksys Wireless-G USB Wireless Network Monitor
2009-11-01 09:29 . 2009-11-01 09:29 -------- d-----w- C:\totalcmd
2009-11-01 08:40 . 2009-11-01 08:40 0 ----a-w- c:\windows\nsreg.dat
2009-11-01 08:40 . 2009-11-01 08:40 -------- d-----w- c:\documents and settings\guillaume\Local Settings\Application Data\Mozilla
2009-11-01 08:38 . 2009-11-01 08:38 -------- d-----w- c:\program files\VideoLAN
2009-11-01 08:35 . 2004-03-02 16:37 125184 ------w- c:\windows\system32\drivers\imagesrv.sys
2009-11-01 08:35 . 2004-03-02 16:37 5504 ------w- c:\windows\system32\drivers\imagedrv.sys
2009-11-01 08:35 . 2004-07-26 16:16 476320 ------w- c:\windows\system32\ImagXpr7.dll
2009-11-01 08:35 . 2004-07-26 16:16 471040 ------w- c:\windows\system32\ImagXRA7.dll
2009-11-01 08:35 . 2004-07-26 16:16 262144 ------w- c:\windows\system32\ImagXR7.dll
2009-11-01 08:35 . 2004-07-26 16:16 1568768 ------w- c:\windows\system32\ImagX7.dll
2009-11-01 08:35 . 2001-07-09 10:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
2009-11-01 08:35 . 2000-06-26 10:45 106496 ----a-w- c:\windows\system32\TwnLib20.dll
2009-11-01 08:35 . 2009-11-01 08:35 -------- d-----w- c:\program files\Ahead
2009-11-01 08:35 . 2009-11-01 08:35 -------- d-----w- c:\program files\Fichiers communs\Ahead
2009-11-01 08:32 . 2009-11-01 08:32 -------- d-----w- c:\documents and settings\guillaume\Application Data\Canon
2009-11-01 08:22 . 2009-11-01 08:22 -------- d-----w- c:\documents and settings\All Users\Application Data\Macrovision
2009-11-01 08:22 . 2009-11-01 08:22 -------- d-----w- c:\program files\Fichiers communs\Adobe Systems Shared
2009-11-01 07:37 . 2009-11-01 07:37 -------- d-----w- C:\CanonMP
2009-11-01 07:32 . 2008-04-13 18:47 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2009-11-01 07:32 . 2008-04-13 18:47 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2009-11-01 07:32 . 2008-04-13 18:45 32128 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2009-11-01 07:32 . 2008-04-13 18:45 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2009-10-31 19:31 . 2004-01-07 16:04 339488 ----a-w- c:\windows\system32\drivers\WUSB20XP.sys
2009-10-31 14:21 . 2009-11-11 15:03 -------- d-----w- c:\documents and settings\guillaume\Application Data\skypePM
2009-10-31 14:21 . 2009-10-31 14:21 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-10-31 14:20 . 2009-11-11 16:02 -------- d-----w- c:\documents and settings\guillaume\Application Data\Skype
2009-10-31 14:18 . 2009-10-31 14:18 -------- d-----w- c:\program files\Fichiers communs\Skype
2009-10-31 14:18 . 2009-10-31 14:18 -------- d-----r- c:\program files\Skype
2009-10-31 14:18 . 2009-10-31 14:18 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2009-10-31 09:30 . 2009-11-01 08:22 -------- d-----w- c:\program files\Fichiers communs\Adobe
2009-10-31 09:29 . 2009-10-31 09:40 -------- d-----w- c:\documents and settings\guillaume\Local Settings\Application Data\Adobe
2009-10-31 09:28 . 2009-10-31 09:28 -------- d-----w- c:\documents and settings\guillaume\Local Settings\Application Data\CutePDF Writer
2009-10-31 09:27 . 2009-10-31 09:27 -------- d-----w- c:\program files\GPLGS
2009-10-31 09:26 . 2007-07-12 21:33 87552 ----a-w- c:\windows\system32\cpwmon2k.dll
2009-10-31 09:26 . 2009-10-31 09:26 -------- d-----w- c:\program files\Acro Software
2009-10-29 13:42 . 2009-11-11 16:02 535432 ----a-w- c:\documents and settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2009-10-29 13:34 . 2009-10-29 13:34 -------- d-----w- c:\documents and settings\Default User\Local Settings\Application Data\Microsoft Help
2009-10-29 13:31 . 2006-08-15 09:15 110592 ----a-w- c:\documents and settings\guillaume\Application Data\U3\temp\cleanup.exe
2009-10-29 13:27 . 2009-11-01 09:48 -------- d-----w- c:\documents and settings\guillaume\Application Data\U3
2009-10-29 10:53 . 2009-08-06 18:23 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-10-29 10:53 . 2009-08-06 18:23 215920 ----a-w- c:\windows\system32\muweb.dll
2009-10-28 21:06 . 2009-11-16 18:16 -------- d-----w- c:\documents and settings\guillaume\Tracing
2009-10-28 21:05 . 2009-10-28 21:05 -------- d-----w- c:\program files\Microsoft
2009-10-28 21:05 . 2009-10-28 21:05 -------- d-----w- c:\program files\Windows Live SkyDrive
2009-10-28 21:05 . 2009-10-28 21:05 -------- d-----w- c:\program files\Windows Live
2009-10-28 21:03 . 2009-10-28 21:03 -------- d-----w- c:\program files\Fichiers communs\Windows Live
2009-10-28 06:02 . 2009-11-03 13:02 -------- d-----w- c:\program files\Microsoft Works
2009-10-28 06:01 . 2009-10-28 06:01 -------- d-----w- c:\program files\Microsoft.NET
2009-10-28 05:59 . 2009-10-28 05:59 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-10-28 05:59 . 2009-10-28 05:59 -------- d-----w- c:\windows\SHELLNEW
2009-10-28 05:59 . 2009-10-28 05:59 -------- d-----w- c:\documents and settings\guillaume\Local Settings\Application Data\Microsoft Help
2009-10-28 05:59 . 2009-11-11 15:30 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
2009-10-28 05:58 . 2009-10-28 05:58 -------- d-----r- C:\MSOCache
2009-10-27 20:38 . 2009-10-27 20:39 -------- d-----w- C:\1163c48ee6206dfcfae9
2009-10-27 18:54 . 2009-10-27 18:54 1962544 ----a-w- c:\documents and settings\All Users\Application Data\NOS\Adobe_Downloads\install_flash_player_ax.exe
2009-10-27 18:54 . 2009-11-01 07:21 -------- d-----w- c:\documents and settings\All Users\Application Data\NOS
2009-10-27 18:24 . 2009-10-27 18:24 -------- d-sh--w- c:\documents and settings\guillaume\IECompatCache
2009-10-27 18:23 . 2009-10-27 18:23 -------- d-sh--w- c:\documents and settings\guillaume\PrivacIE
2009-10-27 18:22 . 2009-10-27 18:22 -------- d-sh--w- c:\documents and settings\LocalService\IETldCache
2009-10-27 18:22 . 2009-10-27 18:22 -------- d-sh--w- c:\documents and settings\guillaume\IETldCache
2009-10-27 18:20 . 2009-10-27 18:20 -------- d--h--w- c:\windows\msdownld.tmp
2009-10-27 18:20 . 2009-10-29 13:32 -------- d-----w- c:\windows\ie8updates
2009-10-27 18:19 . 2009-10-27 18:19 -------- dc-h--w- c:\windows\ie8
2009-10-27 18:18 . 2009-10-02 04:44 92160 -c----w- c:\windows\system32\dllcache\iecompat.dll
2009-10-27 18:18 . 2009-08-29 07:56 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2009-10-27 18:18 . 2009-08-29 07:56 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2009-10-27 18:18 . 2009-08-29 07:56 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2009-10-27 18:18 . 2009-08-29 07:56 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2009-10-27 18:18 . 2009-08-29 07:56 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2009-10-27 18:18 . 2009-08-29 07:56 11069440 -c----w- c:\windows\system32\dllcache\ieframe.dll
2009-10-27 18:06 . 2009-03-26 16:25 1086208 ----a-r- c:\windows\system32\drivers\viahduaa.sys
2009-10-27 18:06 . 2008-02-14 06:12 1389056 ----a-r- c:\windows\system32\drivers\monfilt.sys
2009-10-27 17:54 . 2009-10-27 17:54 -------- d--h--r- c:\documents and settings\guillaume\Application Data\SecuROM
2009-10-27 17:54 . 2009-10-27 17:54 -------- d-----w- c:\documents and settings\guillaume\Local Settings\Application Data\Rockstar Games
2009-10-27 17:52 . 2009-10-27 17:52 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-10-27 17:50 . 2005-05-26 14:34 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll
2009-10-27 17:50 . 2009-10-27 17:50 -------- d-----w- c:\windows\Logs
2009-10-27 17:50 . 2009-10-31 13:34 -------- d-----w- c:\windows\system32\LogFiles
2009-10-27 17:50 . 2009-10-27 17:50 -------- d-----w- c:\windows\system32\drivers\umdf
2009-10-27 17:49 . 2008-03-05 14:56 3786760 ----a-w- c:\windows\system32\D3DX9_37.dll
2009-10-27 17:49 . 2008-03-05 14:56 1420824 ----a-w- c:\windows\system32\D3DCompiler_37.dll
2009-10-27 17:49 . 2008-02-05 22:07 462864 ----a-w- c:\windows\system32\d3dx10_37.dll
2009-10-27 17:49 . 2007-04-04 17:53 81768 ----a-w- c:\windows\system32\xinput1_3.dll
2009-10-27 17:49 . 2009-10-27 17:49 -------- d-----w- c:\windows\system32\xlive
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-11-15 14:05 . 2003-04-24 12:00 81626 ----a-w- c:\windows\system32\perfc00C.dat
2009-11-15 14:05 . 2003-04-24 12:00 503656 ----a-w- c:\windows\system32\perfh00C.dat
2009-11-15 12:54 . 2009-11-14 18:52 -------- d-----w- c:\program files\iPod
2009-11-15 12:54 . 2009-11-14 18:52 -------- d-----w- c:\program files\iTunes
2009-11-15 12:54 . 2009-11-14 18:53 -------- d-----w- c:\documents and settings\guillaume\Application Data\Apple Computer
2009-11-15 12:54 . 2009-11-14 18:52 -------- d-----w- c:\program files\Bonjour
2009-11-15 12:53 . 2009-11-15 12:53 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple
2009-11-14 18:53 . 2009-11-14 18:52 -------- d-----w- c:\documents and settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-11-08 10:23 . 2009-10-27 06:13 69664 ----a-w- c:\documents and settings\guillaume\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-11-08 09:55 . 2009-10-27 06:07 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-10-27 12:37 . 2009-10-27 06:01 86327 ----a-w- c:\windows\PCHealth\HelpCtr\OfflineCache\index.dat
2009-10-27 06:35 . 2009-10-27 06:35 -------- d-----w- c:\program files\Alwil Software
2009-10-27 06:13 . 2009-10-27 06:13 -------- d-----w- c:\documents and settings\guillaume\Application Data\ATI
2009-10-27 06:13 . 2009-10-27 06:13 -------- d-----w- c:\documents and settings\All Users\Application Data\ATI
2009-10-27 06:12 . 2009-10-27 06:12 0 ----a-w- c:\windows\ativpsrm.bin
2009-10-27 06:11 . 2009-10-27 06:07 -------- d-----w- c:\program files\ATI Technologies
2009-10-27 06:10 . 2009-10-27 06:07 -------- d-----w- c:\program files\Fichiers communs\InstallShield
2009-10-27 06:10 . 2009-10-27 06:10 9158 ----a-r- c:\documents and settings\guillaume\Application Data\Microsoft\Installer\{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}\ARPPRODUCTICON.exe
2009-10-27 06:10 . 2009-10-27 06:10 -------- d-----w- c:\program files\Fichiers communs\ATI Technologies
2009-10-27 06:01 . 2009-10-27 06:01 -------- d-----w- c:\program files\microsoft frontpage
2009-10-27 05:59 . 2009-10-27 05:59 21892 ----a-w- c:\windows\system32\emptyregdb.dat
2009-10-27 05:59 . 2009-10-27 05:59 -------- d-----w- c:\program files\Services en ligne
2009-09-11 14:18 . 2003-04-24 12:00 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-04 21:04 . 2003-04-24 12:00 58880 ----a-w- c:\windows\system32\msasn1.dll
2009-08-29 07:56 . 2003-04-24 12:00 916480 ------w- c:\windows\system32\wininet.dll
2009-08-26 08:01 . 2003-04-24 12:00 247326 ----a-w- c:\windows\system32\strmdll.dll
.
((((((((((((((((((((((((((((( SnapShot@2009-11-15_20.40.10 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-11-16 18:15 . 2009-11-16 18:15 16384 c:\windows\Temp\Perflib_Perfdata_6b0.dat
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-29 61440]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"WUSB54Gv4"="c:\program files\Linksys Wireless-G USB Wireless Network Monitor\InvokeSvc3.exe" [2004-04-19 24576]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2009-09-05 417792]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-09-15 81000]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\jeu\\gta4\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"c:\\jeu\\gta4\\Grand Theft Auto IV\\LaunchGTAIV.exe"=
"c:\\jeu\\gta4\\Grand Theft Auto IV\\GTAIV.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\jeu\\colin mcrae dirt\\DiRT.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [15/11/2009 18:14 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [15/11/2009 18:14 20560]
R3 ovt530;Webcam Classic;c:\windows\system32\drivers\ov530vid.sys [01/11/2009 08:39 161792]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [27/10/2009 19:06 1086208]
S4 Eemaaday;Eemaaday; [x]
--- Autres Services/Pilotes en mémoire ---
*NewlyCreated* - GTNDIS5
*Deregistered* - mbr
*Deregistered* - PROCEXP113
.
Contenu du dossier 'Tâches planifiées'
2009-11-14 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr/
mWindow Title =
uInternet Settings,ProxyOverride = *.local
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
FF - ProfilePath - c:\documents and settings\guillaume\Application Data\Mozilla\Firefox\Profiles\ucwwo8qw.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.fr/
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- PARAMETRES FIREFOX ----
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-11-16 19:32
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_USERS\S-1-5-21-515967899-562591055-725345543-1003\Software\SecuROM\License information*]
"datasecu"=hex:32,9a,0c,60,d8,55,ea,e0,92,ea,36,c1,a9,35,65,ea,cb,06,85,f6,55,
d6,8d,b6,d1,91,38,e8,25,6a,10,04,31,d6,8c,ad,b1,6d,d0,56,2d,e4,4b,14,90,a9,\
"rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'winlogon.exe'(688)
c:\windows\system32\Ati2evxx.dll
- - - - - - - > 'explorer.exe'(3352)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
c:\windows\system32\eappprxy.dll
.
Heure de fin: 2009-11-16 19:33
ComboFix-quarantined-files.txt 2009-11-16 18:33
ComboFix2.txt 2009-11-15 20:42
Avant-CF: 181 418 979 328 octets libres
Après-CF: 181 382 270 976 octets libres
- - End Of File - - 7324D1C4C956BA4DB0C700332F585E43
Merci
Guillaume13