Bonjour,
voici mon rapport combofix d'hier ; je ne sais pas l'analyser. qlq'1 peut-il m'aider ?
ComboFix 09-12-05.03 - Lançon 06/12/2009 3:16.7.1 - x86
Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6000.0.1252.33.1036.18.1014.582 [GMT 1:00]
Lancé depuis: c:\users\Lançon\Desktop\ComboFix.exe
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\LOG.TXT
c:\program files\GamesBar\oberontb.dll
c:\programdata\Microsoft\WLSetup
c:\programdata\Microsoft\WLSetup\Logs\2009-12-05_23-48_53c-24rszvbf.log
c:\programdata\Microsoft\WLSetup\Logs\2009-12-06_00-41_76c-ovkttdmj.log
c:\programdata\Microsoft\WLSetup\wlt1E61.tmp
c:\windows\system32\~.inf
.
((((((((((((((((((((((((((((( Fichiers créés du 2009-11-06 au 2009-12-06 ))))))))))))))))))))))))))))))))))))
.
2009-12-06 02:34 . 2009-12-06 02:34 -------- d-----w- c:\users\Public\AppData\Local\temp
2009-12-06 02:34 . 2009-12-06 02:34 -------- d-----w- c:\users\LANON~4\AppData\Local\temp
2009-12-06 02:34 . 2009-12-06 02:34 -------- d-----w- c:\users\Lan×on\AppData\Local\temp
2009-12-06 02:34 . 2009-12-06 02:34 -------- d-----w- c:\users\Lan‡on\AppData\Local\temp
2009-12-06 02:34 . 2009-12-06 02:34 -------- d-----w- c:\users\Default\AppData\Local\temp
2009-12-06 01:35 . 2009-12-06 01:34 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-12-06 01:34 . 2009-12-06 01:34 -------- d-----w- c:\program files\Java
2009-12-06 01:17 . 2009-12-06 01:17 4096 d-----w- c:\program files\ma-config.com
2009-12-06 01:17 . 2009-12-06 01:17 -------- d-----w- c:\programdata\ma-config.com
2009-12-05 23:44 . 2009-12-05 23:44 -------- d-----w- c:\program files\Microsoft
2009-12-05 23:43 . 2009-12-05 23:43 -------- d-----w- c:\program files\Windows Live SkyDrive
2009-12-05 23:43 . 2009-12-05 23:44 -------- d-----w- c:\program files\Windows Live
2009-12-05 22:49 . 2009-12-05 22:49 -------- d-----w- c:\program files\Common Files\Windows Live
2009-12-05 19:12 . 2008-09-01 08:44 12416 ----a-w- c:\windows\system32\drivers\netnnusb.sys
2009-12-01 11:40 . 2009-12-01 11:40 -------- d-----w- c:\programdata\Oberon Media
2009-12-01 11:39 . 2009-12-01 11:39 -------- d-----w- c:\programdata\GamesBar
2009-12-01 11:39 . 2009-12-06 02:33 -------- d-----w- c:\program files\GamesBar
2009-12-01 11:38 . 2009-12-01 11:48 -------- d-----w- c:\program files\Oberon Media
2009-12-01 11:38 . 2009-12-01 11:38 -------- d-----w- c:\program files\Common Files\Oberon Media
2009-12-01 11:38 . 2009-12-01 11:38 -------- d-----w- c:\program files\orange
2009-12-01 11:16 . 2009-12-01 11:16 -------- d-----w- c:\programdata\Zylom
2009-11-23 00:50 . 2009-11-23 01:23 4096 d-----w- c:\programdata\Registry Helper
2009-11-23 00:47 . 2009-11-23 00:48 8192 d-----w- c:\program files\Registry Helper
2009-11-18 23:27 . 2009-11-24 23:49 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-18 23:27 . 2009-11-24 23:48 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-18 23:27 . 2009-11-24 23:50 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-11-18 23:27 . 2009-11-24 23:47 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-18 23:27 . 2009-11-24 23:50 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-11-18 23:27 . 2009-11-24 23:54 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-18 23:27 . 2009-11-24 23:49 53328 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2009-11-17 20:30 . 2009-11-21 21:20 8192 d-----w- c:\users\Invité
2009-11-14 16:31 . 2009-11-14 16:31 -------- d-----w- c:\windows\system32\Adobe
2009-11-14 16:30 . 2009-11-14 16:30 -------- d-----w- c:\program files\Business-in-a-Box
2009-11-14 16:27 . 2001-10-28 16:42 116224 ----a-w- c:\windows\system32\pdfcmnnt.dll
2009-11-14 16:27 . 1998-07-13 01:08 119568 ----a-w- c:\windows\system32\VB6FR.DLL
2009-11-14 16:27 . 2009-11-14 16:28 4096 d-----w- c:\program files\PDFCreator
2009-11-14 16:27 . 1998-07-13 01:08 141312 ----a-w- c:\windows\system32\MSCMCFR.DLL
2009-11-14 16:27 . 1998-07-06 00:00 23552 ----a-w- c:\windows\system32\MSMPIDE.DLL
2009-11-14 14:22 . 2009-11-14 14:22 -------- d-----w- c:\program files\MSECache
2009-11-10 00:57 . 2009-11-10 00:57 -------- d-----w- c:\programdata\DivoGames
2009-11-07 19:46 . 2009-11-07 19:46 -------- d-----w- c:\users\Lan?on
2009-11-07 19:39 . 2009-11-07 19:39 51716 ----a-w- c:\windows\system32\pdf995mon.dll
2009-11-07 19:39 . 2009-11-07 19:39 118784 ----a-w- c:\windows\system32\pdfmona.dll
2009-11-07 19:39 . 2009-11-07 19:39 -------- d-----w- c:\programdata\pdf995
2009-11-07 19:39 . 2009-11-07 19:39 -------- d-----w- C:\pdf995
2009-11-07 19:36 . 2009-11-07 19:37 32768 d-----w- c:\program files\CommentCaMarche
2009-11-06 22:06 . 2009-11-06 22:06 -------- d-----w- c:\programdata\Great Secrets
2009-11-06 21:54 . 2009-11-06 21:54 -------- d-----w- c:\programdata\Lost Treasures Of El Dorado
2009-11-06 21:47 . 2009-11-06 21:48 4096 d-----w- c:\program files\RealArcade
2009-11-06 21:45 . 2009-11-10 00:34 4096 d-----w- c:\program files\MyPlayCity.com
2009-11-06 06:40 . 2009-12-01 11:56 -------- d-----w- c:\programdata\MumboJumbo
2009-11-06 05:54 . 2009-11-06 05:54 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2009-11-06 05:54 . 2009-12-05 22:51 4096 d-----w- c:\program files\SUPERAntiSpyware
2009-11-06 04:48 . 2009-11-06 04:50 4096 d-----w- c:\program files\Luxor 3
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-05 23:29 . 2009-10-18 18:56 12 ----a-w- c:\windows\bthservsdp.dat
2009-12-01 10:35 . 2009-10-25 13:26 4096 d-----w- c:\program files\SuperCopier2
2009-11-28 20:54 . 2006-11-02 15:48 689846 ----a-w- c:\windows\system32\perfh00C.dat
2009-11-28 20:54 . 2006-11-02 15:48 116988 ----a-w- c:\windows\system32\perfc00C.dat
2009-11-27 20:46 . 2009-11-27 20:46 15579 ----a-w- c:\windows\system32\~.tmp
2009-11-11 00:00 . 2009-11-01 14:33 8192 d-----w- c:\program files\Bible
2009-11-04 22:58 . 2009-11-04 22:58 4096 d-----w- c:\program files\LETHAL JUDGMENT 2 - Orbital Apocalypse
2009-11-02 17:56 . 2000-12-31 23:07 33728384 ----a-w- c:\programdata\Installations\{3D39E775-DDDA-4327-B747-0BDC5F191331}\Nokia_PC_Suite_7_1_30_9_fre_web.exe
2009-10-25 17:47 . 2009-10-25 17:47 4096 d-----w- c:\program files\NetExpress
2009-10-25 17:16 . 2009-10-25 17:16 -------- d-----w- c:\programdata\Macrovision
2009-10-25 17:13 . 2009-10-17 02:01 4096 d--h--w- c:\program files\InstallShield Installation Information
2009-10-25 12:22 . 2009-10-25 12:22 -------- d-----w- c:\programdata\Adobe Systems
2009-10-25 11:41 . 2009-10-18 19:30 4096 d-----w- c:\program files\Common Files\Adobe
2009-10-25 11:41 . 2009-10-25 11:41 -------- d-----w- c:\program files\Common Files\Adobe Systems Shared
2009-10-19 17:52 . 2009-10-19 17:52 4096 d-----w- c:\program files\CDImage GUI
2009-10-19 17:51 . 2009-10-19 17:52 720896 ----a-w- c:\windows\iun6002.exe
2009-10-18 20:53 . 2009-10-17 02:01 -------- d-----w- c:\program files\Analog Devices
2009-10-18 20:52 . 2009-10-17 02:00 -------- d-----w- c:\program files\Common Files\InstallShield
2009-10-18 20:39 . 2009-10-18 20:24 4096 d-----w- c:\program files\Your Uninstaller 2008
2009-10-18 20:27 . 2009-10-18 20:26 8192 d-----w- c:\program files\VirtualDJ
2009-10-18 19:10 . 2009-10-18 19:09 -------- d-----w- c:\programdata\Bluetooth
2009-10-18 19:03 . 2009-10-18 19:03 -------- d-----w- c:\program files\IVT Corporation
2009-10-18 16:45 . 2009-10-18 16:45 4096 d-----w- c:\program files\Microsoft Works
2009-10-18 16:44 . 2009-10-18 16:44 -------- d-----w- c:\program files\Microsoft.NET
2009-10-18 16:19 . 2009-10-18 16:19 12288 d-----w- c:\program files\Total Video Converter
2009-10-18 16:01 . 2009-10-18 15:58 -------- d-----w- c:\program files\Steinberg
2009-10-17 02:58 . 2009-10-17 02:57 4096 d-----w- c:\program files\Google
2009-10-17 02:57 . 2009-10-17 02:57 -------- d-----w- c:\program files\Common Files\Skype
2009-10-17 02:57 . 2009-10-17 02:57 -------- d-----r- c:\program files\Skype
2009-10-17 02:57 . 2009-10-17 02:57 -------- d-----w- c:\programdata\Skype
2009-10-17 02:55 . 2009-10-17 02:55 4096 d-----w- c:\program files\Luxor 2
2009-10-16 20:49 . 2009-10-16 20:43 4096 d-----w- c:\program files\Common Files\Nero
2009-10-16 20:43 . 2009-10-16 20:43 -------- d-----w- c:\programdata\Nero
2009-10-16 20:43 . 2009-10-16 20:43 -------- d-----w- c:\program files\Nero
2009-10-16 20:25 . 2009-10-16 20:25 -------- d-----w- c:\programdata\Trymedia
2009-10-16 15:44 . 2009-10-16 15:44 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-10-16 15:44 . 2009-10-16 00:20 8192 d-----w- c:\programdata\Microsoft Help
2009-10-15 23:45 . 2009-10-15 23:45 -------- d-----w- c:\program files\Alwil Software
2009-10-15 22:06 . 2009-10-15 22:06 -------- d-sh--we c:\programdata\Modèles
2009-10-15 22:06 . 2009-10-15 22:06 -------- d-sh--we c:\programdata\Menu Démarrer
2009-10-15 22:06 . 2009-10-15 22:06 -------- d-sh--we c:\programdata\Favoris
2009-10-15 22:06 . 2009-10-15 22:06 -------- d-sh--we c:\programdata\Bureau
2009-10-15 22:06 . 2009-10-15 22:06 -------- d-sh--we c:\program files\Fichiers communs
.
((((((((((((((((((((((((((((( SnapShot_2009-11-14_17.34.45 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-11-07 17:09 . 2009-12-01 14:04 84984 c:\windows\System32\WDI\SuspendPerformanceDiagnostics_SystemData_S4.bin
+ 2009-10-16 02:14 . 2009-12-05 23:37 31156 c:\windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2006-11-02 13:05 . 2009-12-05 23:33 58238 c:\windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
+ 2009-07-26 15:44 . 2009-07-26 15:44 48448 c:\windows\System32\sirenacm.dll
+ 2009-10-17 02:55 . 2009-11-20 17:47 84661 c:\windows\System32\Macromed\Flash\uninstall_plugin.exe
- 2009-10-17 02:55 . 2009-10-18 16:20 84661 c:\windows\System32\Macromed\Flash\uninstall_plugin.exe
+ 2009-12-05 19:12 . 2008-09-01 08:44 12416 c:\windows\System32\DriverStore\FileRepository\netnnusb.inf_3798da87\netnnusb.sys
+ 2009-03-11 19:01 . 2009-03-11 19:01 23552 c:\windows\System32\DirectCOM.dll
- 2006-11-02 13:02 . 2000-12-31 23:03 16384 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2006-11-02 13:02 . 2009-12-06 01:23 16384 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2006-11-02 13:02 . 2009-12-06 01:23 32768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2006-11-02 13:02 . 2000-12-31 23:03 32768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2006-11-02 13:02 . 2009-12-06 01:23 16384 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2006-11-02 13:02 . 2000-12-31 23:03 16384 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-11-14 16:31 . 2009-11-14 16:31 87618 c:\windows\System32\Adobe\Shockwave 11\uninstaller.exe
+ 2009-11-14 16:31 . 2009-11-22 19:43 87618 c:\windows\System32\Adobe\Shockwave 11\uninstaller.exe
+ 2009-12-05 23:44 . 2009-12-05 23:44 27136 c:\windows\Installer\c01be.msi
+ 2009-12-05 23:43 . 2009-12-05 23:43 58880 c:\windows\Installer\c01a2.msi
- 2009-10-26 16:52 . 2009-10-26 16:52 57344 c:\windows\Installer\{90A1040C-6000-11D3-8CFE-0150048383C9}\joticon.exe
+ 2009-10-26 16:52 . 2009-11-20 17:28 57344 c:\windows\Installer\{90A1040C-6000-11D3-8CFE-0150048383C9}\joticon.exe
- 2009-10-18 17:04 . 2009-10-18 17:04 12288 c:\windows\Installer\{9051040C-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2009-10-18 17:04 . 2009-11-20 17:26 12288 c:\windows\Installer\{9051040C-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2009-10-18 16:49 . 2000-12-31 23:14 27136 c:\windows\Installer\{9017040C-6000-11D3-8CFE-0150048383C9}\oisicon.exe
- 2009-10-18 16:49 . 2009-10-18 16:49 27136 c:\windows\Installer\{9017040C-6000-11D3-8CFE-0150048383C9}\oisicon.exe
+ 2009-10-18 16:49 . 2000-12-31 23:14 12288 c:\windows\Installer\{9017040C-6000-11D3-8CFE-0150048383C9}\cagicon.exe
- 2009-10-18 16:49 . 2009-10-18 16:49 12288 c:\windows\Installer\{9017040C-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 23040 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\unbndico.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 23040 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\unbndico.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 61440 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\pubs.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 61440 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\pubs.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 27136 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\oisicon.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 27136 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\oisicon.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 11264 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\mspicons.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 11264 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\mspicons.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 86016 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\inficon.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 86016 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\inficon.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 12288 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\cagicon.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 12288 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2009-12-05 23:43 . 2009-12-05 23:43 62304 c:\windows\Installer\{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}\IconWlc.exe
+ 2009-12-05 23:44 . 2009-12-05 23:44 80395 c:\windows\Installer\{770F1BEC-2871-4E70-B837-FB8525FFA3B1}\MsblIco.Exe
+ 2006-11-02 10:25 . 2009-12-05 19:13 86016 c:\windows\inf\infstrng.dat
- 2006-11-02 10:25 . 2000-12-31 23:13 86016 c:\windows\inf\infstrng.dat
+ 2006-11-02 10:25 . 2009-12-05 19:13 86016 c:\windows\inf\infstor.dat
- 2006-11-02 10:25 . 2000-12-31 23:13 86016 c:\windows\inf\infstor.dat
+ 2006-11-02 10:25 . 2009-12-05 19:13 51200 c:\windows\inf\infpub.dat
- 2006-11-02 10:25 . 2000-12-31 23:13 51200 c:\windows\inf\infpub.dat
+ 2009-11-17 20:39 . 2009-12-03 12:15 4746 c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1226023713-501074325-3626321792-501_UserData.bin
+ 2009-10-15 22:17 . 2009-12-05 23:33 4972 c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1226023713-501074325-3626321792-1000_UserData.bin
+ 2009-12-05 19:15 . 2009-12-05 19:15 9560 c:\windows\System32\networklist\icons\{8178BD25-5BE6-4EFE-9BDA-1042CFF33E18}_48.bin
+ 2009-12-05 19:15 . 2009-12-05 19:15 4280 c:\windows\System32\networklist\icons\{8178BD25-5BE6-4EFE-9BDA-1042CFF33E18}_32.bin
+ 2009-12-05 19:15 . 2009-12-05 19:15 2456 c:\windows\System32\networklist\icons\{8178BD25-5BE6-4EFE-9BDA-1042CFF33E18}_24.bin
+ 2009-12-05 23:30 . 2009-12-05 23:30 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2000-12-31 23:01 . 2000-12-31 23:01 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2000-12-31 23:01 . 2000-12-31 23:01 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-12-05 23:30 . 2009-12-05 23:30 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2009-10-26 16:52 . 2009-10-26 16:52 4096 c:\windows\Installer\{90A1040C-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-10-26 16:52 . 2009-11-20 17:28 4096 c:\windows\Installer\{90A1040C-6000-11D3-8CFE-0150048383C9}\opwicon.exe
- 2009-10-18 17:04 . 2009-10-18 17:04 4096 c:\windows\Installer\{9051040C-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-10-18 17:04 . 2009-11-20 17:26 4096 c:\windows\Installer\{9051040C-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-10-19 17:46 . 2009-11-20 17:27 4096 c:\windows\Installer\{903B040C-6000-11D3-8CFE-0150048383C9}\opwicon.exe
- 2009-10-19 17:46 . 2009-10-19 17:46 4096 c:\windows\Installer\{903B040C-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-10-18 16:49 . 2000-12-31 23:14 4096 c:\windows\Installer\{9017040C-6000-11D3-8CFE-0150048383C9}\opwicon.exe
- 2009-10-18 16:49 . 2009-10-18 16:49 4096 c:\windows\Installer\{9017040C-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 4096 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\opwicon.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 4096 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-12-05 23:44 . 2009-12-05 23:44 655872 c:\windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.21022.8_none_bcb86ed6ac711f91\msvcr90.dll
+ 2009-12-05 23:44 . 2009-12-05 23:44 568832 c:\windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.21022.8_none_bcb86ed6ac711f91\msvcp90.dll
+ 2009-12-05 23:44 . 2009-12-05 23:44 224768 c:\windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.21022.8_none_bcb86ed6ac711f91\msvcm90.dll
+ 2009-10-25 02:31 . 2009-12-05 20:12 181648 c:\windows\System32\WDI\SuspendPerformanceDiagnostics_SystemData_S3.bin
+ 2009-05-29 22:42 . 2009-05-29 22:42 309248 c:\windows\System32\sqlite36_engine.dll
+ 2006-11-02 10:33 . 2009-11-28 20:54 606450 c:\windows\System32\perfh009.dat
+ 2006-11-02 10:33 . 2009-11-28 20:54 100232 c:\windows\System32\perfc009.dat
+ 2002-01-05 03:37 . 2002-01-05 03:37 344064 c:\windows\System32\msvcr70.dll
+ 2009-12-06 01:35 . 2009-12-06 01:34 149280 c:\windows\System32\javaws.exe
+ 2009-12-06 01:35 . 2009-12-06 01:34 145184 c:\windows\System32\javaw.exe
+ 2009-12-06 01:35 . 2009-12-06 01:34 145184 c:\windows\System32\java.exe
+ 2009-06-11 05:35 . 2009-06-11 05:35 496128 c:\windows\System32\dhRichClient3.dll
+ 2009-10-16 01:24 . 2009-12-05 19:00 262144 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\usrclass.dat
- 2009-10-16 01:24 . 2009-11-14 08:14 262144 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\usrclass.dat
- 2009-10-16 01:25 . 2009-11-14 08:14 262144 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\usrclass.dat
+ 2009-10-16 01:25 . 2009-12-05 17:04 262144 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\usrclass.dat
- 2009-10-16 01:24 . 2009-11-14 08:14 262144 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\usrclass.dat
+ 2009-10-16 01:24 . 2009-12-05 19:00 262144 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\usrclass.dat
+ 2009-12-05 23:44 . 2009-12-05 23:44 430080 c:\windows\Installer\c01ce.msi
+ 2009-12-05 23:44 . 2009-12-05 23:44 155648 c:\windows\Installer\c01c5.msi
+ 2009-12-05 23:44 . 2009-12-05 23:44 140288 c:\windows\Installer\c01b7.msi
+ 2009-12-05 23:43 . 2009-12-05 23:43 202752 c:\windows\Installer\c01b0.msi
+ 2009-12-05 23:43 . 2009-12-05 23:43 152576 c:\windows\Installer\c01a9.msi
+ 2009-12-05 23:43 . 2009-12-05 23:43 107008 c:\windows\Installer\c019b.msi
+ 2009-12-05 23:42 . 2009-12-05 23:42 301056 c:\windows\Installer\c0194.msi
+ 2009-12-06 01:34 . 2009-12-06 01:34 537600 c:\windows\Installer\71ffda.msi
+ 2009-12-06 01:17 . 2009-12-06 01:17 292352 c:\windows\Installer\62c945.msi
- 2009-10-26 16:52 . 2009-10-26 16:52 135168 c:\windows\Installer\{90A1040C-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2009-10-26 16:52 . 2009-11-20 17:28 135168 c:\windows\Installer\{90A1040C-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2009-10-18 17:04 . 2009-11-20 17:26 176128 c:\windows\Installer\{9051040C-6000-11D3-8CFE-0150048383C9}\visicon.exe
- 2009-10-18 17:04 . 2009-10-18 17:04 176128 c:\windows\Installer\{9051040C-6000-11D3-8CFE-0150048383C9}\visicon.exe
+ 2009-10-18 17:04 . 2009-11-20 17:26 135168 c:\windows\Installer\{9051040C-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2009-10-18 17:04 . 2009-10-18 17:04 135168 c:\windows\Installer\{9051040C-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2009-10-19 17:46 . 2009-11-20 17:27 147456 c:\windows\Installer\{903B040C-6000-11D3-8CFE-0150048383C9}\pj11icon.exe
- 2009-10-19 17:46 . 2009-10-19 17:46 147456 c:\windows\Installer\{903B040C-6000-11D3-8CFE-0150048383C9}\pj11icon.exe
- 2009-10-19 17:46 . 2009-10-19 17:46 135168 c:\windows\Installer\{903B040C-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2009-10-19 17:46 . 2009-11-20 17:27 135168 c:\windows\Installer\{903B040C-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2009-10-18 16:49 . 2009-10-18 16:49 135168 c:\windows\Installer\{9017040C-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2009-10-18 16:49 . 2000-12-31 23:14 135168 c:\windows\Installer\{9017040C-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2009-10-18 16:49 . 2009-10-18 16:49 282624 c:\windows\Installer\{9017040C-6000-11D3-8CFE-0150048383C9}\fpicon.exe
+ 2009-10-18 16:49 . 2000-12-31 23:14 282624 c:\windows\Installer\{9017040C-6000-11D3-8CFE-0150048383C9}\fpicon.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 409600 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\xlicons.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 409600 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\xlicons.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 286720 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\wordicon.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 286720 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\wordicon.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 249856 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\pptico.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 249856 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\pptico.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 794624 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\outicon.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 794624 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\outicon.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 135168 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 135168 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2009-10-25 11:24 . 2009-11-08 19:33 593920 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\accicons.exe
+ 2009-10-25 11:24 . 2009-11-27 20:48 593920 c:\windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\accicons.exe
+ 2006-11-02 10:22 . 2009-12-05 23:45 5767168 c:\windows\System32\SMI\Store\Machine\SCHEMA.DAT
- 2006-11-02 10:22 . 2009-10-19 23:43 5767168 c:\windows\System32\SMI\Store\Machine\SCHEMA.DAT
- 2006-11-02 12:47 . 2000-12-31 23:01 2132832 c:\windows\System32\FNTCACHE.DAT
+ 2006-11-02 12:47 . 2009-11-24 06:10 2132832 c:\windows\System32\FNTCACHE.DAT
+ 2009-12-06 02:13 . 2009-12-06 02:13 5533696 c:\windows\ERDNT\Hiv-backup\SCHEMA.DAT
+ 2009-12-05 21:41 . 2009-12-05 21:41 15295488 c:\windows\Installer\11ad2dd.msi
.
-- Instantané actualisé --
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Wallpaper"="d:\wallpaper\Wallpaper.exe Starter" [X]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2006-11-02 1196032]
"E09FXLRD_1171093"="c:\program files\Microsoft Encarta\Microsoft Encarta 2009 - Collection DVD\EDICT.EXE" [2008-05-28 351000]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2006-11-02 125440]
"swg"="c:\program files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2009-10-17 171448]
"SuperCopier2.exe"="c:\program files\SuperCopier2\SuperCopier2.exe" [2009-08-16 955392]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2006-11-02 1004136]
"NBKeyScan"="c:\program files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2008-02-18 2221352]
"SoundMAXPnP"="c:\program files\Analog Devices\SoundMAX\SMax4PNP.exe" [2004-10-14 1388544]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-06 149280]
c:\users\Lan‡on\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Reader Synchronizer.lnk - c:\program files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]
BlueSoleil.lnk - c:\program files\IVT Corporation\BlueSoleil\BlueSoleil.exe [2009-10-18 1183744]
Lancement rapide d'Adobe Reader.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]
Lancement rapide de Microsoft Office OneNote 2003.lnk - c:\program files\Microsoft Office\OFFICE11\ONENOTEM.EXE [2003-8-6 51776]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
R1 aswSP;avast! Self Protection;c:\windows\System32\drivers\aswSP.sys [19/11/2009 00:27 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [19/11/2009 00:27 20560]
R2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [19/11/2009 00:27 53328]
R2 Registry Helper Service;Registry Helper Service;c:\program files\Registry Helper\RegistryHelperService.exe [24/09/2009 15:07 83328]
R3 VST_DPV;VST_DPV;c:\windows\System32\drivers\VSTDPV3.SYS [02/11/2006 11:25 987648]
R3 VSTHWBS2;VSTHWBS2;c:\windows\System32\drivers\VSTBS23.SYS [02/11/2006 11:25 251904]
R3 XinweiIad;Xinwei Networks Modem;c:\windows\System32\drivers\netnnusb.sys [05/12/2009 20:12 12416]
S0 OemBiosDevice;Royalty OEM Bios Extension;c:\windows\System32\drivers\royal.sys [01/01/2001 00:12 240128]
S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [23/09/2009 14:50 238960]
--- Autres Services/Pilotes en mémoire ---
*NewlyCreated* - DRIVERHARDWAREV2
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Lançon\AppData\Roaming\Mozilla\Firefox\Profiles\wyasc63n.default\
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
FF - plugin: c:\program files\ma-config.com\nphardwaredetection.dll
---- PARAMETRES FIREFOX ----
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
.
- - - - ORPHELINS SUPPRIMES - - - -
AddRemove-Pdf995 - c:\pdf995\setup.exe uninstall
AddRemove-OnlineBible - c:\program files\Bible\OlbDel.Exe La Bible Online E-M La Bible Online E-M c:\users\Lançon\Documents\Bible
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-06 03:34
Windows 6.0.6000 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Heure de fin: 2009-12-06 03:39
ComboFix-quarantined-files.txt 2009-12-06 02:39
ComboFix2.txt 2009-11-14 17:39
ComboFix3.txt 2009-11-02 22:12
ComboFix4.txt 2009-11-01 14:10
ComboFix5.txt 2009-12-06 02:13
Avant-CF: 28 578 062 336 octets libres
Après-CF: 28 534 800 384 octets libres
- - End Of File - - A236A8AFFD2E9489F05C303C8B8A4EFE
j'aimerai aussi savoir ce que c'est que vacciner son disque dur et comment ça se fait. thanks

############################## | UsbFix V6.059 |
User : Lançon (Administrateurs) # PC-DE-LANÇON
Update on 01/12/2009 by Chiquitine29, C_XX & Chimay8
Start at: 03:04:51 | 07/12/2009
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com
Intel(R) Pentium(R) 4 CPU 2.80GHz
Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6000 32-bit) #
Internet Explorer 7.0.6000.16386
Windows Firewall Status : Enabled
AV : AntiVir Desktop 9.0.1.32 [ (!) Disabled | Updated ]
A:\ -> Lecteur de disquettes 3 ½ pouces
C:\ -> Disque fixe local # 51,39 Go (27,17 Go free) # NTFS
D:\ -> Disque fixe local # 48,83 Go (35,96 Go free) [Data disk] # NTFS
E:\ -> Disque fixe local # 48,82 Go (11,46 Go free) [Multi Media Disc] # NTFS
F:\ -> Disque CD-ROM
G:\ -> Disque CD-ROM
H:\ -> Disque amovible # 995,97 Mo (736,5 Mo free) [LANÇON] # FAT32
I:\ -> Disque amovible # 483,48 Mo (271,62 Mo free) [ALINO] # FAT
J:\ -> Disque amovible # 243,86 Mo (58,02 Mo free) [PAT MEMORY] # FAT
############################## | Processus actifs |
C:\Windows\System32\smss.exe 356
C:\Windows\system32\csrss.exe 424
C:\Windows\system32\wininit.exe 468
C:\Windows\system32\services.exe 552
C:\Windows\system32\lsass.exe 568
C:\Windows\system32\lsm.exe 576
C:\Windows\system32\svchost.exe 740
C:\Windows\system32\svchost.exe 804
C:\Windows\System32\svchost.exe 844
C:\Windows\System32\svchost.exe 984
C:\Windows\System32\svchost.exe 1024
C:\Windows\system32\svchost.exe 1040
C:\Windows\system32\SLsvc.exe 1144
C:\Windows\system32\svchost.exe 1180
C:\Windows\system32\svchost.exe 1304
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe 1392
C:\Program Files\Alwil Software\Avast4\ashServ.exe 1408
C:\Windows\System32\spoolsv.exe 1696
C:\Windows\system32\svchost.exe 1720
C:\Windows\system32\svchost.exe 1920
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE 1968
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe 2004
C:\Windows\system32\IoctlSvc.exe 396
C:\Windows\system32\svchost.exe 428
C:\Program Files\Registry Helper\RegistryHelperService.exe 464
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe 724
C:\Windows\System32\svchost.exe 1320
C:\Windows\system32\SearchIndexer.exe 736
C:\Windows\system32\taskeng.exe 2116
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe 2664
C:\Program Files\Windows Media Player\wmpnetwk.exe 3760
C:\Windows\system32\csrss.exe 3096
C:\Windows\system32\winlogon.exe 3632
C:\Windows\system32\taskeng.exe 1712
C:\Windows\system32\Dwm.exe 4044
C:\Windows\Explorer.EXE 3540
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe 2728
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe 3236
C:\Program Files\Windows Defender\MSASCui.exe 1268
C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe 384
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe 3496
C:\Program Files\Alwil Software\Avast4\ashDisp.exe 2924
C:\Program Files\Windows Sidebar\sidebar.exe 4040
C:\Program Files\Microsoft Encarta\Microsoft Encarta 2009 - Collection DVD\EDICT.EXE 4056
C:\Windows\ehome\ehtray.exe 3160
D:\Wallpaper\Wallpaper.exe 2876
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe 3384
C:\Program Files\SuperCopier2\SuperCopier2.exe 2376
C:\Program Files\Windows Live\Messenger\msnmsgr.exe 2520
C:\Program Files\Windows Media Player\wmpnscfg.exe 2844
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe 3392
C:\Windows\ehome\ehmsas.exe 3504
C:\Program Files\Windows Sidebar\sidebar.exe 3180
C:\Windows\system32\wbem\wmiprvse.exe 1252
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe 5360
C:\Program Files\Avira\AntiVir Desktop\sched.exe 4648
C:\Program Files\Avira\AntiVir Desktop\avguard.exe 2776
C:\Windows\system32\WUDFHost.exe 5192
C:\Program Files\Windows Media Player\wmplayer.exe 4448
C:\Windows\system32\conime.exe 4464
################## | Fichiers # Dossiers infectieux |
################## | Spyware.OnlineGames |
H:\q3kku.exe
################## | Registre # Clés infectieuses |
[HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DisableRegistryTools"
[HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoDrives"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoDrives"
################## | Registre # Mountpoints2 |
################## | Cracks / Keygens / Serials |
"D:\APPLICATIONS et SET UP\VistaActivationCrackSetup.exe"
13/07/2009 11:27 |Size 297102 |Crc32 4ce5d05d |Md5 93d434d8cba85fac74fa985c46df4db0
"D:\Sony vegas 7.c\keygen.exe"
14/09/2006 12:26 |Size 56832 |Crc32 c258f397 |Md5 eebe6d45ceb16a08397a49bc356c56ab
"D:\Utilitaires\VistaActivationCrackSetup.exe"
13/07/2009 11:27 |Size 297102 |Crc32 4ce5d05d |Md5 93d434d8cba85fac74fa985c46df4db0
"E:\JEUX\Atlantis + Crack\atlantis + crack\atlantissetup.exe"
10/01/2006 18:07 |Size 15426662 |Crc32 6189b67d |Md5 9af682fe802b2edf7db965ef34557de4
"D:\captivate\macromediacaptivatev1.0germankeygencore.zip"
-> Contain : keygen.exe 79872 DFLT-X 6% 75414 23-11-2004 23:30:08 9e70e206
"D:\captivate\macromediacaptivatev1.0keygenror.zip"
-> Contain : keygen.exe 53928 DFLT-X 10% 48376 13-11-2004 02:45:40 9dbd8402
"D:\captivate\macromediacaptivatev1.1292keygenbs.zip"
-> Contain : keygen_Captivate_V1.exe
"D:\captivate\macromediacaptivatev11.0germankeygencore.zip"
-> Contain : keygen.exe 79872 DFLT-X 6% 75414 23-11-2004 23:30:08 9e70e206
################## | ! Fin du rapport # UsbFix V6.059 ! |