Comme anti-spywares, j'utilise Spybot, AdAware et Ediwo.
Voici le rapport combofix
Jean - 06-11-28 16:08:07.65 Service Pack 2
ComboFix 06.11.27W - Running from: "C:\Documents and Settings\Jean\Mes documents\Mes fichiers re‡us"
(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\system32\sysvx.exe
((((((((((((((((((((((((((((((( Files Created from 2006-10-28 to 2006-11-28 ))))))))))))))))))))))))))))))))))
2006-11-28 13:43 <REP> dr-h----- C:\Documents and Settings\Jean\Recent
2006-11-27 17:35 1,042 --a------ C:\WINDOWS\SYSTEM32\vyciilyh.exe
2006-11-27 17:35 1,042 --a------ C:\WINDOWS\SYSTEM32\vapjhllf.exe
2006-11-27 17:35 1,042 --a------ C:\WINDOWS\SYSTEM32\jgxwgaaa.exe
2006-11-27 17:35 1,042 --a------ C:\WINDOWS\SYSTEM32\jdwtmhka.exe
2006-11-27 17:35 1,042 --a------ C:\WINDOWS\SYSTEM32\gjfwaaaa.exe
2006-11-24 20:12 1,042 --a------ C:\WINDOWS\SYSTEM32\sixrrgur.exe
2006-11-24 20:12 1,042 --a------ C:\WINDOWS\SYSTEM32\pceojxnb.exe
2006-11-24 20:12 1,042 --a------ C:\WINDOWS\SYSTEM32\jupewwky.exe
2006-11-24 20:12 1,042 --a------ C:\WINDOWS\SYSTEM32\dgddrabe.exe
2006-11-24 20:12 1,042 --a------ C:\WINDOWS\SYSTEM32\ddkpcnms.exe
2006-11-24 18:47 1,042 --a------ C:\WINDOWS\SYSTEM32\vyfnaaaa.exe
2006-11-24 18:47 1,042 --a------ C:\WINDOWS\SYSTEM32\vduveaaa.exe
2006-11-24 18:47 1,042 --a------ C:\WINDOWS\SYSTEM32\jsobaaaa.exe
2006-11-24 18:47 1,042 --a------ C:\WINDOWS\SYSTEM32\jseorkvm.exe
2006-11-24 18:47 1,042 --a------ C:\WINDOWS\SYSTEM32\amqgtaaa.exe
2006-11-24 14:25 53,248 --a------ C:\WINDOWS\SYSTEM32\Process.exe
2006-11-24 14:25 40,960 --a------ C:\WINDOWS\SYSTEM32\swsc.exe
2006-11-24 14:25 288,417 --a------ C:\WINDOWS\SYSTEM32\SrchSTS.exe
2006-11-24 14:25 135,168 --a------ C:\WINDOWS\SYSTEM32\swreg.exe
2006-11-24 13:24 <REP> d-------- C:\Documents and Settings\Jean\Application Data\AdobeUM
2006-11-23 18:34 1,042 --a------ C:\WINDOWS\SYSTEM32\vvnxfaaa.exe
2006-11-23 18:34 1,042 --a------ C:\WINDOWS\SYSTEM32\vvaxusja.exe
2006-11-23 18:34 1,042 --a------ C:\WINDOWS\SYSTEM32\mqfcmaaa.exe
2006-11-23 18:34 1,042 --a------ C:\WINDOWS\SYSTEM32\awwjaaaa.exe
2006-11-23 18:34 1,042 --a------ C:\WINDOWS\SYSTEM32\abmolqyn.exe
2006-11-23 17:52 1,042 --a------ C:\WINDOWS\SYSTEM32\vhnbaaaa.exe
2006-11-23 17:52 1,042 --a------ C:\WINDOWS\SYSTEM32\pqgevael.exe
2006-11-23 17:52 1,042 --a------ C:\WINDOWS\SYSTEM32\gcrklkdc.exe
2006-11-23 17:51 1,042 --a------ C:\WINDOWS\SYSTEM32\pqfxbaaa.exe
2006-11-23 17:51 1,042 --a------ C:\WINDOWS\SYSTEM32\dalsaaaa.exe
2006-11-23 14:32 <REP> d-------- C:\WINDOWS\WBEM
2006-11-23 14:32 <REP> d-------- C:\WINDOWS\SYSTEM32\en-US
2006-11-23 14:29 121,856 --------- C:\WINDOWS\SYSTEM32\xmllite.dll
2006-11-23 14:27 <REP> d-------- C:\WINDOWS\network diagnostic
2006-11-22 18:47 1,042 --a------ C:\WINDOWS\SYSTEM32\spnuhdri.exe
2006-11-22 18:47 1,042 --a------ C:\WINDOWS\SYSTEM32\gxqwcaaa.exe
2006-11-22 18:47 1,042 --a------ C:\WINDOWS\SYSTEM32\djdyxaaa.exe
2006-11-22 18:47 1,042 --a------ C:\WINDOWS\SYSTEM32\aufkcpxn.exe
2006-11-22 18:47 1,042 --a------ C:\WINDOWS\SYSTEM32\aiaaaaaa.exe
2006-11-21 13:32 1,042 --a------ C:\WINDOWS\SYSTEM32\spacdaaa.exe
2006-11-21 13:32 1,042 --a------ C:\WINDOWS\SYSTEM32\pqtpaaaa.exe
2006-11-21 13:32 1,042 --a------ C:\WINDOWS\SYSTEM32\jwgtavhd.exe
2006-11-21 13:32 1,042 --a------ C:\WINDOWS\SYSTEM32\daxgecfs.exe
2006-11-21 13:32 1,042 --a------ C:\WINDOWS\SYSTEM32\aqyvejfy.exe
2006-11-20 17:00 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Adobe
2006-11-20 16:35 <REP> d-------- C:\Program Files\MSXML 4.0
2006-11-20 16:35 <REP> d-------- C:\51abd11ffc6f19dde248
2006-11-20 15:40 73,216 --a------ C:\WINDOWS\SYSTEM32\avwav.dll
2006-11-20 15:40 5,632 --a------ C:\WINDOWS\SYSTEM32\write.exe
2006-11-20 15:40 44,544 --a------ C:\WINDOWS\SYSTEM32\hticons.dll
2006-11-20 15:40 35,840 --a------ C:\WINDOWS\SYSTEM32\winchat.exe
2006-11-20 15:40 232,960 --a------ C:\WINDOWS\SYSTEM32\avtapi.dll
2006-11-20 15:40 16,384 --a------ C:\WINDOWS\SYSTEM32\avmeter.dll
2006-11-20 15:40 139,264 --a------ C:\WINDOWS\SYSTEM32\sndvol32.exe
2006-11-20 15:40 <REP> d-------- C:\WINDOWS\SYSTEM32\FxsTmp
2006-11-20 15:40 <REP> d-------- C:\Program Files\Online Services
2006-11-20 15:39 94,720 --a------ C:\WINDOWS\SYSTEM32\evntwin.exe
2006-11-20 15:39 80,896 --a------ C:\WINDOWS\SYSTEM32\charmap.exe
2006-11-20 15:39 8,704 --a------ C:\WINDOWS\SYSTEM32\snmptrap.exe
2006-11-20 15:39 8,704 --a------ C:\WINDOWS\SYSTEM32\fxsperf.dll
2006-11-20 15:39 72,192 --a------ C:\WINDOWS\SYSTEM32\fxscom.dll
2006-11-20 15:39 7,168 --a------ C:\WINDOWS\SYSTEM32\fxsres.dll
2006-11-20 15:39 66,048 --a------ C:\WINDOWS\SYSTEM32\fxsevent.dll
2006-11-20 15:39 634,880 --a------ C:\WINDOWS\SYSTEM32\getuname.dll
2006-11-20 15:39 6,144 --a------ C:\WINDOWS\SYSTEM32\snmpmib.dll
2006-11-20 15:39 57,344 --a------ C:\WINDOWS\SYSTEM32\sol.exe
2006-11-20 15:39 563,712 --a------ C:\WINDOWS\SYSTEM32\fxsst.dll
2006-11-20 15:39 55,808 --a------ C:\WINDOWS\SYSTEM32\freecell.exe
2006-11-20 15:39 539,136 --a------ C:\WINDOWS\SYSTEM32\spider.exe
2006-11-20 15:39 452,096 --a------ C:\WINDOWS\SYSTEM32\fxsapi.dll
2006-11-20 15:39 400,896 --a------ C:\WINDOWS\SYSTEM32\fxsxp32.dll
2006-11-20 15:39 397,312 --a------ C:\WINDOWS\SYSTEM32\fxstiff.dll
2006-11-20 15:39 39,936 --a------ C:\WINDOWS\SYSTEM32\hostmib.dll
2006-11-20 15:39 36,864 --a------ C:\WINDOWS\SYSTEM32\iprip.dll
2006-11-20 15:39 354,304 --a------ C:\WINDOWS\SYSTEM32\hypertrm.dll
2006-11-20 15:39 347,648 --a------ C:\WINDOWS\SYSTEM32\mspaint.exe
2006-11-20 15:39 33,792 --a------ C:\WINDOWS\SYSTEM32\lmmib2.dll
2006-11-20 15:39 32,768 --a------ C:\WINDOWS\SYSTEM32\snmp.exe
2006-11-20 15:39 31,744 --a------ C:\WINDOWS\SYSTEM32\fxsroute.dll
2006-11-20 15:39 285,184 --a------ C:\WINDOWS\SYSTEM32\fxscomex.dll
2006-11-20 15:39 27,136 --a------ C:\WINDOWS\SYSTEM32\fxsdrv.dll
2006-11-20 15:39 268,800 --a------ C:\WINDOWS\SYSTEM32\fxssvc.exe
2006-11-20 15:39 26,112 --a------ C:\WINDOWS\SYSTEM32\evntcmd.exe
2006-11-20 15:39 246,272 --a------ C:\WINDOWS\SYSTEM32\fxst30.dll
2006-11-20 15:39 24,064 --a------ C:\WINDOWS\SYSTEM32\fxsmon.dll
2006-11-20 15:39 238,592 --a------ C:\WINDOWS\SYSTEM32\fxscover.exe
2006-11-20 15:39 23,552 --a------ C:\WINDOWS\SYSTEM32\fxsext32.dll
2006-11-20 15:39 197,120 --a------ C:\WINDOWS\SYSTEM32\fxswzrd.dll
2006-11-20 15:39 189,952 --a------ C:\WINDOWS\SYSTEM32\accwiz.exe
2006-11-20 15:39 18,944 --a------ C:\WINDOWS\SYSTEM32\simptcp.dll
2006-11-20 15:39 156,672 --a------ C:\WINDOWS\SYSTEM32\fxsui.dll
2006-11-20 15:39 143,360 --a------ C:\WINDOWS\SYSTEM32\fxsclnt.exe
2006-11-20 15:39 141,312 --a------ C:\WINDOWS\SYSTEM32\fxsclntR.dll
2006-11-20 15:39 133,120 --a------ C:\WINDOWS\SYSTEM32\sndrec32.exe
2006-11-20 15:39 128,000 --a------ C:\WINDOWS\SYSTEM32\mshearts.exe
2006-11-20 15:39 124,928 --a------ C:\WINDOWS\SYSTEM32\mplay32.exe
2006-11-20 15:39 119,808 --a------ C:\WINDOWS\SYSTEM32\winmine.exe
2006-11-20 15:39 115,200 --a------ C:\WINDOWS\SYSTEM32\calc.exe
2006-11-20 15:39 113,664 --a------ C:\WINDOWS\SYSTEM32\fxscfgwz.dll
2006-11-20 15:39 11,776 --a------ C:\WINDOWS\SYSTEM32\fxssend.exe
2006-11-20 15:39 109,568 --a------ C:\WINDOWS\SYSTEM32\evntagnt.dll
2006-11-20 15:39 104,448 --a------ C:\WINDOWS\SYSTEM32\clipbrd.exe
2006-11-17 20:45 <REP> d-------- C:\Program Files\BitComet
2006-11-17 20:45 <REP> d-------- C:\Downloads
2006-11-17 14:21 <REP> d-------- C:\Documents and Settings\Jean\Application Data\Talkback
2006-11-17 14:21 <REP> d-------- C:\Documents and Settings\Jean\Application Data\Mozilla
2006-11-16 18:40 <REP> d-------- C:\Program Files\Mozilla Firefox
2006-11-16 18:39 109,568 --------- C:\WINDOWS\SYSTEM32\pxinsi64.exe
2006-11-16 18:39 108,544 --------- C:\WINDOWS\SYSTEM32\pxcpyi64.exe
2006-11-14 20:50 9,216 --a------ C:\WINDOWS\SYSTEM\wctldl32.dll
2006-11-14 20:50 15,360 --a------ C:\WINDOWS\SYSTEM32\dacpaaaa.exe
2006-11-14 16:52 12,288 --a------ C:\WINDOWS\SYSTEM32\qrai.dll
2006-11-13 15:12 <REP> d-------- C:\Program Files\iTunes
2006-11-13 15:07 <REP> d-------- C:\Program Files\Apple Software Update
2006-11-09 16:19 92,064 --a------ C:\Documents and Settings\Jean\mqdmmdm.sys
2006-11-09 16:19 9,232 --a------ C:\Documents and Settings\Jean\mqdmmdfl.sys
2006-11-09 16:19 79,328 --a------ C:\Documents and Settings\Jean\mqdmserd.sys
2006-11-09 16:19 66,656 --a------ C:\Documents and Settings\Jean\mqdmbus.sys
2006-11-09 16:19 6,208 --a------ C:\Documents and Settings\Jean\mqdmcmnt.sys
2006-11-09 16:19 5,936 --a------ C:\Documents and Settings\Jean\mqdmwhnt.sys
2006-11-09 16:19 4,048 --a------ C:\Documents and Settings\Jean\mqdmcr.sys
2006-11-07 14:31 <REP> d-------- C:\Program Files\bluewin
2006-11-07 03:26 13,312 --a------ C:\WINDOWS\SYSTEM32\ieudinit.exe
2006-11-04 14:14 1,245,696 --a------ C:\WINDOWS\SYSTEM32\msxml4.dll
2006-10-29 14:25 <REP> d-------- C:\Program Files\Migros Service Photo
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-11-27 23:02 -------- d-------- C:\Program Files\Eraser
2006-11-25 08:40 359808 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\tcpip.sys
2006-11-23 20:28 -------- d-------- C:\Program Files\Internet Explorer
2006-11-22 16:04 81200 --a--c--- C:\Documents and Settings\Jean\Application Data\GDIPFONTCACHEV1.DAT
2006-11-22 13:57 -------- d-------- C:\Program Files\ewido anti-spyware 4.0
2006-11-20 16:58 -------- d-------- C:\Program Files\Adobe
2006-11-20 16:38 -------- d-------- C:\Program Files\Windows Media Player
2006-11-20 16:31 -------- d-------- C:\Program Files\Outlook Express
2006-11-20 16:31 -------- d-------- C:\Program Files\Fichiers communs\System
2006-11-20 15:40 -------- d-------- C:\Program Files\Windows NT
2006-11-17 20:45 2560 --a------ C:\WINDOWS\SYSTEM32\BitCometRes.dll
2006-11-16 18:41 -------- d-------- C:\Program Files\Google
2006-11-16 18:39 -------- d-------- C:\Program Files\DivX
2006-11-15 21:37 -------- d-------- C:\Program Files\Yahoo!
2006-11-13 15:12 -------- d-------- C:\Program Files\iPod
2006-11-13 15:10 -------- d-------- C:\Program Files\QuickTime
2006-11-09 16:20 -------- d-------- C:\Program Files\Motorola Phone Tools
2006-10-29 14:18 -------- d---s---- C:\Documents and Settings\Jean\Application Data\Microsoft
2006-10-25 05:34 -------- d-------- C:\Program Files\Autodesk Map 2004
2006-10-25 05:28 -------- d-------- C:\Program Files\Autodesk Envision 8
2006-10-25 05:27 -------- d-------- C:\Program Files\Fichiers communs\Autodesk Shared
2006-10-25 05:27 -------- d-------- C:\Program Files\Fichiers communs\Autodesk
2006-10-25 05:27 -------- d-------- C:\Program Files\Fichiers communs
2006-10-25 05:23 -------- d-------- C:\Program Files\Autodesk Raster Design 2004
2006-10-25 05:22 -------- d-------- C:\Documents and Settings\Jean\Application Data\Autodesk
2006-10-25 05:21 -------- d-------- C:\Program Files\Autodesk
2006-10-25 05:20 -------- d-------- C:\Program Files\AnswerWorks 4.0
2006-10-22 20:03 -------- d-------- C:\Program Files\MSN Messenger
2006-10-13 13:36 145920 --a------ C:\WINDOWS\SYSTEM32\nwprovau.dll
2006-10-09 19:33 22768 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\usbsermpt.sys
2006-10-09 19:31 -------- d--h----- C:\Program Files\InstallShield Installation Information
2006-10-09 19:31 -------- d-------- C:\Program Files\mobile PhoneTools
2006-10-05 19:39 -------- d-------- C:\Program Files\Real
2006-10-04 20:56 -------- d-------- C:\Program Files\CCleaner
2006-10-02 20:04 806912 --a------ C:\WINDOWS\SYSTEM32\divx_xx0c.dll
2006-10-02 20:04 806912 --a------ C:\WINDOWS\SYSTEM32\divx_xx07.dll
2006-10-02 20:04 790528 --a------ C:\WINDOWS\SYSTEM32\divx_xx11.dll
2006-10-02 20:04 635486 --a------ C:\WINDOWS\SYSTEM32\DivX.dll
2006-09-19 15:43 109360 --a------ C:\WINDOWS\SYSTEM32\GEARAspi.dll
2006-09-13 06:03 1084416 --a------ C:\WINDOWS\SYSTEM32\msxml3.dll
2006-09-06 16:43 22752 --a------ C:\WINDOWS\SYSTEM32\spupdsvc.exe
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"STYLEXP"="C:\\Program Files\\TGTSoft\\StyleXP\\StyleXP.exe -Hide"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"PCMService"="\"C:\\Program Files\\Dell\\Media Experience\\PCMService.exe\""
"ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"VSOCheckTask"="\"C:\\PROGRA~1\\McAfee.com\\VSO\\mcmnhdlr.exe\" /checktask"
"MCAgentExe"="c:\\PROGRA~1\\mcafee.com\\agent\\mcagent.exe"
"MCUpdateExe"="C:\\PROGRA~1\\mcafee.com\\agent\\mcupdate.exe"
"dla"="C:\\WINDOWS\\system32\\dla\\tfswctrl.exe"
"UpdateManager"="\"C:\\Program Files\\Fichiers communs\\Sonic\\Update Manager\\sgtray.exe\" /r"
"REGSHAVE"="C:\\Program Files\\REGSHAVE\\REGSHAVE.EXE /AUTORUN"
"HP Component Manager"="\"C:\\Program Files\\HP\\hpcoretech\\hpcmpmgr.exe\""
"TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot"
"HP Software Update"="C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe"
"OASClnt"="C:\\Program Files\\McAfee.com\\VSO\\oasclnt.exe"
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"SweetIM"="C:\\Program Files\\Macrogaming\\SweetIM\\SweetIM.exe"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_07\\bin\\jusched.exe"
"IMJPMIG8.1"="\"C:\\WINDOWS\\IME\\imjp8_1\\IMJPMIG.EXE\" /Spoil /RemAdvDef /Migration32"
"IMEKRMIG6.1"="C:\\WINDOWS\\ime\\imkr6_1\\IMEKRMIG.EXE"
"MSPY2002"="C:\\WINDOWS\\system32\\IME\\PINTLGNT\\ImScInst.exe /SYNC"
"PHIME2002ASync"="C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /SYNC"
"PHIME2002A"="C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /IMEName"
"Zone Labs Client"="\"C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe\""
"VirusScan"="c:\\PROGRA~1\\mcafee.com\\vso\\mcvsshld.exe"
"VirusScan Online"="C:\\Program Files\\McAfee.com\\VSO\\mcvsshld.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000000
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\CTFMON.EXE"
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\CTFMON.EXE"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="ewido anti-spyware 4.0"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"ClearRecentDocsOnExit"=dword:00000001
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000001
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoCDBurning"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"UPnPMonitor"="{e57ce738-33e8-4c51-8354-bb4de9d215d1}"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
~ ~ ~ ~ ~ ~ ~ ~ Hijackthis Backups ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~
backup-20061128-061454-105
O4 - Global Startup: MS_update_0610_KB72306.exe
backup-20061128-061454-675
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
backup-20061128-061454-775
O4 - Global Startup: Accélérateur de démarrage AutoCAD.lnk = C:\Program Files\Fichiers communs\Autodesk Shared\acstart16.exe
backup-20061128-061454-408
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
backup-20061128-061454-746
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\ccleaner.exe" /AUTO
backup-20061128-061454-415
O4 - HKCU\..\Run: [vtmivaaa] C:\WINDOWS\system32\vtmivaaa.exe
backup-20061128-061454-874
O2 - BHO: (no name) - {73364D99-1240-4dff-B12A-67E448373148} - (no file)
backup-20061128-061454-906
O4 - HKLM\..\Run: [vtmivaaa] C:\WINDOWS\system32\vtmivaaa.exe
backup-20061128-061454-173
O4 - HKCU\..\Run: [Eraser] C:\Program Files\Eraser\eraser.exe -hide
backup-20061128-061454-269
O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-DCF7-E869A199B87D} - (no file)
backup-20061128-061454-848
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-DCF7-E869A199B87D} - (no file)
backup-20061128-061454-682
O2 - BHO: (no name) - {391a72a1-108d-435a-875e-5b9048e11657} - C:\WINDOWS\system32\qrai.dll
backup-20061008-113614-306
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe
backup-20061008-113614-321
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
backup-20061008-113614-582
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
backup-20061008-113614-251
O4 - HKCU\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
backup-20061008-113614-417
O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
backup-20061008-113614-231
O3 - Toolbar: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
backup-20061008-113614-176
O2 - BHO: (no name) - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - (no file)
backup-20061008-113614-135
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
backup-20061006-234116-264
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} -
http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
backup-20061006-234115-225
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0,4831/mcfscan.cab
backup-20061006-234115-274
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) -
http://download.mcafee.com/molbin/shared/mcgdmgr/fr/1,0,0,21/mcgdmgr.cab
backup-20061006-234115-313
O16 - DPF: {82FC4503-8459-4239-9B85-0617BEAA950A} -
http://es6-scripts.dlv4.com/binaries/egaccess4/egaccess4_1061_XP.cab
backup-20061006-234114-826
O16 - DPF: {78AEEDE8-7345-4FB5-A8FE-4BFF16EF25FC} (McAfee Virtual Technician Control Class) -
http://mvt.mcafee.com/mvt/bin/2,4,1,0/mvt.cab
backup-20061006-234114-418
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) -
http://download.bitdefender.com/resources/scan8/oscan8.cab
backup-20061006-234113-641
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) -
http://download.mcafee.com/molbin/shared/mcinsctl/fr/4,0,0,84/mcinsctl.cab
backup-20061006-234113-537
O8 - Extra context menu item: &Search -
http://kx.bar.need2find.com/KX/menusearch.html?p=KX
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\Analyse McAfee.com - Mon ordinateur (DG6L7F1J-Jean).job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
Completion time: 06-11-28 16:11:26.68
C:\ComboFix.txt ... 06-11-28 16:11