Salut,
Il me semble que tout va bien. Je suis connectée depuis longtemps, pas de problème ;)
Virus disparu?
Merci beaucoup green day !!!!!!!!
Voici le rapport de ComboFix:
ComboFix 07-09-21.2 - "MIMI" 2007-09-29 17:36:54.1 - NTFSx86 MINIMAL
Microsoft Windows XP dition familiale 5.1.2600.2.1252.1.1036.18.271 [GMT 2:00]
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Autorun.inf
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
-------\poof
((((((((((((((((((((((((( Files Created from 2007-08-28 to 2007-09-29 )))))))))))))))))))))))))))))))
.
2007-09-29 17:35 51,200 --a------ C:\WINDOWS\NirCmd.exe
2007-09-29 16:00 25,088 --a------ C:\WINDOWS\system32\WS2Fix.exe
2007-09-29 16:00 <REP> d-------- C:\SmitfraudFix
2007-09-29 15:49 53,248 --a------ C:\WINDOWS\system32\Process.exe
2007-09-29 15:49 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2007-09-29 15:49 289,144 --a------ C:\WINDOWS\system32\VCCLSID.exe
2007-09-29 15:49 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2007-09-29 11:46 81,984 --a------ C:\WINDOWS\system32\bdod.bin
2007-09-29 11:46 <REP> d-------- C:\Program Files\BitDefender
2007-09-29 11:46 <REP> d-------- C:\DOCUME~1\MIMI\APPLIC~1\BitDefender
2007-09-29 11:46 <REP> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\BitDefender
2007-09-29 11:43 <REP> d-------- C:\Program Files\Fichiers communs\BitDefender
2007-09-29 11:34 <REP> d-------- C:\DOCUME~1\MIMI\APPLIC~1\SiteAdvisor
2007-09-28 22:22 <REP> d-------- C:\WINDOWS\BDOSCAN8
2007-09-28 13:15 2,482 --a------ C:\WINDOWS\system32\tmp.reg
2007-09-27 04:26 <REP> d-------- C:\Program Files\Lavasoft
2007-09-27 04:26 <REP> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
2007-09-27 04:25 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
2007-09-27 03:57 <REP> d-------- C:\Program Files\CCleaner
2007-09-26 22:23 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2007-09-26 22:00 <REP> d-------- C:\WINDOWS\ERUNT
2007-09-26 21:57 <REP> dr------- C:\DOCUME~1\ADMINI~1\Mes documents
2007-09-26 21:57 <REP> dr------- C:\DOCUME~1\ADMINI~1\Menu D‚marrer
2007-09-26 21:57 <REP> dr------- C:\DOCUME~1\ADMINI~1\Favoris
2007-09-26 21:57 <REP> d--h----- C:\DOCUME~1\ADMINI~1\Voisinage r‚seau
2007-09-26 21:57 <REP> d--h----- C:\DOCUME~1\ADMINI~1\Voisinage d'impression
2007-09-26 21:57 <REP> d--h----- C:\DOCUME~1\ADMINI~1\ModŠles
2007-09-26 21:57 <REP> d-------- C:\DOCUME~1\ADMINI~1\Bureau
2007-09-25 18:59 <REP> dr------- C:\DOCUME~1\NETWOR~1\Favoris
2007-09-25 18:59 <REP> d-------- C:\DOCUME~1\NETWOR~1\Bureau
2007-09-24 22:18 <REP> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
2007-09-23 21:18 <REP> d-------- C:\Program Files\Fichiers communs\xing shared
2007-09-23 21:07 <REP> d-------- C:\Program Files\Fichiers communs\NSV
2007-09-23 20:30 <REP> d-------- C:\Program Files\Real
2007-09-23 20:30 <REP> d-------- C:\Program Files\Fichiers communs\Real
2007-09-23 20:29 <REP> d-------- C:\DOCUME~1\MIMI\APPLIC~1\Real
2007-09-23 20:24 <REP> d-------- C:\Mes t‚l‚chargements
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-09-27 03:44 --------- d-------- C:\Program Files\Yahoo!
2007-09-12 08:46 --------- d-------- C:\DOCUME~1\MIMI\APPLIC~1\Skype
2007-09-12 00:46 --------- d-------- C:\Program Files\Fichiers communs\Symantec Shared
2007-09-12 00:46 --------- d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
2007-09-12 00:45 --------- d-------- C:\Program Files\Symantec
2007-08-27 23:08 --------- d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
2007-08-15 17:32 --------- d-------- C:\Program Files\Google
2007-08-15 17:31 --------- d-------- C:\DOCUME~1\MIMI\APPLIC~1\Google
2007-08-07 13:58 8320 --a------ C:\WINDOWS\system32\drivers\AWRTRD.sys
2007-08-07 13:56 9344 --a------ C:\WINDOWS\system32\drivers\NSDriver.sys
2007-08-02 17:03 188432 --a------ C:\WINDOWS\system32\drivers\bdfsfltr.sys
2007-07-30 19:19 92504 --a------ C:\WINDOWS\system32\cdm.dll
2007-07-30 19:19 549720 --a------ C:\WINDOWS\system32\wuapi.dll
2007-07-30 19:19 53080 --a------ C:\WINDOWS\system32\wuauclt.exe
2007-07-30 19:19 43352 --a------ C:\WINDOWS\system32\wups2.dll
2007-07-30 19:19 325976 --a------ C:\WINDOWS\system32\wucltui.dll
2007-07-30 19:19 203096 --a------ C:\WINDOWS\system32\wuweb.dll
2007-07-30 19:19 1712984 --a------ C:\WINDOWS\system32\wuaueng.dll
2007-07-30 19:18 33624 --a------ C:\WINDOWS\system32\wups.dll
2007-07-20 15:54 77824 --a------ C:\WINDOWS\system32\xcomm.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WinampAgent"="C:\Program Files\Winamp\winampa.exe" [2007-04-25 17:44]
"VTTrayp"="VTtrayp.exe" [2005-11-01 04:15 C:\WINDOWS\system32\VTTrayp.exe]
"VTTimer"="VTTimer.exe" [2005-03-08 03:33 C:\WINDOWS\system32\VTTimer.exe]
"TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2007-09-23 21:18]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe" [2005-06-03 04:52]
"SoundMan"="SOUNDMAN.EXE" [2006-03-01 16:22 C:\WINDOWS\SOUNDMAN.EXE]
"SMSERIAL"="sm56hlpr.exe" [2004-12-29 15:01 C:\WINDOWS\sm56hlpr.exe]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 11:50]
"ACU"="C:\Program Files\Atheros\ACU.exe" [2005-01-31 08:05]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 11:25]
"AAWTray"="C:\Program Files\Lavasoft\Ad-Aware 2007\AAWTray.exe" [2007-08-08 15:53]
"BDAgent"="C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe" [2007-08-04 18:07]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 14:00]
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\DMARRA~1\
Acrobat Assistant.lnk - C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe [2003-04-07 02:42:52]
Lancement rapide d'Adobe Reader.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 22:05:26]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=0 (0x0)
R0 SiSRaid2;SiSRaid2;C:\WINDOWS\system32\drivers\SiSRaid2.sys
R0 viamraid;viamraid;C:\WINDOWS\system32\drivers\viamraid.sys
R1 bdftdif;bdftdif;\??\C:\Program Files\Fichiers communs\BitDefender\BitDefender Firewall\bdftdif.sys
R3 bdfsfltr;bdfsfltr;C:\WINDOWS\system32\DRIVERS\bdfsfltr.sys
R3 BDSelfPr;BDSelfPr;\??\C:\Program Files\BitDefender\BitDefender 2008\bdselfpr.sys
R3 EKBfltr;ENE Keyboard Controller;C:\WINDOWS\system32\DRIVERS\EKBfltr.sys
R3 scan;BitDefender Threat Scanner;C:\WINDOWS\System32\svchost.exe -kbdx
S3 USBSTOR;Pilote de stockage de masse USB;C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bdx scan
.
**************************************************************************
catchme 0.3.1061 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-09-29 17:42:11
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\bdfsfltr]
"ImagePath"=hex:73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,52,\
.
Completion time: 2007-09-29 17:44:43 - machine was rebooted
C:\ComboFix-quarantined-files.txt ... 2007-09-29 17:44
.
--- E O F ---