Voila le combo fix
en attendant je vais essayer l'autre solution
merci de ton aide
ComboFix 08-01-15.4 - Florian 2008-01-15 19:06:34.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.1518 [GMT 1:00]
Running from: C:\Documents and Settings\Florian\Bureau\ComboFix.exe
* Created a new restore point
[color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color]
.
((((((((((((((((((((((((((((( Fichiers créés 2007-12-15 to 2008-01-15 ))))))))))))))))))))))))))))))))))))
.
2008-01-15 19:05 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe
2008-01-14 20:42 . 2008-01-14 21:17 <REP> d-------- C:\WINDOWS\BDOSCAN8
2008-01-06 15:20 . 2008-01-06 15:20 <REP> d-------- C:\photos
2008-01-02 22:30 . 2008-01-14 20:05 <REP> d-------- C:\Program Files\a-squared Anti-Malware
2008-01-02 22:13 . 2008-01-02 22:13 <REP> d-------- C:\Program Files\Alwil Software
2008-01-02 22:13 . 2007-12-04 14:04 837,496 --a------ C:\WINDOWS\system32\aswBoot.exe
2008-01-02 22:13 . 2004-01-09 10:13 380,928 --a------ C:\WINDOWS\system32\actskin4.ocx
2008-01-02 22:13 . 2007-12-04 13:54 95,608 --a------ C:\WINDOWS\system32\AvastSS.scr
2008-01-02 22:13 . 2007-12-04 15:55 94,544 --a------ C:\WINDOWS\system32\drivers\aswmon2.sys
2008-01-02 22:13 . 2007-12-04 15:56 93,264 --a------ C:\WINDOWS\system32\drivers\aswmon.sys
2008-01-02 22:13 . 2007-12-04 15:51 42,912 --a------ C:\WINDOWS\system32\drivers\aswTdi.sys
2008-01-02 22:13 . 2007-12-04 15:49 26,624 --a------ C:\WINDOWS\system32\drivers\aavmker4.sys
2008-01-02 22:13 . 2007-12-04 15:53 23,152 --a------ C:\WINDOWS\system32\drivers\aswRdr.sys
2008-01-02 21:43 . 2008-01-02 23:08 <REP> d-------- C:\Documents and Settings\Florian\.housecall6.6
2008-01-02 21:42 . 2007-09-24 23:31 69,632 --a------ C:\WINDOWS\system32\javacpl.cpl
2008-01-02 21:36 . 2008-01-02 21:39 <REP> d-------- C:\MSNFix
2008-01-02 20:12 . 2008-01-02 20:12 <REP> d-------- C:\Program Files\Trend Micro
2008-01-02 19:45 . 2008-01-02 19:45 <REP> d-------- C:\Program Files\Sunbelt Software
2007-12-29 16:42 . 2006-04-10 18:05 104,576 --a------ C:\WINDOWS\system32\drivers\wceusbsh.sys
2007-12-29 16:42 . 2006-04-10 18:05 104,576 --a--c--- C:\WINDOWS\system32\dllcache\wceusbsh.sys
2007-12-29 16:40 . 2007-12-29 16:40 <REP> d-------- C:\Program Files\Microsoft ActiveSync
2007-12-29 16:40 . 2005-10-21 02:47 30,592 --------- C:\WINDOWS\system32\drivers\rndismpx.sys
2007-12-29 16:40 . 2005-10-21 02:47 12,800 --------- C:\WINDOWS\system32\drivers\usb8023x.sys
2007-12-16 19:44 . 2007-12-16 19:44 268 --ah----- C:\sqmdata01.sqm
2007-12-16 19:44 . 2007-12-16 19:44 244 --ah----- C:\sqmnoopt02.sqm
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-06 14:07 --------- d-----w C:\Program Files\Ultra Tag Editor
2008-01-06 14:05 --------- d-----w C:\Program Files\Ludiclub
2008-01-06 14:02 --------- d-----w C:\Program Files\Free Audio Pack
2008-01-06 14:01 --------- d-----w C:\Program Files\Easy Video Splitter
2008-01-06 14:00 --------- d-----w C:\Program Files\Sony
2008-01-02 20:42 --------- d-----w C:\Program Files\Java
2007-12-24 17:32 --------- d-----w C:\Documents and Settings\Florian\Application Data\OpenOffice.org2
2007-12-04 21:53 --------- d-----w C:\Documents and Settings\Florian\Application Data\Skype
2006-02-24 21:49 56 -csh--r C:\WINDOWS\system32\C56288DB00.sys
.
((((((((((((((((((((((((((((((((((((((((((((( AWF ))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
----a-w 36,975 2005-11-10 11:03:52 C:\Program Files\Java\jre1.5.0_06\bin\bak\jusched.exe
----a-w 4,859,480 2007-04-09 21:10:02 C:\Program Files\MSN Messenger\bak\MsgPlusLive-411.exe
----a-w 5,674,352 2007-01-19 11:55:02 C:\Program Files\MSN Messenger\bak\MsnMsgr.Exe
----a-w 5,674,352 2007-01-19 10:55:02 C:\Program Files\MSN Messenger\msnmsgr.exe
----a-w 35,328 2007-02-13 18:29:00 C:\Program Files\Winamp\bak\winampa.exe
----a-w 15,360 2004-08-05 12:00:00 C:\WINDOWS\system32\bak\ctfmon.exe
----a-w 15,360 2004-08-05 12:00:00 C:\WINDOWS\system32\ctfmon.exe
----a-w 225,280 2005-12-09 13:32:18 C:\WINDOWS\system32\bak\LVCOMSX.EXE
----a-w 886,272 2002-02-09 18:48:38 C:\WINDOWS\system32\bak\LXSUPMON.EXE
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2007-01-19 11:55 5674352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25 6731312]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"a-squared"="C:\Program Files\a-squared Anti-Malware\a2guard.exe" [2008-01-02 22:32 1816208]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-06-28 23:43 8466432]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 13:00 15360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"NvCplDaemon"=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
R1 sdcplh;sdcplh;C:\WINDOWS\system32\drivers\sdcplh.sys [2005-12-07 16:21]
R3 LVPrcMon;Logitech LVPrcMon Driver;C:\WINDOWS\system32\drivers\LVPrcMon.sys [2005-12-09 14:37]
R3 USB_RNDIS_51;Broadcom USB Remote NDIS Device Driver;C:\WINDOWS\system32\DRIVERS\usb8023.sys [2005-10-21 02:47]
S3 f1e317b5-a394-4400-93f2-c4c80e5eb546;f1e317b5-a394-4400-93f2-c4c80e5eb546;D:\Player\cds300.dll []
S3 MPManF70;MPMan-F70;C:\WINDOWS\system32\Drivers\MPManF70.sys [2002-05-02 09:02]
*Newly Created Service* - PROCEXP90
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-01-15 19:08:30
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-01-15 19:09:44