Tien le rapport de combo fix
ComboFix 08-02-25.3 - Ganjaman 2008-02-28 18:54:00.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.1164 [GMT 1:00]
Endroit: C:\Documents and Settings\Ganjaman\Bureau\ComboFix.exe
* Création d'un nouveau point de restauration
[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!/b/color
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Ganjaman\ravmonlog
.
((((((((((((((((((((((((((((( Fichiers créés 2008-01-28 to 2008-02-28 ))))))))))))))))))))))))))))))))))))
.
2008-02-27 22:51 . 2008-02-27 22:54 <REP> d-------- C:\Program Files\SUPERAntiSpyware
2008-02-27 22:51 . 2008-02-27 22:51 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-02-27 22:51 . 2008-02-27 22:51 <REP> d-------- C:\Documents and Settings\Ganjaman\Application Data\SUPERAntiSpyware.com
2008-02-27 22:51 . 2008-02-27 22:51 <REP> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-02-27 21:52 . 2008-02-27 21:52 <REP> d-------- C:\Program Files\Panda Security
2008-02-27 05:52 . 2008-02-27 05:55 <REP> d-------- C:\fixwareout
2008-02-27 03:00 . 2008-02-27 03:00 <REP> d-------- C:\Program Files\MSXML 4.0
2008-02-26 19:11 . 2008-02-27 05:41 2,930 --a------ C:\WINDOWS\system32\tmp.reg
2008-02-26 19:09 . 2007-09-05 23:22 289,144 --a------ C:\WINDOWS\system32\VCCLSID.exe
2008-02-26 19:09 . 2006-04-27 16:49 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2008-02-26 19:09 . 2008-02-22 18:44 86,016 --a------ C:\WINDOWS\system32\VACFix.exe
2008-02-26 19:09 . 2008-02-08 10:37 82,432 --a------ C:\WINDOWS\system32\IEDFix.exe
2008-02-26 19:09 . 2003-06-05 20:13 53,248 --a------ C:\WINDOWS\system32\Process.exe
2008-02-26 19:09 . 2004-07-31 17:50 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2008-02-26 19:09 . 2007-10-03 23:36 25,600 --a------ C:\WINDOWS\system32\WS2Fix.exe
2008-02-26 18:30 . 2008-02-26 18:30 <REP> d-------- C:\Program Files\Trend Micro
2008-02-26 16:33 . 2008-02-27 21:52 2,374 --a------ C:\WINDOWS\mozver.dat
2008-02-26 16:29 . 2008-02-26 16:29 0 --a------ C:\WINDOWS\nsreg.dat
2008-02-25 03:47 . 2008-02-25 03:47 <REP> d-------- C:\Documents and Settings\Ganjaman\Application Data\Nero
2008-02-25 03:43 . 2008-02-25 03:43 <REP> d-------- C:\Program Files\Nero
2008-02-25 03:43 . 2008-02-25 03:45 <REP> d-------- C:\Program Files\Fichiers communs\Nero
2008-02-25 03:43 . 2008-02-25 03:43 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Nero
2008-02-25 01:49 . 2008-02-25 02:14 <REP> d-------- C:\install XP
2008-02-25 01:48 . 2008-02-25 02:16 <REP> d-------- C:\Program Files\nLite
2008-02-23 21:54 . 2008-02-23 21:54 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-02-23 21:54 . 2008-02-23 21:56 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-02-23 19:50 . 2008-02-23 20:47 <REP> d-------- C:\Program Files\World of Warcraft
2008-02-23 19:35 . 2008-02-23 19:35 <REP> d-------- C:\Program Files\VirginMega
2008-02-23 19:34 . 2008-02-23 19:34 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Downloaded Installations
2008-02-23 19:02 . 2008-02-23 19:02 <REP> d-------- C:\Program Files\Windows Media Connect 2
2008-02-23 19:00 . 2008-02-23 19:00 <REP> d-------- C:\WINDOWS\system32\LogFiles
2008-02-23 19:00 . 2008-02-23 19:01 <REP> d-------- C:\WINDOWS\system32\drivers\UMDF
2008-02-23 18:49 . 2008-02-23 18:49 <REP> d-------- C:\Program Files\DivX
2008-02-23 12:49 . 2008-02-28 18:26 <REP> d-------- C:\Program Files\Steam
2008-02-23 00:28 . 2008-02-23 00:28 <REP> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-02-23 00:25 . 2008-02-23 00:25 268 --ah----- C:\sqmdata02.sqm
2008-02-23 00:25 . 2008-02-23 00:25 244 --ah----- C:\sqmnoopt02.sqm
2008-02-23 00:17 . 2008-02-23 20:45 <REP> d-------- C:\Documents and Settings\Ganjaman\Contacts
2008-02-22 19:53 . 2008-02-23 21:38 <REP> d-------- C:\Program Files\Fichiers communs\Blizzard Entertainment
2008-02-22 17:59 . 2005-10-14 07:10 1,114,674 --a------ C:\WINDOWS\system32\drivers\ativcaxx.cpa
2008-02-22 17:59 . 2005-10-14 07:10 58,560 --a------ C:\WINDOWS\system32\drivers\ativckxx.vp
2008-02-22 17:59 . 2006-01-24 20:01 26,928 --a------ C:\WINDOWS\system32\drivers\ativvpxx.vp
2008-02-22 17:59 . 2005-10-14 07:10 929 --a------ C:\WINDOWS\system32\drivers\ativcaxx.vp
2008-02-22 14:35 . 2008-02-22 14:35 268 --ah----- C:\sqmdata01.sqm
2008-02-22 14:35 . 2008-02-22 14:35 244 --ah----- C:\sqmnoopt01.sqm
2008-02-22 13:02 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll
2008-02-22 13:02 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\system32\muweb.dll
2008-02-22 13:02 . 2007-07-30 19:18 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-02-22 12:58 . 2008-02-22 12:58 268 --ah----- C:\sqmdata00.sqm
2008-02-22 12:58 . 2008-02-22 12:58 244 --ah----- C:\sqmnoopt00.sqm
2008-02-22 12:58 . 2008-02-28 18:23 121 --a------ C:\WINDOWS\bdagent.INI
2008-02-22 12:55 . 2008-02-22 12:55 <REP> d-------- C:\Program Files\BitDefender
2008-02-22 12:55 . 2008-02-22 12:55 <REP> d-------- C:\Documents and Settings\Ganjaman\Application Data\Bitdefender
2008-02-22 12:55 . 2008-02-22 12:55 <REP> d-------- C:\Documents and Settings\All Users\Application Data\BitDefender
2008-02-22 12:54 . 2008-02-22 12:55 <REP> d-------- C:\Program Files\Fichiers communs\BitDefender
2008-02-22 12:49 . 2008-02-22 12:49 <REP> d----c--- C:\WINDOWS\system32\DRVSTORE
2008-02-22 12:45 . 2008-02-22 12:49 <REP> d-------- C:\Program Files\Windows Live
2008-02-22 12:45 . 2008-02-22 12:49 <REP> d--hsc--- C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-02-22 12:45 . 2008-02-22 12:45 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-02-22 12:37 . 2008-02-22 12:37 <REP> d-------- C:\WINDOWS\system32\AlertModule
2008-02-22 12:37 . 2003-08-04 14:22 94,208 --a------ C:\WINDOWS\system32\W32n50.dll
2008-02-22 12:37 . 2004-08-23 14:49 40,960 --a------ C:\WINDOWS\system32\FTRTSVC.exe
2008-02-22 12:37 . 2005-10-06 14:55 36,864 --a------ C:\WINDOWS\system32\IfHelper.dll
2008-02-22 12:37 . 2004-08-23 14:50 32,768 --a------ C:\WINDOWS\system32\WooDial2000.dll
2008-02-22 12:37 . 2003-08-04 14:22 16,128 --------- C:\WINDOWS\system32\PCANDIS5.SYS
2008-02-22 12:36 . 2008-02-28 18:52 <REP> d-------- C:\Program Files\Wanadoo
2008-02-22 12:34 . 2008-02-22 12:34 <REP> d-------- C:\Program Files\Securitoo
2008-02-22 12:34 . 2008-02-22 12:34 <REP> d-------- C:\Program Files\Inventel
2008-02-22 11:10 . 2008-02-22 11:10 <REP> d-------- C:\Program Files\Warcraft
2008-02-22 10:18 . 2007-07-30 19:19 43,352 --a------ C:\WINDOWS\system32\wups2.dll
2008-02-22 10:18 . 2007-07-30 19:19 38,232 --a------ C:\WINDOWS\system32\wucltui.dll.mui
2008-02-22 10:18 . 2007-07-30 19:20 30,040 --a------ C:\WINDOWS\system32\wuaucpl.cpl.mui
2008-02-22 10:18 . 2007-07-30 19:19 30,040 --a------ C:\WINDOWS\system32\wuapi.dll.mui
2008-02-22 10:18 . 2007-07-30 19:18 21,336 --a------ C:\WINDOWS\system32\wuaueng.dll.mui
2008-02-22 10:17 . 2008-02-22 10:17 <REP> d--hs---- C:\Documents and Settings\Ganjaman\UserData
2008-02-22 10:16 . 2007-09-24 23:31 69,632 --a------ C:\WINDOWS\system32\javacpl.cpl
2008-02-22 10:09 . 2008-02-22 10:09 <REP> d-------- C:\Program Files\Fichiers communs\ArcSoft
2008-02-22 10:09 . 2008-02-22 10:09 <REP> d-------- C:\Program Files\Acer
2008-02-22 10:09 . 2005-02-23 14:58 11,776 --a------ C:\WINDOWS\system32\drivers\afc.sys
2008-02-22 10:08 . 1995-08-01 04:44 212,480 --a------ C:\WINDOWS\PCDLIB32.DLL
2008-02-22 10:07 . 2005-12-16 03:04 <REP> d--h----- C:\Documents and Settings\Ganjaman\Voisinage réseau
2008-02-22 10:07 . 2005-12-16 03:04 <REP> d--h----- C:\Documents and Settings\Ganjaman\Voisinage d'impression
2008-02-22 10:07 . 2008-02-22 17:19 <REP> d--h----- C:\Documents and Settings\Ganjaman\Modèles
2008-02-22 10:07 . 2008-02-27 09:07 <REP> dr------- C:\Documents and Settings\Ganjaman\Mes documents
2008-02-22 10:07 . 2005-12-16 03:04 <REP> dr------- C:\Documents and Settings\Ganjaman\Menu Démarrer
2008-02-22 10:07 . 2008-02-27 09:06 <REP> dr------- C:\Documents and Settings\Ganjaman\Favoris
2008-02-22 10:07 . 2008-02-28 18:52 <REP> d-------- C:\Documents and Settings\Ganjaman\Bureau
2008-02-22 10:07 . 2004-08-05 06:00 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
2008-02-22 10:03 . 2008-02-22 10:03 8,192 --a------ C:\WINDOWS\REGLOCS.OLD
2008-02-22 10:02 . 2001-08-23 17:04 12,288 --a------ C:\WINDOWS\system32\drivers\mouhid.sys
2008-02-21 03:11 . 2008-02-21 03:11 3,162 --a------ C:\WINDOWS\system32\dtu_fr.qm
2008-02-21 03:05 . 2008-02-21 03:05 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2008-02-21 03:05 . 2008-02-21 03:05 1,044,480 --a------ C:\WINDOWS\system32\libdivx.dll
2008-02-21 03:05 . 2008-02-21 03:05 524,288 --a------ C:\WINDOWS\system32\DivXsm.exe
2008-02-21 03:05 . 2008-02-21 03:05 200,704 --a------ C:\WINDOWS\system32\ssldivx.dll
2008-02-21 03:05 . 2008-02-21 03:05 9,878 --a------ C:\WINDOWS\system32\dsm_fr.qm
2008-02-21 03:05 . 2008-02-21 03:05 4,816 --a------ C:\WINDOWS\system32\divxsm.tlb
2008-02-21 03:03 . 2008-02-21 03:03 630,784 --a------ C:\WINDOWS\system32\divxdec.ax
2008-02-21 03:03 . 2008-02-21 03:03 352,401 --a------ C:\WINDOWS\system32\DivXMedia.ax
2008-02-21 03:03 . 2008-02-21 03:03 156,992 --a------ C:\WINDOWS\system32\DivXCodecVersionChecker.exe
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-22 16:36 --------- d-----w C:\Program Files\Services en ligne
2008-02-22 16:36 --------- d-----w C:\Program Files\Realtek
2008-02-22 16:30 --------- d-----w C:\Program Files\microsoft frontpage
2008-02-22 16:29 --------- d-----w C:\Program Files\Fichiers communs\NewTech Infosystems
2008-02-22 16:29 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-02-22 16:29 --------- d-----w C:\Program Files\Fichiers communs\Adobe
2008-02-22 10:02 --------- d-----w C:\Program Files\Fichiers communs\Symantec Shared
2008-02-22 09:16 --------- d-----w C:\Program Files\Java
2008-02-22 09:09 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-22 09:08 --------- d-----w C:\Program Files\NewTech Infosystems
2008-02-21 02:04 823,296 ----a-w C:\WINDOWS\system32\divx_xx0c.dll
2008-02-21 02:04 823,296 ----a-w C:\WINDOWS\system32\divx_xx07.dll
2008-02-21 02:04 81,920 ----a-w C:\WINDOWS\system32\dpl100.dll
2008-02-21 02:04 802,816 ----a-w C:\WINDOWS\system32\divx_xx11.dll
2008-02-21 02:04 682,496 ----a-w C:\WINDOWS\system32\DivX.dll
2008-02-21 02:04 593,920 ----a-w C:\WINDOWS\system32\dpuGUI11.dll
2008-02-21 02:04 57,344 ----a-w C:\WINDOWS\system32\dpv11.dll
2008-02-21 02:04 53,248 ----a-w C:\WINDOWS\system32\dpuGUI10.dll
2008-02-21 02:04 344,064 ----a-w C:\WINDOWS\system32\dpus11.dll
2008-02-21 02:04 294,912 ----a-w C:\WINDOWS\system32\dpu11.dll
2008-02-21 02:04 294,912 ----a-w C:\WINDOWS\system32\dpu10.dll
2008-02-21 02:04 196,608 ----a-w C:\WINDOWS\system32\dtu100.dll
2008-01-11 05:36 44,544 ------w C:\WINDOWS\system32\dllcache\pngfilt.dll
2008-01-07 16:41 196,368 ----a-w C:\WINDOWS\system32\drivers\bdfsfltr.sys
2007-12-19 22:53 347,136 ------w C:\WINDOWS\system32\dllcache\dxtmsft.dll
2007-12-18 09:51 179,584 ----a-w C:\WINDOWS\system32\dllcache\mrxdav.sys
2007-12-13 18:09 972,072 ----a-w C:\WINDOWS\UNNeroMediaHome.exe
2007-12-08 09:38 3,592,192 ------w C:\WINDOWS\system32\dllcache\mshtml.dll
2007-12-07 00:47 474,624 ------w C:\WINDOWS\system32\dllcache\shlwapi.dll
2007-12-07 00:47 152,064 ----a-w C:\WINDOWS\system32\dllcache\cdfview.dll
2007-12-07 00:47 1,499,648 ------w C:\WINDOWS\system32\dllcache\shdocvw.dll
2007-12-07 00:47 1,056,768 ----a-w C:\WINDOWS\system32\dllcache\danim.dll
2007-12-07 00:47 1,024,512 ------w C:\WINDOWS\system32\dllcache\browseui.dll
2007-12-06 11:03 625,664 ------w C:\WINDOWS\system32\dllcache\iexplore.exe
2007-12-06 11:02 70,656 ------w C:\WINDOWS\system32\dllcache\ie4uinit.exe
2007-12-06 11:00 13,824 ------w C:\WINDOWS\system32\dllcache\ieudinit.exe
2007-12-06 04:59 161,792 ------w C:\WINDOWS\system32\dllcache\ieakui.dll
2007-12-04 18:41 550,912 ----a-w C:\WINDOWS\system32\oleaut32.dll
2007-12-04 18:41 550,912 ----a-w C:\WINDOWS\system32\dllcache\oleaut32.dll
2007-12-04 08:59 972,072 ----a-w C:\WINDOWS\UNRecode.exe
2007-12-03 17:04 95,600 ----a-w C:\WINDOWS\system32\NeroCo.dll
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{381FFDE8-2394-4F90-B10D-FC6124A40F8C}
[HKEY_CLASSES_ROOT\clsid\{381ffde8-2394-4f90-b10d-fc6124a40f8c}]
[HKEY_CLASSES_ROOT\BitDefender Toolbar]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WOOKIT"="C:\PROGRA~1\Wanadoo\Shell.exe" [2004-08-23 14:50 122880]
"Steam"="C:\Program Files\Steam\Steam.exe" [2008-02-23 13:00 1266936]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 06:00 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WOOTASKBARICON"="C:\PROGRA~1\Wanadoo\GestMaj.exe" [2004-10-14 16:55 32768]
"WOOWATCH"="C:\PROGRA~1\Wanadoo\Watch.exe" [2004-08-23 14:49 20480]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 06:00 15360]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 13:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-04-19 13:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Adobe Reader Speed Launch.lnk]
path=C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Adobe Reader Speed Launch.lnk
backup=C:\WINDOWS\pss\Adobe Reader Speed Launch.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
--a------ 2005-05-03 18:43 69632 C:\WINDOWS\Alcmtr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AspireService]
--a------ 2005-09-29 16:07 114688 C:\Program Files\Acer\Acer eMode Management\AspireService.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDAgent]
--a------ 2008-02-22 12:57 360448 C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitDefender Antiphishing Helper]
--a------ 2007-10-09 15:46 61440 C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Bittorrent]
C:\WINDOWS\bittorrent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
--a------ 2004-08-05 06:00 15360 C:\WINDOWS\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\High Definition Audio Property Page Shortcut]
--------- 2005-01-07 17:07 61952 C:\WINDOWS\system32\HdAShCut.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
--a------ 2004-08-05 06:00 208952 C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchApp]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MediaSync]
--a------ 2005-09-21 13:48 425984 C:\Program Files\Acer\Acer eConsole\MediaSync.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSPY2002]
--a------ 2004-08-05 06:00 59392 C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]
--a------ 2007-12-03 14:21 2213160 C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a------ 2007-03-01 14:57 153136 C:\Program Files\Fichiers communs\Nero\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ntiMUI]
--a------ 2005-05-11 18:15 45056 c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
--a------ 2004-08-05 06:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
--a------ 2004-08-05 06:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
--a------ 2004-11-02 20:24 32768 C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
--a------ 2005-09-22 13:36 14854144 C:\WINDOWS\RTHDCPL.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2007-09-25 01:11 132496 C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
--a------ 2007-06-21 14:06 1318912 C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\Steam\\SteamApps\\auronar\\counter-strike source\\hl2.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"14971:TCP"= 14971:TCP:NortonAV
"15181:TCP"= 15181:TCP:NortonAV
"16294:TCP"= 16294:TCP:NortonAV
R0 m5287;m5287;C:\WINDOWS\system32\drivers\m5287.sys [2005-02-05 08:00]
R1 bdftdif;bdftdif;C:\Program Files\Fichiers communs\BitDefender\BitDefender Firewall\bdftdif.sys [2007-11-12 16:28]
R3 BDSelfPr;BDSelfPr;C:\Program Files\BitDefender\BitDefender 2008\bdselfpr.sys [2008-02-22 12:57]
R3 scan;BitDefender Threat Scanner;C:\WINDOWS\System32\svchost.exe [2004-08-05 06:00]
S3 bdfsfltr;bdfsfltr;C:\WINDOWS\system32\drivers\bdfsfltr.sys [2008-01-07 17:41]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bdx REG_MULTI_SZ scan
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{dd7d114a-e47b-11dc-b8b5-0016ae9523eb}]
\Shell\Auto\command - K:\bittorrent.exe e
\Shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL bittorrent.exe e
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-28 18:54:48
Windows 5.1.2600 Service Pack 2 NTFS
Balayage processus cachés ...
Balayage caché autostart entries ...
Balayage des fichiers cachés ...
Scan terminé avec succès
Les fichiers cachés: 0
**************************************************************************
.
Temps d'accomplissement: 2008-02-28 18:55:11
ComboFix-quarantined-files.txt 2008-02-28 17:55:10
.
2008-02-27 02:00:37 --- E O F ---