Très bien, j'ai fait ce qu'il fallait avec hijackthis, et voici donc les rapports de combofix, puis celui de otmoveit:
ComboFix 08-04-07.5 - alexis 2008-04-08 18:51:25.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.2575 [GMT 2:00]
Endroit: C:\Documents and Settings\alexis\Bureau\Killbagles.exe
* Création d'un nouveau point de restauration
[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!/b/color
.
TimedOut: progfile.dat
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\WINDOWS\system32\tmp72.tmp
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_GRANDE48
-------\Service_grande48
((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-03-08 to 2008-04-08 ))))))))))))))))))))))))))))))))))))
.
2008-04-08 18:46 . 2008-04-08 18:46 <REP> d-------- C:\_OTMoveIt
2008-04-07 21:23 . 2008-04-07 21:23 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\Subversion
2008-04-07 18:10 . 2008-04-07 21:26 <REP> d-------- C:\Documents and Settings\alexis\SmitfraudFix
2008-04-07 18:10 . 2008-04-07 21:24 3,678 --a------ C:\WINDOWS\system32\tmp.reg
2008-04-06 15:54 . 2008-04-06 15:54 348,915 --a------ C:\Documents and Settings\alexis\Application Data\serial2.dat
2008-04-06 15:25 . 2008-04-06 15:25 <REP> d-------- C:\Program Files\THQ
2008-04-05 16:43 . 2008-04-05 13:45 36,442,281 --a------ C:\WINDOWS\LPT$VPN.201
2008-04-05 13:45 . 2008-04-05 13:45 36,442,281 --a------ C:\WINDOWS\VPTNFILE.201
2008-04-05 13:34 . 2008-04-05 13:45 <REP> d-------- C:\WINDOWS\AU_Temp
2008-04-05 11:43 . 2008-04-05 11:43 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\Simply Super Software
2008-04-05 11:35 . 2003-02-02 19:06 153,088 --a------ C:\WINDOWS\system32\UNRAR3.dll
2008-04-05 11:33 . 2008-04-05 11:33 <REP> d-------- C:\Documents and Settings\alexis\DoctorWeb
2008-04-05 11:02 . 2008-04-05 11:08 <REP> d-------- C:\Documents and Settings\alexis\Application Data\Spy Emergency
2008-04-05 10:16 . 2008-04-05 10:16 <REP> d-------- C:\WINDOWS\system32\Kaspersky Lab
2008-04-04 23:38 . 2008-03-29 19:31 75,856 --a------ C:\WINDOWS\system32\drivers\aswSP.sys
2008-04-04 23:38 . 2008-03-29 19:35 20,560 --a------ C:\WINDOWS\system32\drivers\aswFsBlk.sys
2008-03-30 20:05 . 2008-03-30 20:07 <REP> d-------- C:\Program Files\Sudden Strike - Resource War
2008-03-30 17:28 . 2008-03-30 17:28 <REP> d-------- C:\Program Files\SSI
2008-03-30 17:19 . 2008-04-04 18:13 <REP> d-------- C:\Program Files\Close Combat IV
2008-03-28 22:59 . 2008-03-28 22:59 <REP> d-------- C:\Program Files\WMV9_VCM
2008-03-27 21:42 . 2008-03-27 21:42 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\SUPERAntiSpyware.com
2008-03-27 21:40 . 2007-12-28 01:01 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage r‚seau
2008-03-27 21:40 . 2007-12-28 01:01 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage d'impression
2008-03-27 21:40 . 2007-12-27 17:01 <REP> d--h----- C:\Documents and Settings\Administrateur\ModŠles
2008-03-27 21:40 . 2008-04-07 21:27 <REP> d-------- C:\Documents and Settings\Administrateur\Mes documents
2008-03-27 21:40 . 2007-12-28 01:01 <REP> dr------- C:\Documents and Settings\Administrateur\Menu D‚marrer
2008-03-27 21:40 . 2007-12-28 01:01 <REP> d-------- C:\Documents and Settings\Administrateur\Favoris
2008-03-27 21:40 . 2007-12-28 01:01 <REP> d-------- C:\Documents and Settings\Administrateur\Bureau
2008-03-27 21:10 . 2008-03-27 21:10 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-03-27 21:10 . 2008-03-27 21:10 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-03-27 20:26 . 2008-03-27 20:26 58,368 --a------ C:\mxuxc.exe
2008-03-26 11:39 . 2008-03-26 11:39 <REP> d-------- C:\Documents and Settings\alexis\Application Data\DivX
2008-03-25 14:17 . 2008-03-25 14:17 <REP> d-------- C:\Program Files\Dreamcatcher
2008-03-22 23:01 . 2008-04-01 15:18 <REP> d-------- C:\Program Files\Battlefront
2008-03-22 20:22 . 2008-03-22 20:22 <REP> d-------- C:\Program Files\Fichiers communs\Macrovision Shared
2008-03-22 20:22 . 2008-03-22 20:22 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Macrovision
2008-03-22 20:22 . 2008-03-22 20:22 54,784 --a------ C:\WINDOWS\system32\drivers\CDAC11BA.EXE
2008-03-22 20:22 . 2008-03-22 20:22 12,464 --a------ C:\WINDOWS\system32\drivers\CdaC15BA.SYS
2008-03-20 16:54 . 2008-03-30 20:15 <REP> d-------- C:\Program Files\IL-2 Sturmovik - 1946
2008-03-18 00:33 . 2006-12-14 20:47 782,336 -ra------ C:\WINDOWS\system32\tmp1C4.tmp
2008-03-18 00:08 . 2006-12-14 20:47 782,336 -ra------ C:\WINDOWS\system32\tmp1A0.tmp
2008-03-16 13:11 . 2008-03-16 13:11 <REP> d-------- C:\Program Files\Bethesda Softworks
2008-03-16 13:07 . 2008-03-16 13:10 <REP> d-------- C:\Program Files\RegCleaner
2008-03-10 18:22 . 2008-03-23 19:45 <REP> d-------- C:\Program Files\westwood
2008-03-10 00:31 . 2008-03-10 00:31 <REP> d-------- C:\WINDOWS\system32\URTTEMP
2008-03-09 23:00 . 2008-03-09 23:00 <REP> d-------- C:\Documents and Settings\alexis\Application Data\InstallShield
2008-03-08 22:05 . 2008-03-08 22:05 39,424 --a------ C:\WINDOWS\rmhpjs.exe
2008-03-08 17:25 . 2008-03-08 20:36 <REP> d-------- C:\Program Files\DOSBox-0.72
2008-03-08 13:11 . 2008-03-08 13:11 <REP> d--h----- C:\WINDOWS\PIF
2008-03-08 09:27 . 2008-03-08 13:10 <REP> d-------- C:\Program Files\Hell Fighter 32
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-08 16:55 --------- d-----w C:\Program Files\FlashGet
2008-04-08 15:44 --------- d-----w C:\Program Files\eMule
2008-04-05 11:45 86,094 ----a-w C:\WINDOWS\BPMNT.dll
2008-04-05 11:45 71,749 ----a-w C:\WINDOWS\hcextoutput.dll
2008-04-05 11:45 333,576 ----a-w C:\WINDOWS\tsc.exe
2008-04-05 11:45 1,163,344 ----a-w C:\WINDOWS\vsapi32.dll
2008-04-05 09:45 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-04-04 16:14 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-04-04 15:48 --------- d-----w C:\Program Files\Steam
2008-04-04 11:45 --------- d-----w C:\Documents and Settings\alexis\Application Data\OpenOffice.org2
2008-04-03 06:15 --------- d-----w C:\Documents and Settings\alexis\Application Data\Image Zone Express
2008-03-29 17:35 94,544 ----a-w C:\WINDOWS\system32\drivers\aswmon2.sys
2008-03-29 17:29 23,152 ----a-w C:\WINDOWS\system32\drivers\aswRdr.sys
2008-03-29 17:27 42,912 ----a-w C:\WINDOWS\system32\drivers\aswTdi.sys
2008-03-29 17:26 26,944 ----a-w C:\WINDOWS\system32\drivers\aavmker4.sys
2008-03-29 16:31 --------- d-----w C:\Program Files\Messenger Plus! Live
2008-03-29 12:45 --------- d-----w C:\Documents and Settings\alexis\Application Data\uTorrent
2008-03-26 17:33 --------- d-----w C:\Program Files\Paradox Interactive
2008-03-26 09:39 --------- d-----w C:\Program Files\DivX
2008-03-25 11:12 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-03-23 08:27 --------- d-----w C:\Program Files\uTorrent
2008-03-18 08:44 --------- d-----w C:\Program Files\OpenAL
2008-03-15 13:05 --------- d-----w C:\Program Files\adslTV
2008-03-15 13:05 --------- d-----w C:\Documents and Settings\alexis\Application Data\vlc
2008-03-14 15:13 --------- d-----w C:\Program Files\SUPERAntiSpyware
2008-03-12 06:54 --------- d-----w C:\Program Files\Java
2008-03-07 16:26 --------- d-----w C:\Documents and Settings\alexis\Application Data\Bioshock
2008-03-06 20:57 --------- d-----w C:\Program Files\Electronic Arts
2008-03-05 22:14 --------- d-----w C:\Documents and Settings\alexis\Application Data\IGN_DLM
2008-03-01 13:42 --------- d-----w C:\Documents and Settings\All Users\Application Data\Messenger Plus!
2008-02-29 17:18 --------- d-----w C:\Program Files\Audacity
2008-02-28 20:40 --------- d-----w C:\Program Files\BFG
2008-02-28 20:14 --------- d-----w C:\Documents and Settings\All Users\Application Data\Trymedia
2008-02-28 18:53 --------- d-----w C:\Program Files\Bohemia Interactive
2008-02-26 16:41 271,360 ----a-w C:\WINDOWS\system32\drivers\atksgt.sys
2008-02-26 16:41 18,048 ----a-w C:\WINDOWS\system32\drivers\lirsgt.sys
2008-02-24 20:12 --------- d-----w C:\Program Files\PokerTH
2008-02-24 20:12 --------- d-----w C:\Documents and Settings\alexis\Application Data\pokerth
2008-02-23 16:35 --------- d-----w C:\Program Files\Maxis
2008-02-21 02:05 9,464 ------w C:\WINDOWS\system32\drivers\cdralw2k.sys
2008-02-21 02:05 9,336 ------w C:\WINDOWS\system32\drivers\cdr4_xp.sys
2008-02-21 02:05 43,528 ------w C:\WINDOWS\system32\drivers\PxHelp20.sys
2008-02-19 09:07 --------- d-----w C:\Program Files\Fichiers communs\Adobe
2008-02-18 11:47 --------- d-----w C:\Program Files\DeepSilver
2008-02-14 17:43 --------- d-----w C:\Program Files\Windows Live Safety Center
2008-02-14 17:37 --------- d-----w C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-02-14 17:37 --------- d-----w C:\Documents and Settings\alexis\Application Data\SUPERAntiSpyware.com
2008-02-14 17:36 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-02-14 17:14 69,689 ----a-w C:\WINDOWS\UNZIP.DLL
2008-02-14 17:14 507,904 ----a-w C:\WINDOWS\TMUPDATE.DLL
2008-02-14 17:14 286,720 ----a-w C:\WINDOWS\PATCH.EXE
2008-02-07 22:13 1 ----a-w C:\Documents and Settings\alexis\SI.bin
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\1TortoiseSVN]
@={30351346-7B7D-4FCC-81B4-1E394CA267EB}
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\2TortoiseSVN]
@={30351347-7B7D-4FCC-81B4-1E394CA267EB}
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\3TortoiseSVN]
@={30351348-7B7D-4FCC-81B4-1E394CA267EB}
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\4TortoiseSVN]
@={3035134B-7B7D-4FCC-81B4-1E394CA267EB}
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\5TortoiseSVN]
@={3035134C-7B7D-4FCC-81B4-1E394CA267EB}
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\6TortoiseSVN]
@={3035134D-7B7D-4FCC-81B4-1E394CA267EB}
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\7TortoiseSVN]
@={3035134E-7B7D-4FCC-81B4-1E394CA267EB}
[HKEY_CLASSES_ROOT\CLSID\{30351346-7B7D-4FCC-81B4-1E394CA267EB}]
2007-12-21 22:53 536576 --a------ C:\Program Files\TortoiseSVN\bin\tortoisesvn.dll
[HKEY_CLASSES_ROOT\CLSID\{30351347-7B7D-4FCC-81B4-1E394CA267EB}]
2007-12-21 22:53 536576 --a------ C:\Program Files\TortoiseSVN\bin\tortoisesvn.dll
[HKEY_CLASSES_ROOT\CLSID\{30351348-7B7D-4FCC-81B4-1E394CA267EB}]
2007-12-21 22:53 536576 --a------ C:\Program Files\TortoiseSVN\bin\tortoisesvn.dll
[HKEY_CLASSES_ROOT\CLSID\{3035134B-7B7D-4FCC-81B4-1E394CA267EB}]
2007-12-21 22:53 536576 --a------ C:\Program Files\TortoiseSVN\bin\tortoisesvn.dll
[HKEY_CLASSES_ROOT\CLSID\{3035134C-7B7D-4FCC-81B4-1E394CA267EB}]
2007-12-21 22:53 536576 --a------ C:\Program Files\TortoiseSVN\bin\tortoisesvn.dll
[HKEY_CLASSES_ROOT\CLSID\{3035134D-7B7D-4FCC-81B4-1E394CA267EB}]
2007-12-21 22:53 536576 --a------ C:\Program Files\TortoiseSVN\bin\tortoisesvn.dll
[HKEY_CLASSES_ROOT\CLSID\{3035134E-7B7D-4FCC-81B4-1E394CA267EB}]
2007-12-21 22:53 536576 --a------ C:\Program Files\TortoiseSVN\bin\tortoisesvn.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2006-03-02 14:00 15360]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-01-01 21:10 68856]
"LightScribe Control Panel"="C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe" [2007-04-19 14:26 484904]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe" [2007-05-04 11:39 149040]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2008-03-04 08:15 1481968]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 12:43 2097488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2007-03-21 08:49 16126464 C:\WINDOWS\RTHDCPL.exe]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2003-10-31 20:42 32768]
"NeroFilterCheck"="C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe" [2007-05-04 11:59 161328]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2005-05-12 00:12 49152]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2005-11-09 00:00 128920]
"TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2008-01-11 23:59 185896]
"Flashget"="C:\Program Files\FlashGet\flashget.exe" [2007-09-25 10:10 2007088]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-12-05 02:41 8523776]
"nwiz"="nwiz.exe" [2007-12-05 02:41 1626112 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-12-05 02:41 81920]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2006-03-02 14:00 15360]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 14:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-04-19 14:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\eMule\\emule.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\Program Files\\Steam\\steamapps\\nightorphe\\half-life 2 deathmatch\\hl2.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"C:\\Program Files\\Steam\\steamapps\\nightorphe\\half-life 2 episode two\\hl2.exe"=
"C:\\Program Files\\FlashGet\\flashget.exe"=
"C:\\Program Files\\Steam\\steamapps\\nightorphe\\garrysmod\\hl2.exe"=
"C:\\Program Files\\LucasArts\\Star Wars Empire at War\\GameData\\sweaw.exe"=
"C:\\Program Files\\LucasArts\\Star Wars Empire at War Forces of Corruption\\swfoc.exe"=
"C:\\Program Files\\Real\\RealPlayer\\realplay.exe"=
"C:\\WINDOWS\\pchealth\\helpctr\\binaries\\HelpCtr.exe"=
"C:\\WINDOWS\\system32\\dplaysvr.exe"=
"C:\\Program Files\\Bohemia Interactive\\ArmA\\arma.exe"=
"C:\\Program Files\\Paradox Interactive\\Doomsday\\HoI2.exe"=
"C:\\Program Files\\Dreamcatcher\\Superpower 2\\joshua.exe"=
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-03-29 19:31]
R1 tzraqlo;tzraqlo;C:\WINDOWS\twain_32\tzraqlo.dll [2008-03-27 20:26]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-03-29 19:35]
R3 SG760_XP;SAGEM 802.11g XG760 1211 Driver;C:\WINDOWS\system32\DRIVERS\WlanUZXP.sys [2005-07-13 17:37]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c1b2e531-b52c-11dc-8f66-0060b355c145}]
\Shell\AutoRun\command - J:\SETUP.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"C:\Program Files\Fichiers communs\LightScribe\LSRunOnce.exe"
.
**************************************************************************
catchme 0.3.1351 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-04-08 18:57:40
Windows 5.1.2600 Service Pack 2 NTFS
Balayage processus cach‚s ...
Balayage cach‚ autostart entries ...
Balayage des fichiers cach‚s ...
Scan termin‚ avec succŠs
Les fichiers cach‚s: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
.
**************************************************************************
.
Temps d'accomplissement: 2008-04-08 19:03:05 - machine was rebooted
ComboFix-quarantined-files.txt 2008-04-08 17:03:03
Pre-Run: 54,792,896,512 octets libres
Post-Run: 54,728,183,808 octets libres
.
2008-03-12 07:45:13 --- E O F ---
Maintenant le rapport de otmoveit:
File/Folder C:\Program Files\NETGATE\Spy Emergency 2008 not found.
File/Folder C:\Program Files\NETGATE\Spy Emergency 2008\SpyEmergency.exe not found.
OTMoveIt2 by OldTimer - Version 1.0.4.1 log created on 04082008_184606
pas de redemarrage car il n'avait pas trouvé spy emergency.