bi*onjoiur comme prevu me voila
ci joint le rapprt combofix
ComboFix 08-05-21.3 - starwars 2008-05-23 11:38:34.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.182 [GMT 2:00]
Endroit: C:\Documents and Settings\starwars\Bureau\ComboFix.exe
* Création d'un nouveau point de restauration
[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
/b/color
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Program Files\Google\googletoolbar1.dll
C:\WINDOWS\system32\AJlSCJlm.ini
C:\WINDOWS\system32\AJlSCJlm.ini2
C:\WINDOWS\system32\aKjmoUtv.ini
C:\WINDOWS\system32\aKjmoUtv.ini2
C:\WINDOWS\system32\bqyohmun.ini
C:\WINDOWS\system32\cbLUvyay.ini
C:\WINDOWS\system32\cbLUvyay.ini2
C:\WINDOWS\system32\cbXNHBTM.dll
C:\WINDOWS\system32\ccdjmdfr.ini
C:\WINDOWS\system32\cxwghnmc.ini
C:\WINDOWS\system32\DJiiSvut.ini
C:\WINDOWS\system32\DJiiSvut.ini2
C:\WINDOWS\system32\EffMlnpo.ini
C:\WINDOWS\system32\EffMlnpo.ini2
C:\WINDOWS\system32\ekbenedt.ini
C:\WINDOWS\system32\embgivaa.ini
C:\WINDOWS\system32\fehQYcfe.ini
C:\WINDOWS\system32\fehQYcfe.ini2
C:\WINDOWS\system32\fflfonvk.ini
C:\WINDOWS\system32\fqknkyro.ini
C:\WINDOWS\system32\fqqmidfy.ini
C:\WINDOWS\system32\iifgFYss.dll
C:\WINDOWS\system32\jpnpvkcs.ini
C:\WINDOWS\system32\jwmalqlm.ini
C:\WINDOWS\system32\Lortutwa.ini
C:\WINDOWS\system32\Lortutwa.ini2
C:\WINDOWS\system32\lqbyleww.ini
C:\WINDOWS\system32\nbfoqovr.ini
C:\WINDOWS\system32\NXbadfii.ini
C:\WINDOWS\system32\NXbadfii.ini2
C:\WINDOWS\system32\OoqWwyxx.ini
C:\WINDOWS\system32\OoqWwyxx.ini2
C:\WINDOWS\system32\PsvEOXbc.ini
C:\WINDOWS\system32\PsvEOXbc.ini2
C:\WINDOWS\system32\PXyxaGgh.ini
C:\WINDOWS\system32\PXyxaGgh.ini2
C:\WINDOWS\system32\QrtBdcfe.ini
C:\WINDOWS\system32\QrtBdcfe.ini2
C:\WINDOWS\system32\rkauhpgg.ini
C:\WINDOWS\system32\suBJRXbc.ini
C:\WINDOWS\system32\suBJRXbc.ini2
C:\WINDOWS\system32\Sutsutwa.ini
C:\WINDOWS\system32\Sutsutwa.ini2
C:\WINDOWS\system32\tpcsovcn.ini
C:\WINDOWS\system32\tuvvyGgh.ini
C:\WINDOWS\system32\tuvvyGgh.ini2
C:\WINDOWS\system32\twwFNqru.ini
C:\WINDOWS\system32\twwFNqru.ini2
C:\WINDOWS\system32\ubrbehvb.ini
C:\WINDOWS\system32\udxrgiah.ini
C:\WINDOWS\system32\VEhOqBeg.ini
C:\WINDOWS\system32\VEhOqBeg.ini2
C:\WINDOWS\system32\vkjdceya.ini
C:\WINDOWS\system32\vljcwmam.ini
C:\WINDOWS\system32\WinNt32.dll
C:\WINDOWS\system32\YaGjmnmp.ini
C:\WINDOWS\system32\YaGjmnmp.ini2
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_PJSAPDG
-------\Service_pjsapdg
((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-04-23 to 2008-05-23 ))))))))))))))))))))))))))))))))))))
.
2008-05-19 17:21 . 2007-07-30 19:19 38,232 --a------ C:\WINDOWS\system32\wucltui.dll.mui
2008-05-19 17:21 . 2007-07-30 19:18 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-05-19 17:21 . 2007-07-30 19:20 30,040 --a------ C:\WINDOWS\system32\wuaucpl.cpl.mui
2008-05-19 17:21 . 2007-07-30 19:19 30,040 --a------ C:\WINDOWS\system32\wuapi.dll.mui
2008-05-19 17:21 . 2007-07-30 19:18 21,336 --a------ C:\WINDOWS\system32\wuaueng.dll.mui
2008-05-19 17:03 . 2008-05-19 17:03 <REP> d-------- C:\WINDOWS\ERUNT
2008-05-17 16:51 . 2008-05-17 16:51 143 --a------ C:\WINDOWS\system32\mcrh.MSNFix
2008-05-11 17:59 . 2008-05-19 17:15 <REP> d-------- C:\SDFix
2008-05-11 17:56 . 2008-05-19 17:01 2,374 --a------ C:\WINDOWS\system32\tmp.reg
2008-05-11 17:56 . 2008-05-19 17:01 0 --a------ C:\WINDOWS\system32\tmp.MSNFix
2008-05-11 17:55 . 2007-09-06 00:22 289,144 --a------ C:\WINDOWS\system32\VCCLSID.exe
2008-05-11 17:55 . 2006-04-27 17:49 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2008-05-11 17:55 . 2008-04-24 08:10 86,528 --a------ C:\WINDOWS\system32\VACFix.exe
2008-05-11 17:55 . 2008-04-28 08:03 82,944 --a------ C:\WINDOWS\system32\IEDFix.exe
2008-05-11 17:55 . 2008-04-28 08:03 82,944 --a------ C:\WINDOWS\system32\404Fix.exe
2008-05-11 17:55 . 2003-06-05 21:13 53,248 --a------ C:\WINDOWS\system32\Process.exe
2008-05-11 17:55 . 2004-07-31 18:50 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2008-05-11 17:55 . 2007-10-04 00:36 25,600 --a------ C:\WINDOWS\system32\WS2Fix.exe
2008-05-11 17:54 . 2008-05-11 17:54 <REP> d-------- C:\VundoFix Backups
2008-05-11 17:52 . 2008-05-11 17:52 <REP> d-------- C:\Program Files\CCleaner
2008-05-11 17:47 . 2008-05-11 17:47 <REP> d-------- C:\Program Files\7-Zip
2008-05-11 17:20 . 2008-05-11 17:20 <REP> d-------- C:\Program Files\Trend Micro
2008-05-11 15:32 . 2008-05-11 15:32 <REP> d-------- C:\stdtsa
2008-05-10 19:17 . 2008-05-19 17:59 1,660 --a------ C:\WINDOWS\wininit.ini
2008-05-10 17:20 . 2008-05-14 07:01 27,136 --a------ C:\WINDOWS\system32\drivers\Eil60.sys
2008-05-10 17:20 . 2008-05-10 17:20 2 --a------ C:\-331988341
2008-05-10 17:19 . 2008-05-10 17:19 80,384 --a------ C:\mltaxc.MSNFix
2008-05-10 17:19 . 2008-05-10 17:19 1 --a------ C:\WINDOWS\system32\kr_done1de
2008-05-08 12:09 . 2008-05-08 12:09 <REP> d-------- C:\WINDOWS\system32\VirtualExpander
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-05-23 09:38 --------- d-----w C:\Program Files\Google
2008-05-19 15:39 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-05-17 07:05 --------- d-----w C:\Program Files\HomePlayer1.5.3.1
2008-05-12 08:25 --------- d-----w C:\Documents and Settings\starwars\Application Data\Azureus
2008-05-10 21:05 --------- d-----w C:\Program Files\Big Kahuna Reef
2008-04-19 08:19 --------- d-----w C:\Program Files\Azureus
2008-03-16 14:11 32,568 ----a-w C:\Documents and Settings\starwars\Application Data\GDIPFONTCACHEV1.DAT
2008-03-04 17:39 691,545 ----a-w C:\WINDOWS\unins000.exe
2005-02-01 05:03 119 ----a-w C:\WINDOWS\system32\config\systemprofile\user.bat
2005-02-01 05:03 119 ----a-w C:\Documents and Settings\starwars\user.bat
2005-02-01 05:03 119 ----a-w C:\Documents and Settings\Default User\user.bat
.
------- Sigcheck -------
2004-08-04 02:55 14336 1bd6c2f707a275cb7c16fd99fe0f31ca C:\WINDOWS\system32\svchost.exe
2005-03-02 20:20 578048 c34920eb988ce98910bd6b0417f334eb C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll
2005-03-02 20:10 578048 0df75fb73f705b011630159a43d7c354 C:\WINDOWS\system32\user32.dll
2004-08-04 02:54 82944 bc41f51a39d3b255805fdb759b7814ae C:\WINDOWS\system32\ws2_32.dll
2006-04-20 14:18 360576 b2220c618b42a2212a59d91ebd6fc4b4 C:\WINDOWS\$hf_mig$\KB917953\SP2QFE\tcpip.sys
2006-04-20 13:51 359808 1dbf125862891817f374f407626967f4 C:\WINDOWS\system32\DllCache\tcpip.sys
2006-04-20 13:51 359808 1dbf125862891817f374f407626967f4 C:\WINDOWS\system32\drivers\tcpip.sys
2004-08-04 02:55 506368 d2de785aeab0bb8ca4c14a8a199dbe4e C:\WINDOWS\system32\winlogon.exe
2004-08-04 01:14 182912 558635d3af1c7546d26067d5d9b6959e C:\WINDOWS\system32\drivers\ndis.sys
2004-08-04 01:00 29056 4448006b6bc60e6c027932cfc38d6855 C:\WINDOWS\system32\drivers\ip6fw.sys
2005-03-02 20:13 2059008 5311776074b6c13f983dc75baeac9c0c C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
2005-03-02 20:07 2058880 73fa9c95d235844a36968c7852c7dbdd C:\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
2005-03-02 20:07 2058880 73fa9c95d235844a36968c7852c7dbdd C:\WINDOWS\system32\ntkrnlpa.exe
2005-03-02 20:13 2181632 3e2a0a4a0c0b19fc113618a9562a3b2a C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
2005-03-02 20:08 2181376 63729dd0f2aae36cc52b89c05505146c C:\WINDOWS\Driver Cache\i386\ntoskrnl.exe
2005-03-02 20:08 2181376 63729dd0f2aae36cc52b89c05505146c C:\WINDOWS\system32\ntoskrnl.exe
2004-12-03 18:12 1036288 0e32ca931db10f6852ee25c7ccd4d8bf C:\WINDOWS\explorer.exe
2004-08-04 02:55 108544 732e0b1abaace15d80ec19056b0a2af9 C:\WINDOWS\system32\services.exe
2004-08-04 02:54 13312 9f3744a5c6f49291a7a685040a013399 C:\WINDOWS\system32\lsass.exe
2004-08-04 02:54 15360 5584247b568c2e53934873f4b655fe6a C:\WINDOWS\system32\ctfmon.exe
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{07b2a86a-c40f-433a-be90-6318943f1b67}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0f3ebb87-4831-4001-b44e-617805214538}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{2484b0a2-be7b-4f18-8b42-bb373c1d543a}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{2512dc24-38b6-452c-8892-490e5931b479}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{2634CFF2-9F9E-47FC-8270-702B26E982DE}]
C:\WINDOWS\system32\urqNFwwt.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{2d398ab0-e0c8-4857-b34d-42b2cdba890b}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{368b752a-01d5-4529-a66b-e5cd5a9ee344}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{39052101-ebbe-4f01-bc4a-41d759c3640d}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{3963e43e-ee7a-46ab-ae46-53c05477d291}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{3d454eb8-8941-4e63-9c7f-c1c983a0b766}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{45E45DCB-3824-4F25-A99D-105401B6591F}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{58957896-c7a4-4e66-a067-1cc2fe962aa0}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{740d5a25-e00b-49e0-939f-b2c92dc3aac3}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{75c44daf-bed4-4bea-bfdd-01d5811db072}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{76f7d35f-74b0-41d6-88e8-3195034d8e2e}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9967A2B5-5591-4B19-9757-0BFC2FFC3C3D}]
C:\WINDOWS\system32\efcdBtrQ.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{b9ab28fa-ed73-4e5e-ba11-0925d85120d1}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{bfa78864-efc8-473c-8fe1-c5f47bc65924}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{c1f29f1c-e20f-4a1d-9f76-0aac3aecbbbd}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{c687269c-54e1-4020-9ff0-5e36c94cc7a1}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{c9978c24-54ff-416d-9e60-630197f0a881}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{d682dd9e-d239-480b-82ed-efcc897b1b6b}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{dbf08d74-10d0-4743-9450-569df1972349}]
C:\WINDOWS\system32\opnlMffE.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 02:54 15360]
"LClock"="lclock.exe" [2004-12-08 19:06 65536 C:\WINDOWS\LClock.exe]
"SuperCopier2.exe"="C:\Program Files\SuperCopier2\SuperCopier2.exe" [2005-03-14 01:37 1057280]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 12:43 2097488]
"Shareaza"="C:\Program Files\Shareaza\Shareaza.exe" [2008-01-01 18:49 4739072]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SiSUSBRG"="C:\WINDOWS\SiSUSBrg.exe" [2002-07-12 12:15 106496]
"SiSPower"="SiSPower.dll" [2005-01-04 10:54 49152 C:\WINDOWS\system32\SiSPower.dll]
"FLMOFFICE4DMOUSE"="C:\Program Files\Trust\MI-4500X WIRELESS OPTICAL MOUSE\Mouse32a.exe" [2007-03-01 18:32 370176]
"SiSRaid"="C:\Program Files\Silicon Integrated Systems\SiSRaidPackage\SRaid.exe" [2004-12-22 18:32 892928]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_12\bin\jusched.exe" [2007-05-02 04:15 75520]
"SoundMan"="SOUNDMAN.EXE" [2004-12-22 11:09 77824 C:\WINDOWS\soundman.exe]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 23:16 39792]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 02:54 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-09-28 03:17 443968]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"LSD_III"="C:\WINDOWS\LSD\end.cmd" [2002-12-22 15:56 2176]
"tscuninstall"="C:\WINDOWS\system32\tscupgrd.exe" [2004-08-04 02:37 44544]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"ForceClassicControlPanel"= 1 (0x1)
"NoSMBalloonTip"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\iifgFYss]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WinNt32]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.l3acm"= l3codecp.acm
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\cfi25.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\eil60.sys]
@="Driver"
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Utility Tray.lnk]
path=C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Utility Tray.lnk
backup=C:\WINDOWS\pss\Utility Tray.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
--a------ 2007-01-19 12:55 5674352 C:\Program Files\MSN Messenger\MsnMsgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a------ 2001-07-09 12:50 155648 C:\WINDOWS\system32\NeroCheck.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\IncrediMail\\bin\\ImpCnt.exe"=
"C:\\Program Files\\HomePlayer1.5.3.1\\HomePlayer.exe"=
"C:\\Program Files\\Azureus\\Azureus.exe"=
"C:\\Program Files\\Shareaza\\Shareaza.exe"=
"C:\\WINDOWS\\system32\\LEXPPS.EXE"=
R0 eil60;eil60;C:\WINDOWS\system32\Drivers\Eil60.sys [2008-05-14 07:01]
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-03-29 19:31]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-03-29 19:35]
R3 usbstor;Pilote de stockage de masse USB;C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2002-12-22 21:53]
S0 cfi25;cfi25;C:\WINDOWS\system32\Drivers\Cfi25.sys []
S3 usbscan;Pilote de scanneur USB;C:\WINDOWS\system32\DRIVERS\usbscan.sys [2002-12-22 22:53]
.
Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'
"2007-02-08 07:03:13 C:\WINDOWS\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job"