Combofix :
ComboFix 08-05-29.1 - Kiki 2008-05-30 19:36:11.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.1519 [GMT 2:00]
Endroit: C:\Documents and Settings\Kiki\Bureau\ComboFix.exe
* Création d'un nouveau point de restauration
[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!/b/color
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\All Users\Application Data\Starware316
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\FindIt.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\FindItHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\findithotxp.png
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\finditxp.png
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Highlight.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\HighlightHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\highlighthotxp.png
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\highlightxp.png
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Reference.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\ReferenceHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\referencehotxp.png
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\referencexp.png
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\screensaver.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Screensavers0.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\starware_toolbar_icon.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Weather.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\weatherhotxp.png
C:\Documents and Settings\All Users\Application Data\Starware316\buttons\weatherxp.png
C:\Documents and Settings\All Users\Application Data\Starware316\contexts\error.xml
C:\Documents and Settings\All Users\Application Data\Starware316\contexts\Related.xml
C:\Documents and Settings\All Users\Application Data\Starware316\contexts\Travel.xml
C:\Documents and Settings\All Users\Application Data\Starware316\images\walertXP.bmp
C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\ProductMessagingConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\ProductMessagingConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\SimpleUpdateConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\SimpleUpdateConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\TimerManagerConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\TimerManagerConfig.xml.backup
C:\Documents and Settings\All Users\documents\setup.exe
C:\Documents and Settings\Kiki\Application Data\Starware316
C:\Documents and Settings\Kiki\Application Data\Starware316\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\Configurator\Configurator.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\Configurator\Configurator.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\Games\GamesOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\Games\GamesOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\Games\images\active\Games0.bmp
C:\Documents and Settings\Kiki\Application Data\Starware316\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\Manager\ManagerOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Kiki\Application Data\Starware316\Movies\MoviesOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\Reference\ReferenceOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\Reference\ReferenceOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\Screensavers\ScreensaversOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\Screensavers\ScreensaversOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Kiki\Application Data\Starware316\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\TravelSearch\TravelSearchOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\TravelSearch\TravelSearchOptions.xml.backup
C:\Documents and Settings\Kiki\Application Data\Starware316\Weather\AlertArchive.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\Weather\WeatherOptions.xml
C:\Documents and Settings\Kiki\Application Data\Starware316\Weather\WeatherOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316
C:\Documents and Settings\Marine\Application Data\Starware316\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Marine\Application Data\Starware316\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\Configurator\Configurator.xml
C:\Documents and Settings\Marine\Application Data\Starware316\Configurator\Configurator.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\Games\GamesOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\Games\GamesOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\Games\images\active\Games0.bmp
C:\Documents and Settings\Marine\Application Data\Starware316\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Marine\Application Data\Starware316\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\Manager\ManagerOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Marine\Application Data\Starware316\Movies\MoviesOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\Reference\ReferenceOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\Reference\ReferenceOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\Screensavers\ScreensaversOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\Screensavers\ScreensaversOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Marine\Application Data\Starware316\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\TravelSearch\TravelSearchOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\TravelSearch\TravelSearchOptions.xml.backup
C:\Documents and Settings\Marine\Application Data\Starware316\Weather\AlertArchive.xml
C:\Documents and Settings\Marine\Application Data\Starware316\Weather\WeatherOptions.xml
C:\Documents and Settings\Marine\Application Data\Starware316\Weather\WeatherOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316
C:\Documents and Settings\Nini\Application Data\Starware316\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Nini\Application Data\Starware316\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\Configurator\Configurator.xml
C:\Documents and Settings\Nini\Application Data\Starware316\Configurator\Configurator.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\Games\GamesOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\Games\GamesOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\Games\images\active\Games0.bmp
C:\Documents and Settings\Nini\Application Data\Starware316\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Nini\Application Data\Starware316\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\Manager\ManagerOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Nini\Application Data\Starware316\Movies\MoviesOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\Reference\ReferenceOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\Reference\ReferenceOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\Screensavers\ScreensaversOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\Screensavers\ScreensaversOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Nini\Application Data\Starware316\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\TravelSearch\TravelSearchOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\TravelSearch\TravelSearchOptions.xml.backup
C:\Documents and Settings\Nini\Application Data\Starware316\Weather\AlertArchive.xml
C:\Documents and Settings\Nini\Application Data\Starware316\Weather\WeatherOptions.xml
C:\Documents and Settings\Nini\Application Data\Starware316\Weather\WeatherOptions.xml.backup
C:\Program Files\antiviirus.exe
C:\Program Files\Starware316
C:\Program Files\Starware316\brand.bmp
C:\Program Files\Starware316\icons\star_16.ico
C:\Program Files\Starware316\Starware316Config.xml
C:\Program Files\Starware316\Starware316Uninstall.exe
C:\Program Files\tmp0.exe
C:\Program Files\tmp1.exe
C:\Program Files\tmp2.exe
C:\Program Files\WhenUSearch
C:\Program Files\WhenUSearch\Content\css\dialog.css
C:\Program Files\WhenUSearch\Content\css\menu.css
C:\Program Files\WhenUSearch\Content\css\module_weather.css
C:\Program Files\WhenUSearch\Content\css\module_weather_dialog.css
C:\Program Files\WhenUSearch\Content\css\quick.css
C:\Program Files\WhenUSearch\Content\customize.html
C:\Program Files\WhenUSearch\Content\daemon.ico
C:\Program Files\WhenUSearch\Content\dialog.css
C:\Program Files\WhenUSearch\Content\global.js
C:\Program Files\WhenUSearch\Content\images\add_image.gif
C:\Program Files\WhenUSearch\Content\images\add_image_down.gif
C:\Program Files\WhenUSearch\Content\images\add_image_on.gif
C:\Program Files\WhenUSearch\Content\images\arrow_down.gif
C:\Program Files\WhenUSearch\Content\images\arrow_down_on.gif
C:\Program Files\WhenUSearch\Content\images\arrow_right.gif
C:\Program Files\WhenUSearch\Content\images\arrow_right_on.gif
C:\Program Files\WhenUSearch\Content\images\button_go.gif
C:\Program Files\WhenUSearch\Content\images\button_go_down.gif
C:\Program Files\WhenUSearch\Content\images\button_go_on.gif
C:\Program Files\WhenUSearch\Content\images\button_search_down.gif
C:\Program Files\WhenUSearch\Content\images\button_search_off.gif
C:\Program Files\WhenUSearch\Content\images\button_search_on.gif
C:\Program Files\WhenUSearch\Content\images\button_search_sm_down.gif
C:\Program Files\WhenUSearch\Content\images\button_search_sm_off.gif
C:\Program Files\WhenUSearch\Content\images\button_search_sm_on.gif
C:\Program Files\WhenUSearch\Content\images\button_specials_on.gif
C:\Program Files\WhenUSearch\Content\images\corner_bottom_left.gif
C:\Program Files\WhenUSearch\Content\images\corner_top_left.gif
C:\Program Files\WhenUSearch\Content\images\delete_button.gif
C:\Program Files\WhenUSearch\Content\images\delete_button_down.gif
C:\Program Files\WhenUSearch\Content\images\delete_button_on.gif
C:\Program Files\WhenUSearch\Content\images\divider.gif
C:\Program Files\WhenUSearch\Content\images\dot_orange.gif
C:\Program Files\WhenUSearch\Content\images\dt_min_logo.gif
C:\Program Files\WhenUSearch\Content\images\gear.gif
C:\Program Files\WhenUSearch\Content\images\gear_down.gif
C:\Program Files\WhenUSearch\Content\images\gear_grey.gif
C:\Program Files\WhenUSearch\Content\images\gear_on.gif
C:\Program Files\WhenUSearch\Content\images\instructions_border_corner.gif
C:\Program Files\WhenUSearch\Content\images\instructions_border_right.gif
C:\Program Files\WhenUSearch\Content\images\instructions_border_top.gif
C:\Program Files\WhenUSearch\Content\images\link.gif
C:\Program Files\WhenUSearch\Content\images\lock.gif
C:\Program Files\WhenUSearch\Content\images\lock_down.gif
C:\Program Files\WhenUSearch\Content\images\lock_grey.gif
C:\Program Files\WhenUSearch\Content\images\lock_on.gif
C:\Program Files\WhenUSearch\Content\images\logo_searchbar_down.gif
C:\Program Files\WhenUSearch\Content\images\logo_searchbar_off.gif
C:\Program Files\WhenUSearch\Content\images\logo_searchbar_on.gif
C:\Program Files\WhenUSearch\Content\images\main_bg.gif
C:\Program Files\WhenUSearch\Content\images\manage.gif
C:\Program Files\WhenUSearch\Content\images\manage_down.gif
C:\Program Files\WhenUSearch\Content\images\manage_grey.gif
C:\Program Files\WhenUSearch\Content\images\manage_on.gif
C:\Program Files\WhenUSearch\Content\images\menu_aim_bw.gif
C:\Program Files\WhenUSearch\Content\images\menu_arrow_right.gif
C:\Program Files\WhenUSearch\Content\images\menu_bg.gif
C:\Program Files\WhenUSearch\Content\images\menu_left_bg.gif
C:\Program Files\WhenUSearch\Content\images\menu_main_bw.gif
C:\Program Files\WhenUSearch\Content\images\menu_pbandit_bw.gif
C:\Program Files\WhenUSearch\Content\images\menu_right_bg.gif
C:\Program Files\WhenUSearch\Content\images\menu_ucontrol_bw.gif
C:\Program Files\WhenUSearch\Content\images\menu_ucontrol_filler_bw.gif
C:\Program Files\WhenUSearch\Content\images\menu_whenu_bw.gif
C:\Program Files\WhenUSearch\Content\images\message_alert.gif
C:\Program Files\WhenUSearch\Content\images\min_new_res_menu.gif
C:\Program Files\WhenUSearch\Content\images\min_new_res_menu_down.gif
C:\Program Files\WhenUSearch\Content\images\min_new_res_menu_on.gif
C:\Program Files\WhenUSearch\Content\images\min_new_results_new.gif
C:\Program Files\WhenUSearch\Content\images\min_new_results_new_down.gif
C:\Program Files\WhenUSearch\Content\images\min_new_results_new_on.gif
C:\Program Files\WhenUSearch\Content\images\min_new_results_new_text.gif
C:\Program Files\WhenUSearch\Content\images\min_new_results_new_text_on.gif
C:\Program Files\WhenUSearch\Content\images\module_weather_left_bg_top.gif
C:\Program Files\WhenUSearch\Content\images\more_bg.gif
C:\Program Files\WhenUSearch\Content\images\more_bottom_bg.gif
C:\Program Files\WhenUSearch\Content\images\more_bottom_main.gif
C:\Program Files\WhenUSearch\Content\images\more_bottom_main_bg.gif
C:\Program Files\WhenUSearch\Content\images\more_left_bg.gif
C:\Program Files\WhenUSearch\Content\images\more_right_bg.gif
C:\Program Files\WhenUSearch\Content\images\more_top_bg.gif
C:\Program Files\WhenUSearch\Content\images\more_top_left.gif
C:\Program Files\WhenUSearch\Content\images\more_top_left_bw.gif
C:\Program Files\WhenUSearch\Content\images\more_top_right.gif
C:\Program Files\WhenUSearch\Content\images\more_top_right_bw.gif
C:\Program Files\WhenUSearch\Content\images\more_top_x.gif
C:\Program Files\WhenUSearch\Content\images\more_top_x_bw.gif
C:\Program Files\WhenUSearch\Content\images\more_top_x_down.gif
C:\Program Files\WhenUSearch\Content\images\more_top_x_on.gif
C:\Program Files\WhenUSearch\Content\images\mount.gif
C:\Program Files\WhenUSearch\Content\images\mount_down.gif
C:\Program Files\WhenUSearch\Content\images\mount_grey.gif
C:\Program Files\WhenUSearch\Content\images\mount_on.gif
C:\Program Files\WhenUSearch\Content\images\nav_button_bg.gif
C:\Program Files\WhenUSearch\Content\images\nav_button_bg_down.gif
C:\Program Files\WhenUSearch\Content\images\nav_button_bg_on.gif
C:\Program Files\WhenUSearch\Content\images\notyet.gif
C:\Program Files\WhenUSearch\Content\images\notyet_bw.gif
C:\Program Files\WhenUSearch\Content\images\open_bg.gif
C:\Program Files\WhenUSearch\Content\images\open_bottom_bg.gif
C:\Program Files\WhenUSearch\Content\images\open_bottom_left.gif
C:\Program Files\WhenUSearch\Content\images\open_bottom_left_bw.gif
C:\Program Files\WhenUSearch\Content\images\open_bottom_right.gif
C:\Program Files\WhenUSearch\Content\images\open_bottom_right_bw.gif
C:\Program Files\WhenUSearch\Content\images\open_cancel.gif
C:\Program Files\WhenUSearch\Content\images\open_cancel_down.gif
C:\Program Files\WhenUSearch\Content\images\open_cancel_on.gif
C:\Program Files\WhenUSearch\Content\images\open_defaults.gif
C:\Program Files\WhenUSearch\Content\images\open_defaults_down.gif
C:\Program Files\WhenUSearch\Content\images\open_defaults_on.gif
C:\Program Files\WhenUSearch\Content\images\open_open.gif
C:\Program Files\WhenUSearch\Content\images\open_open_down.gif
C:\Program Files\WhenUSearch\Content\images\open_open_on.gif
C:\Program Files\WhenUSearch\Content\images\open_save.gif
C:\Program Files\WhenUSearch\Content\images\open_save_down.gif
C:\Program Files\WhenUSearch\Content\images\open_save_on.gif
C:\Program Files\WhenUSearch\Content\images\open_search.gif
C:\Program Files\WhenUSearch\Content\images\open_search_down.gif
C:\Program Files\WhenUSearch\Content\images\open_search_on.gif
C:\Program Files\WhenUSearch\Content\images\right_bg.gif
C:\Program Files\WhenUSearch\Content\images\right_bg_grey.gif
C:\Program Files\WhenUSearch\Content\images\right_instructions.gif
C:\Program Files\WhenUSearch\Content\images\right_instructions_on.gif
C:\Program Files\WhenUSearch\Content\images\right_instructions_red.gif
C:\Program Files\WhenUSearch\Content\images\right_left.gif
C:\Program Files\WhenUSearch\Content\images\right_left_grey.gif
C:\Program Files\WhenUSearch\Content\images\right_main_bg.gif
C:\Program Files\WhenUSearch\Content\images\right_more_left.gif
C:\Program Files\WhenUSearch\Content\images\right_more_off.gif
C:\Program Files\WhenUSearch\Content\images\right_more_on.gif
C:\Program Files\WhenUSearch\Content\images\right_more_up.gif
C:\Program Files\WhenUSearch\Content\images\spacer.gif
C:\Program Files\WhenUSearch\Content\images\tab_left_bg.gif
C:\Program Files\WhenUSearch\Content\images\tab_left_bw.gif
C:\Program Files\WhenUSearch\Content\images\tab_left_down.gif
C:\Program Files\WhenUSearch\Content\images\tab_left_off.gif
C:\Program Files\WhenUSearch\Content\images\tab_left_on.gif
C:\Program Files\WhenUSearch\Content\images\tab_right_down.gif
C:\Program Files\WhenUSearch\Content\images\tab_right_off.gif
C:\Program Files\WhenUSearch\Content\images\tab_right_on.gif
C:\Program Files\WhenUSearch\Content\images\unmount.gif
C:\Program Files\WhenUSearch\Content\images\unmount_down.gif
C:\Program Files\WhenUSearch\Content\images\unmount_grey.gif
C:\Program Files\WhenUSearch\Content\images\unmount_on.gif
C:\Program Files\WhenUSearch\Content\index.htm
C:\Program Files\WhenUSearch\Content\instructions.html
C:\Program Files\WhenUSearch\Content\loading.html
C:\Program Files\WhenUSearch\Content\main_menu_sub.html
C:\Program Files\WhenUSearch\Content\menu.css
C:\Program Files\WhenUSearch\Content\menu_emu.html
C:\Program Files\WhenUSearch\Content\menu_main.html
C:\Program Files\WhenUSearch\Content\menu_manage.html
C:\Program Files\WhenUSearch\Content\menu_opt.html
C:\Program Files\WhenUSearch\Content\menu_ucontrol.html
C:\Program Files\WhenUSearch\Content\menu_whenu.html
C:\Program Files\WhenUSearch\Content\message.html
C:\Program Files\WhenUSearch\Content\module_weather.css
C:\Program Files\WhenUSearch\Content\module_weather_dialog.css
C:\Program Files\WhenUSearch\Content\movement.js
C:\Program Files\WhenUSearch\Content\newresults.html
C:\Program Files\WhenUSearch\Content\open_browser.html
C:\Program Files\WhenUSearch\Content\open_search.html
C:\Program Files\WhenUSearch\Content\quick.css
C:\Program Files\WhenUSearch\Content\quick_coupon.html
C:\Program Files\WhenUSearch\Content\quick_instructions.html
C:\Program Files\WhenUSearch\Content\quick_search.html
C:\Program Files\WhenUSearch\Content\quick_tutorial.html
C:\Program Files\WhenUSearch\Content\tooltip_emu.html
C:\Program Files\WhenUSearch\Content\tooltip_go.html
C:\Program Files\WhenUSearch\Content\tooltip_logo.html
C:\Program Files\WhenUSearch\Content\tooltip_manage.html
C:\Program Files\WhenUSearch\Content\tooltip_more.html
C:\Program Files\WhenUSearch\Content\tooltip_opt.html
C:\Program Files\WhenUSearch\Content\tooltip_search.html
C:\Program Files\WhenUSearch\Content\tooltip_slider.html
C:\Program Files\WhenUSearch\Content\tooltip_whenu.html
C:\Program Files\WhenUSearch\Content\tooltip_whenu2.html
C:\Program Files\WhenUSearch\Content\ui.cfg
C:\Program Files\WhenUSearch\Content\uninst.ico
C:\Program Files\WhenUSearch\search.cch
C:\Program Files\WhenUSearch\search.db
C:\Program Files\WhenUSearch\search.htm
C:\Program Files\WhenUSearch\store.db
C:\setup.exe
C:\WINDOWS\atfxqogp.dll
C:\WINDOWS\resources\KbdAvp.dll
C:\WINDOWS\system32\818646
C:\WINDOWS\system32\818646\818646.dll
C:\WINDOWS\system32\ctfmona.exe
C:\WINDOWS\system32\vtUonnOF.dll
.
((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-04-28 to 2008-05-30 ))))))))))))))))))))))))))))))))))))
.
2008-05-29 22:47 . 2008-05-30 19:25 269,334 --a------ C:\WINDOWS\SYSTEM32\ctfmonb.bmp
2008-05-29 17:34 . 2008-05-29 17:34 5,012 --a------ C:\WINDOWS\SYSTEM32\tmp.reg
2008-05-29 17:31 . 2008-05-29 17:32 <REP> d-------- C:\SmitfraudFix
2008-05-29 17:30 . 2007-09-06 00:22 289,144 --a------ C:\WINDOWS\SYSTEM32\VCCLSID.exe
2008-05-29 17:30 . 2006-04-27 17:49 288,417 --a------ C:\WINDOWS\SYSTEM32\SrchSTS.exe
2008-05-29 17:30 . 2008-05-29 09:35 86,528 --a------ C:\WINDOWS\SYSTEM32\VACFix.exe
2008-05-29 17:30 . 2008-05-18 21:40 82,944 --a------ C:\WINDOWS\SYSTEM32\IEDFix.exe
2008-05-29 17:30 . 2008-05-18 21:40 82,944 --a------ C:\WINDOWS\SYSTEM32\404Fix.exe
2008-05-29 17:30 . 2003-06-05 21:13 53,248 --a------ C:\WINDOWS\SYSTEM32\Process.exe
2008-05-29 17:30 . 2004-07-31 18:50 51,200 --a------ C:\WINDOWS\SYSTEM32\dumphive.exe
2008-05-29 17:30 . 2007-10-04 00:36 25,600 --a------ C:\WINDOWS\SYSTEM32\WS2Fix.exe
2008-05-28 23:37 . 2008-05-28 23:39 <REP> d-------- C:\Program Files\CCleaner
2008-05-28 23:31 . 2008-05-28 23:31 <REP> d-------- C:\Documents and Settings\Kiki\Application Data\Grisoft
2008-05-28 23:31 . 2008-05-28 23:31 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2008-05-28 23:31 . 2007-05-30 14:10 10,872 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\AvgAsCln.sys
2008-05-28 23:00 . 2008-05-30 19:26 160,256 --a------ C:\WINDOWS\SYSTEM32\blackster.scr
2008-05-28 22:55 . 2008-05-28 22:55 193 --a------ C:\WINDOWS\SYSTEM32\bugsConfig.cfg
2008-05-28 22:51 . 2008-05-28 22:51 <REP> d-------- C:\Program Files\Trend Micro
2008-05-28 21:32 . 2008-05-28 21:32 <REP> d-------- C:\Documents and Settings\Kiki\Application Data\AXPFixer
2008-05-28 21:26 . 2008-05-28 19:58 163,840 --a------ C:\WINDOWS\esva.exe
2008-05-27 22:42 . 2008-05-27 22:42 <REP> d--h----- C:\Documents and Settings\All Users\Application Data\{5553977E-AF8B-4870-AEB6-53B6C1BC822D}
2008-05-27 22:28 . 2008-05-27 22:28 <REP> d-------- C:\Program Files\Stardock Games
2008-05-27 21:34 . 2008-05-27 21:34 <REP> d-------- C:\Program Files\SpaceShuttleMission2007DEMO
2008-05-24 22:38 . 2008-05-24 22:40 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TrackMania
2008-05-24 22:34 . 2008-05-24 22:36 <REP> d-------- C:\Program Files\TmNationsForever
2008-05-21 17:01 . 2008-05-21 17:01 <REP> d-------- C:\Program Files\Fichiers communs\FontLab
2008-05-21 09:04 . 2008-05-25 10:51 <REP> d-------- C:\Documents and Settings\Marine\Application Data\Extensis
2008-05-16 19:58 . 2008-05-30 19:26 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-05-16 19:58 . 2008-05-16 19:58 1,409 --a------ C:\WINDOWS\QTFont.for
2008-05-16 19:57 . 2008-05-16 19:57 <REP> d-------- C:\Program Files\iPod
2008-05-13 19:12 . 2008-05-13 19:12 <REP> d-------- C:\Documents and Settings\Kiki\Application Data\iSerial Reader
2008-05-13 17:45 . 2008-05-13 17:45 <REP> d-------- C:\Documents and Settings\Kiki\Application Data\Quite
2008-05-09 17:33 . 2008-05-09 17:33 <REP> d-------- C:\Documents and Settings\Kiki\Menu Dmarrer
2008-05-09 17:33 . 2008-05-28 23:00 <REP> d-------- C:\Documents and Settings\Kiki\Application Data\Extensis
2008-05-09 17:33 . 2008-05-28 23:00 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Extensis
2008-05-09 17:32 . 2008-05-09 17:32 <REP> d-------- C:\Program Files\Extensis
2008-04-24 21:17 . 2008-04-24 21:17 <REP> d-------- C:\Documents and Settings\All Users\Application Data\FLEXnet
2008-04-24 21:02 . 2008-04-24 21:02 <REP> d-------- C:\Program Files\Fichiers communs\Control Panels
2008-04-24 20:58 . 2008-04-24 20:58 <REP> d-------- C:\Documents and Settings\All Users\Application Data\ALM
2008-04-24 20:21 . 2007-02-20 16:04 2,463,976 --a------ C:\WINDOWS\SYSTEM32\NPSWF32.dll
2008-04-24 20:21 . 2007-02-20 16:04 190,696 --a------ C:\WINDOWS\SYSTEM32\NPSWF32_FlashUtil.exe
2008-04-24 19:58 . 2008-05-16 19:56 <REP> d-------- C:\Program Files\Bonjour
2008-04-22 20:58 . 2008-04-22 20:58 <REP> d-------- C:\Program Files\Fichiers communs\xing shared
2008-04-21 21:01 . 2008-04-21 21:01 <REP> d-------- C:\Program Files\Apple Software Update
2008-04-14 21:13 . 2008-04-21 21:42 <REP> d-------- C:\Program Files\Safari
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-05-30 17:46 --------- d-----w C:\Documents and Settings\Kiki\Application Data\vmntoolbar
2008-05-28 21:38 --------- d-----w C:\Program Files\Yahoo!
2008-05-26 18:39 --------- d-----w C:\Program Files\HomePlayer1.5.3.1
2008-05-26 18:38 --------- d-----w C:\Program Files\adslTV
2008-05-17 09:39 --------- d-----w C:\Program Files\LimeWire
2008-05-16 17:47 --------- d-----w C:\Program Files\iTunes
2008-05-13 19:20 --------- d-----w C:\Documents and Settings\Kiki\Application Data\Warez
2008-05-13 19:15 --------- d-----w C:\Program Files\Warez
2008-05-12 19:46 --------- d-----w C:\Program Files\Fichiers communs\Adobe
2008-05-12 18:10 --------- d-----w C:\Documents and Settings\Kiki\Application Data\vlc
2008-04-24 17:45 --------- d-----w C:\Program Files\Fichiers communs\Macrovision Shared
2008-04-22 18:58 --------- d-----w C:\Program Files\Fichiers communs\Real
2008-04-14 19:06 --------- d-----w C:\Program Files\QuickTime
2008-04-10 09:09 --------- d-----w C:\Documents and Settings\Nini\Application Data\VMNTOOLBAR
2008-04-02 16:29 --------- d-----w C:\Documents and Settings\Kiki\Application Data\MSN6
2006-10-03 16:16 26,590,084 -c--a-w C:\Documents and Settings\Kiki\ersave.dat
2006-04-16 19:42 284 -c--a-w C:\Documents and Settings\Kiki\Application Data\ViewerApp.dat
2004-12-29 17:06 266 --sh--w C:\Program Files\desktop.ini
2004-12-29 17:06 11,208 -c-ha-w C:\Program Files\folder.htt
2006-05-29 14:40 7,296,000 -c--a-w C:\Program Files\mozilla firefox\plugins\libvlc.dll
2007-05-02 20:09 119 --sh--w C:\WINDOWS\cnerolf.bin
2006-08-21 21:11 88 --sh--r C:\WINDOWS\SYSTEM32\3718870AA3.sys
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [ ]
"OM_Monitor"="C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe" [ ]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [ ]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 12:50 155648]
"HpMmKbd"="HpMmKbd.exe" [2002-02-08 15:16 147456 C:\WINDOWS\SYSTEM32\HPMMKBD.EXE]
"InCD"="C:\Program Files\Ahead\InCD\InCD.exe" [2004-07-16 14:50 1409136]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-20 01:10 110592 C:\WINDOWS\SYSTEM32\bthprops.cpl]
"[webwiz]"="" []
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25 144784]
"EoEngine"="" []
"EoSudoku"="" []
"CanalPlayerHelper"="C:\Program Files\Lecteur CANALPLAY\CanalPlayerHelper.exe" [ ]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2007-01-08 22:26 68640]
"LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" [2007-01-08 22:17 52256]
"LClock"="C:\Program Files\LClock\LClock.exe" [ ]
"iconcache"="" []
"cleanup"="" []
"AlcxMonitor"="ALCXMNTR.EXE" [2004-09-07 14:47 57344 C:\WINDOWS\ALCXMNTR.EXE]
"SoundMan"="SOUNDMAN.EXE" [2007-04-16 15:28 577536 C:\WINDOWS\soundman.exe]
"ProfilerU"="C:\Program Files\Saitek\SD6\Software\ProfilerU.exe" [2007-10-02 11:10 233472]
"SaiMfd"="C:\Program Files\Saitek\SD6\Software\SaiMfd.exe" [2007-10-02 11:10 131072]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-12-18 20:55 8523776]
"nwiz"="nwiz.exe" [2007-12-18 20:55 1626112 C:\WINDOWS\SYSTEM32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-12-18 20:55 81920]
"Matrox PowerDesk SE"="C:\Program Files\Matrox Graphics Inc\PowerDesk SE\Matrox.PowerDesk SE.exe" [2007-04-04 10:48 1771016]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 22:16 39792]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-03-28 23:37 413696]
"TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2008-04-22 20:57 185896]
"Acrobat Assistant 8.0"="D:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe" [2008-01-11 19:54 623992]
"Adobe_ID0EYTHM"="C:\PROGRA~1\FICHIE~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE" [2007-03-20 16:40 1884160]
"iTunesHelper"="D:\Program Files\iTunes\iTunesHelper.exe" [2008-03-30 10:36 267048]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 11:25 6731312]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-20 01:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-09-28 03:17 443968]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.ir41"= C:\WINDOWS\System32\ir41_32.ax
"vidc.X264"= x264vfw.dll
"VIDC.MJPG"= pvmjpg21.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
SecurityProviders msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, zwebauth.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\MSN Gaming Zone\\zclient.exe"=
"C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"=
"D:\\Program Files\\Microsoft Games\\Microsoft Flight Simulator X\\fsx.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\CounterPath\\X-Lite\\x-lite.exe"=
"C:\\WINDOWS\\SYSTEM32\\dpvsetup.exe"=
"C:\\Program Files\\adslTV\\adsltv.exe"=
"C:\\Program Files\\adslTV\\vlc.exe"=
"C:\\Program Files\\HomePlayer1.5.3.1\\HomePlayer.exe"=
"C:\\Program Files\\HomePlayer1.5.3.1\\VLC\\vlc.exe"=
"C:\\xampplite\\apache\\bin\\apache.exe"=
"D:\\FSX\\FSUIPC & WIDEFS\\WideFS\\WideClient.exe"=
"C:\\Program Files\\Fichiers communs\\Adobe\\Adobe Version Cue CS3\\Server\\bin\\VersionCueCS3.exe"=
"C:\\Program Files\\Warez\\Warez.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"D:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\TmNationsForever\\TmForever.exe"=
"C:\\Program Files\\Stardock Games\\Sins of a Solar Empire Demo\\Sins of a Solar Empire.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3703:TCP"= 3703:TCP:Adobe Version Cue CS3 Server
"3704:TCP"= 3704:TCP:Adobe Version Cue CS3 Server
"50900:TCP"= 50900:TCP:Adobe Version Cue CS3 Server
"50901:TCP"= 50901:TCP:Adobe Version Cue CS3 Server
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 01:20]
R2 Apache2.2;Apache2.2;"C:\xampplite\apache\bin\apache.exe" -k runservice []
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 01:16]
R2 Matrox Centering Service;Matrox Centering Service;"C:\Program Files\Matrox Graphics Inc\PowerDesk\Services\Matrox.PowerDesk.Services.exe" [2007-04-04 10:48]
R3 hpmmkbd;HP Extended Keyboard;C:\WINDOWS\system32\DRIVERS\hpmmkbd.sys [1999-09-29 10:40]
R3 vhidmini;Cachya Virtual Joystick;C:\WINDOWS\system32\DRIVERS\vhidmini.sys [2007-11-16 22:42]
S3 ati2mtaa;ati2mtaa;C:\WINDOWS\system32\DRIVERS\ati2mtaa.sys [2004-08-20 00:53]
S3 CrystalSysInfo;CrystalSysInfo;C:\Program Files\OCCT\SysInfo.sys [2005-09-19 06:08]
S3 G200;G200;C:\WINDOWS\system32\DRIVERS\G200m.sys [2001-08-23 17:18]
S3 gsplittm;gsplittm;C:\DOCUME~1\CHARLO~1\LOCALS~1\Temp\gsplittm.sys []
S3 mgau;mgau;C:\WINDOWS\system32\DRIVERS\mgaum.sys [2001-08-23 17:03]
S3 SaiH0BAC;SaiH0BAC;C:\WINDOWS\system32\DRIVERS\SaiH0BAC.sys [2007-09-14 09:48]
S3 scsiscan;Pilote de scanneur SCSI;C:\WINDOWS\system32\DRIVERS\scsiscan.sys [2001-08-17 21:53]
S3 Tileproxy;Tileproxy;C:\WINDOWS\system32\DRIVERS\tileproxy.sys [2007-04-20 11:59]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{71308780-cc06-11db-a3de-0011b107a28b}]
\Shell\AutoRun\command - L:\adb.com
\Shell\explore\Command - L:\adb.com
\Shell\open\Command - L:\adb.com
.
Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'
"2008-05-24 09:41:01 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-05-30 20:01:35
Windows 5.1.2600 Service Pack 2 NTFS
Balayage processus cach‚s ...
Balayage cach‚ autostart entries ...
Balayage des fichiers cach‚s ...
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\SYSTEM32\DRIVERS\CDAC11BA.EXE
C:\Program Files\CPUCooL\CooLSRV.exe
C:\xampplite\mysql\bin\mysqld-nt.exe
C:\WINDOWS\SYSTEM32\nvsvc32.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\SYSTEM32\rundll32.exe
C:\WINDOWS\SYSTEM32\rundll32.exe
C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Extensis\Extensis Suitcase 11\Suitcase.exe
.
**************************************************************************
.
Temps d'accomplissement: 2008-05-30 20:28:56 - machine was rebooted
ComboFix-quarantined-files.txt 2008-05-30 18:27:52
Pre-Run: 16,507,672,576 octets libres
Post-Run: 17,091,454,976 octets libres
559 --- E O F --- 2008-05-28 17:22:53