ComboFix 08-06-16.2 - pc 2008-06-17 14:32:31.1 - NTFSx86
Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6000.0.1252.1.1036.18.1286 [GMT 2:00]
Endroit: C:\Users\pc\Desktop\ComboFix.exe
* Création d'un nouveau point de restauration
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\DRIVER\TOUCHPAD\ALPS\_desktop.ini
C:\DRIVER\TOUCHPAD\ALPS\Eula\_desktop.ini
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware-Secure
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware-Secure\Spyware-Secure trial.lnk
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware-Secure\Website.lnk
C:\Users\pc\AppData\Local\xruofj.dat
c:\users\pc\appdata\local\xruofj.exe
C:\Users\pc\AppData\Local\xruofj_navps.dat
C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spyware-Secure
.
((((((((((((((((((((((((((((( Fichiers créés 2008-05-17 to 2008-06-17 ))))))))))))))))))))))))))))))))))))
.
2008-06-17 13:35 . 2008-06-17 14:06 <REP> d-------- C:\Program Files\Navilog1
2008-06-17 13:09 . 2008-06-17 13:09 <REP> d-------- C:\Users\pc\AppData\Roaming\Lavasoft
2008-06-17 13:08 . 2008-06-17 13:08 <REP> d-------- C:\Users\pc\AppData\Roaming\PC Tools
2008-06-17 13:08 . 2008-06-17 14:12 <REP> d-a------ C:\Users\All Users\TEMP
2008-06-17 13:08 . 2008-06-17 14:12 <REP> d-a------ C:\ProgramData\TEMP
2008-06-17 13:08 . 2008-06-17 13:20 <REP> d-------- C:\Program Files\Spyware Doctor
2008-06-17 13:08 . 2007-12-10 13:53 81,288 --a------ C:\Windows\System32\drivers\iksyssec.sys
2008-06-17 13:08 . 2007-12-10 13:53 66,952 --a------ C:\Windows\System32\drivers\iksysflt.sys
2008-06-17 13:08 . 2008-02-01 11:55 42,376 --a------ C:\Windows\System32\drivers\ikfilesec.sys
2008-06-17 13:08 . 2007-12-10 13:53 29,576 --a------ C:\Windows\System32\drivers\kcom.sys
2008-06-17 13:07 . 2008-06-17 13:09 <REP> d-------- C:\Program Files\SpywareBlaster
2008-06-17 13:07 . 2008-06-17 13:07 <REP> d-------- C:\Program Files\Lavasoft
2008-06-17 13:07 . 2005-08-25 18:19 115,920 --a------ C:\Windows\System32\MSINET.OCX
2008-06-17 13:03 . 2008-06-17 13:03 <REP> d-------- C:\Users\All Users\Prevx
2008-06-17 13:03 . 2008-06-17 13:05 <REP> d-------- C:\Temp
2008-06-17 13:03 . 2008-06-17 13:03 <REP> d-------- C:\ProgramData\Prevx
2008-06-17 12:56 . 2008-06-17 13:30 <REP> d-------- C:\Program Files\Hitman Pro
2008-06-15 15:18 . 2008-06-15 15:18 <REP> d-------- C:\Windows\System32\Kaspersky Lab
2008-06-14 18:59 . 2008-04-23 07:11 1,244,672 --a------ C:\Windows\System32\mcmde.dll
2008-06-14 18:59 . 2008-04-23 06:27 428,032 --a------ C:\Windows\System32\EncDec.dll
2008-06-14 18:59 . 2008-04-23 06:27 292,352 --a------ C:\Windows\System32\psisdecd.dll
2008-06-14 18:59 . 2008-04-23 06:26 218,624 --a------ C:\Windows\System32\psisrndr.ax
2008-06-14 18:59 . 2008-04-23 06:26 80,896 --a------ C:\Windows\System32\MSNP.ax
2008-06-14 18:59 . 2008-04-23 06:26 68,608 --a------ C:\Windows\System32\Mpeg2Data.ax
2008-06-14 18:59 . 2008-04-23 06:26 57,856 --a------ C:\Windows\System32\MSDvbNP.ax
2008-06-14 14:32 . 2008-06-14 14:32 786 --a------ C:\Windows\wininit.ini
2008-06-14 13:40 . 2008-06-17 13:02 <REP> d-------- C:\Users\All Users\Spybot - Search & Destroy
2008-06-14 13:40 . 2008-06-17 13:02 <REP> d-------- C:\ProgramData\Spybot - Search & Destroy
2008-06-14 13:40 . 2008-06-14 13:40 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-06-12 22:14 . 2008-06-12 22:14 <REP> d-------- C:\Program Files\Apple Software Update
2008-06-12 14:17 . 2008-06-12 14:17 <REP> d-------- C:\Users\pc\AppData\Roaming\Apple Computer
2008-06-12 14:17 . 2008-06-12 14:17 <REP> d-------- C:\Program Files\iTunes
2008-06-12 14:17 . 2008-06-12 14:17 <REP> d-------- C:\Program Files\iPod
2008-06-12 14:15 . 2008-06-12 14:15 <REP> d-------- C:\Program Files\Bonjour
2008-06-12 14:14 . 2008-06-12 14:17 <REP> d-------- C:\Users\All Users\Apple Computer
2008-06-12 14:14 . 2008-06-12 14:17 <REP> d-------- C:\ProgramData\Apple Computer
2008-06-12 14:14 . 2008-06-12 14:15 <REP> d-------- C:\Program Files\QuickTime
2008-06-12 14:08 . 2008-06-12 14:08 <REP> d-------- C:\Program Files\Common Files\Apple
2008-06-05 11:32 . 2008-06-05 11:32 <REP> d-------- C:\Program Files\Alwil Software
2008-06-05 11:32 . 2008-05-16 01:18 50,768 --a------ C:\Windows\System32\drivers\aswMonFlt.sys
2008-06-02 13:39 . 2008-06-02 13:39 <REP> d-------- C:\Users\All Users\Symantec Temporary Files
2008-06-02 13:39 . 2008-06-02 13:39 <REP> d-------- C:\ProgramData\Symantec Temporary Files
2008-06-02 11:49 . 2008-03-08 02:37 4,247,552 --a------ C:\Windows\System32\GameUXLegacyGDFs.dll
2008-06-02 11:49 . 2008-03-08 06:30 1,686,528 --a------ C:\Windows\System32\gameux.dll
2008-05-30 13:28 . 2008-05-30 13:35 <REP> d-------- C:\Users\All Users\ma-config.com
2008-05-30 13:28 . 2008-05-30 13:35 <REP> d-------- C:\ProgramData\ma-config.com
2008-05-30 13:28 . 2008-05-30 13:28 <REP> d-------- C:\Program Files\ma-config.com
2008-05-29 14:52 . 2008-05-29 14:53 <REP> d-------- C:\Users\All Users\WinZip
2008-05-29 14:52 . 2008-05-29 14:53 <REP> d-------- C:\ProgramData\WinZip
2008-05-29 14:42 . 2008-05-29 14:42 <REP> d-------- C:\Users\pc\AppData\Roaming\SystemRequirementsLab
2008-05-29 14:00 . 2008-05-29 14:00 <REP> d-------- C:\Program Files\Intel
2008-05-29 13:33 . 2008-05-29 14:50 <REP> d-------- C:\NVIDIA
2008-05-29 04:31 . 2008-05-29 04:31 <REP> d-------- C:\fsctmp
2008-05-29 04:13 . 2008-05-29 04:32 <REP> d-------- C:\$fsctmp
2008-05-27 10:50 . 2008-05-27 10:50 90,112 --a------ C:\Windows\System32\QuickTimeVR.qtx
2008-05-27 10:50 . 2008-05-27 10:50 57,344 --a------ C:\Windows\System32\QuickTime.qts
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-06-17 12:32 --------- d-----w C:\Users\pc\AppData\Roaming\DNA
2008-06-17 12:13 --------- d-----w C:\Users\pc\AppData\Roaming\OpenOffice.org2
2008-06-15 17:31 312 ----a-w C:\Users\pc\AppData\Roaming\wklnhst.dat
2008-06-11 10:11 --------- d-----w C:\Program Files\Windows Mail
2008-06-06 16:35 27,050 ----a-w C:\Users\pc\AppData\Roaming\nvModes.dat
2008-06-05 09:27 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-06-05 09:23 --------- d-----w C:\ProgramData\Symantec
2008-06-01 19:11 --------- d-----w C:\Program Files\Common Files\InstallShield
2008-05-15 07:35 --------- d-----w C:\ProgramData\Microsoft Help
2008-05-11 11:06 --------- d-----w C:\Users\pc\AppData\Roaming\Ahead
2008-05-10 16:12 --------- d-----w C:\Program Files\DivX
2008-05-10 16:12 --------- d-----w C:\Program Files\Common Files\PX Storage Engine
2008-05-10 03:30 14,848 ----a-w C:\Windows\System32\wshrm.dll
2008-05-10 01:21 113,664 ----a-w C:\Windows\system32\drivers\rmcast.sys
2008-05-04 10:14 --------- d-----w C:\Program Files\Common Files\Adobe
2008-05-01 22:20 --------- d-----w C:\Program Files\Google
2008-05-01 22:19 --------- d-----w C:\Users\pc\AppData\Roaming\BitTorrent
2008-05-01 19:22 --------- d-----w C:\Program Files\OpenOffice.org 2.4
2008-05-01 19:21 --------- d-----w C:\Program Files\Java
2008-05-01 19:12 --------- d-----w C:\Program Files\Common Files\Java
2008-05-01 17:34 --------- d-----w C:\Program Files\DNA
2008-05-01 17:34 --------- d-----w C:\Program Files\BitTorrent
2008-04-29 03:50 181,760 ----a-w C:\Windows\System32\fsquirt.exe
2008-04-29 01:42 29,184 ----a-w C:\Windows\system32\drivers\BTHUSB.SYS
2008-04-29 01:42 220,160 ----a-w C:\Windows\system32\drivers\bthport.sys
2008-04-29 01:42 19,456 ----a-w C:\Windows\system32\drivers\bthenum.sys
2008-04-26 08:02 1,327,104 ----a-w C:\Windows\System32\quartz.dll
2008-04-25 04:23 826,368 ----a-w C:\Windows\System32\wininet.dll
2008-04-25 04:23 56,320 ----a-w C:\Windows\System32\iesetup.dll
2008-04-25 04:23 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll
2008-04-25 04:22 26,624 ----a-w C:\Windows\System32\ieUnatt.exe
2008-04-23 21:37 --------- d-----w C:\Program Files\Snood 4 Beta
2008-04-21 19:56 --------- d-----w C:\ProgramData\Apple
2008-04-21 19:23 --------- d-----w C:\Program Files\Common Files\xing shared
2008-04-21 19:22 --------- d-----w C:\Program Files\Real
2008-04-21 19:22 --------- d-----w C:\Program Files\Common Files\Real
2008-04-15 22:28 194,560 ----a-w C:\Windows\System32\WebClnt.dll
2008-04-15 22:25 3,504,696 ----a-w C:\Windows\System32\ntkrnlpa.exe
2008-04-15 22:25 3,470,392 ----a-w C:\Windows\System32\ntoskrnl.exe
2008-04-15 22:25 24,064 ----a-w C:\Windows\System32\netcfg.exe
2008-04-15 22:25 22,016 ----a-w C:\Windows\System32\netiougc.exe
2008-04-15 22:25 167,424 ----a-w C:\Windows\System32\tcpipcfg.dll
2008-04-15 22:23 9,728 ----a-w C:\Windows\System32\LAPRXY.DLL
2008-04-15 22:23 223,232 ----a-w C:\Windows\System32\WMASF.DLL
2008-04-15 22:23 2,048 ----a-w C:\Windows\System32\asferror.dll
2008-04-15 22:23 2,027,008 ----a-w C:\Windows\System32\win32k.sys
2008-04-15 22:22 296,448 ----a-w C:\Windows\System32\gdi32.dll
2008-04-15 22:21 11,776 ----a-w C:\Windows\System32\sbunattend.exe
2008-04-15 22:18 83,968 ----a-w C:\Windows\System32\dnsrslvr.dll
2008-04-15 22:18 24,576 ----a-w C:\Windows\System32\dnscacheugc.exe
2008-04-15 22:15 2,048 ----a-w C:\Windows\System32\tzres.dll
2008-04-15 18:26 53,080 ----a-w C:\Windows\System32\wuauclt.exe
2008-04-15 18:26 43,352 ----a-w C:\Windows\System32\wups2.dll
2008-04-15 18:26 1,712,984 ----a-w C:\Windows\System32\wuaueng.dll
2008-04-15 18:26 1,524,224 ----a-w C:\Windows\System32\wucltux.dll
2008-04-15 18:24 80,896 ----a-w C:\Windows\System32\wudriver.dll
2008-04-15 18:24 549,720 ----a-w C:\Windows\System32\wuapi.dll
2008-04-15 18:24 33,624 ----a-w C:\Windows\System32\wups.dll
2008-04-15 18:22 31,232 ----a-w C:\Windows\System32\wuapp.exe
2008-04-15 18:22 163,000 ----a-w C:\Windows\System32\wuwebv.dll
2008-03-31 21:25 831,488 ----a-w C:\Windows\System32\divx_xx0a.dll
2008-03-31 21:25 823,296 ----a-w C:\Windows\System32\divx_xx0c.dll
2008-03-31 21:25 823,296 ----a-w C:\Windows\System32\divx_xx07.dll
2008-03-31 21:25 802,816 ----a-w C:\Windows\System32\divx_xx11.dll
2008-03-31 21:25 682,496 ----a-w C:\Windows\System32\DivX.dll
2008-03-31 21:25 161,096 ----a-w C:\Windows\System32\DivXCodecVersionChecker.exe
2008-03-21 20:30 524,288 ----a-w C:\Windows\System32\DivXsm.exe
2008-03-21 20:30 3,596,288 ----a-w C:\Windows\System32\qt-dx331.dll
2008-03-21 20:30 200,704 ----a-w C:\Windows\System32\ssldivx.dll
2008-03-21 20:30 1,044,480 ----a-w C:\Windows\System32\libdivx.dll
2008-03-21 20:28 81,920 ----a-w C:\Windows\System32\dpl100.dll
2008-03-21 20:28 593,920 ----a-w C:\Windows\System32\dpuGUI11.dll
2008-03-21 20:28 57,344 ----a-w C:\Windows\System32\dpv11.dll
2008-03-21 20:28 53,248 ----a-w C:\Windows\System32\dpuGUI10.dll
2008-03-21 20:28 344,064 ----a-w C:\Windows\System32\dpus11.dll
2008-03-21 20:28 294,912 ----a-w C:\Windows\System32\dpu11.dll
2008-03-21 20:28 294,912 ----a-w C:\Windows\System32\dpu10.dll
2008-03-21 20:28 196,608 ----a-w C:\Windows\System32\dtu100.dll
2008-03-21 20:28 12,288 ----a-w C:\Windows\System32\DivXWMPExtType.dll
2006-07-01 20:51 174 --sha-w C:\Program Files\desktop.ini
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [2008-04-16 00:21 1232896]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34 5724184]
"BitTorrent DNA"="C:\Program Files\DNA\btdna.exe" [2008-06-17 13:33 289088]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [2007-07-19 01:31 86016]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2007-07-19 01:31 8466432]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [2007-07-19 01:31 81920]
"RtHDVCpl"="RtHDVCpl.exe" [2007-01-18 14:46 4349952 C:\Windows\RtHDVCpl.exe]
"Apoint"="C:\Program Files\Apoint2K\Apoint.exe" [2006-11-07 20:57 159744]
"PowerManager"="C:\Program Files\Power Manager\PM.exe" [2007-03-13 15:01 29696]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-02-26 20:46 153136]
"recinfo949"="c:\RecInfo\RecInfo.exe" [2007-10-23 14:52 2764800]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-04-21 21:22 185896]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 04:25 144784]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 22:16 39792]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-05-16 01:19 79224]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-05-27 10:50 413696]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-06-02 11:13 267048]
"ISTray"="C:\Program Files\Spyware Doctor\pctsTray.exe" [2008-04-10 15:14 1107848]
C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 2.4.lnk - C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe [2008-01-21 15:41:28 393216]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.mkdmp3enc"= C:\PROGRA~1\CYBERL~1\PowerDV\Kernel\Burner\MKDMP3Enc.ACM
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UacDisableNotify"=dword:00000001
"InternetSettingsDisableNotify"=dword:00000001
"AutoUpdateDisableNotify"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{71C4CC73-B84E-4716-B187-6DBEEC4A401C}"= UDP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{A2581A0C-10ED-4B4D-83A8-6086698F8345}"= TCP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{911B8E04-8384-4841-8DC8-790AB4A0BAE5}"= C:\Program Files\CyberLink\PowerDV\PowerDV.exe:CyberLink PowerDV
"TCP Query User{DEF90AD0-6FF5-43C3-A803-62C3D34D7260}C:\\program files\\intervideo\\dvd8\\windvd.exe"= UDP:C:\program files\intervideo\dvd8\windvd.exe:WinDVD
"UDP Query User{58B01574-C99A-4753-A749-9D3A3C96537D}C:\\program files\\intervideo\\dvd8\\windvd.exe"= TCP:C:\program files\intervideo\dvd8\windvd.exe:WinDVD
"{CEB6FD2B-C374-49E8-85BD-F5D47A02AC1D}"= C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{7F44FAA2-EBBC-4D69-9B0A-901BA63726DC}"= UDP:C:\Program Files\DNA\btdna.exe:DNA
"{20CC182E-CF3E-45C0-B2D8-C2A22D025CFE}"= TCP:C:\Program Files\DNA\btdna.exe:DNA
"{4A0A33FA-7F04-4DF9-B459-688BA2C0058C}"= UDP:C:\Program Files\BitTorrent\bittorrent.exe:BitTorrent
"{532BC6B0-5389-4F7E-885A-CD2D2D776595}"= TCP:C:\Program Files\BitTorrent\bittorrent.exe:BitTorrent
"{2342EBA1-86CF-40D4-AD39-37111CA42FC5}"= UDP:C:\Program Files\Bonjour\mDNSResponder.exe:Bonjour
"{C8CBC93E-6C5B-4296-8DF8-3D24F67FC1B5}"= TCP:C:\Program Files\Bonjour\mDNSResponder.exe:Bonjour
"{9936E522-4662-495A-BF17-6C4465927D4E}"= UDP:C:\Program Files\iTunes\iTunes.exe:iTunes
"{8B0798A3-27EB-4FA5-98FB-6645B8739345}"= TCP:C:\Program Files\iTunes\iTunes.exe:iTunes
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\RestrictedServices\Static\System]
"DFSR-1"= RPort=5722|UDP:%SystemRoot%\system32\svchost.exe|Svc=DFSR:Allow inbound TCP traffic|
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List]
"C:\\Program Files\\BitTorrent\\bittorrent.exe"= C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent
R1 aswSP;avast! Self Protection;C:\Windows\system32\drivers\aswSP.sys [2008-05-16 01:20]
R2 aswFsBlk;aswFsBlk;C:\Windows\system32\DRIVERS\aswFsBlk.sys [2008-05-16 01:16]
R2 aswMonFlt;aswMonFlt;C:\Windows\system32\DRIVERS\aswMonFlt.sys [2008-05-16 01:18]
R2 SBSDWSCService;SBSD Security Center Service;C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2008-01-28 11:43]
R2 TestHandler;Fujitsu Siemens Computers Diagnostic Testhandler;C:\firststeps\OnlineDiagnostic\TestManager\TestHandler.exe [2006-12-08 10:52]
R3 smscirrx;SMSC CIR Receive;C:\Windows\system32\DRIVERS\smscirrx.sys [2007-02-02 09:51]
S4 nvrd32;NVIDIA nForce RAID Driver;C:\Windows\system32\drivers\nvrd32.sys [2007-07-02 17:37]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-06-16 16:03:22 C:\Windows\Tasks\User_Feed_Synchronization-{13358AD7-836B-4B75-97B4-D23FF30957F4}.job"
- C:\Windows\system32\msfeedssync.exe
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-06-17 14:35:04
Windows 6.0.6000 NTFS
Balayage processus cachés ...
Balayage caché autostart entries ...
Balayage des fichiers cachés ...
Scan terminé avec succès
Les fichiers cachés: 0
**************************************************************************
.
Temps d'accomplissement: 2008-06-17 14:36:05
ComboFix-quarantined-files.txt 2008-06-17 12:35:56
Pre-Run: 62,072,303,616 octets libres
Post-Run: 63,097,663,488 octets libres
247 --- E O F --- 2008-06-15 01:56:00
ComboFix 08-06-16.2 - pc 2008-06-17 14:32:31.1 - NTFSx86
Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6000.0.1252.1.1036.18.1286 [GMT 2:00]
Endroit: C:\Users\pc\Desktop\ComboFix.exe
* Création d'un nouveau point de restauration
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\DRIVER\TOUCHPAD\ALPS\_desktop.ini
C:\DRIVER\TOUCHPAD\ALPS\Eula\_desktop.ini
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware-Secure
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware-Secure\Spyware-Secure trial.lnk
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware-Secure\Website.lnk
C:\Users\pc\AppData\Local\xruofj.dat
c:\users\pc\appdata\local\xruofj.exe
C:\Users\pc\AppData\Local\xruofj_navps.dat
C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spyware-Secure
.
((((((((((((((((((((((((((((( Fichiers créés 2008-05-17 to 2008-06-17 ))))))))))))))))))))))))))))))))))))
.
2008-06-17 13:35 . 2008-06-17 14:06 <REP> d-------- C:\Program Files\Navilog1
2008-06-17 13:09 . 2008-06-17 13:09 <REP> d-------- C:\Users\pc\AppData\Roaming\Lavasoft
2008-06-17 13:08 . 2008-06-17 13:08 <REP> d-------- C:\Users\pc\AppData\Roaming\PC Tools
2008-06-17 13:08 . 2008-06-17 14:12 <REP> d-a------ C:\Users\All Users\TEMP
2008-06-17 13:08 . 2008-06-17 14:12 <REP> d-a------ C:\ProgramData\TEMP
2008-06-17 13:08 . 2008-06-17 13:20 <REP> d-------- C:\Program Files\Spyware Doctor
2008-06-17 13:08 . 2007-12-10 13:53 81,288 --a------ C:\Windows\System32\drivers\iksyssec.sys
2008-06-17 13:08 . 2007-12-10 13:53 66,952 --a------ C:\Windows\System32\drivers\iksysflt.sys
2008-06-17 13:08 . 2008-02-01 11:55 42,376 --a------ C:\Windows\System32\drivers\ikfilesec.sys
2008-06-17 13:08 . 2007-12-10 13:53 29,576 --a------ C:\Windows\System32\drivers\kcom.sys
2008-06-17 13:07 . 2008-06-17 13:09 <REP> d-------- C:\Program Files\SpywareBlaster
2008-06-17 13:07 . 2008-06-17 13:07 <REP> d-------- C:\Program Files\Lavasoft
2008-06-17 13:07 . 2005-08-25 18:19 115,920 --a------ C:\Windows\System32\MSINET.OCX
2008-06-17 13:03 . 2008-06-17 13:03 <REP> d-------- C:\Users\All Users\Prevx
2008-06-17 13:03 . 2008-06-17 13:05 <REP> d-------- C:\Temp
2008-06-17 13:03 . 2008-06-17 13:03 <REP> d-------- C:\ProgramData\Prevx
2008-06-17 12:56 . 2008-06-17 13:30 <REP> d-------- C:\Program Files\Hitman Pro
2008-06-15 15:18 . 2008-06-15 15:18 <REP> d-------- C:\Windows\System32\Kaspersky Lab
2008-06-14 18:59 . 2008-04-23 07:11 1,244,672 --a------ C:\Windows\System32\mcmde.dll
2008-06-14 18:59 . 2008-04-23 06:27 428,032 --a------ C:\Windows\System32\EncDec.dll
2008-06-14 18:59 . 2008-04-23 06:27 292,352 --a------ C:\Windows\System32\psisdecd.dll
2008-06-14 18:59 . 2008-04-23 06:26 218,624 --a------ C:\Windows\System32\psisrndr.ax
2008-06-14 18:59 . 2008-04-23 06:26 80,896 --a------ C:\Windows\System32\MSNP.ax
2008-06-14 18:59 . 2008-04-23 06:26 68,608 --a------ C:\Windows\System32\Mpeg2Data.ax
2008-06-14 18:59 . 2008-04-23 06:26 57,856 --a------ C:\Windows\System32\MSDvbNP.ax
2008-06-14 14:32 . 2008-06-14 14:32 786 --a------ C:\Windows\wininit.ini
2008-06-14 13:40 . 2008-06-17 13:02 <REP> d-------- C:\Users\All Users\Spybot - Search & Destroy
2008-06-14 13:40 . 2008-06-17 13:02 <REP> d-------- C:\ProgramData\Spybot - Search & Destroy
2008-06-14 13:40 . 2008-06-14 13:40 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-06-12 22:14 . 2008-06-12 22:14 <REP> d-------- C:\Program Files\Apple Software Update
2008-06-12 14:17 . 2008-06-12 14:17 <REP> d-------- C:\Users\pc\AppData\Roaming\Apple Computer
2008-06-12 14:17 . 2008-06-12 14:17 <REP> d-------- C:\Program Files\iTunes
2008-06-12 14:17 . 2008-06-12 14:17 <REP> d-------- C:\Program Files\iPod
2008-06-12 14:15 . 2008-06-12 14:15 <REP> d-------- C:\Program Files\Bonjour
2008-06-12 14:14 . 2008-06-12 14:17 <REP> d-------- C:\Users\All Users\Apple Computer
2008-06-12 14:14 . 2008-06-12 14:17 <REP> d-------- C:\ProgramData\Apple Computer
2008-06-12 14:14 . 2008-06-12 14:15 <REP> d-------- C:\Program Files\QuickTime
2008-06-12 14:08 . 2008-06-12 14:08 <REP> d-------- C:\Program Files\Common Files\Apple
2008-06-05 11:32 . 2008-06-05 11:32 <REP> d-------- C:\Program Files\Alwil Software
2008-06-05 11:32 . 2008-05-16 01:18 50,768 --a------ C:\Windows\System32\drivers\aswMonFlt.sys
2008-06-02 13:39 . 2008-06-02 13:39 <REP> d-------- C:\Users\All Users\Symantec Temporary Files
2008-06-02 13:39 . 2008-06-02 13:39 <REP> d-------- C:\ProgramData\Symantec Temporary Files
2008-06-02 11:49 . 2008-03-08 02:37 4,247,552 --a------ C:\Windows\System32\GameUXLegacyGDFs.dll
2008-06-02 11:49 . 2008-03-08 06:30 1,686,528 --a------ C:\Windows\System32\gameux.dll
2008-05-30 13:28 . 2008-05-30 13:35 <REP> d-------- C:\Users\All Users\ma-config.com
2008-05-30 13:28 . 2008-05-30 13:35 <REP> d-------- C:\ProgramData\ma-config.com
2008-05-30 13:28 . 2008-05-30 13:28 <REP> d-------- C:\Program Files\ma-config.com
2008-05-29 14:52 . 2008-05-29 14:53 <REP> d-------- C:\Users\All Users\WinZip
2008-05-29 14:52 . 2008-05-29 14:53 <REP> d-------- C:\ProgramData\WinZip
2008-05-29 14:42 . 2008-05-29 14:42 <REP> d-------- C:\Users\pc\AppData\Roaming\SystemRequirementsLab
2008-05-29 14:00 . 2008-05-29 14:00 <REP> d-------- C:\Program Files\Intel
2008-05-29 13:33 . 2008-05-29 14:50 <REP> d-------- C:\NVIDIA
2008-05-29 04:31 . 2008-05-29 04:31 <REP> d-------- C:\fsctmp
2008-05-29 04:13 . 2008-05-29 04:32 <REP> d-------- C:\$fsctmp
2008-05-27 10:50 . 2008-05-27 10:50 90,112 --a------ C:\Windows\System32\QuickTimeVR.qtx
2008-05-27 10:50 . 2008-05-27 10:50 57,344 --a------ C:\Windows\System32\QuickTime.qts
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-06-17 12:32 --------- d-----w C:\Users\pc\AppData\Roaming\DNA
2008-06-17 12:13 --------- d-----w C:\Users\pc\AppData\Roaming\OpenOffice.org2
2008-06-15 17:31 312 ----a-w C:\Users\pc\AppData\Roaming\wklnhst.dat
2008-06-11 10:11 --------- d-----w C:\Program Files\Windows Mail
2008-06-06 16:35 27,050 ----a-w C:\Users\pc\AppData\Roaming\nvModes.dat
2008-06-05 09:27 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-06-05 09:23 --------- d-----w C:\ProgramData\Symantec
2008-06-01 19:11 --------- d-----w C:\Program Files\Common Files\InstallShield
2008-05-15 07:35 --------- d-----w C:\ProgramData\Microsoft Help
2008-05-11 11:06 --------- d-----w C:\Users\pc\AppData\Roaming\Ahead
2008-05-10 16:12 --------- d-----w C:\Program Files\DivX
2008-05-10 16:12 --------- d-----w C:\Program Files\Common Files\PX Storage Engine
2008-05-10 03:30 14,848 ----a-w C:\Windows\System32\wshrm.dll
2008-05-10 01:21 113,664 ----a-w C:\Windows\system32\drivers\rmcast.sys
2008-05-04 10:14 --------- d-----w C:\Program Files\Common Files\Adobe
2008-05-01 22:20 --------- d-----w C:\Program Files\Google
2008-05-01 22:19 --------- d-----w C:\Users\pc\AppData\Roaming\BitTorrent
2008-05-01 19:22 --------- d-----w C:\Program Files\OpenOffice.org 2.4
2008-05-01 19:21 --------- d-----w C:\Program Files\Java
2008-05-01 19:12 --------- d-----w C:\Program Files\Common Files\Java
2008-05-01 17:34 --------- d-----w C:\Program Files\DNA
2008-05-01 17:34 --------- d-----w C:\Program Files\BitTorrent
2008-04-29 03:50 181,760 ----a-w C:\Windows\System32\fsquirt.exe
2008-04-29 01:42 29,184 ----a-w C:\Windows\system32\drivers\BTHUSB.SYS
2008-04-29 01:42 220,160 ----a-w C:\Windows\system32\drivers\bthport.sys
2008-04-29 01:42 19,456 ----a-w C:\Windows\system32\drivers\bthenum.sys
2008-04-26 08:02 1,327,104 ----a-w C:\Windows\System32\quartz.dll
2008-04-25 04:23 826,368 ----a-w C:\Windows\System32\wininet.dll
2008-04-25 04:23 56,320 ----a-w C:\Windows\System32\iesetup.dll
2008-04-25 04:23 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll
2008-04-25 04:22 26,624 ----a-w C:\Windows\System32\ieUnatt.exe
2008-04-23 21:37 --------- d-----w C:\Program Files\Snood 4 Beta
2008-04-21 19:56 --------- d-----w C:\ProgramData\Apple
2008-04-21 19:23 --------- d-----w C:\Program Files\Common Files\xing shared
2008-04-21 19:22 --------- d-----w C:\Program Files\Real
2008-04-21 19:22 --------- d-----w C:\Program Files\Common Files\Real
2008-04-15 22:28 194,560 ----a-w C:\Windows\System32\WebClnt.dll
2008-04-15 22:25 3,504,696 ----a-w C:\Windows\System32\ntkrnlpa.exe
2008-04-15 22:25 3,470,392 ----a-w C:\Windows\System32\ntoskrnl.exe
2008-04-15 22:25 24,064 ----a-w C:\Windows\System32\netcfg.exe
2008-04-15 22:25 22,016 ----a-w C:\Windows\System32\netiougc.exe
2008-04-15 22:25 167,424 ----a-w C:\Windows\System32\tcpipcfg.dll
2008-04-15 22:23 9,728 ----a-w C:\Windows\System32\LAPRXY.DLL
2008-04-15 22:23 223,232 ----a-w C:\Windows\System32\WMASF.DLL
2008-04-15 22:23 2,048 ----a-w C:\Windows\System32\asferror.dll
2008-04-15 22:23 2,027,008 ----a-w C:\Windows\System32\win32k.sys
2008-04-15 22:22 296,448 ----a-w C:\Windows\System32\gdi32.dll
2008-04-15 22:21 11,776 ----a-w C:\Windows\System32\sbunattend.exe
2008-04-15 22:18 83,968 ----a-w C:\Windows\System32\dnsrslvr.dll
2008-04-15 22:18 24,576 ----a-w C:\Windows\System32\dnscacheugc.exe
2008-04-15 22:15 2,048 ----a-w C:\Windows\System32\tzres.dll
2008-04-15 18:26 53,080 ----a-w C:\Windows\System32\wuauclt.exe
2008-04-15 18:26 43,352 ----a-w C:\Windows\System32\wups2.dll
2008-04-15 18:26 1,712,984 ----a-w C:\Windows\System32\wuaueng.dll
2008-04-15 18:26 1,524,224 ----a-w C:\Windows\System32\wucltux.dll
2008-04-15 18:24 80,896 ----a-w C:\Windows\System32\wudriver.dll
2008-04-15 18:24 549,720 ----a-w C:\Windows\System32\wuapi.dll
2008-04-15 18:24 33,624 ----a-w C:\Windows\System32\wups.dll
2008-04-15 18:22 31,232 ----a-w C:\Windows\System32\wuapp.exe
2008-04-15 18:22 163,000 ----a-w C:\Windows\System32\wuwebv.dll
2008-03-31 21:25 831,488 ----a-w C:\Windows\System32\divx_xx0a.dll
2008-03-31 21:25 823,296 ----a-w C:\Windows\System32\divx_xx0c.dll
2008-03-31 21:25 823,296 ----a-w C:\Windows\System32\divx_xx07.dll
2008-03-31 21:25 802,816 ----a-w C:\Windows\System32\divx_xx11.dll
2008-03-31 21:25 682,496 ----a-w C:\Windows\System32\DivX.dll
2008-03-31 21:25 161,096 ----a-w C:\Windows\System32\DivXCodecVersionChecker.exe
2008-03-21 20:30 524,288 ----a-w C:\Windows\System32\DivXsm.exe
2008-03-21 20:30 3,596,288 ----a-w C:\Windows\System32\qt-dx331.dll
2008-03-21 20:30 200,704 ----a-w C:\Windows\System32\ssldivx.dll
2008-03-21 20:30 1,044,480 ----a-w C:\Windows\System32\libdivx.dll
2008-03-21 20:28 81,920 ----a-w C:\Windows\System32\dpl100.dll
2008-03-21 20:28 593,920 ----a-w C:\Windows\System32\dpuGUI11.dll
2008-03-21 20:28 57,344 ----a-w C:\Windows\System32\dpv11.dll
2008-03-21 20:28 53,248 ----a-w C:\Windows\System32\dpuGUI10.dll
2008-03-21 20:28 344,064 ----a-w C:\Windows\System32\dpus11.dll
2008-03-21 20:28 294,912 ----a-w C:\Windows\System32\dpu11.dll
2008-03-21 20:28 294,912 ----a-w C:\Windows\System32\dpu10.dll
2008-03-21 20:28 196,608 ----a-w C:\Windows\System32\dtu100.dll
2008-03-21 20:28 12,288 ----a-w C:\Windows\System32\DivXWMPExtType.dll
2006-07-01 20:51 174 --sha-w C:\Program Files\desktop.ini
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [2008-04-16 00:21 1232896]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34 5724184]
"BitTorrent DNA"="C:\Program Files\DNA\btdna.exe" [2008-06-17 13:33 289088]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [2007-07-19 01:31 86016]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2007-07-19 01:31 8466432]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [2007-07-19 01:31 81920]
"RtHDVCpl"="RtHDVCpl.exe" [2007-01-18 14:46 4349952 C:\Windows\RtHDVCpl.exe]
"Apoint"="C:\Program Files\Apoint2K\Apoint.exe" [2006-11-07 20:57 159744]
"PowerManager"="C:\Program Files\Power Manager\PM.exe" [2007-03-13 15:01 29696]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-02-26 20:46 153136]
"recinfo949"="c:\RecInfo\RecInfo.exe" [2007-10-23 14:52 2764800]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-04-21 21:22 185896]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 04:25 144784]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 22:16 39792]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-05-16 01:19 79224]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-05-27 10:50 413696]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-06-02 11:13 267048]
"ISTray"="C:\Program Files\Spyware Doctor\pctsTray.exe" [2008-04-10 15:14 1107848]
C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 2.4.lnk - C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe [2008-01-21 15:41:28 393216]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.mkdmp3enc"= C:\PROGRA~1\CYBERL~1\PowerDV\Kernel\Burner\MKDMP3Enc.ACM
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UacDisableNotify"=dword:00000001
"InternetSettingsDisableNotify"=dword:00000001
"AutoUpdateDisableNotify"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{71C4CC73-B84E-4716-B187-6DBEEC4A401C}"= UDP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{A2581A0C-10ED-4B4D-83A8-6086698F8345}"= TCP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{911B8E04-8384-4841-8DC8-790AB4A0BAE5}"= C:\Program Files\CyberLink\PowerDV\PowerDV.exe:CyberLink PowerDV
"TCP Query User{DEF90AD0-6FF5-43C3-A803-62C3D34D7260}C:\\program files\\intervideo\\dvd8\\windvd.exe"= UDP:C:\program files\intervideo\dvd8\windvd.exe:WinDVD
"UDP Query User{58B01574-C99A-4753-A749-9D3A3C96537D}C:\\program files\\intervideo\\dvd8\\windvd.exe"= TCP:C:\program files\intervideo\dvd8\windvd.exe:WinDVD
"{CEB6FD2B-C374-49E8-85BD-F5D47A02AC1D}"= C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{7F44FAA2-EBBC-4D69-9B0A-901BA63726DC}"= UDP:C:\Program Files\DNA\btdna.exe:DNA
"{20CC182E-CF3E-45C0-B2D8-C2A22D025CFE}"= TCP:C:\Program Files\DNA\btdna.exe:DNA
"{4A0A33FA-7F04-4DF9-B459-688BA2C0058C}"= UDP:C:\Program Files\BitTorrent\bittorrent.exe:BitTorrent
"{532BC6B0-5389-4F7E-885A-CD2D2D776595}"= TCP:C:\Program Files\BitTorrent\bittorrent.exe:BitTorrent
"{2342EBA1-86CF-40D4-AD39-37111CA42FC5}"= UDP:C:\Program Files\Bonjour\mDNSResponder.exe:Bonjour
"{C8CBC93E-6C5B-4296-8DF8-3D24F67FC1B5}"= TCP:C:\Program Files\Bonjour\mDNSResponder.exe:Bonjour
"{9936E522-4662-495A-BF17-6C4465927D4E}"= UDP:C:\Program Files\iTunes\iTunes.exe:iTunes
"{8B0798A3-27EB-4FA5-98FB-6645B8739345}"= TCP:C:\Program Files\iTunes\iTunes.exe:iTunes
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\RestrictedServices\Static\System]
"DFSR-1"= RPort=5722|UDP:%SystemRoot%\system32\svchost.exe|Svc=DFSR:Allow inbound TCP traffic|
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List]
"C:\\Program Files\\BitTorrent\\bittorrent.exe"= C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent
R1 aswSP;avast! Self Protection;C:\Windows\system32\drivers\aswSP.sys [2008-05-16 01:20]
R2 aswFsBlk;aswFsBlk;C:\Windows\system32\DRIVERS\aswFsBlk.sys [2008-05-16 01:16]
R2 aswMonFlt;aswMonFlt;C:\Windows\system32\DRIVERS\aswMonFlt.sys [2008-05-16 01:18]
R2 SBSDWSCService;SBSD Security Center Service;C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2008-01-28 11:43]
R2 TestHandler;Fujitsu Siemens Computers Diagnostic Testhandler;C:\firststeps\OnlineDiagnostic\TestManager\TestHandler.exe [2006-12-08 10:52]
R3 smscirrx;SMSC CIR Receive;C:\Windows\system32\DRIVERS\smscirrx.sys [2007-02-02 09:51]
S4 nvrd32;NVIDIA nForce RAID Driver;C:\Windows\system32\drivers\nvrd32.sys [2007-07-02 17:37]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-06-16 16:03:22 C:\Windows\Tasks\User_Feed_Synchronization-{13358AD7-836B-4B75-97B4-D23FF30957F4}.job"
- C:\Windows\system32\msfeedssync.exe
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-06-17 14:35:04
Windows 6.0.6000 NTFS
Balayage processus cachés ...
Balayage caché autostart entries ...
Balayage des fichiers cachés ...
Scan terminé avec succès
Les fichiers cachés: 0
**************************************************************************
.
Temps d'accomplissement: 2008-06-17 14:36:05
ComboFix-quarantined-files.txt 2008-06-17 12:35:56
Pre-Run: 62,072,303,616 octets libres
Post-Run: 63,097,663,488 octets libres
247 --- E O F --- 2008-06-15 01:56:00