Rebonjour,
je t' envoie le rapport de Combofix
ComboFix 08-07-29.1 - lionel 2008-07-30 18:13:28.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.33.1036.18.260 [GMT 2:00]
Endroit: C:\Documents and Settings\lionel\Bureau\C-Fix.exe
* Création d'un nouveau point de restauration
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\WINDOWS\system32\angslylk.ini
C:\WINDOWS\system32\GOYcLRqr.ini
C:\WINDOWS\system32\GOYcLRqr.ini2
C:\WINDOWS\system32\LoXyJkkj.ini
C:\WINDOWS\system32\LoXyJkkj.ini2
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\PrYxayxx.ini
C:\WINDOWS\system32\PrYxayxx.ini2
.
((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-06-28 to 2008-07-30 ))))))))))))))))))))))))))))))))))))
.
2008-07-30 12:13 . 2008-07-30 12:13 <REP> d-------- C:\WINDOWS\ERUNT
2008-07-30 12:01 . 2008-07-30 12:27 <REP> d-------- C:\SDFix
2008-07-29 22:32 . 2008-07-29 22:32 268 --ah----- C:\sqmdata00.sqm
2008-07-29 22:32 . 2008-07-29 22:32 244 --ah----- C:\sqmnoopt00.sqm
2008-07-29 22:27 . 2008-07-29 22:27 126 --a------ C:\Documents and Settings\lionel\delself.bat
2008-07-29 22:26 . 2008-07-29 22:26 42,496 --a------ C:\WINDOWS\system32\tslktktc.exe
2008-07-29 20:56 . 2008-07-29 20:56 86,016 --a------ C:\WINDOWS\system32\lmnmlwty.exe
2008-07-29 19:34 . 2008-07-29 19:34 <REP> d-------- C:\Documents and Settings\lionel\Application Data\Malwarebytes
2008-07-29 19:34 . 2008-07-23 20:09 38,472 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-07-29 19:34 . 2008-07-23 20:09 17,144 --a------ C:\WINDOWS\system32\drivers\mbam.sys
2008-07-29 19:33 . 2008-07-29 19:34 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-07-29 19:33 . 2008-07-29 19:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-07-28 19:12 . 2008-07-28 19:30 <REP> d-------- C:\Program Files\I-Fluid Demo
2008-07-28 16:39 . 2008-07-28 16:39 <REP> d-------- C:\ComboFix
2008-07-28 16:27 . 2008-07-28 17:40 3,742 --a------ C:\WINDOWS\system32\tmp.reg
2008-07-28 15:44 . 2008-07-28 15:44 <REP> d-------- C:\Program Files\Trend Micro
2008-07-28 14:23 . 2008-07-28 14:23 <REP> d-------- C:\WINDOWS\system32\Kaspersky Lab
2008-07-27 15:26 . 2008-07-27 15:42 <REP> d-------- C:\WINDOWS\BDOSCAN8
2008-07-27 10:56 . 2008-07-27 10:56 <REP> d-------- C:\Program Files\kqhlpdd
2008-07-27 10:55 . 2008-07-27 10:55 <REP> d-------- C:\Documents and Settings\All Users\Application Data\fojoxgvs
2008-07-27 10:55 . 2008-07-27 10:55 94,208 --a------ C:\WINDOWS\system32\fupgzmhu.exe
2008-07-26 14:33 . 2008-07-30 16:19 <REP> d-------- C:\Documents and Settings\lionel\Application Data\skypePM
2008-07-26 14:33 . 2008-07-26 14:33 56 --ah----- C:\WINDOWS\system32\ezsidmv.dat
2008-07-26 14:30 . 2008-07-26 14:30 <REP> d-------- C:\Program Files\Skype
2008-07-26 14:30 . 2008-07-26 14:30 <REP> d-------- C:\Program Files\Fichiers communs\Skype
2008-07-26 14:30 . 2008-07-30 17:53 <REP> d-------- C:\Documents and Settings\lionel\Application Data\Skype
2008-07-26 14:30 . 2008-07-26 14:30 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Skype
2008-07-25 19:22 . 2008-07-25 19:24 <REP> d-------- C:\Documents and Settings\lionel\Application Data\Media Player Classic
2008-07-25 19:20 . 2008-07-25 19:20 <REP> d-------- C:\Program Files\K-Lite Codec Pack
2008-07-25 19:20 . 2007-09-04 18:56 164,352 --a------ C:\WINDOWS\system32\unrar.dll
2008-07-24 23:33 . 2008-07-24 23:35 <REP> d-------- C:\Program Files\Dofus
2008-07-10 23:13 . 2008-07-10 23:13 <REP> d-------- C:\Program Files\VideoLAN
2008-07-10 23:13 . 2008-07-10 23:13 <REP> d-------- C:\Documents and Settings\lionel\Application Data\vlc
2008-07-10 15:05 . 2006-11-29 13:06 3,426,072 --a------ C:\WINDOWS\system32\d3dx9_32.dll
2008-07-10 15:04 . 2008-07-10 15:04 <REP> d-------- C:\Program Files\Microsoft SQL Server Compact Edition
2008-07-10 15:01 . 2008-07-10 15:02 <REP> d-------- C:\Program Files\Windows Live Toolbar
2008-07-10 15:01 . 2008-07-10 15:01 <REP> d-------- C:\Program Files\Windows Live Favorites
2008-07-09 22:30 . 2008-07-29 21:29 <REP> d-------- C:\Program Files\eMule
2008-07-04 17:58 . 2008-07-27 10:55 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-07-04 17:58 . 2008-07-04 17:58 1,409 --a------ C:\WINDOWS\QTFont.for
2008-07-03 20:08 . 2008-07-03 20:08 <REP> d-------- C:\Media
2008-07-03 19:21 . 2008-07-03 19:21 24,439 --a------ C:\updatejpegprocessing.docx
2008-07-02 21:00 . 2008-07-02 21:00 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-07-02 20:21 . 2008-07-02 20:21 <REP> d-------- C:\WINDOWS\system32\Adobe
2008-07-02 20:21 . 2008-07-02 20:21 <REP> d-------- C:\WINDOWS\Profiles
2008-07-02 20:21 . 2008-07-16 09:18 <REP> d-------- C:\Program Files\Fichiers communs\Adobe
2008-07-02 20:21 . 2008-07-02 20:21 <REP> d-------- C:\Documents and Settings\lionel\Application Data\InterTrust
2008-07-02 20:21 . 2000-05-22 10:58 647,872 --------- C:\WINDOWS\system32\Mscomct2.ocx
2008-07-02 20:21 . 1999-10-11 03:00 41,984 --------- C:\WINDOWS\Ctregrun.exe
2008-07-02 20:12 . 2008-07-02 20:21 <REP> d-------- C:\Program Files\Creative
2008-07-02 19:00 . 2008-07-02 19:00 <REP> d-------- C:\WINDOWS\system32\NtmsData
2008-07-02 12:36 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll
2008-07-02 12:36 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\system32\muweb.dll
2008-07-02 12:36 . 2007-07-30 19:18 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-07-01 21:56 . 2004-04-14 11:08 44,064 --a------ C:\WINDOWS\system32\drivers\WmXlCore.sys
2008-07-01 21:56 . 2004-04-14 11:08 21,280 --a------ C:\WINDOWS\system32\drivers\WmFilter.sys
2008-07-01 21:56 . 2004-04-14 11:08 10,144 --a------ C:\WINDOWS\system32\drivers\WmBEnum.sys
2008-07-01 21:56 . 2004-04-14 11:08 5,600 --a------ C:\WINDOWS\system32\drivers\WmVirHid.sys
2008-07-01 21:55 . 2008-07-01 21:55 <REP> d-------- C:\Program Files\Logitech
2008-07-01 21:55 . 2008-07-01 21:56 <REP> d-------- C:\Program Files\Fichiers communs\Logitech
2008-07-01 21:04 . 2008-07-01 21:04 <REP> d-------- C:\Program Files\Yahoo!
2008-07-01 21:04 . 2008-07-01 21:04 <REP> d-------- C:\Program Files\CCleaner
2008-07-01 20:24 . 2008-07-29 22:37 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TrackMania
2008-07-01 20:10 . 2008-07-01 20:10 <REP> d---s---- C:\Documents and Settings\lionel\UserData
2008-07-01 20:04 . 2008-07-22 12:46 <REP> d-------- C:\Documents and Settings\lionel\Contacts
2008-07-01 20:00 . 2008-07-01 20:00 <REP> d----c--- C:\WINDOWS\system32\DRVSTORE
2008-07-01 19:05 . 2008-07-01 19:05 <REP> d-------- C:\Program Files\Alwil Software
2008-07-01 19:04 . 2008-07-01 19:04 <REP> d-------- C:\Program Files\MSXML 4.0
2008-07-01 18:45 . 2006-03-01 19:53 94,208 --a------ C:\WINDOWS\system32\w32n50.dll
2008-07-01 18:45 . 2007-09-25 19:31 65,536 --a------ C:\WINDOWS\system32\Autodial2000.dll
2008-07-01 18:45 . 2003-09-23 11:38 34,688 --a------ C:\WINDOWS\system32\pcampr5.sys
2008-07-01 18:45 . 2006-03-01 19:53 32,128 --a------ C:\WINDOWS\system32\pcandis5.sys
2008-07-01 18:44 . 2008-07-01 18:46 <REP> d-------- C:\Program Files\Orange
2008-07-01 18:44 . 2008-07-01 18:44 <REP> d-------- C:\Program Files\Fichiers communs\France Telecom
2008-07-01 18:44 . 2003-03-19 04:05 89,088 --a------ C:\WINDOWS\system32\atl71.dll
2008-07-01 18:40 . 2008-07-01 18:40 <REP> d-------- C:\Program Files\Securitoo
2008-07-01 18:40 . 2008-07-01 18:40 <REP> d-------- C:\Program Files\SAGEM
2008-07-01 18:40 . 2008-07-01 18:40 <REP> d-------- C:\Documents and Settings\lionel\Application Data\InstallShield
2008-07-01 18:36 . 2008-07-28 16:04 8,192 --ahs---- C:\WINDOWS\Thumbs.db
2008-07-01 18:33 . 2008-07-01 18:33 <REP> d-------- C:\WINDOWS\Sun
2008-07-01 18:07 . 2008-07-23 22:40 <REP> d-------- C:\Program Files\Windows Live
2008-07-01 18:07 . 2008-07-01 18:18 <REP> d--hsc--- C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-07-01 18:07 . 2008-07-10 15:09 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-07-01 17:55 . 2008-06-14 19:59 272,768 --------- C:\WINDOWS\system32\drivers\bthport.sys
2008-07-01 17:55 . 2008-06-14 19:59 272,768 --------- C:\WINDOWS\system32\dllcache\bthport.sys
2008-07-01 17:54 . 2007-07-09 15:11 584,192 --------- C:\WINDOWS\system32\dllcache\rpcrt4.dll
2008-07-01 17:51 . 2008-05-08 14:28 202,752 --------- C:\WINDOWS\system32\dllcache\rmcast.sys
2008-07-01 17:43 . 2008-07-01 17:44 <REP> d-------- C:\Program Files\Google
2008-07-01 17:30 . 2008-07-01 17:38 <REP> d-------- C:\Program Files\TmUnitedForever
2008-07-01 17:28 . 2008-07-09 15:06 <REP> d--h----- C:\WINDOWS\$hf_mig$
2008-07-01 17:28 . 2006-10-16 16:10 23,856 --a------ C:\WINDOWS\system32\spupdsvc.exe
2008-07-01 17:25 . 2008-07-01 17:25 940,794 --a------ C:\WINDOWS\system32\LoopyMusic.wav
2008-07-01 17:25 . 2008-07-01 17:25 146,650 --a------ C:\WINDOWS\system32\BuzzingBee.wav
2008-07-01 17:25 . 2008-07-01 17:25 73,728 --a------ C:\WINDOWS\ALCFDRTM.VER
2008-07-01 17:25 . 2008-07-01 17:25 73,728 --a------ C:\WINDOWS\ALCFDRTM.EXE
2008-07-01 17:24 . 2008-07-02 02:08 <REP> d--h----- C:\Documents and Settings\lionel\Voisinage r‚seau
2008-07-01 17:24 . 2008-07-02 02:08 <REP> d--h----- C:\Documents and Settings\lionel\Voisinage d'impression
2008-07-01 17:24 . 2008-07-02 02:10 <REP> d--h----- C:\Documents and Settings\lionel\ModŠles
2008-07-01 17:24 . 2008-07-28 14:55 <REP> dr------- C:\Documents and Settings\lionel\Mes documents
2008-07-01 17:24 . 2008-07-02 02:10 <REP> dr------- C:\Documents and Settings\lionel\Menu D‚marrer
2008-07-01 17:24 . 2008-07-28 16:41 <REP> dr------- C:\Documents and Settings\lionel\Favoris
2008-07-01 17:24 . 2008-07-30 18:17 <REP> dr------- C:\Documents and Settings\lionel\Bureau
2008-07-01 17:24 . 2008-07-02 02:08 <REP> d-------- C:\Documents and Settings\lionel\Application Data\You've Got Pictures Screensaver
2008-07-01 17:24 . 2008-07-02 02:08 <REP> d-------- C:\Documents and Settings\lionel\Application Data\Symantec
2008-07-01 17:24 . 2008-07-30 18:15 <REP> d-------- C:\Documents and Settings\lionel
2008-07-01 17:24 . 2004-08-05 14:00 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
2008-06-20 19:41 . 2008-06-20 19:41 247,808 --------- C:\WINDOWS\system32\dllcache\mswsock.dll
2008-06-20 12:44 . 2008-06-20 12:44 138,368 --------- C:\WINDOWS\system32\dllcache\afd.sys
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-07-30 16:17 --------- d-----w C:\Program Files\Fichiers communs\Symantec Shared
2008-07-27 14:49 --------- d-----w C:\Program Files\Norton Internet Security
2008-07-27 14:43 --------- d-----w C:\Program Files\Symantec
2008-07-02 18:21 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-07-02 00:11 --------- d-----w C:\Program Files\Services en ligne
2008-07-02 00:11 --------- d-----w C:\Program Files\QuickTime
2008-07-02 00:10 --------- d-----w C:\Program Files\Fichiers communs\SureThing Shared
2008-07-02 00:10 --------- d-----w C:\Program Files\Fichiers communs\Sonic Shared
2008-07-02 00:10 --------- d-----w C:\Documents and Settings\All Users\Application Data\QuickTime
2008-07-02 00:09 --------- d-----w C:\Program Files\Fichiers communs\aolshare
2008-07-02 00:09 --------- d-----w C:\Program Files\Fichiers communs\AOL
2008-07-01 19:54 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-07-01 16:24 --------- d-----w C:\Program Files\Microsoft Works
2008-06-20 10:45 360,320 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys
2008-06-20 10:44 138,368 ----a-w C:\WINDOWS\system32\drivers\afd.sys
2008-06-20 09:52 225,920 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" [2008-05-30 15:54 21718312]
"MntMsg"="C:\WINDOWS\system32\fupgzmhu.exe" [2008-07-27 10:55 94208]
"InfoApi"="C:\WINDOWS\system32\lmnmlwty.exe" [2008-07-29 20:56 86016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" [2004-08-05 14:00 208952]
"PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-05 14:00 455168]
"PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-05 14:00 455168]
"ATIPTA"="C:\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-08-12 21:10 339968]
"SunJavaUpdateSched"="C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe" [2004-06-03 22:05 32881]
"ccApp"="C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" [2003-09-09 12:00 70800]
"PCMService"="c:\Apps\Powercinema\PCMService.exe" [2004-09-15 22:17 81920]
"ClickMe"="C:\apps\ClickMe\ClickMe.exe" [2004-02-23 17:58 135168]
"SystrayORAHSS"="C:\Program Files\Orange\Systray\SystrayApp.exe" [2007-09-25 20:08 94208]
"ORAHSSSessionManager"="C:\Program Files\Orange\SessionManager\SessionManager.exe" [2007-09-25 19:10 102400]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2004-10-18 20:22 98304]
"TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2004-10-18 20:26 180269]
"Raccourci vers la page des propriétés de High Definition Audio"="HDAudPropShortcut.exe" [2004-03-17 15:10 61952 C:\WINDOWS\system32\Hdaudpropshortcut.exe]
"SoundMan"="SOUNDMAN.EXE" [2004-09-10 18:29 77824 C:\WINDOWS\SoundMan.exe]
"AlcWzrd"="ALCWZRD.EXE" [2004-09-15 11:20 2557952 C:\WINDOWS\ALCWZRD.EXE]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 14:00 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"gendsc"= {0C40E303-8DF4-42D0-C64D-0B758C9091A8} - C:\Program Files\kqhlpdd\gendsc.dll [2008-07-27 10:56 106496]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Winci40.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Windj84.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Winfl84.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Winfl85.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Winsx41.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Winta16.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Winta38.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Winwd84.sys]
@="Driver"
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%ProgramFiles%\\AOL 9.0\\aol.exe"=
"%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe"=
"%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\APPS\\Inventime\\my.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\Orange\\Connectivity\\ConnectivityManager.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\TmUnitedForever\\TmForever.exe"=
"C:\\Program Files\\eMule\\emule.exe"=
"C:\\Program Files\\Orange\\Browser\\Browser.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-07-19 16:35]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-07-19 16:37]
S0 Windj84;Windj84;C:\WINDOWS\system32\Drivers\Windj84.sys []
S0 Winfl84;Winfl84;C:\WINDOWS\system32\Drivers\Winfl84.sys []
.
Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'
.
- - - - ORPHANS REMOVED - - - -
ShellExecuteHooks-{39DC821C-FE03-415F-8F47-B50ADA5D7D1A} - C:\WINDOWS\system32\yayxvvtT.dll
Notify-yayxvvtT - yayxvvtT.dll
.
------- Supplementary Scan -------
.
R0 -: HKCU-Main,Start Page = hxxp://www.google.com
R0 -: HKLM-Main,Start Page = hxxp://www.google.com
O8 -: &Windows Live Search - C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 -: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 -: E&xporter vers Microsoft Excel - C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O16 -: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
C:\WINDOWS\Downloaded Program Files\oscan8.inf
C:\WINDOWS\bdoscandellang.ini
C:\WINDOWS\bdoscandel.exe
C:\WINDOWS\Downloaded Program Files\live.ini
C:\WINDOWS\Downloaded Program Files\scanoptions.tsi
C:\WINDOWS\Downloaded Program Files\lang.ini
C:\WINDOWS\Downloaded Program Files\ipsupd.dll
C:\WINDOWS\Downloaded Program Files\bdupd.dll
C:\WINDOWS\Downloaded Program Files\libfn.dll
C:\WINDOWS\Downloaded Program Files\bdcore.dll
C:\WINDOWS\Downloaded Program Files\oscan8.ocx
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-07-30 18:17:17
Windows 5.1.2600 Service Pack 2 NTFS
Balayage processus cach‚s ...
Balayage cach‚ autostart entries ...
Balayage des fichiers cach‚s ...
Scan termin‚ avec succŠs
Les fichiers cach‚s: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MysqlInventime]
"ImagePath"="c:\mysql\bin\mysqld-nt MysqlInventime"
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\[u]0/u\FTRTSVC.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jucheck.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\[u]0/u\AlertModule.exe
C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\system32\wscntfy.exe
.
**************************************************************************
.
Temps d'accomplissement: 2008-07-30 18:19:34 - machine was rebooted
ComboFix-quarantined-files.txt 2008-07-30 16:19:29
Pre-Run: 130,384,220,160 octets libres
Post-Run: 130,411,618,304 octets libres
274 --- E O F --- 2008-07-23 20:40:33