Voila le rapport de combo fix, je n'ai pas désactivé bitdefender pour le faire car je n'ai pas réussi...!
ComboFix 08-08-25.01 - a 2008-08-27 9:05:24.2 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.230 [GMT 2:00]
Endroit: C:\Documents and Settings\a\Bureau\ComboFix.exe
* Resident AV is active
[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!/b/color
.
((((((((((((((((((((((((((((( Fichiers créés 2008-07-27 to 2008-08-27 ))))))))))))))))))))))))))))))))))))
.
2008-08-27 07:02 . 2008-08-27 07:02 173 --a------ C:\curr_ver.tmp
2008-08-26 18:04 . 2008-08-26 18:04 <REP> d-------- C:\WINDOWS\LastGood
2008-08-26 18:04 . 2008-07-18 22:07 270,880 --a------ C:\WINDOWS\system32\mucltui.dll
2008-08-26 18:04 . 2008-07-18 22:07 210,976 --a------ C:\WINDOWS\system32\muweb.dll
2008-08-26 18:04 . 2008-07-18 22:07 29,728 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-08-26 17:58 . 2008-08-26 17:58 268 --ah----- C:\sqmdata03.sqm
2008-08-26 17:58 . 2008-08-26 17:58 244 --ah----- C:\sqmnoopt03.sqm
2008-08-26 16:12 . 2008-08-26 16:12 850 --a------ C:\WINDOWS\system32\ProductTweaks.xml
2008-08-26 16:12 . 2008-08-26 16:12 385 --a------ C:\WINDOWS\system32\user_gensett.xml
2008-08-26 14:57 . 2008-08-26 14:57 <REP> d---s---- C:\Documents and Settings\a\UserData
2008-08-26 14:38 . 2008-08-26 14:38 268 --ah----- C:\sqmdata02.sqm
2008-08-26 14:38 . 2008-08-26 14:38 244 --ah----- C:\sqmnoopt02.sqm
2008-08-26 14:37 . 2008-08-26 14:37 <REP> d-------- C:\Program Files\BitDefender
2008-08-26 14:37 . 2008-08-26 14:40 <REP> d-------- C:\Documents and Settings\All Users\Application Data\BitDefender
2008-08-26 14:37 . 2008-08-26 14:37 <REP> d-------- C:\Documents and Settings\a\Application Data\BitDefender
2008-08-26 14:35 . 2008-08-26 14:37 <REP> d-------- C:\Program Files\Fichiers communs\BitDefender
2008-08-26 14:11 . 2008-08-26 14:11 268 --ah----- C:\sqmdata01.sqm
2008-08-26 14:11 . 2008-08-26 14:11 244 --ah----- C:\sqmnoopt01.sqm
2008-08-26 11:00 . 2008-08-26 13:27 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-08-26 11:00 . 2008-08-26 11:00 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-08-26 11:00 . 2008-08-26 11:00 <REP> d-------- C:\Documents and Settings\a\Application Data\Malwarebytes
2008-08-26 10:48 . 2008-08-26 10:48 268 --ah----- C:\sqmdata00.sqm
2008-08-26 10:48 . 2008-08-26 10:48 244 --ah----- C:\sqmnoopt00.sqm
2008-08-26 10:20 . 2008-08-26 10:20 <REP> d-------- C:\Program Files\Trend Micro
2008-08-26 09:31 . 2008-08-26 09:34 <REP> d-------- C:\Documents and Settings\a\Contacts
2008-08-26 09:29 . 2008-08-26 09:29 <REP> d----c--- C:\WINDOWS\system32\DRVSTORE
2008-08-26 09:22 . 2008-08-26 09:28 <REP> d--hsc--- C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-08-26 09:21 . 2008-08-26 09:28 <REP> d-------- C:\Program Files\Windows Live
2008-08-26 09:21 . 2008-08-26 09:21 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-08-25 22:48 . 2008-07-04 08:34 860,160 --a------ C:\WINDOWS\system32\lameACM.acm
2008-08-25 22:48 . 2007-09-04 18:56 164,352 --a------ C:\WINDOWS\system32\unrar.dll
2008-08-25 22:48 . 2007-09-21 02:52 118,784 --a------ C:\WINDOWS\system32\ac3acm.acm
2008-08-25 22:48 . 2007-10-03 17:03 414 --a------ C:\WINDOWS\system32\lame_acm.xml
2008-08-25 22:48 . 2008-07-30 21:09 38 --a------ C:\WINDOWS\avisplitter.ini
2008-08-25 22:47 . 2008-08-25 22:47 <REP> d-------- C:\Program Files\K-Lite Codec Pack
2008-08-25 22:47 . 2008-07-23 18:50 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2008-08-25 22:47 . 2008-01-10 14:15 755,027 --a------ C:\WINDOWS\system32\xvidcore.dll
2008-08-25 22:47 . 2008-07-25 10:34 683,520 --a------ C:\WINDOWS\system32\divx.dll
2008-08-25 22:47 . 2004-01-25 18:18 217,088 --a------ C:\WINDOWS\system32\yv12vfw.dll
2008-08-25 22:47 . 2008-01-10 14:16 159,839 --a------ C:\WINDOWS\system32\xvidvfw.dll
2008-08-25 22:47 . 2008-07-25 10:34 81,920 --a------ C:\WINDOWS\system32\dpl100.dll
2008-08-25 22:47 . 2008-06-12 20:36 7,680 --a------ C:\WINDOWS\system32\ff_vfw.dll
2008-08-25 22:47 . 2007-07-10 18:10 547 --a------ C:\WINDOWS\system32\ff_vfw.dll.manifest
2008-08-25 22:36 . 2006-10-26 19:56 32,592 --a------ C:\WINDOWS\system32\msonpmon.dll
2008-08-25 22:32 . 2008-08-25 22:32 <REP> d-------- C:\Program Files\Microsoft Works
2008-08-25 22:30 . 2008-08-25 22:30 <REP> d-------- C:\Program Files\MSBuild
2008-08-25 22:11 . 2008-06-14 19:59 272,768 --------- C:\WINDOWS\system32\drivers\bthport.sys
2008-08-25 22:11 . 2008-06-14 19:59 272,768 -----c--- C:\WINDOWS\system32\dllcache\bthport.sys
2008-08-25 22:08 . 2008-08-25 22:27 <REP> d-------- C:\WINDOWS\SHELLNEW
2008-08-25 22:05 . 2008-08-27 03:07 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-08-25 22:04 . 2008-08-25 22:04 <REP> dr-h----- C:\MSOCache
2008-08-25 22:04 . 2001-08-17 23:59 3,072 --a------ C:\WINDOWS\system32\drivers\audstub.sys
2008-08-25 22:03 . 2004-08-19 17:54 58,496 --a------ C:\WINDOWS\system32\drivers\redbook.sys
2008-08-25 22:02 . 2004-08-19 16:09 77,312 --a------ C:\WINDOWS\system32\usbui.dll
2008-08-25 22:02 . 2004-08-19 16:09 77,312 --a--c--- C:\WINDOWS\system32\dllcache\usbui.dll
2008-08-25 22:02 . 2004-08-03 23:07 42,368 --a------ C:\WINDOWS\system32\drivers\AGP440.SYS
2008-08-25 22:02 . 2004-08-03 23:07 42,368 --a--c--- C:\WINDOWS\system32\dllcache\agp440.sys
2008-08-25 22:02 . 2004-08-04 00:31 20,992 --a------ C:\WINDOWS\system32\drivers\RTL8139.sys
2008-08-25 22:02 . 2004-08-04 01:07 14,080 --a------ C:\WINDOWS\system32\drivers\CmBatt.sys
2008-08-25 22:02 . 2001-08-17 23:57 14,080 --a------ C:\WINDOWS\system32\drivers\battc.sys
2008-08-25 22:02 . 2001-08-17 23:58 9,344 --a------ C:\WINDOWS\system32\drivers\compbatt.sys
2008-08-25 22:02 . 2001-08-17 23:46 6,400 --a------ C:\WINDOWS\system32\drivers\enum1394.sys
2008-08-25 22:02 . 2004-08-19 17:59 5,504 --a------ C:\WINDOWS\system32\drivers\intelide.sys
2008-08-25 22:00 . 2008-08-26 18:04 <REP> d-------- C:\WINDOWS\system32\CatRoot2
2008-08-25 22:00 . 2008-08-25 22:00 <REP> d--h----- C:\Documents and Settings\Default User\Voisinage réseau
2008-08-25 22:00 . 2008-08-25 22:00 <REP> d--h----- C:\Documents and Settings\Default User\Voisinage d'impression
2008-08-25 22:00 . 2008-08-25 20:05 <REP> d--h----- C:\Documents and Settings\Default User\Modèles
2008-08-25 22:00 . 2008-08-25 22:00 <REP> d-------- C:\Documents and Settings\Default User\Mes documents
2008-08-25 22:00 . 2008-08-25 22:00 <REP> dr------- C:\Documents and Settings\Default User\Menu Démarrer
2008-08-25 22:00 . 2008-08-25 20:10 <REP> d-------- C:\Documents and Settings\Default User\Favoris
2008-08-25 22:00 . 2008-08-25 22:00 <REP> d-------- C:\Documents and Settings\Default User\Bureau
2008-08-25 22:00 . 2008-08-25 22:00 <REP> d--h----- C:\Documents and Settings\All Users\Modèles
2008-08-25 22:00 . 2008-08-26 14:37 <REP> dr------- C:\Documents and Settings\All Users\Menu Démarrer
2008-08-25 22:00 . 2008-08-25 22:00 <REP> d-------- C:\Documents and Settings\All Users\Favoris
2008-08-25 22:00 . 2008-08-25 20:07 <REP> dr------- C:\Documents and Settings\All Users\Documents
2008-08-25 22:00 . 2008-08-26 14:37 <REP> d-------- C:\Documents and Settings\All Users\Bureau
2008-08-14 18:54 . 2008-08-14 18:54 102,208 --a------ C:\WINDOWS\system32\drivers\bdfndisf.sys
2008-08-12 18:40 . 2008-08-12 18:40 228,672 --a------ C:\WINDOWS\system32\drivers\bdfsfltr.sys
2008-08-12 18:40 . 2008-08-12 18:40 108,864 --a------ C:\WINDOWS\system32\drivers\bdfm.sys
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-26 12:07 81,984 ----a-w C:\WINDOWS\system32\bdod.bin
2008-08-26 08:48 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-08-26 07:49 --------- d-----w C:\Program Files\Spybot - Search & Destroy
2008-08-25 19:45 --------- d-----w C:\Program Files\CCleaner
2008-08-25 19:31 --------- d-----w C:\Program Files\Fichiers communs\Adobe
2008-08-25 19:26 --------- d-----w C:\Program Files\VLC
2008-08-25 19:12 --------- d-----w C:\Program Files\Fichiers communs\Softwin
2008-08-25 18:42 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-08-25 18:41 --------- d-----w C:\Program Files\VIAudioi
2008-08-25 18:41 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-08-25 18:38 --------- d-----w C:\Program Files\Synaptics
2008-08-25 18:30 --------- d-----w C:\Program Files\ATI Technologies
2008-08-25 18:26 --------- d-----w C:\Program Files\Intel
2008-08-25 18:11 --------- d-----w C:\Program Files\microsoft frontpage
2008-08-25 18:08 --------- d-----w C:\Program Files\Services en ligne
2008-07-18 20:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
2008-07-18 20:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
2008-07-18 20:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
2008-07-18 20:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
2008-07-18 20:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
2008-07-18 20:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
2008-07-18 20:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
2008-07-18 20:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
2008-07-07 20:18 253,952 ----a-w C:\WINDOWS\system32\es.dll
2008-06-24 16:30 74,240 ----a-w C:\WINDOWS\system32\mscms.dll
2008-06-23 16:15 671,232 ----a-w C:\WINDOWS\system32\wininet.dll
2008-06-20 17:37 247,808 ----a-w C:\WINDOWS\system32\mswsock.dll
.
((((((((((((((((((((((((((((( snapshot@2008-08-26_16.59.56.49 )))))))))))))))))))))))))))))))))))))))))
.
+ 2006-10-26 18:55:38 138,024 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.4518\IMPMAIL.DLL
+ 2006-09-15 14:25:18 3,611,416 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.4518\OUTLFLTR.DAT
+ 2006-10-27 13:16:36 46,864 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.4518\OUTLRPC.DLL
+ 2007-08-28 21:19:32 136,064 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\CONTAB32.DLL
+ 2007-08-24 02:49:12 89,976 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\DLGSETP.DLL
+ 2007-10-05 18:37:38 17,927,192 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\EXCEL.EXE
+ 2007-08-24 02:49:40 342,888 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\MIMEDIR.DLL
+ 2007-08-28 21:38:10 500,648 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\MORPH9.DLL
+ 2007-08-28 21:38:46 9,584,512 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\MSPUB.EXE
+ 2007-08-28 21:20:20 2,949,512 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\OLMAPI32.DLL
+ 2007-08-24 03:42:40 663,432 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\OMSMAIN.DLL
+ 2007-08-24 03:42:44 195,480 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\OMSXP32.DLL
+ 2007-08-28 21:20:44 600,992 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\OUTLMIME.DLL
+ 2007-09-06 16:01:10 12,836,728 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\OUTLOOK.EXE
+ 2007-08-28 21:22:04 180,128 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\OUTLPH.DLL
+ 2007-08-28 21:06:16 467,840 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\POWERPNT.EXE
+ 2007-08-28 21:06:44 7,990,144 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\PPCORE.DLL
+ 2007-08-24 01:43:28 138,648 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\PRTF9.DLL
+ 2007-08-24 02:51:48 416,112 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\PSTPRX32.DLL
+ 2007-08-28 21:39:14 625,560 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\PTXT9.DLL
+ 2007-08-24 01:43:36 593,296 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\PUBCONV.DLL
+ 2007-08-24 02:52:08 266,160 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\SCNPST32.DLL
+ 2007-08-24 02:52:10 275,896 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\SCNPST64.DLL
+ 2007-08-28 21:16:00 350,064 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\WINWORD.EXE
+ 2007-09-06 16:03:02 4,280,176 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\WRD12CNV.DLL
+ 2007-08-28 22:07:58 24,928 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\WRD12EXE.EXE
+ 2007-09-06 15:56:32 17,490,800 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\WWLIB.DLL
+ 2007-10-02 18:00:06 14,708,760 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\XL12CNV.EXE
+ 2007-08-24 03:14:14 13,712 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\[u]0/u0002109030000000000000000F01FEC\12.0.6215\XLCALL32.DLL
- 2008-08-25 21:03:26 1,165,584 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\accicons.exe
+ 2008-08-27 01:07:28 1,165,584 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\accicons.exe
- 2008-08-25 21:03:28 20,240 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
+ 2008-08-27 01:07:28 20,240 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
- 2008-08-25 21:03:27 159,504 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\inficon.exe
+ 2008-08-27 01:07:28 159,504 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\inficon.exe
- 2008-08-25 21:03:27 184,080 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\joticon.exe
+ 2008-08-27 01:07:28 184,080 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\joticon.exe
- 2008-08-25 21:03:28 217,864 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\misc.exe
+ 2008-08-27 01:07:28 217,864 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\misc.exe
- 2008-08-25 21:03:28 18,704 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
+ 2008-08-27 01:07:28 18,704 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
- 2008-08-25 21:03:29 35,088 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
+ 2008-08-27 01:07:29 35,088 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
- 2008-08-25 21:03:27 845,584 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\outicon.exe
+ 2008-08-27 01:07:28 845,584 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\outicon.exe
- 2008-08-25 21:03:28 922,384 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pptico.exe
+ 2008-08-27 01:07:28 922,384 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pptico.exe
- 2008-08-25 21:03:28 272,648 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pubs.exe
+ 2008-08-27 01:07:28 272,648 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pubs.exe
- 2008-08-25 21:03:29 888,080 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
+ 2008-08-27 01:07:29 888,080 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
- 2008-08-25 21:03:27 1,172,240 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
+ 2008-08-27 01:07:28 1,172,240 ----a-r C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-08-18 18:41 1832272]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 19:09 15360]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 11:34 5724184]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-06-10 21:10 339968]
"SynTPLpr"="C:\Program Files\Synaptics\SynTP\SynTPLpr.exe" [2004-05-07 02:49 98304]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2004-05-07 02:49 536576]
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2007-08-24 07:00 33648]
"BDAgent"="C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe" [2008-08-14 20:14 716800]
"BitDefender Antiphishing Helper"="C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe" [2008-08-10 23:53 69632]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"MemCheckBoxInRunDlg"= 1 (0x1)
"NoSMBalloonTip"= 1 (0x1)
"NoDesktopCleanupWizard"= 1 (0x1)
"NoWelcomeScreen"= 1 (0x1)
"NoStrCmpLogical"= 0 (0x0)
"NoInstrumentation"= 0 (0x0)
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"MemCheckBoxInRunDlg"= 1 (0x1)
"NoSMBalloonTip"= 1 (0x1)
"NoDesktopCleanupWizard"= 1 (0x1)
"NoWelcomeScreen"= 1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=sockspy.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.YV12"= yv12vfw.dll
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"DisablePagingExecutive"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
"DisableUnicastResponsesToMulticastBroadcast"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
R2 BDVEDISK;BDVEDISK;C:\Program Files\BitDefender\BitDefender 2009\BDVEDISK.sys [2008-07-02 13:07]
R3 bdfm;BDFM;C:\WINDOWS\system32\drivers\bdfm.sys [2008-08-12 18:40]
R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;C:\WINDOWS\system32\DRIVERS\bdfndisf.sys [2008-08-14 18:54]
R3 CONAN;CONAN;C:\WINDOWS\system32\drivers\o2mmb.sys [2004-02-11 17:18]
R3 MbxStby;MbxStby;C:\WINDOWS\system32\drivers\MbxStby.sys [2004-01-27 15:00]
S3 Arrakis3;BitDefender Arrakis Server;C:\Program Files\Fichiers communs\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe [2008-07-17 13:06]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bdx REG_MULTI_SZ scan
*Newly Created Service* - CATCHME
.
.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\a\Application Data\Mozilla\Firefox\Profiles\ura3hj6e.default\
FireFox -: prefs.js - STARTUP.HOMEPAGE - www.google.fr
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-27 09:07:26
Windows 5.1.2600 Service Pack 2 NTFS
Balayage processus cachés ...
Balayage caché autostart entries ...
Balayage des fichiers cachés ...
Scan terminé avec succès
Les fichiers cachés: 0
**************************************************************************
.
--------------------- DLLs a chargé sous des processus courants ---------------------
PROCESS: C:\WINDOWS\system32\winlogon.exe
-> C:\WINDOWS\system32\Ati2evxx.dll
.
Temps d'accomplissement: 2008-08-27 9:08:58
ComboFix-quarantined-files.txt 2008-08-27 07:08:52
ComboFix2.txt 2008-08-26 15:00:45
ComboFix3.txt 2008-08-26 08:49:28
Pre-Run: 9,251,069,952 octets libres
Post-Run: 9,245,188,096 octets libres
259 --- E O F --- 2008-08-27 01:07:34