Merci
vous avez resolu mon problem je peus accedé au C en double clic
mais apres le scan, lordinateur ne peut pas demarer normalement donc jai fai le choix de la derniere configuration connue
j'esper que c pas un autre problem lol
voici le rapor de comboFix
ComboFix 08-09-12.03 - selec 2008-09-13 3:34:25.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.295 [GMT 2:00]
Lancé depuis: C:\Documents and Settings\selec\Bureau\ComboFix.exe
* Un nouveau point de restauration a été créé
[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!/b/color
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\a1.bat
C:\Autorun.inf
.
((((((((((((((((((((((((((((( Fichiers créés du 2008-08-13 au 2008-09-13 ))))))))))))))))))))))))))))))))))))
.
2008-09-13 03:19 . 2008-09-13 03:19 <REP> d----c--- C:\Program Files\Trend Micro
2008-09-13 02:41 . 2008-09-13 02:41 <REP> d----c--- C:\WINDOWS\LastGood
2008-09-13 02:41 . 2005-07-20 21:07 3,198,368 --a--c--- C:\WINDOWS\system32\drivers\OLDD.tmp
2008-09-13 02:30 . 2008-09-13 02:30 <REP> d----c--- C:\WINDOWS\system32\Lang
2008-09-13 02:30 . 2008-09-13 02:30 940,794 --a--c--- C:\WINDOWS\system32\LoopyMusic.wav
2008-09-13 02:30 . 2008-09-13 02:30 146,650 --a--c--- C:\WINDOWS\system32\BuzzingBee.wav
2008-09-12 03:51 . 2008-09-12 03:51 <REP> d----c--- C:\Program Files\TechniSat DVB
2008-09-12 03:51 . 2008-09-12 03:51 <REP> d----c--- C:\Program Files\Fichiers communs\Sonic Shared
2008-09-12 03:51 . 2008-09-12 03:51 <REP> d----c--- C:\Program Files\DVBViewerTE
2008-09-12 03:50 . 2008-09-12 03:50 54,156 --ah-c--- C:\WINDOWS\QTFont.qfn
2008-09-12 03:50 . 2008-09-12 03:50 1,409 --a--c--- C:\WINDOWS\QTFont.for
2008-09-12 03:44 . 2005-09-29 12:28 343,040 -ra--c--- C:\WINDOWS\system32\drivers\SkyNET.sys
2008-09-12 03:38 . 2008-09-12 03:38 1,160 --a--c--- C:\WINDOWS\mozver.dat
2008-09-12 03:31 . 2008-09-12 03:31 <REP> d----c--- C:\Program Files\K-Lite Codec Pack
2008-09-12 03:31 . 2008-09-12 03:31 <REP> d----c--- C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-09-12 00:55 . 2008-09-12 00:55 <REP> d---sc--- C:\Documents and Settings\selec\UserData
2008-09-12 00:21 . 2008-09-12 00:21 <REP> d----c--- C:\Program Files\Alwil Software
2008-09-12 00:14 . 2008-09-12 13:50 <REP> d----c--- C:\Documents and Settings\selec\Contacts
2008-09-12 00:11 . 2008-09-12 00:11 0 --a--c--- C:\WINDOWS\nsreg.dat
2008-09-12 00:06 . 2008-09-12 00:06 <REP> d----c--- C:\WINDOWS\system32\DRVSTORE
2008-09-12 00:05 . 2008-09-12 00:05 <REP> d----c--- C:\Program Files\MSN Messenger
2008-09-12 00:00 . 2008-09-12 00:00 <REP> d----c--- C:\kav
2008-09-11 23:53 . 2008-09-11 23:53 <REP> d----c--- C:\Documents and Settings\All Users\Application Data\WinZip
2008-09-11 21:59 . 2008-09-11 22:08 <REP> d----c--- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-09-11 21:48 . 2003-06-19 01:31 17,920 --a--c--- C:\WINDOWS\system32\mdimon.dll
2008-09-11 21:48 . 2008-09-11 21:48 385 --a--c--- C:\WINDOWS\ODBC.INI
2008-09-11 21:47 . 2008-09-11 22:08 <REP> d----c--- C:\WINDOWS\SHELLNEW
2008-09-11 21:43 . 2008-09-11 21:43 <REP> dr-h-c--- C:\MSOCache
2008-09-11 21:39 . 2008-09-11 21:39 <REP> d----c--- C:\WINDOWS\system32\WinFox
2008-09-11 21:28 . 2008-09-11 21:28 <REP> d----c--- C:\Program Files\VIA
2008-09-11 21:28 . 2008-09-11 21:28 <REP> d----c--- C:\Program Files\GIGABYTE
2008-09-11 21:28 . 1998-10-02 19:00 327,168 --a--c--- C:\WINDOWS\IsUninst.exe
2008-09-11 21:28 . 2004-05-18 10:55 74,112 -ra--c--- C:\WINDOWS\system32\drivers\viamraid.sys
2008-09-11 21:27 . 2008-09-11 21:27 <REP> d----c--- C:\Program Files\Marvell
2008-09-11 21:26 . 2008-09-11 21:26 <REP> d----c--- C:\Program Files\Realtek Sound Manager
2008-09-11 21:26 . 2008-09-11 21:26 <REP> d----c--- C:\Program Files\AvRack
2008-09-11 21:26 . 2004-12-22 11:06 17,584,128 --a--c--- C:\WINDOWS\system32\ALSNDMGR.CPL
2008-09-11 21:24 . 2008-09-11 21:24 <REP> d----c--- C:\Program Files\Intel
2008-09-11 21:24 . 2008-09-12 03:51 <REP> d--h-c--- C:\Program Files\InstallShield Installation Information
2008-09-11 21:24 . 2008-09-11 21:39 <REP> d----c--- C:\Program Files\Fichiers communs\InstallShield
2008-09-11 21:17 . 2008-09-11 22:30 <REP> d--h-c--- C:\Documents and Settings\selec\Voisinage réseau
2008-09-11 21:17 . 2008-09-11 22:30 <REP> d--h-c--- C:\Documents and Settings\selec\Voisinage d'impression
2008-09-11 21:17 . 2008-09-11 20:43 <REP> d--h-c--- C:\Documents and Settings\selec\Modèles
2008-09-11 21:17 . 2008-09-12 00:15 <REP> dr---c--- C:\Documents and Settings\selec\Mes documents
2008-09-11 21:17 . 2008-09-11 22:30 <REP> dr---c--- C:\Documents and Settings\selec\Menu Démarrer
2008-09-11 21:17 . 2008-09-11 21:17 <REP> dr---c--- C:\Documents and Settings\selec\Favoris
2008-09-11 21:17 . 2008-09-13 03:29 <REP> d----c--- C:\Documents and Settings\selec\Bureau
2008-09-11 21:16 . 2008-09-12 15:00 <REP> d----c--- C:\Documents and Settings\selec
2008-09-11 21:15 . 2008-09-11 21:15 <REP> d---sc--- C:\WINDOWS\system32\Microsoft
2008-09-11 21:15 . 2008-09-11 21:15 <REP> d--hsc--- C:\Documents and Settings\LocalService
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-11 20:04 --------- dc----w C:\Program Files\MSBuild
2008-09-11 20:04 --------- dc----w C:\Program Files\Microsoft Works
2008-09-11 18:47 --------- dc----w C:\Program Files\microsoft frontpage
2008-09-11 18:45 --------- dc----w C:\Program Files\Services en ligne
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 15360]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.Exe" [2007-01-19 5674352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2005-07-20 7110656]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2005-07-20 86016]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-07-19 78008]
"SoundMan"="SOUNDMAN.EXE" [2004-12-22 C:\WINDOWS\SOUNDMAN.EXE]
"nwiz"="nwiz.exe" [2005-07-20 C:\WINDOWS\system32\nwiz.exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 15360]
C:\Documents and Settings\selec\Menu D‚marrer\Programmes\D‚marrage\
Sonic CinePlayer Quick Launch.lnk - C:\Program Files\Fichiers communs\Sonic Shared\cinetray.exe [2002-09-18 98304]
C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Server4PC.lnk - C:\Program Files\TechniSat DVB\bin\Server4PC.exe [2008-09-12 368640]
VIA RAID TOOL.lnk - C:\Program Files\VIA\RAID\raid_tool.exe [2008-09-11 581632]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.X264"= x264vfw.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\DVBViewerTE\\ts_winlirc.exe"=
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-07-19 78416]
R1 Cinemsup;Cinemsup;C:\WINDOWS\system32\drivers\Cinemsup.sys [2002-07-19 6656]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-07-19 20560]
R3 SKYNET;TechniSat DVB-PC TV Star PCI;C:\WINDOWS\system32\DRIVERS\SkyNET.SYS [2005-09-29 343040]
S3 AVPsys;AVPsys;C:\WINDOWS\system32\drivers\tdi.sys [2004-08-04 18560]
*Newly Created Service* - CATCHME
*Newly Created Service* - PROCEXP90
.
- - - - ORPHELINS SUPPRIMES - - - -
HKCU-Run-kamsoft - C:\WINDOWS\system32\ckvo.exe
.
------- Examen supplémentaire -------
.
FireFox -: Profile - C:\Documents and Settings\selec\Application Data\Mozilla\Firefox\Profiles\44yrdf50.default\
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-13 03:35:23
Windows 5.1.2600 Service Pack 2 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
Heure de fin: 2008-09-13 3:36:21
ComboFix-quarantined-files.txt 2008-09-13 01:36:17
Avant-CF: 16,379,314,176 octets libres
Après-CF: 16,413,642,752 octets libres
130