Allo!
ComboFix 08-11-09.01 - geoffrey 2008-11-09 21:18:15.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.1592 [GMT -5:00]
Lancé depuis: c:\documents and settings\geoffrey\Mes documents\download files\ComboFix.exe
* Un nouveau point de restauration a été créé
[COLOR=RED][B]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!/B/COLOR
.
((((((((((((((((((((((((((((( Fichiers créés du 2008-10-10 au 2008-11-10 ))))))))))))))))))))))))))))))))))))
.
2008-11-09 20:48 . 2008-11-09 20:48 <REP> d-------- C:\rsit
2008-11-09 20:32 . 2008-11-09 20:48 <REP> d-------- C:\HijackThis
2008-11-09 20:18 . 2008-11-09 20:18 92 --a------ c:\windows\wininit.ini
2008-11-09 19:41 . 2008-11-09 19:41 <REP> d-------- c:\program files\uTorrent
2008-11-09 19:41 . 2008-11-09 21:05 <REP> d-------- c:\documents and settings\geoffrey\Application Data\uTorrent
2008-11-09 19:37 . 2008-11-09 19:37 <REP> d-------- c:\documents and settings\All Users\Application Data\SBT
2008-11-09 19:36 . 2008-11-09 19:36 <REP> d-------- c:\program files\Snapshot Viewer
2008-11-09 19:34 . 2008-11-09 19:38 379 --a------ c:\windows\ODBC.INI
2008-11-09 19:32 . 2008-11-09 19:38 <REP> d-------- c:\windows\ShellNew
2008-11-09 19:31 . 2008-11-09 19:31 <REP> d-------- c:\documents and settings\geoffrey\Application Data\Microsoft Web Folders
2008-11-09 19:26 . 2008-11-09 19:26 <REP> d-------- c:\program files\XviD
2008-11-09 19:26 . 2008-11-09 19:26 <REP> d-------- c:\program files\Lame MP3 Codec
2008-11-09 19:26 . 2002-12-03 22:13 1,048,576 --a------ c:\windows\system32\lameACM.acm
2008-11-09 19:26 . 2005-05-03 09:33 299,008 --a------ c:\windows\system32\LAME_MP3.dll
2008-11-09 19:26 . 2008-11-09 19:26 65,024 --a------ c:\windows\IFinst26.exe
2008-11-09 19:26 . 2004-12-10 21:29 401 --a------ c:\windows\system32\lame_acm.xml
2008-11-09 19:25 . 2008-11-09 19:25 <REP> d-------- c:\program files\Samsung
2008-11-09 19:25 . 2008-11-09 19:25 <REP> d-------- c:\program files\MarkAny
2008-11-09 19:25 . 2008-11-09 19:25 <REP> d-------- c:\documents and settings\geoffrey\Application Data\DataCast
2008-11-09 19:11 . 2008-11-09 19:11 <REP> d-------- c:\program files\Fichiers communs\Adobe
2008-11-09 19:10 . 2008-11-09 19:10 <REP> d-------- c:\program files\Google
2008-11-09 19:09 . 2008-11-09 21:07 <REP> d-------- c:\program files\NOS
2008-11-09 19:09 . 2008-11-09 21:07 <REP> d-------- c:\documents and settings\All Users\Application Data\NOS
2008-11-09 18:45 . 2008-11-09 18:45 <REP> d-------- c:\documents and settings\geoffrey\Application Data\HP
2008-11-09 18:44 . 2008-11-09 18:44 <REP> d-------- c:\program files\Fichiers communs\HP
2008-11-09 18:44 . 2008-11-09 18:44 <REP> d-------- c:\documents and settings\All Users\Application Data\HPSSUPPLY
2008-11-09 18:44 . 2008-11-09 18:44 <REP> d-------- c:\documents and settings\All Users\Application Data\HP
2008-11-09 18:43 . 2008-11-09 18:43 <REP> d-------- c:\documents and settings\All Users\Application Data\zvprt50
2008-11-09 18:43 . 2007-04-02 08:19 13,385 --------- c:\windows\system32\hppfaxprintermon5.dll
2008-11-09 18:43 . 2007-04-02 08:19 9,451 --------- c:\windows\system32\hppfaxprintermonui5.dll
2008-11-09 18:43 . 2008-11-09 18:43 608 --ahs---- c:\windows\system32\winzvprt5.sys
2008-11-09 18:42 . 2008-11-09 18:42 <REP> d-------- c:\program files\Hewlett-Packard
2008-11-09 18:42 . 2008-11-09 18:42 <REP> d-------- c:\program files\Fichiers communs\Hewlett-Packard
2008-11-09 18:41 . 2008-11-09 18:45 <REP> d-------- c:\documents and settings\All Users\Application Data\Hewlett-Packard
2008-11-09 18:41 . 2007-08-31 01:52 188,416 -ra------ c:\windows\system32\hppafx08.dll
2008-11-09 18:41 . 2007-07-16 16:29 59,928 -ra------ c:\windows\system32\fxfaxchannel.dll
2008-11-09 18:41 . 2007-07-16 16:29 20,504 -ra------ c:\windows\system32\drivers\hpfxfax.sys
2008-11-09 18:40 . 2007-06-22 17:08 876,544 -ra------ c:\windows\system32\hpxp1522.dll
2008-11-09 18:40 . 2008-01-06 21:22 733,184 -ra------ c:\windows\system32\hpptsp03.dll
2008-11-09 18:40 . 2007-02-07 23:07 450,560 -ra------ c:\windows\system32\hppasc08.dll
2008-11-09 18:40 . 2008-01-24 00:58 327,680 -ra------ c:\windows\system32\hppcpr08.dll
2008-11-09 18:40 . 2007-02-07 22:58 188,416 -ra------ c:\windows\system32\hppcew08.dll
2008-11-09 18:40 . 2007-07-17 05:29 59,928 --a------ c:\windows\system32\fxcompchannel.dll
2008-11-09 18:40 . 2007-07-16 16:29 26,136 -ra------ c:\windows\system32\drivers\hpfxgen.sys
2008-11-09 18:40 . 2007-07-16 16:29 17,432 -ra------ c:\windows\system32\drivers\hpfxbulk.sys
2008-11-09 18:40 . 2008-04-13 13:45 15,104 --a------ c:\windows\system32\drivers\usbscan.sys
2008-11-09 18:40 . 2008-04-13 13:45 15,104 --a--c--- c:\windows\system32\dllcache\usbscan.sys
2008-11-09 18:40 . 2006-12-05 08:57 685 -ra------ c:\windows\system32\hppapr08.dat
2008-11-09 18:39 . 2008-11-09 19:21 <REP> d-------- c:\program files\HP
2008-11-09 18:38 . 2008-11-09 19:21 170,912 --a------ c:\windows\hppins08.dat
2008-11-09 18:38 . 2008-11-09 18:44 170,871 --a------ c:\windows\system32\hppins08.dat
2008-11-09 18:38 . 2008-01-07 09:19 1,116 --------- c:\windows\hppmdl08.dat
2008-11-09 18:36 . 2008-11-09 18:37 <REP> d-------- c:\documents and settings\geoffrey\.gimp-2.6
2008-11-09 18:36 . 2008-11-09 18:36 <REP> d-------- c:\documents and settings\geoffrey\.gegl-0.0
2008-11-09 18:35 . 2008-11-09 18:35 <REP> d-------- c:\program files\Gimp-2.0
2008-11-09 18:29 . 2008-11-09 21:23 569,376 --ahs---- c:\windows\system32\drivers\fidbox.dat
2008-11-09 18:29 . 2008-11-09 21:20 7,700 --ahs---- c:\windows\system32\drivers\fidbox.idx
2008-11-09 18:28 . 2008-11-09 18:28 268 --ah----- C:\sqmdata02.sqm
2008-11-09 18:28 . 2008-11-09 18:28 244 --ah----- C:\sqmnoopt02.sqm
2008-11-09 18:26 . 2008-11-09 18:26 <REP> d-------- c:\documents and settings\All Users\Application Data\MailFrontier
2008-11-09 18:26 . 2008-07-09 09:05 75,248 --a------ c:\windows\zllsputility.exe
2008-11-09 18:26 . 2008-07-09 09:05 54,672 --a------ c:\windows\system32\vsutil_loc040c.dll
2008-11-09 18:26 . 2008-07-09 09:05 42,384 --a------ c:\windows\zllsputility_loc040c.dll
2008-11-09 18:26 . 2008-07-09 09:05 21,904 --a------ c:\windows\system32\imsinstall_loc040c.dll
2008-11-09 18:26 . 2008-07-09 09:05 17,808 --a------ c:\windows\system32\imslsp_install_loc040c.dll
2008-11-09 18:26 . 2004-04-27 04:40 11,264 --a------ c:\windows\system32\SpOrder.dll
2008-11-09 18:26 . 2008-11-09 18:28 4,212 ---h----- c:\windows\system32\zllictbl.dat
2008-11-09 18:25 . 2008-11-09 18:25 <REP> d-------- c:\program files\Zone Labs
2008-11-09 18:05 . 2008-11-09 18:05 <REP> d-------- c:\windows\system32\fr
2008-11-09 18:05 . 2008-11-09 18:05 <REP> d-------- c:\windows\l2schemas
2008-11-09 17:59 . 2008-11-09 17:59 <REP> d-------- c:\documents and settings\geoffrey\Application Data\MSN6
2008-11-09 17:59 . 2008-11-09 17:59 <REP> d-------- c:\documents and settings\All Users\Application Data\MSN6
2008-11-09 17:53 . 2008-11-09 17:53 268 --ah----- C:\sqmdata01.sqm
2008-11-09 17:53 . 2008-11-09 17:53 244 --ah----- C:\sqmnoopt01.sqm
2008-11-09 17:38 . 2008-11-09 18:05 <REP> d-------- c:\windows\system32\fr-fr
2008-11-09 17:28 . 2008-11-09 17:28 <REP> d-------- c:\program files\MSXML 6.0
2008-11-09 17:18 . 2008-11-09 17:54 <REP> d-------- c:\documents and settings\geoffrey\Contacts
2008-11-09 17:13 . 2008-09-08 05:41 333,824 -----c--- c:\windows\system32\dllcache\srv.sys
2008-11-09 17:13 . 2008-06-14 12:33 272,768 -----c--- c:\windows\system32\dllcache\bthport.sys
2008-11-09 17:13 . 2008-08-14 05:04 138,496 -----c--- c:\windows\system32\dllcache\afd.sys
2008-11-09 17:12 . 2008-08-14 08:23 2,191,232 -----c--- c:\windows\system32\dllcache\ntoskrnl.exe
2008-11-09 17:12 . 2008-08-14 08:23 2,147,328 -----c--- c:\windows\system32\dllcache\ntkrnlmp.exe
2008-11-09 17:12 . 2008-08-14 08:23 2,068,096 -----c--- c:\windows\system32\dllcache\ntkrnlpa.exe
2008-11-09 17:12 . 2008-08-14 08:23 2,025,984 -----c--- c:\windows\system32\dllcache\ntkrpamp.exe
2008-11-09 17:12 . 2008-09-15 10:26 1,846,528 -----c--- c:\windows\system32\dllcache\win32k.sys
2008-11-09 17:12 . 2008-04-11 14:05 691,712 -----c--- c:\windows\system32\dllcache\inetcomm.dll
2008-11-09 17:12 . 2008-10-15 11:35 337,408 -----c--- c:\windows\system32\dllcache\netapi32.dll
2008-11-09 17:12 . 2008-05-01 09:36 331,776 -----c--- c:\windows\system32\dllcache\msadce.dll
2008-11-09 17:12 . 2008-05-08 09:02 203,136 -----c--- c:\windows\system32\dllcache\rmcast.sys
2008-11-09 17:11 . 2008-11-09 17:11 268 --ah----- C:\sqmdata00.sqm
2008-11-09 17:11 . 2008-11-09 17:11 244 --ah----- C:\sqmnoopt00.sqm
2008-11-09 17:08 . 2003-02-28 18:26 139,536 --a------ c:\windows\system32\javaee.dll
2008-11-09 17:08 . 2003-02-28 18:26 46,352 --a------ c:\windows\setdebug.exe
2008-11-09 17:08 . 2003-02-28 16:54 7,315 --a------ c:\windows\system32\javasup.vxd
2008-11-09 17:08 . 2003-02-28 16:35 6,550 --a------ c:\windows\jautoexp.dat
2008-11-09 17:08 . 2003-02-28 16:38 113 --a------ c:\windows\system32\zonedon.reg
2008-11-09 17:08 . 2003-02-28 16:38 113 --a------ c:\windows\system32\zonedoff.reg
2008-11-09 17:07 . 2008-11-09 17:07 <REP> d-------- c:\program files\Windows Live Safety Center
2008-11-09 16:44 . 2006-11-29 13:06 3,426,072 --a------ c:\windows\system32\d3dx9_32.dll
2008-11-09 16:43 . 2008-11-09 16:43 <REP> d-------- c:\program files\Microsoft SQL Server Compact Edition
2008-11-09 16:37 . 2008-11-09 17:29 <REP> d-------- c:\program files\Windows Live
2008-11-09 16:37 . 2008-11-09 16:39 <REP> d--hsc--- c:\program files\Fichiers communs\WindowsLiveInstaller
2008-11-09 16:37 . 2008-11-09 16:37 <REP> d-------- c:\documents and settings\All Users\Application Data\WLInstaller
2008-11-09 16:31 . 2008-11-09 17:16 <REP> d-------- c:\program files\Spybot - Search & Destroy
2008-11-09 16:31 . 2008-11-09 17:17 <REP> d-------- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2008-11-09 16:24 . 2008-11-09 16:24 <REP> d-------- c:\program files\Avira
2008-11-09 16:24 . 2008-11-09 16:24 <REP> d-------- c:\documents and settings\All Users\Application Data\Avira
2008-11-09 16:18 . 2008-04-13 21:34 92,160 --a------ c:\windows\system32\kswdmcap.ax
2008-11-09 16:18 . 2008-04-13 13:46 85,248 --a------ c:\windows\system32\drivers\nabtsfec.sys
2008-11-09 16:18 . 2008-04-13 21:34 61,952 --a------ c:\windows\system32\kstvtune.ax
2008-11-09 16:18 . 2008-04-13 21:33 54,784 --a------ c:\windows\system32\vfwwdm32.dll
2008-11-09 16:18 . 2008-04-13 21:34 43,008 --a------ c:\windows\system32\ksxbar.ax
2008-11-09 16:18 . 2008-04-13 13:46 19,200 --a------ c:\windows\system32\drivers\wstcodec.sys
2008-11-09 16:18 . 2008-04-13 13:46 17,024 --a------ c:\windows\system32\drivers\ccdecode.sys
2008-11-09 16:18 . 2008-04-13 21:34 16,384 --a------ c:\windows\system32\ipsink.ax
2008-11-09 16:18 . 2008-04-13 13:46 15,232 --a------ c:\windows\system32\drivers\streamip.sys
2008-11-09 16:18 . 2008-04-13 13:46 11,136 --a------ c:\windows\system32\drivers\slip.sys
2008-11-09 16:18 . 2008-04-13 13:46 10,880 --a------ c:\windows\system32\drivers\ndisip.sys
2008-11-09 16:18 . 2008-04-13 13:39 5,504 --a------ c:\windows\system32\drivers\mstee.sys
2008-11-09 16:17 . 2008-11-09 16:17 <REP> d-------- c:\documents and settings\LocalService\Menu Démarrer
2008-11-09 16:17 . 2008-11-09 16:17 940,794 --a------ c:\windows\system32\LoopyMusic.wav
2008-11-09 16:17 . 2008-11-09 16:17 146,650 --a------ c:\windows\system32\BuzzingBee.wav
2008-11-09 16:11 . 2008-11-09 16:11 <REP> d-------- c:\windows\provisioning
2008-11-09 16:11 . 2008-11-09 18:05 <REP> d-------- c:\windows\peernet
2008-11-09 16:11 . 2008-11-09 19:26 316,640 --a------ c:\windows\WMSysPr9.prx
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-11-10 00:36 --------- d-----w c:\program files\microsoft frontpage
2008-11-09 14:59 558,142 ----a-w c:\windows\java\Packages\HZ9J5R1J.ZIP
2008-11-09 14:59 155,995 ----a-w c:\windows\java\Packages\AMLVVHFZ.ZIP
2008-11-09 14:56 --------- d-----w c:\program files\Services en ligne
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\UEAFOverlay]
@="{F2F31467-B1AC-4df0-AE79-FD5FA085E22B}"
[HKEY_CLASSES_ROOT\CLSID\{F2F31467-B1AC-4df0-AE79-FD5FA085E22B}]
2007-03-28 19:59 2953216 --a------ c:\program files\Protector Suite QL\farchns.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\UEAFOverlayOpen]
@="{A3E208F7-0E3A-4182-A7A6-B169D5D691AA}"
[HKEY_CLASSES_ROOT\CLSID\{A3E208F7-0E3A-4182-A7A6-B169D5D691AA}]
2007-03-28 19:59 2953216 --a------ c:\program files\Protector Suite QL\farchns.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-13 1695232]
"swg"="c:\program files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2008-11-09 171448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\System32\NvCpl.dll" [2007-06-26 8462336]
"NvMediaCenter"="c:\windows\System32\NVMCTRAY.DLL" [2007-06-26 81920]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2006-11-22 630784]
"WLSS"="c:\program files\Wireless Select Switch\WLSS.exe" [2007-10-17 189736]
"IntelZeroConfig"="c:\program files\Intel\Wireless\bin\ZCfgSvc.exe" [2007-06-01 823296]
"IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2007-06-01 974848]
"Wow Video&Audio"="c:\program files\Compal\Wow Video&Audio\WVAMain.exe" [2007-05-03 951856]
"SMBTray"="c:\program files\Compal\Smart Battery\SMBTray.exe" [2007-06-04 521776]
"PSQLLauncher"="c:\program files\Protector Suite QL\launcher.exe" [2007-03-28 49168]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2006-12-29 569344]
"avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-12 266497]
"ZoneAlarm Client"="c:\program files\Zone Labs\ZoneAlarm\zlclient.exe" [2008-07-09 919016]
"ToolBoxFX"="c:\program files\HP\ToolBoxFX\bin\HPTLBXFX.exe" [2008-01-10 53248]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2005-02-16 49152]
"HPUsageTracking"="c:\program files\HP\HP UT\bin\hppusg.exe" [2007-08-31 36864]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"SMSTray"="c:\program files\Samsung\Samsung Media Studio 5\SMSTray.exe" [2007-02-23 126976]
"MAAgent"="c:\program files\MarkAny\ContentSafer\MAAgent.exe" [2007-01-30 57344]
"nwiz"="nwiz.exe" [2007-06-26 c:\windows\system32\nwiz.exe]
"RTHDCPL"="RTHDCPL.EXE" [2007-05-10 c:\windows\RTHDCPL.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"SpybotDeletingA6065"="command" [X]
"SpybotDeletingC610"="del" [X]
"GrpConv"="grpconv -o" [X]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-13 15360]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
BTTray.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [11/12/2006 16:35:34 561213]
Microsoft Office.lnk - c:\program files\Microsoft Office\Office\OSA9.EXE [17/02/1999 15:05:56 65588]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{88485281-8b4b-4f8d-9ede-82e29a064277}"= "c:\progra~1\MarkAny\CONTEN~1\MACSMA~1.DLL" [2004-11-23 192512]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ scecli psqlpwd
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ZoneLabsFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\HP\\hp laserjet m1522\\Fax Config utility1.exe"=
"c:\\WINDOWS\\system32\\muzapp.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
R0 EMSC;COMPAL Embedded System Control;c:\windows\system32\DRIVERS\EMSC.SYS [2007-03-14 9856]
R3 HPFXBULK;HPFXBULK;c:\windows\system32\drivers\hpfxbulk.sys [2007-07-16 17432]
R3 HPFXFAX;HPFXFAX;c:\windows\system32\drivers\hpfxfax.sys [2007-07-16 20504]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
- - - - ORPHELINS SUPPRIMES - - - -
HKLM-RunOnce-<NO NAME> - (no file)
Notify-psfus - c:\windows\System32\psqlpwd.dll
.
------- Examen supplémentaire -------
.
R0 -: HKCU-Main,Start Page = hxxp://google.com/
O8 -: Envoyer au périphérique &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O16 -: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
c:\windows\Downloaded Program Files\DirectAnimation Java Classes.osd
O16 -: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
c:\windows\Downloaded Program Files\Microsoft XML Parser for Java.osd
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-11-09 21:22:17
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\Intel\Wireless\Bin\S24EvMon.exe
c:\windows\system32\ZoneLabs\vsmon.exe
c:\program files\Avira\AntiVir PersonalEdition Classic\sched.exe
c:\program files\Avira\AntiVir PersonalEdition Classic\avguard.exe
c:\program files\Intel\Wireless\Bin\EvtEng.exe
c:\windows\system32\nvsvc32.exe
c:\program files\Intel\Wireless\Bin\RegSrvc.exe
c:\windows\system32\wdfmgr.exe
c:\program files\Spybot - Search & Destroy\SpybotSD.exe
.
**************************************************************************
.
Heure de fin: 2008-11-09 21:24:53 - La machine a redémarré
ComboFix-quarantined-files.txt 2008-11-10 02:24:48
Avant-CF: 237 642 420 224 octets libres
Après-CF: 237,564,145,664 octets libres
254 --- E O F --- 2008-11-09 23:10:40